IDScan Data Breach Exposes Driver’s Licenses in Dark-Web
September 6, 2026 Identity verification company IDScan is facing multiple lawsuits after hackers allegedly breached its systems and offered more than 153 million U.S. and Canadian driver’s licenses for sale on a dark-web identity theft service…
Critical Citrix NetScaler Authentication Bypass CVE Under Active Exploitation
September 5, 2026 Attackers are actively exploiting a critical authentication bypass vulnerability in Citrix NetScaler ADC and NetScaler Gateway, following the public release of proof-of-concept exploit code on September 4, 2026. The flaw, tracked as…
CrowdStrike FalconFlank Zero-Day EDR Platform Exploited
September 4, 2026 An anonymous security researcher operating under the handle “Nightmare Eclipse” has released a zero-day privilege escalation exploit targeting CrowdStrike Falcon, the widely deployed endpoint detection and response (EDR)…
Google Chrome V8 Zero-Day CVE Actively Exploited
September 3, 2026 Google released an emergency security update for Chrome on September 3, 2026, to patch an actively exploited zero-day vulnerability in the V8 JavaScript engine. The high-severity flaw, tracked as CVE-2026-85046, allows remote attackers…
Malicious Terraform Modules Steal Cloud Credentials via Cloudflare Infrastructure
September 4, 2026 Threat actors compromised the Cloudflare infrastructure behind Coder’s module registry and served malicious Terraform modules to developers. Consequently, organizations using the popular self-hosted development platform may have…
Critical HPE ArubaOS-CX RCE CVE: Unauthenticated Remote Code Execution in Enterprise Switches
September 3, 2026 HPE has patched a critical unauthenticated remote code execution vulnerability in ArubaOS-CX, the network operating system powering its enterprise-grade switches. Tracked as CVE-2026-73749, the flaw could allow remote attackers to take…
Sangoma Switchvox SQL Injection Under Active Exploitation
Threat actors are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in Sangoma Switchvox, an enterprise VoIP management platform. The flaw allows remote code execution without any credentials, and researchers have observed…
International Law Enforcement Dismantles Sality Botnet
International law enforcement agencies and private cybersecurity partners have seized infrastructure associated with the Sality botnet, one of the longest-running peer-to-peer (P2P) botnets in cybercrime history. The coordinated operation, carried out on…
SonicWall SMA1000 Zero-Day Flaws Under Active Exploitation
Threat actors are actively chaining two critical zero-day vulnerabilities in SonicWall SMA1000 remote access appliances to achieve remote code execution on enterprise devices. The vulnerabilities, tracked as CVE-2026-83548 and CVE-2026-83549, affect…
Critical JFrog Artifactory Auth Bypass CVE Under Active Exploitation
September 1, 2026 JFrog has released an emergency patch for a critical authentication bypass vulnerability in Artifactory, tracked as CVE-2026-82329 (CVSS 9.8), that allows unauthenticated remote attackers to obtain full administrative access. Security…