Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Mend.io enhances application security with AI runtime protection and faster zero-day responseHelp Net Security·Jul 31, 08:25 UTC · Jul 31, 2026Exploit / PoC60
NVIDIA Triton Bugs Let Unauthenticated Attackers Execute Code and Hijack AI ServersThe Hacker News·Aug 6, 09:08 UTC · Aug 6, 2025Exploit / PoC in the wildCVE-2025-23319CVE-2025-23320CVE-2025-23334+3 CVEs60
CISA credential leak raises alarms, and Capitol Hill demands answersCyberScoop·May 20, 14:43 UTC · May 20, 2026Exploit / PoC in the wild60
Axonius expands Asset Cloud with Cyber Assets and Exposures enhancementsHelp Net Security·Jul 23, 00:00 UTC · Jul 23, 2026Exploit / PoC60
Week in review: Firmware-level Android backdoor found on tablets, Dell zero-day exploited since 2024Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2026Exploit / PoC in the wildCVE-2026-2441CVE-2026-22769CVE-2026-2329+1 CVEs60
Credit monitoring and supply chain risk company hackedCyberScoop·Oct 8, 16:02 UTC · Oct 8, 2024Exploit / PoC in the wild60
Another S3 blunder? Florida credit firm's sensitive customer data exposed in latest AWS S3 leakCyberScoop·Nov 30, 14:56 UTC · Nov 30, 2017Exploit / PoC in the wild60
Lawmakers want more transparency on SolarWinds breach from State, VACyberScoop·Dec 24, 17:19 UTC · Dec 24, 2020Exploit / PoC in the wild60
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AIThe Hacker News·May 26, 12:07 UTC · May 26, 2026Exploit / PoC in the wild60
'Confidential' Verizon credentials, server logs left publicly exposedCyberScoop·Sep 22, 19:35 UTC · Sep 22, 2017Exploit / PoC in the wild60
Red Hat confirms breach of GitLab instance, which stored company’s consulting dataCyberScoop·Oct 3, 14:13 UTC · Oct 3, 2025Exploit / PoC in the wild60
SafeLine WAF: Open Source Web Application Firewall with ZeroThe Hacker News·May 23, 10:30 UTC · May 23, 2025Exploit / PoC60
Third-party Facebook apps left people's data publicly exposed, researchers sayCyberScoop·Apr 3, 21:48 UTC · Apr 3, 2019Exploit / PoC in the wild60
⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto HeistsThe Hacker News·May 6, 07:05 UTC · May 6, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-50302+25 CVEs60
Researchers rush to warn defenders of maxCyberScoop·Jan 7, 23:08 UTC · Jan 7, 2026Exploit / PoC in the wildCVE-2026-21858CVE-2026-2187760
Focus on What Matters Most: Exposure Management and Your Attack SurfaceThe Hacker News·Aug 23, 10:55 UTC · Aug 23, 2024Exploit / PoCCVE-2024-340060
Focus on what matters most: Exposure management and your attack surfaceHelp Net Security·Apr 8, 17:17 UTC · Apr 8, 2025Exploit / PoCCVE-2024-340060
U.S. CISA adds a flaw in Microsoft Windows to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 14, 11:45 UTC · Jan 14, 2026Exploit / PoC in the wildCVE-2026-2080560
Fortinet VPN with default certificate exposes 200,000 businesses to hackSecurity Affairs·Sep 28, 11:58 UTC · Sep 28, 2020Exploit / PoC45
Researcher Claims Hotspot Shield VPN Service Exposes You on the InternetThe Hacker News·Feb 7, 13:13 UTC · Feb 7, 2018Exploit / PoCCVE-2018-646060
Leaked n8n API Tokens Exposed Live Instances to Credential TheftThe Hacker News·Aug 5, 10:35 UTC · Aug 5, 2026Exploit / PoC in the wildCVE-2025-6861360
Report: personal data of more than 14M Verizon customers is exposed in server breachCyberScoop·Jul 12, 15:40 UTC · Jul 12, 2017Exploit / PoC in the wild60
Microsoft Fixes ASCII Smuggling Flaw That Enabled Data Theft from Microsoft 365 CopilotThe Hacker News·Aug 29, 10:57 UTC · Aug 29, 2024Exploit / PoC157
Lyrie: Open-source autonomous pentesting agentHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC45
Google Releases April Android Update to Address Two ZeroInfosecurity Magazine·Apr 8, 16:45 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2024-53150CVE-2024-53197CVE-2024-53104+1 CVEs60
10 ways to secure sensitive information on AWSCyberScoop·Jun 30, 15:29 UTC · Jun 30, 2017Exploit / PoC in the wild60
Man-in-the-Prompt: The invisible attack threatening ChatGPT and other AI systemsSecurity Affairs·Aug 16, 17:27 UTC · Aug 16, 2025Exploit / PoC45
The readiness paradox: Why a false sense of cyber confidence is becoming a liabilityCyberScoop·May 21, 10:00 UTC · May 21, 2026Exploit / PoC in the wild60
200 million registered voters exposed due to open AWS repositoryCyberScoop·Jun 19, 22:34 UTC · Jun 19, 2017Exploit / PoC in the wild60
Access:7 flaws impact +150 device models from over 100 manufacturersSecurity Affairs·Mar 8, 19:55 UTC · Mar 8, 2022Exploit / PoC60
NSA, CISA share guidelines for securing VPNs as hacking groups keep busyCyberScoop·Sep 28, 20:54 UTC · Sep 28, 2021Exploit / PoC in the wild60
Protect AI emerges from stealth and raises $13.5 millionHelp Net Security·Dec 20, 10:36 UTC · Dec 20, 2022Exploit / PoC160
U.S. CISA adds Palo Alto Networks Expedition bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 15, 09:36 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-9463CVE-2024-9465CVE-2024-9464+3 CVEs60
Palo Alto fixed critical flaws in PAN-OS firewalls that allow for full compromise of the devicesSecurity Affairs·Oct 10, 05:24 UTC · Oct 10, 2024Exploit / PoCCVE-2024-9463CVE-2024-9464CVE-2024-9465+3 CVEs60
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
IT threat evolution in Q2 2016. OverviewKaspersky Securelist·Aug 11, 10:57 UTC · Aug 11, 2016Exploit / PoCCVE-2015-2545CVE-2016-1010CVE-2016-014760
Researchers Uncover 20+ Configuration Risks, Including Five CVEs, in Salesforce Industry CloudThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2025Exploit / PoCCVE-2025-43697CVE-2025-43698CVE-2025-43699+3 CVEs60