Week in review: Windows kernel flaw patched, suspected Fortinet FortiWeb zero-day exploitedHelp Net Security·Nov 16, 00:00 UTC · Nov 16, 2025Exploit / PoC in the wildCVE-2025-12480CVE-2025-21042CVE-2025-62215+2 CVEs60
Report: Government data mining has gone too farCyberScoop·Nov 7, 17:45 UTC · Nov 7, 2025Exploit / PoC in the wild60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI ModelsThe Hacker News·Sep 24, 13:55 UTC · Sep 24, 2025Exploit / PoCCVE-2025-10643CVE-2025-10644160
F5 to acquire AI security firm CalypsoAI for $180 millionCyberScoop·Sep 11, 17:55 UTC · Sep 11, 2025Exploit / PoC in the wild60
U.S. CISA adds Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 20, 13:38 UTC · Jul 20, 2025Exploit / PoC in the wildCVE-2025-2525760
Fortinet FortiWeb flaw CVE-2025Security Affairs·Jul 19, 16:25 UTC · Jul 19, 2025Exploit / PoC in the wildCVE-2025-2525760
Cloudflare rolls out ‘pay-per-crawl’ feature to constrain AI’s limitless hunger for dataCyberScoop·Jul 1, 19:43 UTC · Jul 1, 2025Exploit / PoC in the wild60
A flaw could allow recovery of the phone number associated with any Google accountSecurity Affairs·Jun 11, 07:06 UTC · Jun 11, 2025Exploit / PoC45
Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
Network Attack Trends: Internet of Threats (November 2020Palo Alto Unit 42·Jun 6, 13:24 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2020-28188CVE-2020-17519CVE-2020-29227+62 CVEs60
Network Attack Trends: FebruaryPalo Alto Unit 42·Jun 6, 12:33 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-25296CVE-2021-25297CVE-2021-25298+4 CVEs60
Network Security Trends: MayPalo Alto Unit 42·Jun 6, 01:20 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2020-11978CVE-2020-13927CVE-2021-2785060
Network Security Trends: AugustPalo Alto Unit 42·Jun 6, 00:57 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-40438CVE-2021-34473CVE-2021-38647+9 CVEs60
Network Security Trends: November 2021 to January 2022Palo Alto Unit 42·Jun 5, 20:41 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-38647+13 CVEs60
Network Security Trends: MayPalo Alto Unit 42·Jun 5, 17:26 UTC · Jun 5, 2024Exploit / PoC in the wild60
Securing AI systems against evasion, poisoning, and abuseHelp Net Security·Jan 9, 00:00 UTC · Jan 9, 2024Exploit / PoC45
Apple news: iLeakage attack, MAC address leakage bugHelp Net Security·Oct 27, 00:00 UTC · Oct 27, 2023Exploit / PoCCVE-2023-32434CVE-2023-4284660
Everything You Wanted to Know About AI Security but Were Afraid to AskThe Hacker News·Sep 4, 11:29 UTC · Sep 4, 2023Exploit / PoC60
Experts released PoC exploit for MOVEit Transfer CVE-2023Security Affairs·Jun 13, 05:29 UTC · Jun 13, 2023Exploit / PoCCVE-2023-3436260
MOVEit Transfer software zeroSecurity Affairs·Jun 7, 13:57 UTC · Jun 7, 2023Exploit / PoC in the wild60
MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being ExploitedThe Hacker News·Jun 7, 08:52 UTC · Jun 7, 2023Exploit / PoC in the wildCVE-2023-3436260
CISA adds Progress MOVEit Transfer zero-day to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 2, 21:37 UTC · Jun 2, 2023Exploit / PoC in the wildCVE-2023-3436260
Brute-Forcing a Fingerprint ReaderSchneier on Security·May 30, 11:16 UTC · May 30, 2023Exploit / PoC60
Senators want agencies to encrypt data before sharing with new NSF databaseCyberScoop·Dec 20, 18:00 UTC · Dec 20, 2022Exploit / PoC in the wild60
BittWare introduces new card and server-level solutions to drive memory improvementsHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2022Exploit / PoC57
Corelight Investigator allows security teams to accelerate their threat hunting and investigationsHelp Net Security·May 27, 00:00 UTC · May 27, 2022Exploit / PoC60
Video Conferencing Apps Sometimes Ignore the Mute ButtonSchneier on Security·Apr 29, 14:18 UTC · Apr 29, 2022Exploit / PoC45
Exploit in the Wild: #drupalgeddon2 - Analysis of CVE-2018Palo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-760060
Underline selects Cynamics to neutralize security incidents in real timeHelp Net Security·Jan 25, 00:00 UTC · Jan 25, 2022Exploit / PoC45
Telehealth app Doxy.me is plugging a leak that exposed patient data to Facebook, GoogleCyberScoop·Dec 10, 15:36 UTC · Dec 10, 2021Exploit / PoC in the wild60
Google releases Spectre PoC code exploit for Chrome browserSecurity Affairs·Mar 14, 09:52 UTC · Mar 14, 2021Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Zero-Day Warning: It's Possible to Hack iPhones Just by Sending EmailsThe Hacker News·Apr 22, 18:14 UTC · Apr 22, 2020Exploit / PoC in the wild60
How to transform your revolutionary idea into a reality: $100K Nokia Bell Labs PrizeThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2020Exploit / PoC45
Micropatches block exploitation of Windows zero-days under attackHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2020Exploit / PoC60
Most organizations have yet to fix CVE-2020Security Affairs·Mar 16, 20:00 UTC · Mar 16, 2020Exploit / PoCCVE-2020-068860
Millions of computers powered by Intel chips are affected by a MDS flawsSecurity Affairs·May 14, 23:30 UTC · May 14, 2019Exploit / PoCCVE-2018-12126CVE-2018-12130CVE-2018-12127+1 CVEs60
Russian Government-owned research institute linked to Triton attacksSecurity Affairs·Oct 24, 05:23 UTC · Oct 24, 2018Exploit / PoC60