Over 36,000 exposed Plex servers vulnerable to recent flaws

2026-09-09T13:23:23Z14737d61784e48b9a97265f95a5adfe4291d212d65a3d5884cf62b74f8a134a9
EU Cyber Resilience ActF5 BIG-IPGoogle ChromeMicrosoftPlexSAPactively exploited vulnerabilitycybercrimecybersecurity newsdata breachfileless web shellpatch managementpayment card fraudrootkitsextortionzero-day

What happened

A BleepingComputer security news feed covering major September 2026 cyber threats and incidents, including actively exploited zero-days in Microsoft products and Google Chrome, widespread unpatched Plex servers, F5 BIG-IP compromises involving a Linux rootkit and fileless web shells, SAP's maximum-severity kernel flaw, large-scale payment-card fraud, ransomware-related data theft, and regulatory vulnerability-reporting requirements.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
14737d61784e48b9a97265f95a5adfe4291d212d65a3d5884cf62b74f8a134a9
Enrichment time
2026-09-09T13:23:23Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.