Washington summit grapples with securing open source softwareCyberScoop·Sep 13, 13:30 UTC · Sep 13, 2023Exploit / PoC in the wild60
Securing open-source code supply chains may help prevent the next big cyberattackHelp Net Security·Nov 24, 00:00 UTC · Nov 24, 2021Exploit / PoC57
Hottest cybersecurity open-source tools of the month: November 2025Help Net Security·Nov 27, 00:00 UTC · Nov 27, 2025Exploit / PoC57
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
New 'Siren' mailing list aims to share threat intelligence for open source projectsThe Record·May 20, 14:20 UTC · May 20, 2024Exploit / PoC60
Downloads of known vulnerable open source components increase 120%Help Net Security·Sep 27, 00:00 UTC · Sep 27, 2018Exploit / PoC60
Surge in cyber attacks targeting open source software projectsHelp Net Security·Aug 13, 00:00 UTC · Aug 13, 2020Exploit / PoC in the wild60
White House to study open source software in critical infrastructureCyberScoop·Aug 9, 20:50 UTC · Aug 9, 2024Exploit / PoC in the wild60
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
Unverified code is the next national security threatCyberScoop·Jun 9, 15:56 UTC · Jun 9, 2025Exploit / PoC in the wild60
Open Source Supply Chain Attacks Surge 430%Infosecurity Magazine·Aug 13, 09:53 UTC · Aug 13, 2020Exploit / PoC in the wild60
20 cybersecurity projects on GitHub you should check outHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2023Exploit / PoC45
CISA issues recommendations to federal agencies on openCyberScoop·Jul 30, 18:24 UTC · Jul 30, 2026Exploit / PoC in the wild60
Open-source security group pulls out of U.S. grant, citing DEI restrictionsCyberScoop·Oct 29, 20:55 UTC · Oct 29, 2025Exploit / PoC in the wild160
Most Commercial Code Contains HighInfosecurity Magazine·Feb 27, 13:00 UTC · Feb 27, 2024Exploit / PoC in the wild60
Week in review: Firmware-level Android backdoor found on tablets, Dell zero-day exploited since 2024Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2026Exploit / PoC in the wildCVE-2026-2441CVE-2026-22769CVE-2026-2329+1 CVEs60
GrammaTech CodeSentry 3.0 improves software supply chain securityHelp Net Security·Jan 20, 00:00 UTC · Jan 20, 2022Exploit / PoC60
Open source security platform Snyk raises $7 million in Series A funding roundCyberScoop·Mar 6, 15:36 UTC · Mar 6, 2018Exploit / PoC in the wild60
White House hosts open-source software security summit in light of expansive Log4j flawCyberScoop·Jan 13, 14:08 UTC · Jan 13, 2022Exploit / PoC in the wild60
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
Rapid7 Acquires Open Source Monitoring Platform VelociraptorInfosecurity Magazine·Apr 21, 15:45 UTC · Apr 21, 2021Exploit / PoC45
Week in review: Botnet hits M365 accounts, PoC for Ivanti Endpoint Manager vulnerabilities releasedHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2025Exploit / PoCCVE-2024-13159CVE-2025-2336360
How an NSA researcher plans to allow everyone to guard against firmware attacksCyberScoop·Aug 23, 21:17 UTC · Aug 23, 2019Exploit / PoC in the wild60
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Advanced threat predictions for 2025Kaspersky Securelist·Nov 25, 10:02 UTC · Nov 25, 2024Exploit / PoCCVE-2024-23222CVE-2024-23225CVE-2024-23296+3 CVEs60
APTRS: Open-source automated penetration testing reporting systemHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2025Exploit / PoC145
CI Fuzz CLI: Open-source tool to test Java apps for unexpected behaviorsHelp Net Security·Dec 2, 00:00 UTC · Dec 2, 2022Exploit / PoC60
Fleet: Open-source platform for IT and security teamsHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2025Exploit / PoC45
Evilginx: Open-source man-in-the-middle attack frameworkHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2024Exploit / PoC60
Attackers Are Taking Advantage of the Open-Source Service Interactsh for Malicious PurposesPalo Alto Unit 42·Jun 6, 01:14 UTC · Jun 6, 2024Exploit / PoCCVE-2017-9506CVE-2017-12629CVE-2019-2767+23 CVEs60
Sandyaa: Open-source autonomous security bug hunterHelp Net Security·May 13, 00:00 UTC · May 13, 2026Exploit / PoC45
Commix: Open-source OS command injection exploitation toolHelp Net Security·Apr 2, 08:47 UTC · Apr 2, 2025Exploit / PoC145
Secator: Open-source pentesting Swiss army knifeHelp Net Security·Jul 3, 00:00 UTC · Jul 3, 2024Exploit / PoC57
AWS Kill Switch: Open-source incident response toolHelp Net Security·Apr 19, 15:21 UTC · Apr 19, 2024Exploit / PoC45
Senate Intel chair urges national cyber director to safeguard against openCyberScoop·Dec 18, 18:35 UTC · Dec 18, 2025Exploit / PoC in the wild60
CVEMap: Open-source tool to query, browse and search CVEsHelp Net Security·Mar 25, 17:03 UTC · Mar 25, 2024Exploit / PoC in the wild60
Lyrie: Open-source autonomous pentesting agentHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC45
Strix: Open-source AI agents for penetration testingHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2025Exploit / PoC45