Careto APT’s recent attacks discoveredKaspersky Securelist·Dec 12, 10:00 UTC · Dec 12, 2024Exploit / PoC160
We Are Still Unable to Secure LLMs from Malicious InputsSchneier on Security·Aug 27, 13:17 UTC · Aug 27, 2025Exploit / PoC45
Design flaw leaves Google Workspace vulnerable for takeoverHelp Net Security·Nov 28, 00:00 UTC · Nov 28, 2023Exploit / PoC57
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
A zero day flaw in OpenJPEG JPEG 2000 could lead arbitrary code executionSecurity Affairs·Oct 2, 17:35 UTC · Oct 2, 2016Exploit / PoCCVE-2016-833260
The Mask APT Resurfaces with Sophisticated MultiThe Hacker News·Dec 18, 04:08 UTC · Dec 18, 2024Exploit / PoCCVE-2012-0773160
Turla APT group leverages for the first time the Metasploit framework for the Mosquito campaignSecurity Affairs·May 23, 13:47 UTC · May 23, 2018Exploit / PoC57
GhostToken Flaw Could Let Attackers Hide Malicious Apps in Google Cloud PlatformThe Hacker News·Apr 22, 05:34 UTC · Apr 22, 2023Exploit / PoC60
DeleFriend Weakness Puts Google Workspace Security at RiskInfosecurity Magazine·Nov 29, 16:30 UTC · Nov 29, 2023Exploit / PoC60
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
Multiple government hacking groups stay busy targeting Ukraine and the region, Google researchers sayCyberScoop·May 3, 16:00 UTC · May 3, 2022Exploit / PoC in the wild60
Gmail Worm Requiring You To Give It A Push And Apparently You All Are Really HelpfulCisco Talos·May 3, 21:28 UTC · May 3, 2017Exploit / PoC45
Expert shows how to trigger blue-screen-ofSecurity Affairs·Apr 28, 15:16 UTC · Apr 28, 2018Exploit / PoC45
Beware! You Can Get Hacked Just by Opening a 'JPEG 2000' ImageThe Hacker News·Oct 4, 09:23 UTC · Oct 4, 2016Exploit / PoCCVE-2016-833260
ShadowLeak Zero-Click Flaw Leaks Gmail Data via OpenAI ChatGPT Deep Research AgentThe Hacker News·Sep 20, 05:32 UTC · Sep 20, 2025Exploit / PoC45
OPERA1ER APT Hackers Targeted Dozens of Financial Organizations in AfricaThe Hacker News·Jan 5, 12:22 UTC · Jan 5, 2023Exploit / PoC60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs60
Flaw in Claude’s Chrome extension allowed ‘any’ other plugin to hijack victims’ AICyberScoop·May 8, 13:14 UTC · May 8, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
Hacker plants false memories in ChatGPT to steal user data in perpetuityArs Technica · Security·Sep 24, 20:56 UTC · Sep 24, 2024Exploit / PoC45
Experts warn of attacks exploiting zeroSecurity Affairs·Sep 9, 11:50 UTC · Sep 9, 2022Exploit / PoC in the wildCVE-2022-3147460
Perception Point Free Plan allows interception of advanced threats missed by other servicesHelp Net Security·Oct 27, 00:00 UTC · Oct 27, 2021Exploit / PoC60
Chinese hackers suspected of using Dropbox to snoop on Afghan officialsCyberScoop·Jul 1, 12:57 UTC · Jul 1, 2021Exploit / PoC in the wild60
Suspected Chinese hackers impersonate Catholic news outlets to gather intel about Vatican diplomacyCyberScoop·Nov 25, 13:30 UTC · Nov 25, 2020Exploit / PoC in the wild60
FIN6 recently expanded operations to target eCommerce sitesSecurity Affairs·Aug 31, 14:48 UTC · Aug 31, 2019Exploit / PoC57
SHAttered attack, Google and CWI conducted the first SHASecurity Affairs·Feb 24, 06:45 UTC · Feb 24, 2017Exploit / PoC45
SHA-1 crypto algorithm is dead by collision attackCyberScoop·Feb 23, 19:17 UTC · Feb 23, 2017Exploit / PoC in the wild60
New DHS Russian hacking report was designed for RSA crowdsCyberScoop·Feb 14, 20:11 UTC · Feb 14, 2017Exploit / PoC in the wild60
Expert disclosed a full zero-day driveSecurity Affairs·Dec 18, 12:18 UTC · Dec 18, 2016Exploit / PoC60
Wyden urges DHS to adopt secure email authentication protocolCyberScoop·Jul 18, 22:56 UTC · Jul 18, 2017Exploit / PoC in the wild60
Belarusian hacktivist group releases purported Belarusian wiretapped audio of Russian embassyCyberScoop·Jun 14, 18:45 UTC · Jun 14, 2022Exploit / PoC in the wild60
DHS head: 'Relentless resilience' will drive collaboration on cybersecurityCyberScoop·Nov 9, 19:56 UTC · Nov 9, 2018Exploit / PoC in the wild60
Google: Seven zero-days in 2021 developed commercially and sold to governmentsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoCCVE-2018-4344CVE-2019-8605CVE-2020-3837+3 CVEs60
'Small stickers' were enough to trick a Tesla's autopilot to drive into the wrong laneCyberScoop·Apr 1, 17:29 UTC · Apr 1, 2019Exploit / PoC in the wild60
Private firm puts $500K bounty on Signal, WhatsApp zeroCyberScoop·Aug 23, 18:30 UTC · Aug 23, 2017Exploit / PoC in the wild60
USB threat to industrial facilities comes into sharp focus with new Honeywell dataCyberScoop·Nov 5, 20:37 UTC · Nov 5, 2018Exploit / PoC in the wild60
Hard drives in accused CIA leaker's case were 'misplaced' after jailhouse search, prosecutors sayCyberScoop·Feb 14, 14:08 UTC · Feb 14, 2019Exploit / PoC in the wild60
Pro-Beijing operatives used social media to try promoting NYC protestCyberScoop·Sep 8, 16:07 UTC · Sep 8, 2021Exploit / PoC in the wild60