Tag
#CVE-2026-18577
3 stories taggedCVE-2026-18577.

Ransomware
Old Medusa Hand, New Locker: Storm-1175 Rolls Out StormEncryptor via N-central Flaw
Microsoft says a China-linked crew is exploiting a critical bug in N-able's remote management tool to plant a fresh ransomware strain, sometimes within days of breaking in.
4 min read

Vulnerabilities
CISA flags N-able N-central bug as actively exploited, orders federal fix
The remote monitoring platform used by thousands of IT providers carries an authentication bypass that attackers are already using in the wild.
3 min read

Vulnerabilities
N-able confirms hackers seized N-central servers through a login-bypass flaw
The remote-management platform's first patch didn't hold. A second fix, in build 2026.3.1.7, closes CVE-2026-18577.
3 min read