ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
2026-09-04T07:24:01Z•63884233eb4e6268c990e5e40c5941d5c95a50663efb65e0a7d73060690d733c
CVE-2021-31886CVE-2026-20212CVE-2026-82329CVE-2026-83548CVE-2026-9586AI coding agentsAndroid trojanBGP hijackingCI/CDVPN appliancesactive exploitationcloud securitycredential theftcritical vulnerabilitiesindustrial control systemsinfostealermalwarenetwork infrastructurephishingprivilege escalationransomware/botnetremote code executionsupply-chain compromiseunauthenticated accessweb server compromisezero-day
What happened
The feed reports widespread active cyber threats, including exploited zero-days, critical unauthenticated remote-code-execution vulnerabilities, malware campaigns, phishing, supply-chain compromise, credential theft, and attacks against enterprise, government, cloud, developer, mobile, and industrial environments. Highest-priority items include exploited SonicWall SMA 1000 flaws, Cisco Nexus 9000 root RCE, Sangoma Switchvox RCE, JFrog Artifactory authentication bypass, GeoNetwork RCE, and malware delivery through trusted software and update channels.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 63884233eb4e6268c990e5e40c5941d5c95a50663efb65e0a7d73060690d733c
- Enrichment time
- 2026-09-04T07:24:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.