ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories

2026-09-04T07:24:01Z63884233eb4e6268c990e5e40c5941d5c95a50663efb65e0a7d73060690d733c
CVE-2021-31886CVE-2026-20212CVE-2026-82329CVE-2026-83548CVE-2026-9586AI coding agentsAndroid trojanBGP hijackingCI/CDVPN appliancesactive exploitationcloud securitycredential theftcritical vulnerabilitiesindustrial control systemsinfostealermalwarenetwork infrastructurephishingprivilege escalationransomware/botnetremote code executionsupply-chain compromiseunauthenticated accessweb server compromisezero-day

What happened

The feed reports widespread active cyber threats, including exploited zero-days, critical unauthenticated remote-code-execution vulnerabilities, malware campaigns, phishing, supply-chain compromise, credential theft, and attacks against enterprise, government, cloud, developer, mobile, and industrial environments. Highest-priority items include exploited SonicWall SMA 1000 flaws, Cisco Nexus 9000 root RCE, Sangoma Switchvox RCE, JFrog Artifactory authentication bypass, GeoNetwork RCE, and malware delivery through trusted software and update channels.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
63884233eb4e6268c990e5e40c5941d5c95a50663efb65e0a7d73060690d733c
Enrichment time
2026-09-04T07:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.