Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Red Hat AI 3 helps enterprises scale AI workloads across hybrid environmentsHelp Net Security·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC145
Contain or be contained: The security imperative of controlling autonomous AICyberScoop·Sep 25, 13:30 UTC · Sep 25, 2025Exploit / PoC in the wild60
Future of CVE Program in limbo as CISA, board members debate path forwardThe Record·Sep 19, 00:00 UTC · Sep 19, 2025Exploit / PoC in the wild60
Two ZeroInfosecurity Magazine·Sep 10, 10:15 UTC · Sep 10, 2025Exploit / PoCCVE-2024-21907CVE-2025-55234CVE-2025-54110+2 CVEs60
You Are What You Eat: Why Your AI Security Tools Are Only as Strong as the Data You Feed ThemThe Hacker News·Aug 1, 11:00 UTC · Aug 1, 2025Exploit / PoC60
Apple fixed a zero-day exploited in attacks against Google Chrome usersSecurity Affairs·Jul 30, 18:09 UTC · Jul 30, 2025Exploit / PoC in the wildCVE-2025-655860
Critical Golden dMSA Attack in Windows Server 2025 Enables CrossThe Hacker News·Jul 21, 06:31 UTC · Jul 21, 2025Exploit / PoC60
ParrotOS 6.4 lands with key tool updates and kernel upgradeHelp Net Security·Jul 8, 00:00 UTC · Jul 8, 2025Exploit / PoC57
#Infosec2025: Startups Focus on Visibility and Governance, not AIInfosecurity Magazine·Jun 4, 09:30 UTC · Jun 4, 2025Exploit / PoC57
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto HeistsThe Hacker News·May 6, 07:05 UTC · May 6, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-50302+25 CVEs60
CISA reverses course, extends MITRE CVE contractCyberScoop·Apr 16, 14:52 UTC · Apr 16, 2025Exploit / PoC in the wild60
10 Critical Network Pentest Findings IT Teams OverlookThe Hacker News·Mar 21, 11:01 UTC · Mar 21, 2025Exploit / PoCCVE-2019-070860
Java security: If you ain’t cheatin,’ you ain’t tryin’CyberScoop·Feb 19, 11:00 UTC · Feb 19, 2025Exploit / PoC in the wildCVE-2021-4422860
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
Fleet: Open-source platform for IT and security teamsHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2025Exploit / PoC45
ESET detailed a flaw that could allow a bypass of the Secure Boot in UEFI systemsSecurity Affairs·Jan 17, 11:15 UTC · Jan 17, 2025Exploit / PoCCVE-2024-7344CVE-2022-3430250
Researchers Find Exploit Allowing NTLMv1 Despite Active Directory RestrictionsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025Exploit / PoC in the wild60
Zero-Day Vulnerability in Ivanti VPNSchneier on Security·Jan 9, 17:16 UTC · Jan 9, 2025Exploit / PoC in the wild60
Almost unfixable “Sinkclose” bug affects hundreds of millions of AMD chipsArs Technica · Security·Aug 10, 13:00 UTC · Aug 10, 2024Exploit / PoC60
Expert released PoC exploit code for Veeam Backup Enterprise Manager flaw CVE-2024Security Affairs·Jun 11, 09:19 UTC · Jun 11, 2024Exploit / PoC in the wildCVE-2024-2984960
Week in review: Atlassian Confluence RCE PoC, new Kali Linux, Patch Tuesday forecastHelp Net Security·Jun 9, 00:00 UTC · Jun 9, 2024Exploit / PoCCVE-2024-21683CVE-2024-28995CVE-2024-29972+4 CVEs60
AuthLogParser: Open-source tool for analyzing Linux authentication logsHelp Net Security·Apr 9, 17:29 UTC · Apr 9, 2024Exploit / PoC45
Drozer: Open-source Android security assessment frameworkHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2024Exploit / PoC45
Badgerboard: A PLC backplane network visibility moduleCisco Talos·Mar 5, 20:30 UTC · Mar 5, 2024Exploit / PoC60
OPSWAT enhances its MetaDefender Kiosk product lineHelp Net Security·Mar 5, 14:08 UTC · Mar 5, 2024Exploit / PoC60
CISA adds Roundcube Webmail Persistent XSS bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 12, 18:54 UTC · Feb 12, 2024Exploit / PoC in the wildCVE-2023-43770CVE-2020-3573060
Adobe patches newly exploited Flash zero-dayHelp Net Security·Dec 15, 12:35 UTC · Dec 15, 2023Exploit / PoC in the wildCVE-2018-1598260
Unveiling NKAbuse: a new multiplatform threat abusing the NKN protocolKaspersky Securelist·Dec 14, 13:00 UTC · Dec 14, 2023Exploit / PoCCVE-2017-563860
Microsoft fixes exploited zero-day in Windows Support Diagnostic Tool (CVE-2022-34713)Help Net Security·Dec 12, 12:03 UTC · Dec 12, 2023Exploit / PoC in the wildCVE-2022-34713CVE-2022-30134CVE-2017-11882+4 CVEs160
Researchers want more detail on industrial control system alertsCyberScoop·Nov 22, 16:04 UTC · Nov 22, 2023Exploit / PoC in the wild60
Spoofing an Apple device and tricking users into sharing dataSecurity Affairs·Aug 21, 08:02 UTC · Aug 21, 2023Exploit / PoC45
NSO Group Used 3 Zero-Click iPhone Exploits Against Human Rights DefendersThe Hacker News·Apr 20, 11:48 UTC · Apr 20, 2023Exploit / PoC60
Hacked Cellebrite and MSAB Software ReleasedSchneier on Security·Jan 15, 00:00 UTC · Jan 15, 2023Exploit / PoC160
Hackers Exploit PrestaShop Zero-Day to Steal Payment Data from Online StoresThe Hacker News·Jul 26, 11:50 UTC · Jul 26, 2022Exploit / PoCCVE-2022-3640860
Trinsic raises $8.5 million to build user-controlled identity productsHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2022Exploit / PoC45