{"id":2799,"date":"2026-08-12T01:32:37","date_gmt":"2026-08-12T08:32:37","guid":{"rendered":"https:\/\/www.cycognito.com\/blog\/?p=2799"},"modified":"2026-08-12T01:34:52","modified_gmt":"2026-08-12T08:34:52","slug":"emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn","status":"publish","type":"post","link":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/","title":{"rendered":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN"},"content":{"rendered":"\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1087\" height=\"666\" src=\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\" alt=\"\" class=\"wp-image-2800\" srcset=\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png 1087w, https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246-512x314.png 512w, https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246-768x471.png 768w\" sizes=\"auto, (max-width: 1087px) 100vw, 1087px\" \/><figcaption class=\"wp-element-caption\"><em>Sample of assets impacted by the Cisco Remote Access vulnerability, identified by the CyCognito Platform<\/em><\/figcaption><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">What is CVE-2026-20349?<\/h2>\n\n\n\n<p>CVE-2026-20349 is a denial of service vulnerability in the Remote Access SSL VPN service of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software. The flaw stems from insufficient error checking when the service processes HTTP requests.<\/p>\n\n\n\n<p>The vulnerability carries a CVSS v3.1 base score of 8.6 (High). Cisco tracks it under CWE-244.<\/p>\n\n\n\n<p>Exploitation requires no authentication and no user interaction. An attacker with network access to the Remote Access SSL VPN service can send a crafted HTTP request that causes the device to reload unexpectedly. Because the affected devices are firewalls and VPN concentrators, a successful exploit removes both the perimeter enforcement point and the remote access path for users at the same time.<\/p>\n\n\n\n<p>Cisco published the advisory on August 11, 2026, and stated that its Product Security Incident Response Team became aware of active exploitation in August 2026. CISA added CVE-2026-20349 to the Known Exploited Vulnerabilities catalog on the same day. There are no workarounds.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What assets are affected by CVE-2026-20349?<\/h2>\n\n\n\n<p>A device is affected if it runs a vulnerable release of Cisco Secure Firewall ASA Software or Cisco Secure FTD Software and has a configuration that enables the SSL listen sockets. Cisco identifies three such configurations: SSL VPN, enabled through <code>webvpn<\/code> with <code>enable &lt;interface_name&gt;<\/code>; IKEv2 remote access VPN with client services, enabled through <code>crypto ikev2 enable &lt;interface_name&gt; client-services port &lt;port_numbers&gt;<\/code>; and Zero Trust Network Access, enabled through <code>zero-trust<\/code> with <code>enable<\/code>, which is available only in Cisco Secure FTD Software. Cisco has confirmed that Secure Firewall Management Center Software is not affected.<\/p>\n\n\n\n<p>In practice, an affected asset is an internet-facing firewall or VPN head end. These devices sit at the network edge by design, terminate remote access sessions for employees and contractors, and answer HTTPS on a public address so that clients can reach them from anywhere. That same reachability is what makes the vulnerable service exposed to unauthenticated traffic.<\/p>\n\n\n\n<p>Remote access gateways are also among the hardest assets for a security team to patch quickly. They are frequently deployed in high availability pairs, they carry live user sessions, and taking one out of service interrupts remote work. Older appliances often remain in place long after a migration is nominally complete, still resolving, still listening, and still carrying an active VPN configuration that nobody owns.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What does our data show about exposure patterns?<\/h2>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1280\" height=\"711\" src=\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-247-1280x711.png\" alt=\"\" class=\"wp-image-2801\" srcset=\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-247-1280x711.png 1280w, https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-247-512x284.png 512w, https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-247-768x427.png 768w, https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-247.png 1350w\" sizes=\"auto, (max-width: 1280px) 100vw, 1280px\" \/><\/figure>\n\n\n\n<p>Exposure in this set is led by Industrials at 27.0% of observed assets, with Consumer Discretionary contributing 14.2% and Information Technology 12.7%.<\/p>\n\n\n\n<p>The concentration in Industrials is consistent with how these organizations operate. Manufacturing groups, logistics operators, and engineering and construction firms run geographically distributed sites, each of which historically justified its own remote access gateway. Consolidation programs tend to lag the physical footprint, and acquisitions add further appliances under configurations the acquiring security team did not choose. The result is a larger population of remote access endpoints per organization than the headcount alone would suggest, spread across regions with uneven patch windows.<\/p>\n\n\n\n<p>Across the full set, the pattern points less to any single sector than to a class of asset that resists routine maintenance. Remote access gateways are provisioned deliberately, are documented at the time of deployment, and then age in place. Exposure accumulates not because these devices are unknown but because the operational cost of touching them is high enough that a known device goes unpatched for months. That is a different failure mode from shadow IT, and it responds to a different remedy: continuous external validation of what is actually listening, rather than another round of asset discovery.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Are fixes available?<\/h2>\n\n\n\n<p>Yes. Cisco has released hot fixes for both affected product families, available from the Cisco Software Center.<\/p>\n\n\n\n<p>For Cisco Secure Firewall ASA Software, hot fixes are published for releases 9.16 (89.16.4.50), 9.18 (89.18.4.50), 9.20 (9.20.4.235), 9.22 (9.22.3.191), 9.23 (9.23.1.211), and 9.24 (9.24.1.221). Cisco notes that hot fixes beginning with 89 require ASDM Release 7.24.1.374, because earlier ASDM releases do not recognize that ASA Software release numbering format. For Cisco Secure FTD Software, hot fix bundles are published for releases 7.0, 7.2, 7.4, 7.6, 7.7, and 10.0, with separate packages per hardware platform.<\/p>\n\n\n\n<p>There are no workarounds. Cisco is explicit that upgrading to a fixed release is the only remediation, which means devices that cannot be taken out of service remain exposed until they are patched. Given confirmed exploitation in the wild, defenders should verify their specific release and platform against the Cisco Software Checker rather than assuming a given branch is covered.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Are there any other recommended actions to take?<\/h2>\n\n\n\n<p>Alongside patching, defenders should:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Inventory all ASA and FTD devices and identify which have SSL VPN, IKEv2 client services, or Zero Trust Network Access enabled<\/li>\n\n\n\n<li>Restrict Remote Access SSL VPN reachability to known source ranges where the business model allows<\/li>\n\n\n\n<li>Deploy Snort rules 46897 and 59654 to detect exploitation attempts<\/li>\n\n\n\n<li>Monitor for unexplained device reloads and preserve crash dumps for forensic review<\/li>\n\n\n\n<li>Audit remote access gateways that no longer serve an active user population and decommission them<\/li>\n\n\n\n<li>Confirm high availability pairs are patched on both members rather than the active node alone<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">How can CyCognito help your organization?<\/h2>\n\n\n\n<p>CyCognito published an Emerging Threat Advisory for CVE-2026-20349 in the CyCognito platform and is actively researching enhanced detection capabilities for this vulnerability.<\/p>\n\n\n\n<p>To learn how CyCognito can help your organization reduce external exposure and manage emerging threats more effectively, <a href=\"https:\/\/www.cycognito.com\/demo\/\">contact us to request a demo<\/a>.<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A flaw in the Remote Access SSL VPN service of Cisco ASA and FTD software lets an unauthenticated attacker reload the device, knocking firewalls and VPN gateways offline.<\/p>\n","protected":false},"author":39,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[250],"tags":[],"class_list":["post-2799","post","type-post","status-publish","format-standard","hentry","category-emerging-threats"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.7 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog\" \/>\n<meta property=\"og:description\" content=\"A flaw in the Remote Access SSL VPN service of Cisco ASA and FTD software lets an unauthenticated attacker reload the device, knocking firewalls and VPN gateways offline.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\" \/>\n<meta property=\"og:site_name\" content=\"CyCognito Blog\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-12T08:32:37+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-12T08:34:52+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1087\" \/>\n\t<meta property=\"og:image:height\" content=\"666\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Igal Zeifman\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Igal Zeifman\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\"},\"author\":{\"name\":\"Igal Zeifman\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/79ab10bc35a38aef399f5bbd21d8f1b3\"},\"headline\":\"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN\",\"datePublished\":\"2026-08-12T08:32:37+00:00\",\"dateModified\":\"2026-08-12T08:34:52+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\"},\"wordCount\":897,\"publisher\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\",\"articleSection\":[\"Emerging Threats\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\",\"url\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\",\"name\":\"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\",\"datePublished\":\"2026-08-12T08:32:37+00:00\",\"dateModified\":\"2026-08-12T08:34:52+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage\",\"url\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\",\"contentUrl\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png\",\"width\":1087,\"height\":666},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.cycognito.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#website\",\"url\":\"https:\/\/www.cycognito.com\/blog\/\",\"name\":\"Cycognito Blog\",\"description\":\"Research, Product News and Latest Updates\",\"publisher\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.cycognito.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#organization\",\"name\":\"Cycognito\",\"url\":\"https:\/\/www.cycognito.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/logo-1720x550-1.png\",\"contentUrl\":\"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/logo-1720x550-1.png\",\"width\":1720,\"height\":550,\"caption\":\"Cycognito\"},\"image\":{\"@id\":\"https:\/\/www.cycognito.com\/blog\/#\/schema\/logo\/image\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/79ab10bc35a38aef399f5bbd21d8f1b3\",\"name\":\"Igal Zeifman\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/b4495bcfbe7465d573c6f7ee3e2a3cab?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/b4495bcfbe7465d573c6f7ee3e2a3cab?s=96&d=mm&r=g\",\"caption\":\"Igal Zeifman\"},\"description\":\"VP of Marketing\",\"url\":\"https:\/\/www.cycognito.com\/blog\/author\/igal-zeifman\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/","og_locale":"en_US","og_type":"article","og_title":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog","og_description":"A flaw in the Remote Access SSL VPN service of Cisco ASA and FTD software lets an unauthenticated attacker reload the device, knocking firewalls and VPN gateways offline.","og_url":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/","og_site_name":"CyCognito Blog","article_published_time":"2026-08-12T08:32:37+00:00","article_modified_time":"2026-08-12T08:34:52+00:00","og_image":[{"width":1087,"height":666,"url":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png","type":"image\/png"}],"author":"Igal Zeifman","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Igal Zeifman","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#article","isPartOf":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/"},"author":{"name":"Igal Zeifman","@id":"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/79ab10bc35a38aef399f5bbd21d8f1b3"},"headline":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN","datePublished":"2026-08-12T08:32:37+00:00","dateModified":"2026-08-12T08:34:52+00:00","mainEntityOfPage":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/"},"wordCount":897,"publisher":{"@id":"https:\/\/www.cycognito.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage"},"thumbnailUrl":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png","articleSection":["Emerging Threats"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/","url":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/","name":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN | CyCognito Blog","isPartOf":{"@id":"https:\/\/www.cycognito.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage"},"image":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage"},"thumbnailUrl":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png","datePublished":"2026-08-12T08:32:37+00:00","dateModified":"2026-08-12T08:34:52+00:00","breadcrumb":{"@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#primaryimage","url":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png","contentUrl":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/image-246.png","width":1087,"height":666},{"@type":"BreadcrumbList","@id":"https:\/\/www.cycognito.com\/blog\/emerging-threat-cve-2026-20349-cisco-asa-and-ftd-denial-of-service-via-remote-access-ssl-vpn\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.cycognito.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Emerging Threat: (CVE-2026-20349) Cisco ASA and FTD Denial of Service via Remote Access SSL VPN"}]},{"@type":"WebSite","@id":"https:\/\/www.cycognito.com\/blog\/#website","url":"https:\/\/www.cycognito.com\/blog\/","name":"Cycognito Blog","description":"Research, Product News and Latest Updates","publisher":{"@id":"https:\/\/www.cycognito.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.cycognito.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.cycognito.com\/blog\/#organization","name":"Cycognito","url":"https:\/\/www.cycognito.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.cycognito.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/logo-1720x550-1.png","contentUrl":"https:\/\/www.cycognito.com\/blog\/wp-content\/uploads\/logo-1720x550-1.png","width":1720,"height":550,"caption":"Cycognito"},"image":{"@id":"https:\/\/www.cycognito.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/79ab10bc35a38aef399f5bbd21d8f1b3","name":"Igal Zeifman","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.cycognito.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/b4495bcfbe7465d573c6f7ee3e2a3cab?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/b4495bcfbe7465d573c6f7ee3e2a3cab?s=96&d=mm&r=g","caption":"Igal Zeifman"},"description":"VP of Marketing","url":"https:\/\/www.cycognito.com\/blog\/author\/igal-zeifman\/"}]}},"_links":{"self":[{"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/posts\/2799","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/users\/39"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/comments?post=2799"}],"version-history":[{"count":3,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/posts\/2799\/revisions"}],"predecessor-version":[{"id":2805,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/posts\/2799\/revisions\/2805"}],"wp:attachment":[{"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/media?parent=2799"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/categories?post=2799"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cycognito.com\/blog\/wp-json\/wp\/v2\/tags?post=2799"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}