Signal

Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root Access

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-03-18 16:00 UTCUpdated 2026-03-18 17:40 UTC
rss
securityjanuary_interlock_ransomware
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (3 domains)domains are deduped. counts indicate coverage, not truth.
3 top sources shown
Overview

The Interlock ransomware gang has been exploiting a maximum severity remote code execution (RCE) vulnerability in Cisco's Secure Firewall Management Center (FMC) software in zero-day attacks since late January.

Score total
1.32
Momentum 24h
3
Posts
3
Origins
3
Source types
1
Duplicate ratio
0%
All evidence
All evidence
Amazon security boss says crims abused max-security Cisco firewall flaw weeks before disclosure
The Register Security · go.theregister.com · 2026-03-18 17:40 UTC
Ransomware gang exploits Cisco flaw in zero-day attacks since January
BleepingComputer · bleepingcomputer.com · 2026-03-18 16:53 UTC
Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root Access
The Hacker News · thehackernews.com · 2026-03-18 16:00 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 3Origin domains: 3Duplicates: -
Showing 3 / 0
Top publishers (this list)
  • The Register Security (1)
  • BleepingComputer (1)
  • The Hacker News (1)
Top origin domains (this list)
  • go.theregister.com (1)
  • bleepingcomputer.com (1)
  • thehackernews.com (1)