Firewall
Your Firewall's Management Console Belongs Off the Public Internet: Lessons from the September KEV Surge
Between 21 and 25 September 2026, the United States Cybersecurity and Infrastructure Security Agency ( CISA ) expanded its Known Exploited Vulnerabilities (KEV) catalogue with a barrage of high-severity flaws across critical edge and enterprise infrastructure. The list reads like a core inventory of enterprise IT deployments: Check Point Management Server and Security Gateways, Microsoft on-premises SharePoint, F5 BIG-IP, Citrix NetScaler, and MikroTik RouterOS. In multiple instances, weaponized exploitation preceded vendor patches, leaving internet-exposed administrative interfaces vulnerable to unauthenticated remote execution.