ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories

2026-09-04T01:24:01Z708597be09fdab7dc9f6b2a429009007a6be778b5bbf3ffce453bbdc230bb3bd
CVE-2021-31886CVE-2026-20212CVE-2026-82329CVE-2026-83548CVE-2026-9586active-threatsai-agent-securityauthentication-bypassbanking-trojanbgp-hijackingbotnetci-cd-securitycloud-securitycredential-theftcritical-infrastructuredata-breachexploitationinfostealermalwarenetwork-appliancesphishingransomwarerceremote-code-executionspywaresupply-chain-attackvpnvulnerabilityweb-server-compromisezero-day

What happened

The document is a September 2026 cybersecurity news feed covering actively exploited vulnerabilities, malware campaigns, phishing and social-engineering operations, supply-chain and BGP hijacking incidents, data breaches, spyware, AI-agent security flaws, and law-enforcement disruption activity. Several items describe critical unauthenticated remote-code-execution or authentication-bypass vulnerabilities, including Cisco Nexus 9000, SonicWall SMA 1000, Sangoma Switchvox, GeoNetwork, and JFrog Artifactory. The feed also highlights malware such as BraZetsu, StreamRat, Shai-Hulud, and Sality, asb

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
708597be09fdab7dc9f6b2a429009007a6be778b5bbf3ffce453bbdc230bb3bd
Enrichment time
2026-09-04T01:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.