PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

2026-09-07T19:24:01Z9b88c3a7759d35cd03d8a5a8e637f8cdf237577fee52cb1d39da4d33c38015d1
CVE-2026-14894CVE-2026-59346CVE-2026-6471CVE-2026-81578CVE-2026-82078CVE-2026-85046ChromePaperCutPostgreSQLVMwareWordPressactive-exploitationadversary-in-the-middlebrowser-backdoorcloud-securitycredential-theftcybersecurity-newsmalwarephishingremote-code-executionrouter-hijackingsession-cookie-theftsupply-chain-compromiseunauthenticated-rcevishingzero-day

What happened

The document is a cybersecurity news feed covering actively exploited vulnerabilities, malware, phishing and vishing campaigns, supply-chain compromises, exposed network devices, post-compromise browser backdoors, and critical enterprise software flaws. Several entries describe unauthenticated or remote code execution, credential and session-cookie theft, defense evasion, ransomware/extortion, and exploitation in the wild. Notable vulnerabilities include Chrome V8 CVE-2026-85046, VMware Workstation/Fusion CVE-2026-59346, PostgreSQL CVE-2026-6471, PaperCut CVE-2026-81578 and CVE-2026-82078, and

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
9b88c3a7759d35cd03d8a5a8e637f8cdf237577fee52cb1d39da4d33c38015d1
Enrichment time
2026-09-07T19:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.