Organizations patch CISA KEV list bugs 3.5 times faster than others, researchers findThe Record·May 2, 21:30 UTC · May 2, 2024Exploit / PoC in the wildCVE-2024-29988CVE-2024-21412CVE-2023-702860
CISA adds Microsoft Windows bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 15, 10:04 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2023-3602560
Water Hydra’s Zero-Day Attack Chain Targets Financial TradersInfosecurity Magazine·Feb 14, 17:15 UTC · Feb 14, 2024Exploit / PoCCVE-2024-21412CVE-2023-3883160
Microsoft fixes exploited zero-day, revokes certificate used to sign malicious drivers (CVE-2022-44698)Help Net Security·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoCCVE-2022-44698CVE-2022-41076CVE-2022-44713+2 CVEs60
Microsoft Confirms Active Exploitation of Windows Shell CVE-2026The Hacker News·Apr 28, 05:50 UTC · Apr 28, 2026Exploit / PoC in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513160
H1 2024 Malware & Vulnerability Trends Report: Zero-Day Exploits, Infostealers, and Emerging Malware ThreatsRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Exploit / PoC60
Microsoft fixes 6 zero-days under active attackHelp Net Security·Aug 15, 07:12 UTC · Aug 15, 2024Exploit / PoC in the wildCVE-2024-38178CVE-2024-38106CVE-2024-38107+10 CVEs60
Microsoft Fixes Nine ZeroInfosecurity Magazine·Aug 14, 09:50 UTC · Aug 14, 2024Exploit / PoC in the wildCVE-2024-38213CVE-2024-38178CVE-2024-38193+7 CVEs160
Critical Exchange Server Flaw (CVE-2024The Hacker News·Feb 17, 07:27 UTC · Feb 17, 2024Exploit / PoC in the wildCVE-2024-21410CVE-2024-21351CVE-2024-21412+1 CVEs160
Microsoft Fixes Two ZeroInfosecurity Magazine·Feb 14, 10:30 UTC · Feb 14, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2024-21410+1 CVEs60
First Microsoft Patch Tuesday zero-day of 2024 disclosed as part of group of 75 vulnerabilitiesCisco Talos·Feb 13, 18:59 UTC · Feb 13, 2024Exploit / PoC in the wildCVE-2024-21351CVE-2024-20684CVE-2024-21357+3 CVEs60
Microsoft Fixes Five ZeroInfosecurity Magazine·Nov 15, 10:00 UTC · Nov 15, 2023Exploit / PoC in the wildCVE-2023-36036CVE-2023-36033CVE-2023-36025+2 CVEs60
Microsoft discloses more than 130 vulnerabilities as part of July’s Patch Tuesday, four exploited in the wildCisco Talos·Jul 11, 19:26 UTC · Jul 11, 2023Exploit / PoC in the wildCVE-2023-32046CVE-2023-32049CVE-2023-35311+6 CVEs160
Two ZeroInfosecurity Magazine·Dec 14, 09:30 UTC · Dec 14, 2022Exploit / PoC in the wildCVE-2022-44698CVE-2022-44710CVE-2022-41076+1 CVEs60
U.S. CISA adds Microsoft Office and Microsoft Windows flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 11, 07:37 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-21510CVE-2026-21513CVE-2026-21514+3 CVEs160
Microsoft Patch Tuesday: 6 exploited zero-days fixed in February 2026Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-21513CVE-2026-21514CVE-2026-21510+3 CVEs160
Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilitiesCyberScoop·Feb 10, 20:50 UTC · Feb 10, 2026Exploit / PoC in the wildCVE-2026-21510CVE-2026-21513CVE-2026-21514+5 CVEs160
Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW ProtectionsThe Hacker News·Feb 6, 03:48 UTC · Feb 6, 2025Exploit / PoC in the wildCVE-2025-041160
7-Zip 0-day was exploited in Russia’s ongoing invasion of UkraineArs Technica · Security·Feb 5, 21:05 UTC · Feb 5, 2025Exploit / PoC in the wildCVE-2025-041160
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
May 2024 Patch Tuesday: Microsoft fixes exploited zero-days (CVE-2024-30051, CVE-2024-30040)Help Net Security·May 31, 08:23 UTC · May 31, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2023-36033+2 CVEs160
Microsoft fixed two zeroSecurity Affairs·Apr 11, 08:54 UTC · Apr 11, 2024Exploit / PoC in the wildCVE-2024-29988CVE-2024-2623460
CISA adds Microsoft Exchange and Cisco ASA and FTD bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 23, 00:20 UTC · Feb 23, 2024Exploit / PoC in the wildCVE-2020-3259CVE-2024-2141060
Week in review: 10 cybersecurity frameworks you need to know, exploited Chrome zero-day fixedHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2024Exploit / PoC in the wildCVE-2023-36025CVE-2023-22527CVE-2024-0519+3 CVEs60
It’s a hot 0-day summer for Apple, Google, and Microsoft security fixesArs Technica · Security·Aug 1, 17:55 UTC · Aug 1, 2023Exploit / PoCCVE-2023-37450CVE-2023-36884CVE-2023-32046+18 CVEs60
CISA adds Adobe ColdFusion bug to Known Exploited Vulnerabilities CatalogSecurity Affairs·Mar 16, 08:47 UTC · Mar 16, 2023Exploit / PoC in the wildCVE-2023-26360CVE-2023-23397CVE-2023-24880+1 CVEs60
Week in review: Citrix and Fortinet RCEs, Microsoft fixes exploited zero-dayHelp Net Security·Dec 18, 00:00 UTC · Dec 18, 2022Exploit / PoCCVE-2022-20968CVE-2022-42475CVE-2022-27518+1 CVEs60
CISA adds Veeam Backup and Replication bugs to Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 16, 09:17 UTC · Dec 16, 2022Exploit / PoC in the wildCVE-2022-26500CVE-2022-26501CVE-2022-42475+3 CVEs60