Comprehensive analysis of initial attack samples exploiting CVE-2023Kaspersky Securelist·Jul 19, 12:00 UTC · Jul 19, 2023Exploit / PoCCVE-2023-23397CVE-2023-2932460
Cryptocurrency miners aren’t dead yet: Documenting the voracious but simple “Panda”Cisco Talos·Sep 17, 15:09 UTC · Sep 17, 2019Exploit / PoCCVE-2017-10271CVE-2017-563860
Digital Quartermaster Scenario Demonstrated in Attacks Against the Mongolian GovernmentPalo Alto Unit 42·Jan 18, 20:49 UTC · Jan 18, 2019Exploit / PoCCVE-2012-0158CVE-2014-1761150
Unraveling the Lamberts ToolkitKaspersky Securelist·Apr 11, 09:59 UTC · Apr 11, 2017Exploit / PoCCVE-2014-414860
U.S. Cyber Command shares new samples of suspected Iranian hacking softwareCyberScoop·Jan 12, 20:41 UTC · Jan 12, 2022Exploit / PoC in the wild60
New Wekby Attacks Use DNS Requests As Command and Control MechanismPalo Alto Unit 42·Nov 1, 10:15 UTC · Nov 1, 2018Exploit / PoC60
Malware exploiting Spectre and Meltdown flaws are currently based on available PoCSecurity Affairs·Feb 1, 06:02 UTC · Feb 1, 2018Exploit / PoC45
Operation Blockbuster revealedKaspersky Securelist·Feb 24, 13:10 UTC · Feb 24, 2016Exploit / PoCCVE-2015-658560
U.S. Cyber Command warns of North KoreaCyberScoop·Aug 15, 12:18 UTC · Aug 15, 2019Exploit / PoC in the wild60
PDF zero-day samples harvest user data when opened in ChromeSecurity Affairs·Feb 28, 04:15 UTC · Feb 28, 2019Exploit / PoC60
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
C.A.S hacktivists attack Russian organizations using rare RATsKaspersky Securelist·Dec 18, 10:00 UTC · Dec 18, 2024Exploit / PoC45
Badgerboard: A PLC backplane network visibility moduleCisco Talos·Mar 5, 20:30 UTC · Mar 5, 2024Exploit / PoC60
Why did Cyber Command back off its recent plans to call out North Korean hacking?CyberScoop·Oct 22, 18:44 UTC · Oct 22, 2019Exploit / PoC in the wild60
Reaper Group’s Updated Mobile ArsenalPalo Alto Unit 42·Aug 16, 06:27 UTC · Aug 16, 2018Exploit / PoC45
Acrobat Reader zero-day exploited in the wild for many months (CVE-2026-34621)Help Net Security·Apr 12, 14:38 UTC · Apr 12, 2026Exploit / PoC in the wildCVE-2026-3462160
FBI, DHS to go public with suspected North Korean hacking toolsCyberScoop·May 12, 13:48 UTC · May 12, 2020Exploit / PoC in the wild60
Pentagon, FBI, DHS jointly expose a North Korean hacking effortCyberScoop·Feb 14, 21:50 UTC · Feb 14, 2020Exploit / PoC in the wild60
Cyber Command flags North Korean-linked hackers behind ongoing financial heistsCyberScoop·Nov 11, 15:03 UTC · Nov 11, 2019Exploit / PoC in the wild60
Cyber Command's biggest VirusTotal upload looks to expose North KoreanCyberScoop·Sep 8, 23:56 UTC · Sep 8, 2019Exploit / PoC in the wild60
Millions of computers powered by Intel chips are affected by a MDS flawsSecurity Affairs·May 14, 23:30 UTC · May 14, 2019Exploit / PoCCVE-2018-12126CVE-2018-12130CVE-2018-12127+1 CVEs60
2 Zero-Days found in March were part of a cyber weapon in an early development stageSecurity Affairs·Jul 3, 05:42 UTC · Jul 3, 2018Exploit / PoCCVE-2018-4990CVE-2018-812060
Mysterious hackers ingenuously reveal two ZeroSecurity Affairs·May 16, 11:49 UTC · May 16, 2018Exploit / PoCCVE-2018-4990CVE-2018-812060
Using legitimate tools to hide malicious codeKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2017Exploit / PoC45
Threat Brief: VMware Vulnerabilities Exploited in the Wild (CVE-2022Palo Alto Unit 42·Jun 5, 20:43 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2022-22954CVE-2022-22960CVE-2022-22972+8 CVEs60
New AdLoad Variant Bypasses Apple's Security Defenses to Target macOS SystemsThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2021Exploit / PoC in the wildCVE-2021-3065760
Chinese APT CactusPete targets military and financial orgs in Eastern EuropeSecurity Affairs·Aug 14, 07:47 UTC · Aug 14, 2020Exploit / PoC60
Using steganography to obfuscate PDF exploitsSecurity Affairs·Jan 27, 07:00 UTC · Jan 27, 2019Exploit / PoCCVE-2013-334660
Let It Ride: The Sofacy Group’s DealersChoice Attacks ContinuePalo Alto Unit 42·Nov 1, 10:41 UTC · Nov 1, 2018Exploit / PoC in the wildCVE-2016-7855CVE-2016-7255CVE-2015-7645160
A vulnerable driver: lesson almost learnedKaspersky Securelist·Feb 8, 10:00 UTC · Feb 8, 2018Exploit / PoC60
Ongoing exploitation of Cisco Catalyst SDCisco Talos·May 14, 16:02 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20133CVE-2026-20128+2 CVEs160