Researcher Drops a New VS Code Zero-Day After Losing Trust in Microsoft's Disclosure ProcessSecurity Affairs·Jun 4, 09:13 UTC · Jun 4, 2026Exploit / PoC in the wild160
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source CodeThe Hacker News·Jan 26, 16:53 UTC · Jan 26, 2026Exploit / PoCCVE-2025-69264CVE-2025-6926360
Newly Discovered Bugs in VSCode Extensions Could Lead to Supply Chain AttacksThe Hacker News·May 31, 03:41 UTC · May 31, 2021Exploit / PoC57
Default Cursor setting can be exploited to run malicious code on developers' machinesHelp Net Security·Sep 11, 00:00 UTC · Sep 11, 2025Exploit / PoC145
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto HeistsThe Hacker News·May 6, 07:05 UTC · May 6, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-50302+25 CVEs60
Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2026-26268CVE-2026-10591150
Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP ConfigsThe Hacker News·Jun 26, 13:53 UTC · Jun 26, 2026Exploit / PoCCVE-2026-12957CVE-2026-12958CVE-2025-59536+2 CVEs60
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
Fooling security tools into believing malicious code was signed by AppleHelp Net Security·Jun 26, 21:20 UTC · Jun 26, 2018Exploit / PoC45
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow SecretsThe Hacker News·Aug 7, 08:18 UTC · Aug 7, 2026Exploit / PoC in the wildCVE-2026-12537CVE-2026-54316160
Google Makes CodeMender Available as Managed AI Security AgentInfosecurity Magazine·Jul 22, 10:30 UTC · Jul 22, 2026Exploit / PoC60
Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572)Help Net Security·Oct 8, 00:00 UTC · Oct 8, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-38112+3 CVEs60
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
Nightmare Eclipse incident shows the researcherCyberScoop·Jun 5, 14:48 UTC · Jun 5, 2026Exploit / PoC60
Check Point Warns of ZeroThe Hacker News·Jun 6, 04:42 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-2491960
Week in review: Google fixes exploited Chrome zero-day, Patch Tuesday forecastHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2025Exploit / PoC in the wildCVE-2025-541960
Predictive AI in Cybersecurity: Outcomes Demonstrate All AI is Not Created EquallyThe Hacker News·Nov 3, 11:26 UTC · Nov 3, 2023Exploit / PoC60
Serbian student activist’s phone hacked using Cellebrite zero-day exploitSecurity Affairs·Mar 3, 09:08 UTC · Mar 3, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-5030260
U.S. CISA adds Linux kernel flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 5, 21:00 UTC · Feb 5, 2025Exploit / PoC in the wildCVE-2024-5310460
Google fixed actively exploited kernel zeroSecurity Affairs·Feb 4, 00:31 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2024-53104CVE-2024-45569CVE-2024-43047+1 CVEs60
Week in review: IE zero-day, S3 bucket security, rise of RDP as a target vectorHelp Net Security·Sep 29, 00:00 UTC · Sep 29, 2019Exploit / PoC in the wildCVE-2019-1675960
The Bug That Won't Die: 10 Years of the Same MistakeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Exploit / PoCCVE-2025-55182CVE-2025-66478CVE-2015-485260
Spy vs. spy: How GenAI is powering defenders and attackersCisco Talos·Dec 4, 11:00 UTC · Dec 4, 2025Exploit / PoC60
Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-dayHelp Net Security·Aug 24, 00:00 UTC · Aug 24, 2025Exploit / PoC in the wildCVE-2025-43300CVE-2018-0171CVE-2025-31324+1 CVEs60
F5 Breach Exposes BIG-IP Source Code — NationThe Hacker News·Oct 17, 09:15 UTC · Oct 17, 2025Exploit / PoC60
Identity discovery: The overlooked lever in strategic risk reductionHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2026Exploit / PoC60
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
US-CERT warns of ongoing cyber attacks aimed at ERP applicationsSecurity Affairs·Jul 26, 13:36 UTC · Jul 26, 2018Exploit / PoC60
Most organizations have yet to fix CVE-2020Security Affairs·Mar 16, 20:00 UTC · Mar 16, 2020Exploit / PoCCVE-2020-068860
Phantom Attacks Against Advanced Driving Assistance SystemsSecurity Affairs·Jan 29, 15:09 UTC · Jan 29, 2020Exploit / PoC45
AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM MemoryThe Hacker News·Aug 6, 11:30 UTC · Aug 6, 2026Exploit / PoC60
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260
Mitre shared 2022 CWE Top 25 most dangerous software weaknessesSecurity Affairs·Jun 29, 10:40 UTC · Jun 29, 2022Exploit / PoC in the wild60
The Unknown Risks of The Software Supply Chain: A DeepThe Hacker News·Feb 17, 07:04 UTC · Feb 17, 2024Exploit / PoC60
Attackers are hijacking Jupyter notebooks to host illegal Champions League streamsCyberScoop·Nov 19, 14:00 UTC · Nov 19, 2024Exploit / PoC in the wild160
Week in review: Botnet hits M365 accounts, PoC for Ivanti Endpoint Manager vulnerabilities releasedHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2025Exploit / PoCCVE-2024-13159CVE-2025-2336360
Most Magento shops get compromised via vulnerable extensionsHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2019Exploit / PoC in the wild60