{
  "id": 138798,
  "title": "Feds get 3 days to patch N-able God mode flaw under active exploit",
  "url": "https://urgent.news/2026/08/04/feds-get-3-days-to-patch-n-able-god-mode-flaw-under-active-exploit-138798",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-04T15:38:00.000Z",
  "source": {
    "name": "The Register Science",
    "slug": "the-register-science",
    "url": "https://www.theregister.com/security/2026/08/04/feds-get-3-days-to-patch-n-able-god-mode-flaw-under-active-exploit/5282894"
  },
  "original_language": "en",
  "account": "The US Cybersecurity and Infrastructure Security Agency (CISA) has granted federal agencies three days to remedy a critical flaw in the N-able N-central platform. The vulnerability, tracked as CVE-2026-18577, allows attackers to gain full administrative access to the console, enabling them to pivot onto managed endpoints and establish persistent tunnels for victim networks. Tracked as a high-risk issue, CISA urged agencies to remediate the flaw by August 6, as part of Binding Operational Directive 26-04. Huntress security firm observed that nearly all cloud-hosted N-central instances had been patched by August 3, but 28.6 percent of self-hosted servers remained vulnerable.",
  "summary": "Experts warn hotfix not optional. MSPs warned attacker gains 'full administrative access to an N-central console'",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 2,
    "also_reported_by": [
      {
        "outlet": "The Register",
        "title": "Feds get 3 days to patch N-able God mode flaw under active exploit",
        "url": "https://urgent.news/2026/08/04/feds-get-3-days-to-patch-n-able-god-mode-flaw-under-active-exploit",
        "published": "2026-08-04T15:38:00.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}