U.S. CISA adds Apple, Laravel Livewire and Craft CMS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 22, 14:40 UTC · Mar 22, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-32432CVE-2025-43510+3 CVEs60
CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026The Hacker News·Mar 21, 08:25 UTC · Mar 21, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-43510CVE-2025-43520+2 CVEs160
Sean Cairncross lays out what’s coming next for Trump’s cyber strategyCyberScoop·Mar 9, 21:29 UTC · Mar 9, 2026Exploit / PoC in the wild60
Notepad++ supply chain attack: Researchers reveal details, IoCs, targetsHelp Net Security·Feb 17, 10:13 UTC · Feb 17, 2026Exploit / PoC60
Proofpoint acquires Acuvity to tackle the security risks of agentic AICyberScoop·Feb 13, 00:04 UTC · Feb 13, 2026Exploit / PoC in the wild60
Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure EntitiesThe Hacker News·Feb 7, 11:03 UTC · Feb 7, 2026Exploit / PoC60
Cybersecurity jobs available right now: August 19, 2025Help Net Security·Jan 28, 13:12 UTC · Jan 28, 2026Exploit / PoC57
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Achieving Success in Regular Threat Reporting: Analyst InsightsRecorded Future·Jan 14, 00:00 UTC · Jan 14, 2026Exploit / PoC in the wild60
Week in review: Exploited zero-day in Cisco email security appliances, Kali Linux 2025.4 releasedHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2025Exploit / PoC in the wildCVE-2025-59718CVE-2025-40602CVE-2025-14174+1 CVEs160
Russia was behind a destructive cyber attack on a water utility in 2024, Denmark saysSecurity Affairs·Dec 20, 00:46 UTC · Dec 20, 2025Exploit / PoC60
GeminiJack zero-click flaw in Gemini Enterprise allowed corporate data exfiltrationSecurity Affairs·Dec 11, 20:16 UTC · Dec 11, 2025Exploit / PoC45
Organizations can now buy cyber insurance that covers deepfakesCyberScoop·Dec 11, 18:38 UTC · Dec 11, 2025Exploit / PoC in the wild60
Officials offer $10M reward for information on IRGCCyberScoop·Dec 8, 22:01 UTC · Dec 8, 2025Exploit / PoC in the wild60
DOJ lauds series of gains against North Korean IT worker scheme, crypto theftsCyberScoop·Nov 14, 20:20 UTC · Nov 14, 2025Exploit / PoC in the wild60
The BetterBank DeFi protocol exploited for reward mintingKaspersky Securelist·Oct 22, 10:00 UTC · Oct 22, 2025Exploit / PoC60
Dataminr to acquire cybersecurity firm ThreatConnect for $290 millionCyberScoop·Oct 21, 12:45 UTC · Oct 21, 2025Exploit / PoC in the wild60
China’s spy agency accuses NSA of yearslong attack on the country’s timekeeping serviceCyberScoop·Oct 20, 17:13 UTC · Oct 20, 2025Exploit / PoC in the wild60
US offers $15 million reward for info on North Korean nationals involved in global criminal networkCyberScoop·Jul 25, 15:00 UTC · Jul 25, 2025Exploit / PoC in the wild60
Microsoft SharePoint zero-day attacks pinned on ChinaCyberScoop·Jul 22, 15:54 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs60
GPUHammer: New RowHammer Attack Variant Degrades AI Models on NVIDIA GPUsThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Exploit / PoC45
Chinese Hackers Exploit Ivanti CSA Zero-Days in Attacks on French Government, TelecomsThe Hacker News·Jul 3, 09:25 UTC · Jul 3, 2025Exploit / PoC in the wildCVE-2024-8963CVE-2024-9380CVE-2024-819060
French cybersecurity agency confirms government affected by Ivanti hacksThe Record·Jul 2, 12:09 UTC · Jul 2, 2025Exploit / PoCCVE-2024-8190CVE-2024-8963CVE-2024-938060
Chinese Hackers Target France in Ivanti ZeroInfosecurity Magazine·Jul 2, 12:00 UTC · Jul 2, 2025Exploit / PoCCVE-2024-8190CVE-2024-8963CVE-2024-9380160
Iran’s financial sector takes another hit as largest crypto exchange is targetedCyberScoop·Jun 18, 17:29 UTC · Jun 18, 2025Exploit / PoC in the wild60
Google Chrome Zero-Day CVE-2025-2783 Exploited by TaxOff to Deploy Trinper BackdoorThe Hacker News·Jun 18, 10:32 UTC · Jun 18, 2025Exploit / PoC in the wildCVE-2025-2783CVE-2024-647360
Iran’s Bank Sepah disrupted by cyberattack claimed by proCyberScoop·Jun 17, 20:49 UTC · Jun 17, 2025Exploit / PoC in the wild60
Digital rights groups sound alarm on Stop CSAM ActCyberScoop·Jun 12, 01:00 UTC · Jun 12, 2025Exploit / PoC in the wild60
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
After Signal controversy, do private conversations online exist anymore?CyberScoop·May 6, 12:05 UTC · May 6, 2025Exploit / PoC in the wild60
Allurity acquires Infigo IS to strengthen its position in EuropeHelp Net Security·Apr 28, 00:00 UTC · Apr 28, 2025Exploit / PoC60
Attackers stick with effective intrusion points, valid credentials and exploitsCyberScoop·Apr 22, 14:48 UTC · Apr 22, 2025Exploit / PoC in the wild60
Tech experts recommend full steam ahead on US export controls for AICyberScoop·Apr 8, 20:42 UTC · Apr 8, 2025Exploit / PoC in the wild60
Chainguard's FIPS-compliant Cassandra addresses security demand of federal and regulated marketsCyberScoop·Mar 5, 17:00 UTC · Mar 5, 2025Exploit / PoC in the wild60
CFPB nominee signals openness to continuing dataCyberScoop·Feb 27, 21:22 UTC · Feb 27, 2025Exploit / PoC in the wild60
What 2024 taught us about security vulnerabiltiesHelp Net Security·Jan 14, 00:00 UTC · Jan 14, 2025Exploit / PoC in the wildCVE-2023-3519CVE-2023-20198CVE-2021-4422860
FBI Seeks Public Help to Identify Chinese Hackers Behind Global Cyber IntrusionsThe Hacker News·Nov 11, 05:16 UTC · Nov 11, 2024Exploit / PoCCVE-2020-12271CVE-2020-15069CVE-2020-29574+2 CVEs60
Microsoft Fixes Five ZeroInfosecurity Magazine·Oct 9, 09:30 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-6197+2 CVEs60