Breaking News – Cyber Threats – 2026-09-08 03:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-08 03:00 PDT
- Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell
The Hacker News • 2026-09-08 02:13 • thehackernews.com
Adobe on Monday released security patches to address a maximum-severity flaw impacting Adobe Commerce and Magento Open Source that has come under active exploitation in the wild.The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by Sansec, which discovered zero-day exploitation starting September 4, 2026.
“This update resolves a critical
https://thehackernews.com/2026/09/adobe-patches-magento-zero-day.html - BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams
The Hacker News • 2026-09-08 01:43 • thehackernews.com
Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves the way for malware deployment and tech support scams.The campaign, discovered by the DFIR Report in March 2026, has been codenamed BengalSEO. It has operated out of the Indian state of Rajasthan since at least 2015, driven by two IT service providers named WeConnect
https://thehackernews.com/2026/09/bengalseo-poisons-bing-search-results.html - 220 million traveler records exposed in Vietnam-linked APIS leak
BleepingComputer • 2026-09-08 00:35 • www.bleepingcomputer.com
Exclusive: An exposed Advance Passenger Information System (APIS) database held 220 million passenger and crew records containing names, passport numbers, dates of birth, nationalities, and flight details spanning 2017 to 2026. Researchers accessed the Vietnam-linked system through a cloud-based path using default credentials. […]
https://www.bleepingcomputer.com/news/security/220-million-traveler-records-exposed-in-vietnam-linked-apis-leak/ - Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing
The Hacker News • 2026-09-08 00:00 • thehackernews.com
Online dating app Grindr has opted to pay £26 million ($35.1 million) to settle a lawsuit in the U.K. over allegations that it shared users’ personal information, including their HIV status, with third-parties.Grindr, which is the largest LGBTQ+ dating app, was sued in April 2024, accusing it of violating U.K. privacy laws by sharing sensitive data for commercial purposes such as advertising.
https://thehackernews.com/2026/09/grindr-to-pay-26-million-to-settle-uk.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.