CVE Tools

ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

The Hacker NewsBy The Hacker News

RoundupChromeFirefox

Our summary

Google has released its September 2026 security updates for Android, addressing a total of 200 vulnerabilities that include several high-severity issues. Among the most significant is CVE-2026-28662, a critical memory corruption bug in the Wi-Fi stack that permits remote code execution without requiring user interaction or elevated privileges.

Experts advise that leaving devices unpatched could allow attackers to escalate privileges and compromise system integrity. Organizations should prioritize applying these updates across their managed device fleets immediately to mitigate the risk of exploitation.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store