Breaking News – Cyber Threats – 2026-09-15 17:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-15 17:00 PDT
- Acronis warns of actively exploited flaw in its cPanel backup plugin
BleepingComputer • 2026-09-15 14:37 • www.bleepingcomputer.com
Acronis disclosed a high-severity Linux local privilege escalation vulnerability in its backup plugin for cPanel, WebHost Manager (WHM), and Plesk that may be exploited in the wild. […]
https://www.bleepingcomputer.com/news/security/acronis-warns-of-actively-exploited-flaw-in-its-cpanel-backup-plugin/ - Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites
BleepingComputer • 2026-09-15 13:34 • www.bleepingcomputer.com
Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer’s website and pushed updates that created a hidden user account. […]
https://www.bleepingcomputer.com/news/security/malcious-admin-menu-editor-pro-plugin-backdoors-1-500-wordpress-sites/ - KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens
The Hacker News • 2026-09-15 11:54 • thehackernews.com
Cybersecurity researchers have shed light on a previously undocumented Brazilian banking malware operation that delivers a toolkit called KREMLIN.Elastic Security Labs is tracking the activity under the moniker REF9334. Active since at least May 2025, the threat actor has used lures that impersonate a dozen Brazilian banks and install a malicious browser extension on Google Chrome and
https://thehackernews.com/2026/09/kremlin-banking-malware-hijacks-chrome.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.