Intelligence for the threats that matter.
Daily and weekly analysis of enterprise cybersecurity, identity, cloud, AI, vulnerabilities, ransomware, nation-state activity, and operational technology.
Unpatched Magento and Adobe Commerce RCE is already dropping Linux backdoors
Sansec reports an unauthenticated StyleSmuggler chain on current Magento 2.4.x, including stores that already applied July and August 2026 patches. Adobe has not published a CVE or fix as of 7 September.
CONFIRMED Dutch e-commerce security firm Sansec published on 5 September 2026 that an unauthenticated remote-code-execution chain, which it named StyleSmuggler, is being used against Magento Open Source and Adobe Commerce. The first confirmed exploitation is dated 4 September. Sa
Recent Daily Top
No additional daily entries.
Weekly intelligence
- Enterprise
- Identity
- Cloud
- Vulnerabilities
- Ransomware
- Nation-state activity
No weekly IT briefing this cycle yet.
- ICS / SCADA
- Industrial control
- Critical infrastructure
- CPS
- Industrial ransomware
No weekly OT briefing this cycle yet.
Browse by domain
Intelligence informs execution.
RWP Intelligence publishes defensive analysis. RWP Ventures helps organizations assess, architect, implement, and operate cybersecurity and technology programs — principal-led, threat-informed, documented against the frameworks boards and auditors expect.
Open OT knowledge
Open, vendor-neutral defensive knowledge for operational technology and cyber-physical systems, supporting the OT practice at RWP Ventures.
Explore OT Atlas ↗