RussianTA488 Returns With Persistent Outlook Web Access AttackInfosecurity Magazine·Jul 29, 15:10 UTC · Jul 29, 2026Exploit / PoCCVE-2026-4289760
U.S. CISA adds a flaw in Microsoft Exchange Server to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 16, 17:31 UTC · May 16, 2026Exploit / PoC in the wildCVE-2026-4289760
At Least 30,000 U.S. Organizations Newly Hacked Via Holes in Microsoft’s Email SoftwareKrebs on Security·Mar 29, 08:27 UTC · Mar 29, 2021Exploit / PoC60
RedNovember Targets Government, Defense, and Technology OrganizationsRecorded Future·Nov 14, 00:00 UTC · Nov 14, 2024Exploit / PoC in the wild60
No, I Did Not Hack Your MS Exchange ServerKrebs on Security·Mar 28, 18:16 UTC · Mar 28, 2021Exploit / PoC in the wild60
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
Microsoft Bug Allowed Hackers to Breach Over Two Dozen Organizations via Forged Azure AD TokensThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Exploit / PoC in the wild160
Microsoft Exchange ProxyToken flaw can allow attackers to read your emailsSecurity Affairs·Aug 31, 10:16 UTC · Aug 31, 2021Exploit / PoCCVE-2021-3376660
On-Prem Microsoft Exchange Server CVE-2026The Hacker News·Jun 10, 16:19 UTC · Jun 10, 2026Exploit / PoC in the wildCVE-2026-42897160
Most organizations have yet to fix CVE-2020Security Affairs·Mar 16, 20:00 UTC · Mar 16, 2020Exploit / PoCCVE-2020-068860
Chinese hackers forged authentication tokens to breach government emailsHelp Net Security·Jul 14, 19:08 UTC · Jul 14, 2023Exploit / PoC in the wild60
Max-severity Exchange server flaw under active exploitation by Kremlin hackersArs Technica · Security·Jul 30, 20:57 UTC · Jul 30, 2026Exploit / PoC in the wildCVE-2026-4289760
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major AttacksThe Hacker News·Sep 9, 04:33 UTC · Sep 9, 2024Exploit / PoC in the wild60
Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government, Military, and TelecomThe Hacker News·Aug 29, 15:43 UTC · Aug 29, 2023Exploit / PoCCVE-2023-286860
ProxyNotShellThe Hacker News·Oct 4, 10:19 UTC · Oct 4, 2022Exploit / PoCCVE-2022-41040CVE-2022-41082CVE-2021-34523+2 CVEs60
Pawn Storm APT targets MH17 crash investigationSecurity Affairs·Jun 10, 12:06 UTC · Jun 10, 2021Exploit / PoC60
Pawn Storm used a new Flash Zero-Day in attacks on the NATO & the While HouseSecurity Affairs·Oct 23, 21:41 UTC · Oct 23, 2017Exploit / PoC in the wild60
Threat Advisory: Microsoft Outlook privilege escalation vulnerability being exploited in the wildCisco Talos·Mar 15, 23:46 UTC · Mar 15, 2023Exploit / PoC in the wildCVE-2023-2339760
Comprehensive analysis of initial attack samples exploiting CVE-2023Kaspersky Securelist·Jul 19, 12:00 UTC · Jul 19, 2023Exploit / PoCCVE-2023-23397CVE-2023-2932460
A Company Offers $500,000 For Secure Messaging Apps ZeroThe Hacker News·Aug 29, 21:31 UTC · Aug 29, 2017Exploit / PoC60
U.S. CISA adds Microsoft Outlook, Sophos XG Firewall, and other flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 6, 22:38 UTC · Feb 6, 2025Exploit / PoC in the wildCVE-2025-0411CVE-2022-23748CVE-2024-21413+2 CVEs60
Unpatched Windows Zero-Day Flaw Exploited by 11 StateThe Hacker News·Mar 19, 03:46 UTC · Mar 19, 2025Exploit / PoC60
⚡ Weekly Recap: Instagram Account Hacks, Android ZeroThe Hacker News·Jun 9, 05:53 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2025-48595CVE-2026-28318CVE-2026-39210+43 CVEs60
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
Microsoft plugs 56 vulns, including Office flaw exploited in attacksHelp Net Security·Jan 10, 00:00 UTC · Jan 10, 2018Exploit / PoC in the wildCVE-2018-0802CVE-2017-11882CVE-2018-0786+3 CVEs60
Zerodium payouts for Messaging, Email App Exploits are $500,000Security Affairs·Aug 25, 07:09 UTC · Aug 25, 2017Exploit / PoC60
Zimbra zero-day actively exploited by an alleged Chinese threat actorSecurity Affairs·Feb 4, 09:54 UTC · Feb 4, 2022Exploit / PoC in the wild60
Microsoft fixes exploited zero-day, revokes certificate used to sign malicious drivers (CVE-2022-44698)Help Net Security·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoCCVE-2022-44698CVE-2022-41076CVE-2022-44713+2 CVEs60
Zerodium looks to buy zero-days in Outlook and Thunderbird email clientsThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC60
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
China-linked actor's malware DeepData exploits FortiClient VPN zero-daySecurity Affairs·Nov 19, 15:08 UTC · Nov 19, 2024Exploit / PoC60
Expert released PoC for Outlook for Android flaw addressed by MicrosoftSecurity Affairs·Jun 23, 08:12 UTC · Jun 23, 2019Exploit / PoCCVE-2019-110560
Microsoft Fixes Three ZeroInfosecurity Magazine·Dec 10, 09:45 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62221CVE-2025-54100CVE-2025-64671+4 CVEs60
Clever - and Exploitable - Windows Zero-DaySchneier on Security·Jun 1, 18:25 UTC · Jun 1, 2022Exploit / PoC60
CISA adds Microsoft Exchange and Cisco ASA and FTD bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 23, 00:20 UTC · Feb 23, 2024Exploit / PoC in the wildCVE-2020-3259CVE-2024-2141060
Threat Source (April 18): New attacks distribute Formbook, LokiBotCisco Talos·Apr 18, 18:00 UTC · Apr 18, 2019Exploit / PoC60
0patch releases unofficial patches for Windows 0days exploited in the wildSecurity Affairs·Mar 27, 17:52 UTC · Mar 27, 2020Exploit / PoC in the wild60
'Confidential' Verizon credentials, server logs left publicly exposedCyberScoop·Sep 22, 19:35 UTC · Sep 22, 2017Exploit / PoC in the wild60
Threat Source Newsletter (Jan. 6, 2022)Cisco Talos·Jan 6, 19:00 UTC · Jan 6, 2022Exploit / PoC in the wildCVE-2022-0096CVE-2021-4422860
Expert released PoC Code Microsoft Edge Remote Code Execution flawSecurity Affairs·Oct 14, 09:11 UTC · Oct 14, 2018Exploit / PoCCVE-2018-8495160