Breaking News – Cyber Threats – 2026-09-09 03:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-09 03:00 PDT
- Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
The Hacker News • 2026-09-09 02:11 • thehackernews.com
Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild.The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome’s JavaScript and WebAssembly engine.
“Out-of-bounds write in V8 in Google Chrome prior to
https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html - Man gets 15 years for extorting women with AI-generated porn videos
BleepingComputer • 2026-09-09 01:44 • www.bleepingcomputer.com
An Ohio man was sentenced to 15 years in prison for multiple cybercrimes, including sextortion and cyberstalking of numerous victims using AI-generated sexually explicit content. […]
https://www.bleepingcomputer.com/news/security/man-gets-15-years-in-prison-for-cyberstalking-and-sextortion/ - CRPx0 ransomware: what you need to know
Graham Cluley • 2026-09-09 01:42 • www.fortra.com
CRPx0 is a cybercrime operation that started off operating a scam before pivoting into a fully-blown ransomware and cryptocurrency business.Read more in my article on the Fortra blog.
https://www.fortra.com/blog/crpx0-ransomware-what-you-need-know - New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root
The Hacker News • 2026-09-09 01:19 • thehackernews.com
cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there, run code as the root user.cPanel published the advisory on September 8 and says every supported version of cPanel and WHM is affected.
https://thehackernews.com/2026/09/new-cpanel-flaw-lets-hosting-account.html - F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
The Hacker News • 2026-09-09 00:36 • thehackernews.com
Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7.When Apache loads any of the three appliances’ own PHP scripts, the malware adds the web shell to the copy held in memory, so a check of the file on disk can come back clean. Those three scripts are
https://thehackernews.com/2026/09/f5-big-ip-apm-malware-injects-php-web.html - New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access
BleepingComputer • 2026-09-09 00:30 • www.bleepingcomputer.com
An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named “ShieldCrash” right after Microsoft rolled out its September 2026 Patch Tuesday security updates. […]
https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldcrash-zero-day-grants-system-access/ - Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed
The Hacker News • 2026-09-08 23:47 • thehackernews.com
The security researcher known as Chaotic Eclipse has dropped a proof-of-concept (PoC) for yet another zero-day in Microsoft Defender.The vulnerability, codenamed ShieldCrash, is assessed to be a patch bypass for CVE-2026-69414 (CVSS score: 7.8), also called ShieldBreak, which the researcher reported last month.
“Microsoft has failed to properly patch ShieldBreak CVE-2026-69414,” Chaotic
https://thehackernews.com/2026/09/researcher-drops-new-microsoft-defender.html - Google warns of new Chrome zero-day bug exploited in attacks
BleepingComputer • 2026-09-08 23:25 • www.bleepingcomputer.com
Google has patched 230 vulnerabilities on Tuesday, including another actively exploited Chrome zero-day bug, the seventh such vulnerability patched since the start of the year. […]
https://www.bleepingcomputer.com/news/security/google-patches-seventh-chrome-zero-day-exploited-in-attacks-this-year/ - SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution
The Hacker News • 2026-09-08 23:25 • thehackernews.com
SAP has released security updates to address multiple vulnerabilities, including a maximum-severity flaw in SAP Extended Passport (EPP) Processing that could have a severe impact on the confidentiality, integrity, and availability of the applicationThe vulnerability, tracked as CVE-2026-44756 (CVSS score: 10.0), has been described as a case of memory corruption. Discovered and reported by SAP
https://thehackernews.com/2026/09/sap-patches-cvss-100-kernel-flaw.html - Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days
The Hacker News • 2026-09-08 21:41 • thehackernews.com
Microsoft on Tuesday broke Patch Tuesday records by addressing an earth-shattering 974 vulnerabilities spanning its software portfolio, including two flaws that it said have been actively exploited in the wild.These include 723 flaws in Windows, 111 in Office and Office 2016, 62 in SQL, and 22 in Developer Tools. Of these, over 110 shortcomings have been assigned a critical severity rating.
https://thehackernews.com/2026/09/microsoft-patches-record-974-flaws.html - N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
The Hacker News • 2026-09-08 21:27 • thehackernews.com
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026.The vulnerability in question is CVE-2026-86218 (CVSS score: 10.0), which has been described as a
https://thehackernews.com/2026/09/n-able-n-central-pre-auth-rce-flaw.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.