Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to AttackersThe Hacker News·Aug 8, 08:54 UTC · Aug 8, 2026Exploit / PoC in the wild60
On-Prem Microsoft Exchange Server CVE-2026The Hacker News·Jun 10, 16:19 UTC · Jun 10, 2026Exploit / PoC in the wildCVE-2026-42897160
China’s Zero-Day Pipeline: From Discovery to DeploymentRecorded Future·Jun 4, 00:00 UTC · Jun 4, 2026Exploit / PoC60
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Week in review: PoC for Trend Micro Apex Central RCE released, Patch Tuesday forecastHelp Net Security·Jan 11, 00:00 UTC · Jan 11, 2026Exploit / PoC in the wildCVE-2025-69258CVE-2025-3716460
Microsoft Fixes Three ZeroInfosecurity Magazine·Dec 10, 09:45 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62221CVE-2025-54100CVE-2025-64671+4 CVEs60
ShadowLeak Zero-Click Flaw Leaks Gmail Data via OpenAI ChatGPT Deep Research AgentThe Hacker News·Sep 20, 05:32 UTC · Sep 20, 2025Exploit / PoC145
Microsoft SharePoint servers under attack via zero-day vulnerability (CVE-2025-53770)Help Net Security·Jul 22, 15:29 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49706CVE-2025-49704+1 CVEs60
Microsoft: Attackers Actively Compromising OnInfosecurity Magazine·Jul 21, 11:00 UTC · Jul 21, 2025Exploit / PoCCVE-2025-53770CVE-2025-5377160
Multi-national warning issued over Russia’s targeting of logistics, tech firmsCyberScoop·May 21, 18:41 UTC · May 21, 2025Exploit / PoC in the wildCVE-2023-23397CVE-2023-3883160
Unpatched Windows Zero-Day Flaw Exploited by 11 StateThe Hacker News·Mar 19, 03:46 UTC · Mar 19, 2025Exploit / PoC60
Russia-aligned threat groups dupe Ukrainian targets via SignalCyberScoop·Feb 19, 21:20 UTC · Feb 19, 2025Exploit / PoC in the wild60
Russian state threat group shifts focus to US, UK targetsCyberScoop·Feb 12, 17:58 UTC · Feb 12, 2025Exploit / PoC in the wildCVE-2024-1709CVE-2023-48788CVE-2021-34473+4 CVEs160
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
Microsoft fixes actively exploited Windows Hyper-V zero-day flawsHelp Net Security·Jan 14, 00:00 UTC · Jan 14, 2025Exploit / PoC in the wildCVE-2025-21333CVE-2025-21334CVE-2025-21335+6 CVEs60
Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin AccessThe Hacker News·Dec 21, 09:00 UTC · Dec 21, 2024Exploit / PoCCVE-2024-41713CVE-2024-35286CVE-2024-55550+3 CVEs60
Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major AttacksThe Hacker News·Sep 9, 04:33 UTC · Sep 9, 2024Exploit / PoC in the wild60
Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
Microsoft patches two actively exploited zero-days (CVE-2024-29988, CVE-2024-26234)Help Net Security·Apr 9, 00:00 UTC · Apr 9, 2024Exploit / PoC in the wildCVE-2024-29988CVE-2024-26234CVE-2024-21412+9 CVEs60
Hackers backed by Russia and China are infecting SOHO routers like yours, FBI warnsArs Technica · Security·Feb 27, 20:57 UTC · Feb 27, 2024Exploit / PoCCVE-2023-2339760
CISA adds Microsoft Exchange and Cisco ASA and FTD bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 23, 00:20 UTC · Feb 23, 2024Exploit / PoC in the wildCVE-2020-3259CVE-2024-2141060
First Microsoft Patch Tuesday zero-day of 2024 disclosed as part of group of 75 vulnerabilitiesCisco Talos·Feb 13, 18:59 UTC · Feb 13, 2024Exploit / PoC in the wildCVE-2024-21351CVE-2024-20684CVE-2024-21357+3 CVEs60
Global critical infrastructure faces relentless cyber activityHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2024Exploit / PoC in the wild60
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260
iOS Zero-Day Attacks: Experts Uncover Deeper Insights into Operation TriangulationThe Hacker News·Oct 30, 03:14 UTC · Oct 30, 2023Exploit / PoC in the wildCVE-2023-32434CVE-2023-3243560
France accuses Russian state hackers of targeting government systems, universities, think tanksThe Record·Oct 27, 13:50 UTC · Oct 27, 2023Exploit / PoCCVE-2023-2339760
Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government, Military, and TelecomThe Hacker News·Aug 29, 15:43 UTC · Aug 29, 2023Exploit / PoCCVE-2023-286860
Microsoft patches four exploited zero-days, but lags with fixes for a fifth (CVE-2023-36884)Help Net Security·Aug 4, 09:09 UTC · Aug 4, 2023Exploit / PoC in the wildCVE-2023-36884CVE-2023-32049CVE-2023-35311+2 CVEs160
The federal government’s cybersecurity policies are falling into place just in time to be stalled againCisco Talos·Jul 20, 18:00 UTC · Jul 20, 2023Exploit / PoC in the wildCVE-2023-3745060
Microsoft Bug Allowed Hackers to Breach Over Two Dozen Organizations via Forged Azure AD TokensThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Exploit / PoC in the wild160
Microsoft Warns of Widescale Credential Stealing Attacks by Russian HackersThe Hacker News·Jun 27, 14:11 UTC · Jun 27, 2023Exploit / PoCCVE-2020-12641CVE-2020-35730CVE-2021-44026+1 CVEs60
The NSA’s research chief on emerging tech — including ‘beyond belief’ leaps in AIThe Record·May 8, 02:43 UTC · May 8, 2023Exploit / PoC60
CISA adds Adobe ColdFusion bug to Known Exploited Vulnerabilities CatalogSecurity Affairs·Mar 16, 08:47 UTC · Mar 16, 2023Exploit / PoC in the wildCVE-2023-26360CVE-2023-23397CVE-2023-24880+1 CVEs60
Iran-linked hackers used fake Atlantic Council-affiliated persona to target human rights researchersCyberScoop·Mar 9, 13:20 UTC · Mar 9, 2023Exploit / PoC in the wild60
PoC exploit for recently patched Microsoft Word RCE is public (CVE-2023-21716)Help Net Security·Mar 6, 00:00 UTC · Mar 6, 2023Exploit / PoCCVE-2023-21716160
Microsoft confirms ‘DogWalk’ zeroThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2022-3471360
Microsoft fixes exploited zero-day, revokes certificate used to sign malicious drivers (CVE-2022-44698)Help Net Security·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoCCVE-2022-44698CVE-2022-41076CVE-2022-44713+2 CVEs60