Zero day affecting Fortra’s GoAnywhere file transfer tool is actively being exploitedThe Record·Feb 7, 14:52 UTC · Feb 7, 2023Exploit / PoC60
Exploit released for Microsoft bug allowing attacker to masquerade as legitimate entityThe Record·Feb 3, 00:00 UTC · Feb 3, 2023Exploit / PoCCVE-2022-3468960
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Atlassian warns that Confluence zeroThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-2613460
CISA adds seven bugs to Known Exploited Vulnerabilities CatalogThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-1040CVE-2022-2687160
Microsoft releases guidance for Office zero-day used to target orgs in Russia, India, TibetThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-30190160
Several zero-day vulnerabilities discovered in popular industrial control systemThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-31479CVE-2022-31480CVE-2022-31481+5 CVEs60
More than $13 million stolen from DeFi platform Deus FinanceThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoC60
Google, Mandiant say zero-day numbers reached allThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoC in the wild60
Google: Seven zero-days in 2021 developed commercially and sold to governmentsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoCCVE-2018-4344CVE-2019-8605CVE-2020-3837+3 CVEs60
Malicious code exploiting recent VMware bug publicly available, company warnsThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2022-31656CVE-2022-31659CVE-2022-22972+1 CVEs60
Experts warn of widespread exploitation involving Hikvision camerasThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2021-3626060
Microsoft confirms ‘DogWalk’ zeroThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2022-3471360
Microsoft updates guidance for ‘ProxyNotShell’ bugs after researchers get around mitigationsThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Google Chrome, D-Link bugs among twelve added to CISA’s list of known exploited vulnerabilitiesThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2022-3075CVE-2018-2628CVE-2020-993460
White House: U.S. agencies have 90 days to create inventory of all softwareThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC60
More than 150 Oracle Access Management systems exposed to bug highlighted by CISAThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Exploit / PoC in the wildCVE-2021-3558760
Experts downplay reach of Apache bug ‘Text4Shell’The Record·Jan 9, 00:00 UTC · Jan 9, 2023Exploit / PoCCVE-2022-4288960
Google: North Korean gov’t hackers used Internet Explorer zeroThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Exploit / PoCCVE-2022-4112860
Google announces GUAC open source project on software supply chainsThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Exploit / PoC60
CISA adds Apple zero-day, Cisco and Gigabyte bugs to exploited vulnerabilities listThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Exploit / PoC in the wildCVE-2020-3433CVE-2020-315360
Chinese hackers zero in on Australian manufacturers, wind turbine operatorsCyberScoop·Aug 30, 11:32 UTC · Aug 30, 2022Exploit / PoC in the wild60
INTERPOL hauls in alleged Nigerian cybercrime ringleaderCyberScoop·May 25, 14:49 UTC · May 25, 2022Exploit / PoC60
Suspected Chinese spies cover tracks in efforts to breach Vietnamese governmentCyberScoop·Apr 5, 19:38 UTC · Apr 5, 2021Exploit / PoC in the wild60
Interpol: Goldfish Alpha operation reduces cryptojacking by 78%Security Affairs·Jan 9, 12:54 UTC · Jan 9, 2020Exploit / PoC60
Chinese-linked hacking group gets crafty to avoid detectionCyberScoop·Oct 2, 12:00 UTC · Oct 2, 2019Exploit / PoC in the wild60
Tor-developed smartphone app will detect internet censorship and surveillanceCyberScoop·Feb 8, 01:09 UTC · Feb 8, 2017Exploit / PoC in the wild60