Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packagesHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2026Exploit / PoC in the wildCVE-2025-53521CVE-2026-21992CVE-2026-305560
Critical Nginx UI flaw CVE-2026Security Affairs·Mar 8, 19:10 UTC · Mar 8, 2026Exploit / PoCCVE-2026-2794460
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
Cybersecurity jobs available right now: May 13, 2025Help Net Security·Jan 30, 10:25 UTC · Jan 30, 2026Exploit / PoC60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Chinese hackers exploiting React2Shell bug impacting countless websites, Amazon researchers sayThe Record·Dec 5, 16:22 UTC · Dec 5, 2025Exploit / PoC in the wildCVE-2025-5518260
Palo Alto Networks to acquire observability firm Chronosphere for $3.35 billionCyberScoop·Nov 19, 22:43 UTC · Nov 19, 2025Exploit / PoC in the wild60
Operational Cyber Threat IntelligenceRecorded Future·Nov 19, 00:00 UTC · Nov 19, 2025Exploit / PoC in the wild60
Can AI agents catch what your SOC misses?Help Net Security·Sep 8, 09:20 UTC · Sep 8, 2025Exploit / PoC45
How security teams are putting AI to work right nowHelp Net Security·Aug 18, 00:00 UTC · Aug 18, 2025Exploit / PoC45
Vulnerabilities in MSP-friendly RMM solution exploited in the wild (CVE-2025-8875, CVE-2025-8876)Help Net Security·Aug 14, 00:00 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-8875CVE-2025-887660
CISA Adds Citrix NetScaler CVE-2025-5777 to KEV Catalog as Active Exploits Target EnterprisesThe Hacker News·Jul 18, 04:54 UTC · Jul 18, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-4966CVE-2025-6543+1 CVEs60
U.S. CISA adds Wazuh, and WebDAV flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 12, 09:17 UTC · Jun 12, 2025Exploit / PoC in the wildCVE-2025-24016CVE-2025-3305360
KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoSKrebs on Security·May 20, 22:27 UTC · May 20, 2025Exploit / PoC60
APTRS: Open-source automated penetration testing reporting systemHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2025Exploit / PoC145
Exabeam Nova accelerates threat detection and responseHelp Net Security·Apr 2, 00:00 UTC · Apr 2, 2025Exploit / PoC60
How DHS is working to continually improve the Continuous Diagnostics and Mitigation programCyberScoop·Mar 19, 20:52 UTC · Mar 19, 2025Exploit / PoC in the wild60
Authlete 3.0 empowers organizations to improve how they issue and manage user credentialsHelp Net Security·Nov 6, 00:00 UTC · Nov 6, 2024Exploit / PoC45
Ivanti Neurons for App Control strengthens endpoint securityHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2024Exploit / PoC60
Juniper Secure AI-Native Edge accelerates detection of potential network threatsHelp Net Security·Oct 8, 00:00 UTC · Oct 8, 2024Exploit / PoC60
Hackers Could Have Remotely Controlled Kia Cars Using Only License PlatesThe Hacker News·Sep 26, 16:02 UTC · Sep 26, 2024Exploit / PoC in the wild60
Product showcase: Cybellum's Product Security Lifecycle PlatformHelp Net Security·Mar 14, 11:46 UTC · Mar 14, 2024Exploit / PoC60
Fortanix Runtime Encryption: Protect sensitive applications and data in useHelp Net Security·Feb 8, 09:52 UTC · Feb 8, 2024Exploit / PoC60
January 2021 Patch Tuesday: Microsoft plugs Defender zero-day RCEHelp Net Security·Nov 14, 08:33 UTC · Nov 14, 2023Exploit / PoC in the wildCVE-2021-1647CVE-2021-1648CVE-2021-1658+8 CVEs60
Veeam fixed multiple flaws in Veeam ONE, including critical issuesSecurity Affairs·Nov 7, 11:22 UTC · Nov 7, 2023Exploit / PoCCVE-2023-38547CVE-2023-38548CVE-2023-38549+2 CVEs60
CISA: Agencies seeing steep decrease in known exploited vulnerabilities on federal networksThe Record·Oct 26, 19:22 UTC · Oct 26, 2023Exploit / PoC in the wild60
Cisco warns of a second IOS XE zeroSecurity Affairs·Oct 23, 18:42 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2023-20273CVE-2023-2019860
How to go from collecting risk data to actually reducing risk?Help Net Security·Oct 17, 00:00 UTC · Oct 17, 2023Exploit / PoC60
Silobreaker unveils new geopolitical threat intelligence capabilities with RANEHelp Net Security·Jun 20, 00:00 UTC · Jun 20, 2023Exploit / PoC in the wild60
Atera and ESET join forces to arm customers against zero-day threatsHelp Net Security·Mar 11, 00:00 UTC · Mar 11, 2023Exploit / PoC60
GrammaTech unveils new versions of its CodeSentry binary SCA platformHelp Net Security·Mar 9, 00:00 UTC · Mar 9, 2023Exploit / PoC60
CISA adds JasperReports bugs to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 30, 08:51 UTC · Dec 30, 2022Exploit / PoC in the wildCVE-2018-5430CVE-2018-1880960
Over 17000 Fortinet devices exposed online are very likely vulnerable to CVE-2022Security Affairs·Oct 18, 07:56 UTC · Oct 18, 2022Exploit / PoC in the wildCVE-2022-4068460
Over 280,000 WordPress Sites Attacked Using WPGateway Plugin ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Exploit / PoC in the wildCVE-2022-318060
Hackers Exploit Zero-Day in WordPress BackupBuddy Plugin in ~5 Million AttemptsThe Hacker News·Sep 10, 09:32 UTC · Sep 10, 2022Exploit / PoC in the wildCVE-2022-3147460
Iranian steel facilities suffer apparent cyberattacksCyberScoop·Jun 28, 18:55 UTC · Jun 28, 2022Exploit / PoC in the wild60
VMware Workspace ONE updates enable proactive security for all employee devicesHelp Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC60
Corelight Investigator allows security teams to accelerate their threat hunting and investigationsHelp Net Security·May 27, 00:00 UTC · May 27, 2022Exploit / PoC60
Elementor Fixes Critical Bug in Popular WordPress PluginInfosecurity Magazine·Apr 14, 09:00 UTC · Apr 14, 2022Exploit / PoC60