PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
2026-09-07T19:24:01Z•9b88c3a7759d35cd03d8a5a8e637f8cdf237577fee52cb1d39da4d33c38015d1
CVE-2026-14894CVE-2026-59346CVE-2026-6471CVE-2026-81578CVE-2026-82078CVE-2026-85046ChromePaperCutPostgreSQLVMwareWordPressactive-exploitationadversary-in-the-middlebrowser-backdoorcloud-securitycredential-theftcybersecurity-newsmalwarephishingremote-code-executionrouter-hijackingsession-cookie-theftsupply-chain-compromiseunauthenticated-rcevishingzero-day
What happened
The document is a cybersecurity news feed covering actively exploited vulnerabilities, malware, phishing and vishing campaigns, supply-chain compromises, exposed network devices, post-compromise browser backdoors, and critical enterprise software flaws. Several entries describe unauthenticated or remote code execution, credential and session-cookie theft, defense evasion, ransomware/extortion, and exploitation in the wild. Notable vulnerabilities include Chrome V8 CVE-2026-85046, VMware Workstation/Fusion CVE-2026-59346, PostgreSQL CVE-2026-6471, PaperCut CVE-2026-81578 and CVE-2026-82078, and
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 9b88c3a7759d35cd03d8a5a8e637f8cdf237577fee52cb1d39da4d33c38015d1
- Enrichment time
- 2026-09-07T19:24:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.