ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

2026-09-11T07:23:59Z8f611262b04423cb7a2c2fdd06a3595fda53b16e324c03392bf8308b8b74cded
CVE-2026-20079CVE-2026-44756CVE-2026-69414CVE-2026-86218CVE-2026-87491CISA-KEVactive-exploitationandroid-malwarecloud-and-ai-securitycredential-theftcryptocurrency-theftinfostealerphishingransomware-and-intrusionremote-code-executionstate-sponsored-espionagesupply-chain-securityvulnerability-managementweb-shellzero-day

What happened

The document is a weekly cybersecurity news roundup covering widespread exploitation of critical vulnerabilities, active zero-days, malware campaigns, phishing and scam infrastructure, Android banking trojans, exposed AI gateways, AI-agent security flaws, cryptocurrency theft, and state-sponsored espionage. The highest-risk items include unauthenticated remote code execution in Check Point, SAP, and N-able products; actively exploited Cisco, Citrix, Fortinet, Chrome, Windows, and PaperCut vulnerabilities; and attacks targeting internet-exposed wallets, AI credentials, and enterprise systems.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
8f611262b04423cb7a2c2fdd06a3595fda53b16e324c03392bf8308b8b74cded
Enrichment time
2026-09-11T07:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.