{"id":88467,"date":"2026-08-03T00:22:07","date_gmt":"2026-08-02T23:22:07","guid":{"rendered":"https:\/\/www.n-able.com\/?p=88467"},"modified":"2026-08-03T00:38:34","modified_gmt":"2026-08-02T23:38:34","slug":"n-central-security-update-august-2-2026","status":"publish","type":"post","link":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026","title":{"rendered":"N&#8209;central Security Update \u2013 August 2, 2026"},"content":{"rendered":"<p>Yesterday, N&#8209;able posted an advisory to our <a href=\"https:\/\/uptime.n-able.com\/\" target=\"_blank\">Uptime Page<\/a> regarding exploitation against our N&#8209;central platform in response to a security issue affecting customers running versions of N&#8209;central prior to 2026.2. We had addressed this issue in later builds and were recommending that customers on older versions upgrade to version 2026.3 as an immediate protective measure. As our investigation continued, we identified an alternative method to exploit this vulnerability, which was not mitigated in our previous fix. This resulted in a hotfix for 2026.3, which was released this afternoon: <a href=\"https:\/\/status.n-able.com\/2026\/08\/02\/n-central-2026-3-hotfix-1-mitigation-for-cve-2026-18577\/\" target=\"_blank\">https:\/\/status.n-able.com\/2026\/08\/02\/n-central-2026-3-hotfix-1-mitigation-for-cve-2026-18577\/<\/a><\/p>\n<h2>Background<\/h2>\n<p>On July 31, 2026, N&#8209;able saw an increase in licensing issues for our on-premises N&#8209;central customers. Licensing issues are not uncommon, but the volume was high and the engineering and security teams were engaged. On the morning of August 2, 2026 our analysis of a previously addressed vulnerability (CVE-2026-18556), which was fixed in 2026.2, exposed another vector to exploit this vulnerability. Our engineering team immediately developed a fix, which is available now to all customers. We\u2019ve also released a new CVE for this finding, which is being released under <a href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-18577\" target=\"_blank\">CVE-2026-18577<\/a>.<\/p>\n<h2>The attack<\/h2>\n<p>As we performed our analysis, we determined that an attacker had identified a vulnerability on all N&#8209;central servers running a version prior to 2026.3.1.7, which allowed them to obtain administrative access remotely. Following exploitation, the attacker leveraged the Take Control feature and connected to systems within the N&#8209;central managed environment. Once on those devices, the attackers registered a new service for a CloudFlare tunnel, enabling persistence into an environment after access to the N&#8209;central server was revoked.<\/p>\n<h2>The impact<\/h2>\n<p>A limited number of customers have been identified to be impacted by this, and, for those impacted customers, N&#8209;able support has directly engaged. If you\u2019re a customer who is not running the most recent version of N&#8209;central, we strongly encourage you to upgrade to 2026.3.1.7.<\/p>\n<h2>Indicators<\/h2>\n<p>N&#8209;able had identified the following IP addresses being used in this attack: <\/p>\n<p>173[.]249[.]252[.]200<br \/>\n87[.]249[.]138[.]34<br \/>\n37[.]19[.]210[.]32<br \/>\n37[.]153[.]90[.]88<br \/>\n92[.]118[.]112[.]181<br \/>\n68[.]235[.]46[.]214<\/p>\n<p>Additional indicators will be shared as they become available.<\/p>\n<p>CVE Public Link here:\u202f<a href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-18577\" target=\"_blank\">CVE-2026-18577<\/a><\/p>\n<h2>Security best practices<\/h2>\n<p>This incident is a reminder of how critical regular patching and strong security hygiene are in protecting your environment. Despite rigorous development and security practices, no software is immune to vulnerabilities, which is why a proactive security posture is essential. Many successful attacks exploit known vulnerabilities in outdated software, and staying current is one of your most effective defenses. We strongly encourage all customers to prioritize patching, enforce multi-factor authentication, routinely audit user access, and monitor for unusual activity in their environments.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yesterday, N&#8209;able posted an advisory to our Uptime Page regarding exploitation against our N&#8209;central platform in response to a security issue affecting customers running versions of N&#8209;central prior to 2026.2&#8230;.<\/p>\n","protected":false},"author":24,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":"","_members_access_role":[],"_members_access_error":""},"class_list":["post-88467","post","type-post","status-publish","format-standard","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v28.1 (Yoast SEO v28.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>N-central Security Update \u2013 August 2, 2026 - N-able<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"N-central Security Update \u2013 August 2, 2026 - N-able\" \/>\n<meta property=\"og:description\" content=\"Yesterday, N&#8209;able posted an advisory to our Uptime Page regarding exploitation against our N&#8209;central platform in response to a security issue affecting customers running versions of N&#8209;central prior to 2026.2....\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026\" \/>\n<meta property=\"og:site_name\" content=\"N-able\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/NableMSP\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-02T23:22:07+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-02T23:38:34+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.n-able.com\/wp-content\/uploads\/2021\/03\/share-image.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"N-able\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Nable\" \/>\n<meta name=\"twitter:site\" content=\"@Nable\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"N-able\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026\"},\"author\":{\"name\":\"N-able\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#\\\/schema\\\/person\\\/f46a000e389b6d02bd4b3866e7828a7b\"},\"headline\":\"N&#8209;central Security Update \u2013 August 2, 2026\",\"datePublished\":\"2026-08-03T00:22:07+01:00\",\"dateModified\":\"2026-08-02T23:38:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026\"},\"wordCount\":425,\"publisher\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#organization\"},\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026\",\"url\":\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026\",\"name\":\"N-central Security Update \u2013 August 2, 2026 - N-able\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#website\"},\"datePublished\":\"2026-08-03T00:22:07+01:00\",\"dateModified\":\"2026-08-02T23:38:34+00:00\",\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.n-able.com\\\/fr\\\/blog\\\/n-central-security-update-august-2-2026\"]}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#website\",\"url\":\"https:\\\/\\\/www.n-able.com\\\/fr\",\"name\":\"N-able\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.n-able.com\\\/fr?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#organization\",\"name\":\"N-able\",\"url\":\"https:\\\/\\\/www.n-able.com\\\/fr\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.n-able.com\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/logo-n-able-vertical-dark.svg\",\"contentUrl\":\"https:\\\/\\\/www.n-able.com\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/logo-n-able-vertical-dark.svg\",\"width\":\"1024\",\"height\":\"1024\",\"caption\":\"N-able\"},\"image\":{\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/NableMSP\",\"https:\\\/\\\/x.com\\\/Nable\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/n-able\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UClnp77HHg4aME-S-3fWQhFw\"],\"description\":\"N-able helps organizations achieve business resilience through an AI-powered cybersecurity platform that brings together a portfolio of integrated IT management, security, and data protection solutions, helping reduce risk and strengthen resilience across prevention, detection, response, and recovery.\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.n-able.com\\\/fr#\\\/schema\\\/person\\\/f46a000e389b6d02bd4b3866e7828a7b\",\"name\":\"N-able\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g\",\"caption\":\"N-able\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"N-central Security Update \u2013 August 2, 2026 - N-able","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026","og_locale":"fr_FR","og_type":"article","og_title":"N-central Security Update \u2013 August 2, 2026 - N-able","og_description":"Yesterday, N&#8209;able posted an advisory to our Uptime Page regarding exploitation against our N&#8209;central platform in response to a security issue affecting customers running versions of N&#8209;central prior to 2026.2....","og_url":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026","og_site_name":"N-able","article_publisher":"https:\/\/www.facebook.com\/NableMSP","article_published_time":"2026-08-02T23:22:07+00:00","article_modified_time":"2026-08-02T23:38:34+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.n-able.com\/wp-content\/uploads\/2021\/03\/share-image.jpg","type":"image\/jpeg"}],"author":"N-able","twitter_card":"summary_large_image","twitter_creator":"@Nable","twitter_site":"@Nable","twitter_misc":{"\u00c9crit par":"N-able","Dur\u00e9e de lecture estim\u00e9e":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026#article","isPartOf":{"@id":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026"},"author":{"name":"N-able","@id":"https:\/\/www.n-able.com\/fr#\/schema\/person\/f46a000e389b6d02bd4b3866e7828a7b"},"headline":"N&#8209;central Security Update \u2013 August 2, 2026","datePublished":"2026-08-03T00:22:07+01:00","dateModified":"2026-08-02T23:38:34+00:00","mainEntityOfPage":{"@id":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026"},"wordCount":425,"publisher":{"@id":"https:\/\/www.n-able.com\/fr#organization"},"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026","url":"https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026","name":"N-central Security Update \u2013 August 2, 2026 - N-able","isPartOf":{"@id":"https:\/\/www.n-able.com\/fr#website"},"datePublished":"2026-08-03T00:22:07+01:00","dateModified":"2026-08-02T23:38:34+00:00","inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.n-able.com\/fr\/blog\/n-central-security-update-august-2-2026"]}]},{"@type":"WebSite","@id":"https:\/\/www.n-able.com\/fr#website","url":"https:\/\/www.n-able.com\/fr","name":"N-able","description":"","publisher":{"@id":"https:\/\/www.n-able.com\/fr#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.n-able.com\/fr?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Organization","@id":"https:\/\/www.n-able.com\/fr#organization","name":"N-able","url":"https:\/\/www.n-able.com\/fr","logo":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.n-able.com\/fr#\/schema\/logo\/image\/","url":"https:\/\/www.n-able.com\/wp-content\/uploads\/2021\/02\/logo-n-able-vertical-dark.svg","contentUrl":"https:\/\/www.n-able.com\/wp-content\/uploads\/2021\/02\/logo-n-able-vertical-dark.svg","width":"1024","height":"1024","caption":"N-able"},"image":{"@id":"https:\/\/www.n-able.com\/fr#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/NableMSP","https:\/\/x.com\/Nable","https:\/\/www.linkedin.com\/company\/n-able","https:\/\/www.youtube.com\/channel\/UClnp77HHg4aME-S-3fWQhFw"],"description":"N-able helps organizations achieve business resilience through an AI-powered cybersecurity platform that brings together a portfolio of integrated IT management, security, and data protection solutions, helping reduce risk and strengthen resilience across prevention, detection, response, and recovery."},{"@type":"Person","@id":"https:\/\/www.n-able.com\/fr#\/schema\/person\/f46a000e389b6d02bd4b3866e7828a7b","name":"N-able","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/secure.gravatar.com\/avatar\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e9c468b7c98137ecdd5508befa660c205a7978133257080a37fb0b1362d53411?s=96&d=mm&r=g","caption":"N-able"}}]}},"_links":{"self":[{"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/posts\/88467","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/users\/24"}],"replies":[{"embeddable":true,"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/comments?post=88467"}],"version-history":[{"count":0,"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/posts\/88467\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.n-able.com\/fr\/wp-json\/wp\/v2\/media?parent=88467"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}