PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
2026-09-08T01:24:00Z•93c6d8d0ebd5710953b8cad9eb237f5f38927fca82b41c34f8a16de897bc7070
CVE-2026-14894CVE-2026-59346CVE-2026-6471CVE-2026-81578CVE-2026-82078CVE-2026-85046Adobe-CommerceChromeCisco-NexusMagentoMicrosoft-EdgeMikroTikPaperCutPostgreSQLScreenConnectTeamCityVMwareWordPressactive-exploitationadversary-in-the-middlebackdoorbrowser-securitycredential-theftdefense-evasionmalwarephishingremote-code-executionsession-cookie-theftunauthenticated-rcevishingzero-day
What happened
The feed reports active exploitation and disclosure of multiple high-impact vulnerabilities and attack campaigns, including browser and virtualization zero-days, unauthenticated remote code execution in enterprise products, router hijacking, cloud and SaaS credential theft, malware persistence, supply-chain compromise, and phishing. Several items involve exploitation in the wild or public exploit code, requiring urgent patching, credential rotation, exposure reduction, and endpoint monitoring.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 93c6d8d0ebd5710953b8cad9eb237f5f38927fca82b41c34f8a16de897bc7070
- Enrichment time
- 2026-09-08T01:24:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.