
Cisco Talos ties Sandworm and Qilin ransomware to the FMC firewall flaws exploited this week
Three threat clusters — a Qilin ransomware affiliate, a Sandworm-linked APT deploying Cyclops Blink, and a credential-theft group — exploited Cisco's CVE-2026-20079 and CVE-2026-20316.








