⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
Microsoft reveals actively exploited Office zero-day, provides emergency fix (CVE-2026-21509)Help Net Security·Feb 3, 18:36 UTC · Feb 3, 2026Exploit / PoC in the wildCVE-2026-2150960
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Industrial security is on shaky ground and leaders need to pay attentionHelp Net Security·Nov 5, 10:57 UTC · Nov 5, 2025Exploit / PoC60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
The GoLaxy papers: Inside China’s AI persona armyThe Record·Sep 19, 13:51 UTC · Sep 19, 2025Exploit / PoC57
LLMs can boost cybersecurity decisions, but not for everyoneHelp Net Security·Sep 19, 00:00 UTC · Sep 19, 2025Exploit / PoC60
Brute-force attacks hammer Fortinet devices worldwideHelp Net Security·Aug 14, 00:00 UTC · Aug 14, 2025Exploit / PoC in the wild60
Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWebHelp Net Security·Jul 20, 00:00 UTC · Jul 20, 2025Exploit / PoC in the wildCVE-2025-6558CVE-2025-2525760
Managing through chaos to secure networksHelp Net Security·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2026-8749160
Google: Governments are using zeroArs Technica · Security·Apr 29, 16:53 UTC · Apr 29, 2025Exploit / PoC60
Tj-actions Supply Chain Attack Traced Back to GitHub Token CompromiseInfosecurity Magazine·Apr 4, 12:00 UTC · Apr 4, 2025Exploit / PoC in the wildCVE-2025-3006660
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackersThe Record·Mar 18, 20:27 UTC · Mar 18, 2025Exploit / PoC in the wild60
2,000 Palo Alto Networks devices compromised in latest attacksHelp Net Security·Feb 19, 08:15 UTC · Feb 19, 2025Exploit / PoCCVE-2024-0012CVE-2024-947460
XE Group shifts from credit card skimming to exploiting zeroSecurity Affairs·Feb 10, 12:53 UTC · Feb 10, 2025Exploit / PoCCVE-2024-57968CVE-2025-25181CVE-2017-9248+1 CVEs60
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)Help Net Security·Jan 9, 00:00 UTC · Jan 9, 2025Exploit / PoCCVE-2025-028260
Advanced threat predictions for 2025Kaspersky Securelist·Nov 25, 10:02 UTC · Nov 25, 2024Exploit / PoCCVE-2024-23222CVE-2024-23225CVE-2024-23296+3 CVEs60
Dangling Domains: Security Threats, Detection and PrevalencePalo Alto Unit 42·Jun 6, 01:30 UTC · Jun 6, 2024Exploit / PoC45
Critical FortiClient EMS vulnerability fixed, (fake?) PoC for sale (CVE-2023-48788)Help Net Security·Apr 15, 08:17 UTC · Apr 15, 2024Exploit / PoC in the wildCVE-2023-4878860
TheMoon bot infected 40,000 devices in January and FebruarySecurity Affairs·Mar 26, 21:19 UTC · Mar 26, 2024Exploit / PoC60
Fortinet announces FortiGate 4800F to improve security for hyperscale data centers and 5G networksHelp Net Security·Dec 12, 12:03 UTC · Dec 12, 2023Exploit / PoC60
Just about every Windows and Linux device vulnerable to new LogoFAIL firmware attackArs Technica · Security·Dec 6, 15:02 UTC · Dec 6, 2023Exploit / PoC60
North Korean Supply Chain Threat is Booming, UK and South Korea WarnInfosecurity Magazine·Nov 23, 12:30 UTC · Nov 23, 2023Exploit / PoC60
China-linked APT UNC3886 used VMware ESXi ZeroSecurity Affairs·Jun 14, 08:44 UTC · Jun 14, 2023Exploit / PoCCVE-2023-2086760
Concentric AI channel partner program enhances partner revenue opportunitiesHelp Net Security·Apr 13, 00:00 UTC · Apr 13, 2023Exploit / PoC45
First Fully Weaponized Spectre Exploit Discovered OnlineThe Record·Jan 30, 00:00 UTC · Jan 30, 2023Exploit / PoC in the wild60
European governments targeted by Chinese hackers with a Zimbra webmail zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC60
Microsoft releases guidance for Office zero-day used to target orgs in Russia, India, TibetThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-30190160
GitLab servers are being exploited in DDoS attacks in excess of 1 TbpsThe Record·Dec 18, 00:00 UTC · Dec 18, 2022Exploit / PoCCVE-2021-22205CVE-2021-2220450
Week in review: The future of Metasploit, detecting lateral movement, new issue of (IN)SECURE MagazineHelp Net Security·Jul 24, 00:00 UTC · Jul 24, 2022Exploit / PoC60
Zero-day bug exploited by attackers via macro-less Office documents (CVE-2022-30190)Help Net Security·May 31, 00:00 UTC · May 31, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Wazuh Offers XDR Functionality at a Price Enterprises Will Love — Free!The Hacker News·Mar 22, 15:06 UTC · Mar 22, 2022Exploit / PoC60
Log4Shell was in the wild at least nine days before public disclosureSecurity Affairs·Dec 13, 09:47 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-22448CVE-2021-4422860
Chinese hacking group DEV-0322 behind Solarwinds ServSecurity Affairs·Jul 14, 08:48 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
More Than a Quarter of Threats Never Seen BeforeInfosecurity Magazine·Mar 17, 09:38 UTC · Mar 17, 2021Exploit / PoC in the wildCVE-2017-11882CVE-2017-019960
SLOTHFULMEDIA, a new weapon in the arsenal of a sophisticated actorSecurity Affairs·Oct 5, 11:10 UTC · Oct 5, 2020Exploit / PoC60
New Mirai variant includes exploit for a flaw in Comtrend RoutersSecurity Affairs·Jul 14, 08:10 UTC · Jul 14, 2020Exploit / PoCCVE-2020-1017360
NSO CEO claims Facebook wanted NSO surveillance tool to spy on usersSecurity Affairs·Apr 8, 13:47 UTC · Apr 8, 2020Exploit / PoCCVE-2019-356860
Phantom Attacks Against Advanced Driving Assistance SystemsSecurity Affairs·Jan 29, 15:09 UTC · Jan 29, 2020Exploit / PoC45