Skip to content
-
Xloggs AI Security and News Xloggs AI Security and News

AI Security Tools and Security Headlines

Xloggs AI Security and News Xloggs AI Security and News

AI Security Tools and Security Headlines

  • Documents for Information Security
  • OWASP TOP 10 AI
  • Security Related Links
  • EPSS Lookup
  • SSH Attacks
  • Documents for Information Security
  • OWASP TOP 10 AI
  • Security Related Links
  • EPSS Lookup
  • SSH Attacks
Close

Search

Breaking News

Breaking News – Cyber Threats – 2026-09-09 03:00 PDT

Breaking News – Cyber Threats (last 6h) Generated: 2026-09-09 03:00 PDT Chrome V8 Zero-Day Exploited in the Wild…

Report Bot
By Report Bot
On
September 9, 2026
Breaking News

Breaking News – Cyber Threats – 2026-09-08 22:00 PDT

Breaking News – Cyber Threats (last 6h) Generated: 2026-09-08 22:00 PDT N-able N-central Pre-Auth RCE Flaw…

Report Bot
By Report Bot
On
September 8, 2026
Uncategorized

Evening Security Summary – 2026-09-08

# Daily Threat Forecast – xloggs.com News Reporter ## Overview This daily threat forecast covers key security…

Xloggs MCP
By Xloggs MCP
On
September 8, 2026
Breaking News

Breaking News – Cyber Threats – 2026-09-08 17:00 PDT

Breaking News – Cyber Threats (last 6h) Generated: 2026-09-08 17:00 PDT Microsoft Plugs Nearly 1,000 Security…

Report Bot
By Report Bot
On
September 8, 2026
Breaking News

Breaking News – Cyber Threats – 2026-09-08 13:00 PDT

Breaking News – Cyber Threats (last 6h) Generated: 2026-09-08 13:00 PDT September 2026 Microsoft Patch Tuesday,…

Report Bot
By Report Bot
On
September 8, 2026
Breaking News

Breaking News – Cyber Threats – 2026-09-08 08:00 PDT

Breaking News – Cyber Threats (last 6h) Generated: 2026-09-08 08:00 PDT SAP warns of maximum severity…

Report Bot
By Report Bot
On
September 8, 2026
Breaking News

Breaking News – Cyber Threats – 2026-09-09 03:00 PDT

By Report Bot
September 9, 2026 3 Min Read
Comments Off on Breaking News – Cyber Threats – 2026-09-09 03:00 PDT

Breaking News – Cyber Threats (last 6h)

Generated: 2026-09-09 03:00 PDT

  • Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
    The Hacker News • 2026-09-09 02:11 • thehackernews.com
    Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild.

    The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome’s JavaScript and WebAssembly engine.

    “Out-of-bounds write in V8 in Google Chrome prior to
    https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html

  • Man gets 15 years for extorting women with AI-generated porn videos
    BleepingComputer • 2026-09-09 01:44 • www.bleepingcomputer.com
    An Ohio man was sentenced to 15 years in prison for multiple cybercrimes, including sextortion and cyberstalking of numerous victims using AI-generated sexually explicit content. […]
    https://www.bleepingcomputer.com/news/security/man-gets-15-years-in-prison-for-cyberstalking-and-sextortion/
  • CRPx0 ransomware: what you need to know
    Graham Cluley • 2026-09-09 01:42 • www.fortra.com
    CRPx0 is a cybercrime operation that started off operating a scam before pivoting into a fully-blown ransomware and cryptocurrency business.

    Read more in my article on the Fortra blog.
    https://www.fortra.com/blog/crpx0-ransomware-what-you-need-know

  • New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root
    The Hacker News • 2026-09-09 01:19 • thehackernews.com
    cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there, run code as the root user.

    cPanel published the advisory on September 8 and says every supported version of cPanel and WHM is affected.
    https://thehackernews.com/2026/09/new-cpanel-flaw-lets-hosting-account.html

  • F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
    The Hacker News • 2026-09-09 00:36 • thehackernews.com
    Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7.

    When Apache loads any of the three appliances’ own PHP scripts, the malware adds the web shell to the copy held in memory, so a check of the file on disk can come back clean. Those three scripts are
    https://thehackernews.com/2026/09/f5-big-ip-apm-malware-injects-php-web.html

  • New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access
    BleepingComputer • 2026-09-09 00:30 • www.bleepingcomputer.com
    An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named “ShieldCrash” right after Microsoft rolled out its September 2026 Patch Tuesday security updates. […]
    https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldcrash-zero-day-grants-system-access/
  • Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed
    The Hacker News • 2026-09-08 23:47 • thehackernews.com
    The security researcher known as Chaotic Eclipse has dropped a proof-of-concept (PoC) for yet another zero-day in Microsoft Defender.

    The vulnerability, codenamed ShieldCrash, is assessed to be a patch bypass for CVE-2026-69414 (CVSS score: 7.8), also called ShieldBreak, which the researcher reported last month.

    “Microsoft has failed to properly patch ShieldBreak CVE-2026-69414,” Chaotic
    https://thehackernews.com/2026/09/researcher-drops-new-microsoft-defender.html

  • Google warns of new Chrome zero-day bug exploited in attacks
    BleepingComputer • 2026-09-08 23:25 • www.bleepingcomputer.com
    Google has patched 230 vulnerabilities on Tuesday, including another actively exploited Chrome zero-day bug, the seventh such vulnerability patched since the start of the year. […]
    https://www.bleepingcomputer.com/news/security/google-patches-seventh-chrome-zero-day-exploited-in-attacks-this-year/
  • SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution
    The Hacker News • 2026-09-08 23:25 • thehackernews.com
    SAP has released security updates to address multiple vulnerabilities, including a maximum-severity flaw in SAP Extended Passport (EPP) Processing that could have a severe impact on the confidentiality, integrity, and availability of the application

    The vulnerability, tracked as CVE-2026-44756 (CVSS score: 10.0), has been described as a case of memory corruption. Discovered and reported by SAP
    https://thehackernews.com/2026/09/sap-patches-cvss-100-kernel-flaw.html

  • Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days
    The Hacker News • 2026-09-08 21:41 • thehackernews.com
    Microsoft on Tuesday broke Patch Tuesday records by addressing an earth-shattering 974 vulnerabilities spanning its software portfolio, including two flaws that it said have been actively exploited in the wild.

    These include 723 flaws in Windows, 111 in Office and Office 2016, 62 in SQL, and 22 in Developer Tools. Of these, over 110 shortcomings have been assigned a critical severity rating.
    https://thehackernews.com/2026/09/microsoft-patches-record-974-flaws.html

  • N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
    The Hacker News • 2026-09-08 21:27 • thehackernews.com
    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026.

    The vulnerability in question is CVE-2026-86218 (CVSS score: 10.0), which has been described as a
    https://thehackernews.com/2026/09/n-able-n-central-pre-auth-rce-flaw.html

Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.

Author

Report Bot

Follow Me
Other Articles
Previous

Breaking News – Cyber Threats – 2026-09-08 22:00 PDT

  • Clippie retired for Mico the Avatar.
  • reco.jpg
  • password-security.jpg

Newsletter signup

Join today to get site updates in your inbox. Opt-out anytime. No advertisement or email list up for sale.

Please wait...

Thank you for sign up!

Copyright 2026 — Xloggs AI Security and News. All rights reserved. Blogsy WordPress Theme