Patch critical vulnerabilities immediately across your firewall, VPN, and print management systems. CISA confirmed three widely exploited threats (Cisco, Citrix, Fortinet) with a September 12 federal patch deadline, and hackers are actively scanning for unpatched devices right now.
Today's cyber news brings serious concerns for small business owners. Identity verification company IDScan confirmed a massive data breach exposing 153 million driver's licenses, including full names, addresses, and government-issued ID documents stolen from their cloud platform. If your business uses ID verification services, it's critical to verify what data might be at risk.
Closer to home in the Northeast, Springfield Massachusetts schools have remained closed all week after a cyberattack crippled their systems, a stark reminder that no organization is too small to be targeted. In healthcare, AdaptHealth disclosed a breach affecting 4.1 million people's personal and health information.
On the vulnerability front, both Check Point and Palo Alto Networks issued emergency patches for critical firewall flaws that allow attackers complete system control. CISA has flagged actively exploited vulnerabilities in Cisco, Citrix, and Fortinet products with a September 12th federal patch deadline.
Perhaps most concerning: hackers are now weaponizing artificial intelligence. Over 440 PaperCut print management systems were compromised by attackers using AI agents to find and exploit weaknesses faster than human security teams can respond.
Key takeaways for business owners: patch your systems immediately, verify your third-party vendors' security practices, and understand that AI is no longer just a defensive tool, attackers are using it too.
Why should you patch critical vulnerabilities this week?
Attackers have moved from scanning vulnerabilities to actively exploiting them at scale. CISA's September 12 deadline signals federal enforcement is coming. Check Point and Palo Alto Networks issued emergency patches for firewall flaws allowing complete system control. The PaperCut print management attack shows hackers now deploy AI agents to find and exploit weaknesses faster than human security teams respond. For manufacturers and professional services firms, this means production downtime and client data exposure are immediate risks, not future ones. Action: Run a vulnerability scan on your firewall, VPN, and print infrastructure today. Prioritize anything flagged as critical or exploited in the wild.
Key takeaways
- CISA confirmed September 12 patch deadline for Cisco, Citrix, and Fortinet vulnerabilities actively being exploited.
- Check Point and Palo Alto Networks released emergency firewall patches for flaws allowing attackers complete system control.
- Hackers now use AI agents to find and exploit weaknesses faster than security teams can respond; patch delays multiply exposure risk.
- Verify third-party vendors (ID verification, cloud platforms, print management) have incident response plans and breach notification processes in writing.
Frequently asked questions
What happens if we don't patch by September 12?
CISA's deadline signals federal attention. More importantly, attackers have proof-of-concept code and AI tools scanning for unpatched devices daily. Downtime, data theft, and ransomware deployment follow. Patch now, not after an alert.
How do we know which systems need patching?
Start with your firewall, VPN, and any vendor management portal. Ask your IT vendor or provider to run a vulnerability scan against your external facing systems. CISA's website lists specific CVE IDs and affected product versions. If you use Check Point, Palo Alto, Cisco, Citrix, or Fortinet, assume you need to patch.
We use third-party ID verification or cloud services. What do we do?
Contact them directly and ask: (1) were you affected by the IDScan breach or other recent breaches, (2) what data of ours do they hold, (3) how will they notify us if compromised. Get answers in writing. This applies to any vendor storing employee or customer data.
What does AI-powered attacks mean for us?
Attackers now use AI agents to find and exploit weaknesses at machine speed, not human speed. This means your security team cannot outpace attacks through manual patching. Automation is no longer optional. Deploy automated patch management for critical systems.
Sources
- https://www.bleepingcomputer.com/news/security/idscan-confirms-breach-tied-to-153-million-stolen-drivers-licenses/
- https://thehackernews.com/2026/09/papercut-attacker-uses-hundreds-of-ai.html
- https://thehackernews.com/2026/09/check-point-discloses-two-98-rated-vpn.html
- https://gbhackers.com/palo-alto-pan-os-buffer-overflow/
- https://www.youtube.com/watch?v=hQnbINSBvcQ
- https://www.securityweek.com/4-1-million-impacted-by-adapthealth-data-breach
- https://thehackernews.com/2026/09/cisa-flags-exploited-cisco-citrix.html