What the Hugging Face breach reveals about defense in the age of agentic AICyberScoop·Jul 31, 10:00 UTC · Jul 31, 2026Exploit / PoC160
NVIDIA Forms 37-Member Open Secure AI Alliance and OpenThe Hacker News·Jul 27, 18:10 UTC · Jul 27, 2026Exploit / PoC60
CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks ContinueThe Hacker News·Jul 25, 09:59 UTC · Jul 25, 2026Exploit / PoC in the wildCVE-2026-1256960
OpenAI says model test was behind Hugging Face hackCyberScoop·Jul 21, 22:39 UTC · Jul 21, 2026Exploit / PoC in the wild60
Compromised AsyncAPI npm Packages Deliver MultiThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC157
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026The Hacker News·Jun 11, 20:29 UTC · Jun 11, 2026Exploit / PoC in the wildCVE-2026-3527360
FSB Group Gamaredon Hides Worm in Windows Data StreamsInfosecurity Magazine·Jun 1, 11:00 UTC · Jun 1, 2026Exploit / PoCCVE-2025-808860
Hackers Used AI to Develop First Known ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC160
Industrial networks continue to leak onto the internetHelp Net Security·May 13, 10:12 UTC · May 13, 2026Exploit / PoC60
APTs use of lesser-known TTPs are no less of a headacheHelp Net Security·Apr 23, 13:37 UTC · Apr 23, 2026Exploit / PoC60
Palo Alto Networks launches firewall service for AWS to protect enterprises from cyberattacksHelp Net Security·Apr 20, 08:43 UTC · Apr 20, 2026Exploit / PoC60
TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government NetworksThe Hacker News·Apr 2, 19:20 UTC · Apr 2, 2026Exploit / PoC in the wildCVE-2026-350260
TrueConf zero-day vulnerability exploited to target government networksHelp Net Security·Apr 2, 00:00 UTC · Apr 2, 2026Exploit / PoCCVE-2026-350260
Apple urges iPhone users to update as Coruna and DarkSword exploit kits emergeSecurity Affairs·Mar 20, 11:22 UTC · Mar 20, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+15 CVEs160
2025 Year in Review: Malicious, InfrastructureRecorded Future·Mar 20, 00:00 UTC · Mar 20, 2026Exploit / PoC57
Authorities takedown global proxy network SocksEscortCyberScoop·Mar 12, 16:40 UTC · Mar 12, 2026Exploit / PoC in the wild60
Apple issues emergency fixes for Coruna flaws in older iOS versionsSecurity Affairs·Mar 12, 15:28 UTC · Mar 12, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+10 CVEs60
Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since MidThe Hacker News·Mar 6, 10:06 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2026-2276960
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
U.S. CISA adds Dell RecoverPoint and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 19, 15:16 UTC · Feb 19, 2026Exploit / PoC in the wildCVE-2021-22175CVE-2026-22769CVE-2020-779660
China-linked APT weaponized Dell RecoverPoint zeroSecurity Affairs·Feb 18, 12:15 UTC · Feb 18, 2026Exploit / PoC in the wildCVE-2026-2276960
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure EntitiesThe Hacker News·Feb 7, 11:03 UTC · Feb 7, 2026Exploit / PoC60
Hundreds of Malicious Crypto Trading AddInfosecurity Magazine·Feb 3, 16:30 UTC · Feb 3, 2026Exploit / PoC57
Notepad++ infrastructure hack likely tied to ChinaSecurity Affairs·Feb 3, 09:35 UTC · Feb 3, 2026Exploit / PoC60
Google's disruption rips millions of devices out of malicious networkCyberScoop·Jan 30, 15:37 UTC · Jan 30, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Unpatched Gogs Zero-Day Exploited Across 700+ Instances Amid Active AttacksThe Hacker News·Jan 13, 07:05 UTC · Jan 13, 2026Exploit / PoC in the wildCVE-2025-8110CVE-2024-5594760
UAT-7290 targets high value telecommunications infrastructure in South AsiaCisco Talos·Jan 8, 11:00 UTC · Jan 8, 2026Exploit / PoC60
React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency MitigationThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-55182CVE-2021-4422860
Amazon warns of global rise in specialized cyberCyberScoop·Nov 19, 18:23 UTC · Nov 19, 2025Exploit / PoC in the wild60
Hackers Exploit Critical Flaw in Triofox File Sharing ProductInfosecurity Magazine·Nov 11, 12:30 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-12480CVE-2025-1137160
Samsung Mobile Flaw Exploited as ZeroThe Hacker News·Nov 11, 11:21 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-21042CVE-2025-21043CVE-2025-55177+1 CVEs60
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent SpywareThe Hacker News·Nov 3, 17:57 UTC · Nov 3, 2025Exploit / PoC in the wildCVE-2025-2783160
China-Linked Tick Group Exploits Lanscope ZeroThe Hacker News·Nov 1, 13:31 UTC · Nov 1, 2025Exploit / PoCCVE-2025-61932CVE-2016-783660
Lanscope Endpoint Manager vulnerability exploited in zero-day attacks (CVE-2025-61932)Help Net Security·Oct 30, 23:11 UTC · Oct 30, 2025Exploit / PoC in the wildCVE-2025-6193260
Top 10 Takeaways from Predict 2025: Turning Intelligence Into ActionRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025Exploit / PoC in the wild60