security1 distinct publisher
Horizon3 catches live exploitation of Sangoma Switchvox CVE-2026-9586 on honeypots
The unauthenticated SQL injection was already fixed in Switchvox 8.4.0.2, and one attacker IP is now spraying reverse-shell payloads at sensors. Shodan counts about 4,000 exposed instances, mostly in the United States.
Publishers:horizon3.ai
Reality
- Evidence70
- Adoption55