Anthropic's new AI model finds and exploits zero-days across every major OS and browserHelp Net Security·Jun 19, 12:14 UTC · Jun 19, 2026Exploit / PoC in the wildCVE-2026-474760
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
U.S. CISA adds Oracle PeopleSoft Enterprise PeopleTools flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 13, 09:19 UTC · Jun 13, 2026Exploit / PoC in the wildCVE-2026-3527360
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026The Hacker News·Jun 11, 20:29 UTC · Jun 11, 2026Exploit / PoC in the wildCVE-2026-3527360
Qevlar’s new AI agents correlate CVEs, incident data, and active exploitation signalsHelp Net Security·May 28, 00:00 UTC · May 28, 2026Exploit / PoC in the wild60
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AIThe Hacker News·May 26, 12:07 UTC · May 26, 2026Exploit / PoC in the wild60
India's CERT-In Sets 12Infosecurity Magazine·May 26, 10:30 UTC · May 26, 2026Exploit / PoC in the wild60
Lyrie: Open-source autonomous pentesting agentHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC45
Beyond Acceleration and Automation: How AI + Intelligence Changes Cyber DefenseRecorded Future·May 14, 00:00 UTC · May 14, 2026Exploit / PoC in the wild60
Ivanti customers confront yet another actively exploited zeroCyberScoop·May 7, 21:50 UTC · May 7, 2026Exploit / PoC in the wildCVE-2026-6973CVE-2026-5787CVE-2026-5788+3 CVEs60
PentAGI: Open-source autonomous AI penetration testing systemHelp Net Security·Apr 22, 00:00 UTC · Apr 22, 2026Exploit / PoC60
Why the Axios attack proves AI is mandatory for supply chain securityCyberScoop·Apr 20, 13:17 UTC · Apr 20, 2026Exploit / PoC in the wild60
Beazley Exposure Management platform identifies external exposures and prioritizes cyber riskHelp Net Security·Apr 15, 10:16 UTC · Apr 15, 2026Exploit / PoC in the wild60
Here’s how cyber heavyweights in the US and UK are dealing with Claude MythosCyberScoop·Apr 13, 21:43 UTC · Apr 13, 2026Exploit / PoC in the wild60
Coruna exploit reveals evolution of Triangulation iOS exploitation frameworkSecurity Affairs·Mar 29, 00:59 UTC · Mar 29, 2026Exploit / PoCCVE-2023-32434CVE-2023-38606160
Apple urges iPhone users to update as Coruna and DarkSword exploit kits emergeSecurity Affairs·Mar 20, 11:22 UTC · Mar 20, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+15 CVEs160
Apple issues emergency fixes for Coruna flaws in older iOS versionsSecurity Affairs·Mar 12, 15:28 UTC · Mar 12, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+10 CVEs60
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
UAT-7290 targets high value telecommunications infrastructure in South AsiaCisco Talos·Jan 8, 11:00 UTC · Jan 8, 2026Exploit / PoC60
Why cybersecurity cannot hire its way through the AI eraCyberScoop·Jan 7, 12:00 UTC · Jan 7, 2026Exploit / PoC in the wild60
Senate Intel chair urges national cyber director to safeguard against openCyberScoop·Dec 18, 18:35 UTC · Dec 18, 2025Exploit / PoC in the wild60
Russia’s GRU hackers targeting misconfigured network edge devices in attacks on energy sector, Amazon saysThe Record·Dec 16, 21:50 UTC · Dec 16, 2025Exploit / PoCCVE-2022-26318CVE-2021-26084CVE-2023-22518+1 CVEs60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs60
New Pixnapping Android Flaw Lets Rogue Apps Steal 2FA Codes Without PermissionsThe Hacker News·Oct 20, 18:54 UTC · Oct 20, 2025Exploit / PoC in the wildCVE-2025-4856160
CISA Sounds Alarm on Critical Sudo Flaw Actively Exploited in Linux and Unix SystemsThe Hacker News·Sep 30, 05:41 UTC · Sep 30, 2025Exploit / PoC in the wildCVE-2025-32463CVE-2021-21311CVE-2025-20352+2 CVEs60
Contain or be contained: The security imperative of controlling autonomous AICyberScoop·Sep 25, 13:30 UTC · Sep 25, 2025Exploit / PoC in the wild60
High-severity WinRAR 0Ars Technica · Security·Aug 12, 00:13 UTC · Aug 12, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2025-621860
Unverified code is the next national security threatCyberScoop·Jun 9, 15:56 UTC · Jun 9, 2025Exploit / PoC in the wild60
Focus on what matters most: Exposure management and your attack surfaceHelp Net Security·Apr 8, 17:17 UTC · Apr 8, 2025Exploit / PoCCVE-2024-340060
Critical Flaw in Apache Parquet Allows Remote Attackers to Execute Arbitrary CodeThe Hacker News·Apr 4, 03:38 UTC · Apr 4, 2025Exploit / PoC in the wildCVE-2025-30065CVE-2025-2481360
Attackers exploit a new zeroSecurity Affairs·Feb 11, 23:06 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2024-55591160
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
XE Group shifts from credit card skimming to exploiting zeroSecurity Affairs·Feb 10, 12:53 UTC · Feb 10, 2025Exploit / PoCCVE-2024-57968CVE-2025-25181CVE-2017-9248+1 CVEs60
Malicious ML models found on Hugging Face HubHelp Net Security·Feb 10, 00:00 UTC · Feb 10, 2025Exploit / PoC145
Hugging Face platform continues to be plagued by vulnerable ‘pickles’CyberScoop·Feb 6, 16:34 UTC · Feb 6, 2025Exploit / PoC in the wild60
Fortinet Warns of New Zero-Day Used in Attacks on Firewalls with Exposed InterfacesThe Hacker News·Jan 28, 13:09 UTC · Jan 28, 2025Exploit / PoC in the wildCVE-2024-5559160
Fake PoC Exploit Targets Security Researchers with InfostealerInfosecurity Magazine·Jan 10, 09:15 UTC · Jan 10, 2025Exploit / PoCCVE-2024-49113160
Advanced threat predictions for 2025Kaspersky Securelist·Nov 25, 10:02 UTC · Nov 25, 2024Exploit / PoCCVE-2024-23222CVE-2024-23225CVE-2024-23296+3 CVEs60