New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidThe Hacker News·Jul 3, 19:41 UTC · Jul 3, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-43074CVE-2026-31431+2 CVEs160
Google Revamps Bug Bounty Programs: Android Rewards Rise, Chrome Payouts Drop in the Age of AISecurity Affairs·May 3, 08:25 UTC · May 3, 2026Exploit / PoC57
Google addresses actively exploited Qualcomm zero-day in fresh batch of 129 Android vulnerabilitiesCyberScoop·Mar 2, 22:20 UTC · Mar 2, 2026Exploit / PoC in the wildCVE-2026-2138560
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network PlatformsThe Hacker News·Feb 11, 13:28 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-0488CVE-2026-0509CVE-2025-32007+4 CVEs60
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source CodeThe Hacker News·Jan 26, 16:53 UTC · Jan 26, 2026Exploit / PoCCVE-2025-69264CVE-2025-6926360
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
New Sni5Gect Attack Crashes Phones and Downgrades 5G to 4G without Rogue Base StationThe Hacker News·Aug 26, 17:23 UTC · Aug 26, 2025Exploit / PoC45
Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
Google Releases April Android Update to Address Two ZeroInfosecurity Magazine·Apr 8, 16:45 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2024-53150CVE-2024-53197CVE-2024-53104+1 CVEs60
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
Mandiant devised a technique to bypass browser isolation using QR codesSecurity Affairs·Dec 9, 12:12 UTC · Dec 9, 2024Exploit / PoC45
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs60
Google Warns of Actively Exploited CVE-2024The Hacker News·Nov 8, 04:09 UTC · Nov 8, 2024Exploit / PoC in the wildCVE-2024-43093CVE-2024-43047CVE-2024-3289660
Semiconductor giants Nvidia and Arm warn of new flaws in their graphics processorsThe Record·Jun 11, 15:51 UTC · Jun 11, 2024Exploit / PoC in the wildCVE-2024-4610CVE-2023-421160
Urgent: Apple Issues Critical Updates for Actively Exploited ZeroThe Hacker News·Mar 7, 05:42 UTC · Mar 7, 2024Exploit / PoC in the wildCVE-2024-23225CVE-2024-23296CVE-2024-23222+2 CVEs60
Billions of Bluetooth-enabled devices vulnerable to new airborne attacksHelp Net Security·Jan 8, 12:40 UTC · Jan 8, 2024Exploit / PoCCVE-2017-1000251CVE-2017-1000250CVE-2017-0785+5 CVEs60
Zero-day in Arm GPU drivers exploited in targeted attacks (CVE-2023-4211)Help Net Security·Oct 3, 00:00 UTC · Oct 3, 2023Exploit / PoCCVE-2023-4211CVE-2022-22706CVE-2023-26083+2 CVEs60
It’s a hot 0-day summer for Apple, Google, and Microsoft security fixesArs Technica · Security·Aug 1, 17:55 UTC · Aug 1, 2023Exploit / PoCCVE-2023-37450CVE-2023-36884CVE-2023-32046+18 CVEs60
The federal government’s cybersecurity policies are falling into place just in time to be stalled againCisco Talos·Jul 20, 18:00 UTC · Jul 20, 2023Exploit / PoC in the wildCVE-2023-3745060
Hackers Can Use Ultrasonic Waves to Secretly Control Voice Assistant DevicesThe Hacker News·Dec 30, 09:06 UTC · Dec 30, 2022Exploit / PoC in the wild60
55% Actively Exploited Zero-Day Flaws In 2022 Are Variants Of Previous BugsSecurity Affairs·Jul 3, 13:31 UTC · Jul 3, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-40444CVE-2022-21882+15 CVEs160
GhostTouch: how to remotely control touchscreens with EMISecurity Affairs·May 27, 14:45 UTC · May 27, 2022Exploit / PoC45
CISA adds WatchGuard flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Apr 12, 08:36 UTC · Apr 12, 2022Exploit / PoC in the wildCVE-2022-23176CVE-2021-42287CVE-2021-42278+5 CVEs60
Dirty Pipe Linux flaw allows gaining root privileges on major distrosSecurity Affairs·Mar 8, 07:54 UTC · Mar 8, 2022Exploit / PoCCVE-2022-0847CVE-2016-519550
Cloudflare Browser Isolation offers zero trust browsing for all businessesHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2021Exploit / PoC60
Google Speech-to-Text API Can Help Attackers Easily Bypass Google reCAPTCHAThe Hacker News·Jan 6, 05:55 UTC · Jan 6, 2021Exploit / PoC45
Google Docs bug could have allowed hackers to hijack screenshotsSecurity Affairs·Dec 30, 16:01 UTC · Dec 30, 2020Exploit / PoC45
Cyberthreats to financial institutions 2020: Overview and predictionsKaspersky Securelist·Dec 3, 14:59 UTC · Dec 3, 2019Exploit / PoC60
Google asks mobile security vendors to help keep hackers out of the Play StoreCyberScoop·Nov 6, 18:59 UTC · Nov 6, 2019Exploit / PoC in the wild60
Expert released PoC for Outlook for Android flaw addressed by MicrosoftSecurity Affairs·Jun 23, 08:12 UTC · Jun 23, 2019Exploit / PoCCVE-2019-110560
L3 Technologies acquires two hacking companiesCyberScoop·Jul 11, 18:10 UTC · Jul 11, 2018Exploit / PoC in the wild60
Google paid $2.9 million in bug bounties in 2017CyberScoop·Feb 8, 14:20 UTC · Feb 8, 2018Exploit / PoC in the wild60
Game of Drones - Researchers devised a technique to detect drone surveillanceGame of Drones - Detecting Streamed POI from Encrypted FPV ChannelSecurity Affairs·Jan 13, 09:38 UTC · Jan 13, 2018Exploit / PoC45
Winter Olympics targeted by nationCyberScoop·Jan 8, 01:06 UTC · Jan 8, 2018Exploit / PoC in the wild60
Google Researcher Publishes PoC Exploit for Apple iPhone WiThe Hacker News·Sep 27, 15:41 UTC · Sep 27, 2017Exploit / PoCCVE-2017-1112060
Cellebrite can now unlock iPhone 6 and 6+, also extract data from array of popular appsCyberScoop·Feb 23, 17:20 UTC · Feb 23, 2017Exploit / PoC in the wild60
Microsoft failed to patch a flaw in GDI library, Google released a PoC exploitSecurity Affairs·Feb 18, 21:17 UTC · Feb 18, 2017Exploit / PoC in the wild60
Hackers target Facebook users exploiting Same Origin PolicySecurity Affairs·Dec 30, 14:14 UTC · Dec 30, 2014Exploit / PoCCVE-2014-604160