The Password Change That Didnt Need a Password episode artwork

EPISODE · Apr 6, 2026 · 6 MIN

The Password Change That Didnt Need a Password

from CyberPulse · host Tushar Vartak

Cisco patched CVE-2026-20093 (CVSS 9.8) in the Integrated Management Controller — an authentication bypass that allows an unauthenticated attacker to change any user's password, including the administrator, and gain full system control via a single crafted HTTP request. This continues the management plane attack pattern tracked since March across Intune, Cisco FMC, SD-WAN, and FortiClient EMS. A mass exploitation campaign using automated credential harvesting compromised 766 hosts via a web framework vulnerability, exfiltrating database credentials, SSH keys, cloud secrets, and API keys. Ransomware tracking shows 2,726 victims year-to-date through April 3 with 104 in the first three days of April. A state-linked actor publicly announced intent to escalate attacks on technology companies across the region.

NOW PLAYING

The Password Change That Didnt Need a Password

0:00 6:01

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

The CyberPulse Scoop Turnkey Cybersecurity and Privacy Solutions Welcome to CyberPulse Scoop, your go-to podcast for staying ahead in cybersecurity, privacy, compliance, and AI agent use cases. Leveraging off our vast library of expert content, we deliver insights and actionable intelligence for professionals in financial services, defense, and other regulated sectors.Each weekly episode features:-In-depth analysis of cybersecurity trends-Expert discussions on privacy and data protection-Compliance challenges and strategies-The latest in AI agents and use casesSubscribe now to stay informed. www.turnkeycybersecurityandprivacysolutions.com US-China CyberPulse: Defense Updates Inception Point Ai This is your US-China CyberPulse: Defense Updates podcast.Stay informed with "US-China CyberPulse: Defense Updates," your go-to podcast for weekly insights into America's cybersecurity landscape in response to Chinese threats. Explore the latest defensive strategies, government policies, and private sector initiatives aimed at enhancing national security. Delve into international cooperation efforts and discover emerging protection technologies shaping the future. Tune in for expert analysis and stay ahead in the ever-evolving world of cybersecurity.For more info go to https://www.quietplease.aiCheck out these deals https://amzn.to/48MZPjsThis show includes AI-generated content. US-China CyberPulse: Defense Updates Inception Point AI This is your US-China CyberPulse: Defense Updates podcast.Stay informed with "US-China CyberPulse: Defense Updates," your go-to podcast for weekly insights into America's cybersecurity landscape in response to Chinese threats. Explore the latest defensive strategies, government policies, and private sector initiatives aimed at enhancing national security. Delve into international cooperation efforts and discover emerging protection technologies shaping the future. Tune in for expert analysis and stay ahead in the ever-evolving world of cybersecurity.For more info go to https://www.quietplease.aiCheck out these deals https://amzn.to/48MZPjsThis content was created in partnership and with the help of Artificial Intelligence AI.

Frequently Asked Questions

How long is this episode of CyberPulse?

This episode is 6 minutes long.

When was this CyberPulse episode published?

This episode was published on April 6, 2026.

What is this episode about?

Cisco patched CVE-2026-20093 (CVSS 9.8) in the Integrated Management Controller — an authentication bypass that allows an unauthenticated attacker to change any user's password, including the administrator, and gain full system control via a single...

Can I download this CyberPulse episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!