Breaking News – Cyber Threats – 2026-09-03 13:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-03 13:00 PDT
- HPE patches critical ArubaOS-CX remote code execution flaw
BleepingComputer • 2026-09-03 11:28 • www.bleepingcomputer.com
Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution. […]
https://www.bleepingcomputer.com/news/security/hpe-patches-critical-arubaos-cx-remote-code-execution-flaw/ - ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
The Hacker News • 2026-09-03 11:02 • thehackernews.com
The worst part is how normal these attacks look. A call from IT. A shared file. A trusted app. A simple request to click “Allow.” Why break in when someone might open the door?That idea runs through this edition. Attackers use real tools, fake login pages, old account links, and software guides that point to unsafe downloads. One wrong letter in a web address can be enough.
There is also
https://thehackernews.com/2026/09/threatsday-ceo-phishing-kits-5k-dropbox.html - Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root
The Hacker News • 2026-09-03 08:52 • thehackernews.com
Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR hardening release bundling 7 umbrella CVEs, 2 of which are rated 9.8, with no workaround for any IOS XR version.The Nexus vulnerability, tracked as CVE-2026-20212 (CVSS score: 9.8), is
https://thehackernews.com/2026/09/critical-cisco-nexus-9000-flaw-lets.html - BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
The Hacker News • 2026-09-03 08:26 • thehackernews.com
Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing access to compromised hosts.“Unlike the standard infostealer model, BraZetsu is a comprehensive master toolkit that empowers Initial Access Brokers (IABs) by turning compromised systems into highly valuable commercial
https://thehackernews.com/2026/09/brazetsu-malware-turns-compromised.html - Microsoft: KB5120998 mouse reset bug affects only non-English PCs
BleepingComputer • 2026-09-03 08:22 • www.bleepingcomputer.com
Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 systems. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-kb5120998-mouse-reset-bug-affects-only-non-english-pcs/ - OpenAI confirms ChatGPT is down ahead of 'Astra' model launch
BleepingComputer • 2026-09-03 08:13 • www.bleepingcomputer.com
ChatGPT and Codex are experiencing a major outage, with users reporting errors across nearly every major ChatGPT feature. […]
https://www.bleepingcomputer.com/news/artificial-intelligence/openai-confirms-chatgpt-is-down-ahead-of-astra-model-launch/ - Anthropic confirms Claude is down, multiple models affected
BleepingComputer • 2026-09-03 08:02 • www.bleepingcomputer.com
Claude is experiencing an outage, with users encountering elevated errors when sending requests to multiple Anthropic AI models. […]
https://www.bleepingcomputer.com/news/artificial-intelligence/anthropic-confirms-claude-is-down-multiple-models-affected/ - Critical Elementor Pro flaw exploited to take over WordPress sites
BleepingComputer • 2026-09-03 07:52 • www.bleepingcomputer.com
A recently patched critical vulnerability (CVE-2026-32475) in the Elementor Pro plugin for WordPress is being exploited in attacks that deliver a webshell payload and execute arbitrary commands on the server. […]
https://www.bleepingcomputer.com/news/security/critical-elementor-pro-flaw-exploited-to-take-over-wordpress-sites/ - Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
The Hacker News • 2026-09-03 07:39 • thehackernews.com
Thomson Reuters disclosed on Wednesday that an unauthorized party obtained files from C-Track, the court case management platform sold by its West Publishing Corporation unit, in March 2026, affecting courts in 11 U.S. states, the U.S. Virgin Islands, and Ontario, Canada.West Publishing said it discovered the activity on June 30, 2026. A subset of court records could contain individuals’ names
https://thehackernews.com/2026/09/thomson-reuters-court-software-breach.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.