Cisco Secure Email Gateway zero-day compromises anti-phishing infrastructure
CVE-2026-76461 is being exploited through crafted email to obtain unauthenticated root-level execution on Cisco email gateways, with possible log wiping and external command-and-control activity. Emergency patching, appliance isolation, and forensic review are urgent for financial organizations because gateway takeover could enable stealthy interception, filtering changes, and downstream phishing or BEC operations.
Sources (3)
Updated Sep 15, 2026