White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
Unverified code is the next national security threatCyberScoop·Jun 9, 15:56 UTC · Jun 9, 2025Exploit / PoC in the wild60
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
Evilginx: Open-source man-in-the-middle attack frameworkHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2024Exploit / PoC60
Attackers Are Taking Advantage of the Open-Source Service Interactsh for Malicious PurposesPalo Alto Unit 42·Jun 6, 01:14 UTC · Jun 6, 2024Exploit / PoCCVE-2017-9506CVE-2017-12629CVE-2019-2767+23 CVEs60
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
New hacker group uses open-source tools to spy on entities in AsiaThe Record·Jul 18, 12:25 UTC · Jul 18, 2024Exploit / PoC60
CVEMap: Open-source tool to query, browse and search CVEsHelp Net Security·Mar 25, 17:03 UTC · Mar 25, 2024Exploit / PoC in the wild60
CI Fuzz CLI: Open-source tool to test Java apps for unexpected behaviorsHelp Net Security·Dec 2, 00:00 UTC · Dec 2, 2022Exploit / PoC60
PentAGI: Open-source autonomous AI penetration testing systemHelp Net Security·Apr 22, 00:00 UTC · Apr 22, 2026Exploit / PoC60
Week in review: Firmware-level Android backdoor found on tablets, Dell zero-day exploited since 2024Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2026Exploit / PoC in the wildCVE-2026-2441CVE-2026-22769CVE-2026-2329+1 CVEs60
Senate Intel chair urges national cyber director to safeguard against openCyberScoop·Dec 18, 18:35 UTC · Dec 18, 2025Exploit / PoC in the wild60
Open-source security group pulls out of U.S. grant, citing DEI restrictionsCyberScoop·Oct 29, 20:55 UTC · Oct 29, 2025Exploit / PoC in the wild160
Six-year old bug will likely live forever in Lenovo, Intel productsCyberScoop·Apr 11, 21:36 UTC · Apr 11, 2024Exploit / PoC60
White House hosts open-source software security summit in light of expansive Log4j flawCyberScoop·Jan 13, 14:08 UTC · Jan 13, 2022Exploit / PoC in the wild60
Microsoft pushes open-source software kit to election agencies, votingCyberScoop·May 7, 01:14 UTC · May 7, 2019Exploit / PoC in the wild60
Open-source software’s archenemy TeamPCP goes back further than anyone thoughtCyberScoop·Aug 5, 13:00 UTC · Aug 5, 2026Exploit / PoC in the wild60
CISA issues recommendations to federal agencies on openCyberScoop·Jul 30, 18:24 UTC · Jul 30, 2026Exploit / PoC in the wild60
Microsoft, tech companies throw weight behind spread of openCyberScoop·Jul 24, 15:22 UTC · Jul 24, 2026Exploit / PoC in the wild60
Hackers turn open-source AI framework into global cryptojacking operationCyberScoop·Nov 19, 15:29 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2023-48022160
Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWebHelp Net Security·Jul 20, 00:00 UTC · Jul 20, 2025Exploit / PoC in the wildCVE-2025-6558CVE-2025-2525760
Using an agent for the Mythic framework: pros and cons in pentestingKaspersky Securelist·May 13, 10:00 UTC · May 13, 2025Exploit / PoC60
Researchers uncover rare, difficult-toCyberScoop·Jul 3, 00:04 UTC · Jul 3, 2024Exploit / PoCCVE-2024-638760
The Unknown Risks of The Software Supply Chain: A DeepThe Hacker News·Feb 17, 07:04 UTC · Feb 17, 2024Exploit / PoC60
Found fast, fixed slow: The gap the AI clearinghouse must closeCyberScoop·Jul 8, 09:00 UTC · Jul 8, 2026Exploit / PoC in the wild60
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Week in review: Windows kernel flaw patched, suspected Fortinet FortiWeb zero-day exploitedHelp Net Security·Nov 16, 00:00 UTC · Nov 16, 2025Exploit / PoC in the wildCVE-2025-12480CVE-2025-21042CVE-2025-62215+2 CVEs60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
The npm incident frightened everyone, but ended up being nothing to fret aboutCyberScoop·Sep 10, 14:35 UTC · Sep 10, 2025Exploit / PoC in the wild60
Chainguard's FIPS-compliant Cassandra addresses security demand of federal and regulated marketsCyberScoop·Mar 5, 17:00 UTC · Mar 5, 2025Exploit / PoC in the wild60
Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecastHelp Net Security·Jan 12, 00:00 UTC · Jan 12, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2024-41713CVE-2024-55550+1 CVEs60
RedNovember Targets Government, Defense, and Technology OrganizationsRecorded Future·Nov 14, 00:00 UTC · Nov 14, 2024Exploit / PoC in the wild60
Week in review: Windows Server 2025 gets hotpatching option, PoC for SolarWinds WHD flaw releasedHelp Net Security·Sep 29, 00:00 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-759360
Week in review: VMware ESXi zero-day exploited, SMS Stealer malware targeting Android usersHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2024Exploit / PoC in the wildCVE-2023-45249CVE-2024-3708560
Week in review: CrowdStrike-triggered outage insights, recovery, and measuring cybersecurity ROIHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2024Exploit / PoCCVE-2024-6327CVE-2024-4111060
There’s a new open-source project to detect cellphoneCyberScoop·Aug 5, 18:40 UTC · Aug 5, 2020Exploit / PoC in the wild60
White House details ‘Gold Eagle’ clearinghouse for AI cyber threatsCyberScoop·Jul 14, 23:22 UTC · Jul 14, 2026Exploit / PoC in the wild60