Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026The Hacker News·May 24, 08:15 UTC · May 24, 2026Exploit / PoCCVE-2026-4558560
Beyond Acceleration and Automation: How AI + Intelligence Changes Cyber DefenseRecorded Future·May 14, 00:00 UTC · May 14, 2026Exploit / PoC in the wild60
U.S. CISA adds a flaw in Apache ActiveMQ to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 17, 07:39 UTC · Apr 17, 2026Exploit / PoC in the wildCVE-2026-3419760
New Rowhammer attacks give complete control of machines running Nvidia GPUsArs Technica · Security·Apr 2, 17:00 UTC · Apr 2, 2026Exploit / PoC45
New "LeakyLooker" Flaws in Google Looker Studio Could Enable CrossThe Hacker News·Mar 10, 14:13 UTC · Mar 10, 2026Exploit / PoC in the wild60
ClawJacked flaw exposed OpenClaw users to data theftSecurity Affairs·Mar 2, 09:42 UTC · Mar 2, 2026Exploit / PoC60
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network PlatformsThe Hacker News·Feb 11, 13:28 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-0488CVE-2026-0509CVE-2025-32007+4 CVEs60
Shadowserver finds 6,000+ likely vulnerable SmarterMail servers exposed onlineSecurity Affairs·Jan 27, 15:28 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-2376060
Critical GNU InetUtils telnetd Flaw Lets Attackers Bypass Login and Gain Root AccessThe Hacker News·Jan 27, 08:53 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-2406160
OMB rescinds ‘burdensome’ BidenCyberScoop·Jan 26, 22:12 UTC · Jan 26, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin AccessThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Exploit / PoC in the wildCVE-2026-2355060
Cisco Patches Zero-Day RCE Exploited by ChinaThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Exploit / PoCCVE-2025-2039360
U.S. CISA adds a flaw in Gogs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 12, 21:55 UTC · Jan 12, 2026Exploit / PoC in the wildCVE-2025-8110CVE-2024-5594760
Dozens of groups call for governments to protect encryptionCyberScoop·Nov 17, 20:56 UTC · Nov 17, 2025Exploit / PoC in the wild60
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
CISA Flags VMware Zero-Day Exploited by ChinaThe Hacker News·Oct 31, 07:09 UTC · Oct 31, 2025Exploit / PoC in the wildCVE-2025-4124460
F5 discloses breach tied to nationCyberScoop·Oct 16, 14:04 UTC · Oct 16, 2025Exploit / PoC in the wild60
New SAP NetWeaver Bug Lets Attackers Take Over Servers Without LoginThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-42944CVE-2025-42937CVE-2025-4291060
U.S. CISA adds Adminer, Cisco IOS, Fortra GoAnywhere MFT, Libraesva ESG, and Sudo flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 30, 09:07 UTC · Sep 30, 2025Exploit / PoC in the wildCVE-2021-21311CVE-2025-20352CVE-2025-10035+3 CVEs60
House lawmakers take aim at education requirements for federal cyber jobsCyberScoop·Aug 21, 20:05 UTC · Aug 21, 2025Exploit / PoC in the wild60
Wiz Uncovers Critical Access Bypass Flaw in AIThe Hacker News·Jul 30, 07:43 UTC · Jul 30, 2025Exploit / PoC in the wild60
Microsoft uncovers macOS flaw allowing bypass TCC protectionsSecurity Affairs·Jul 29, 00:01 UTC · Jul 29, 2025Exploit / PoCCVE-2025-31199CVE-2024-44133150
Meta confused over WhatsApp ban issued to House staffersCyberScoop·Jun 24, 21:12 UTC · Jun 24, 2025Exploit / PoC in the wild60
New Linux Flaws Enable Full Root Access via PAM and Udisks Across Major DistributionsThe Hacker News·Jun 20, 03:52 UTC · Jun 20, 2025Exploit / PoCCVE-2025-6018CVE-2025-6019CVE-2025-602060
CISA Adds Erlang SSH and Roundcube Flaws to Known Exploited Vulnerabilities CatalogThe Hacker News·Jun 12, 05:02 UTC · Jun 12, 2025Exploit / PoC in the wildCVE-2025-32433CVE-2024-42009CVE-2025-3102260
Critical Cisco ISE Auth Bypass Flaw Impacts Cloud Deployments on AWS, Azure, and OCIThe Hacker News·Jun 5, 05:37 UTC · Jun 5, 2025Exploit / PoC in the wildCVE-2025-2028660
Copyright office criticizes AI ‘fair use’ before director’s dismissalCyberScoop·May 13, 20:57 UTC · May 13, 2025Exploit / PoC in the wild60
Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation ConfirmedThe Hacker News·May 10, 06:43 UTC · May 10, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2025-392860
New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell, Brute Ratel FrameworkThe Hacker News·May 6, 13:53 UTC · May 6, 2025Exploit / PoC in the wildCVE-2017-9844CVE-2025-31324CVE-2017-1263760
SonicWall Confirms Active Exploitation of Flaws Affecting Multiple Appliance ModelsThe Hacker News·May 5, 15:51 UTC · May 5, 2025Exploit / PoC in the wildCVE-2023-44221CVE-2024-38475CVE-2021-2003560
U.S. CISA adds SonicWall SMA100 and Apache HTTP Server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 2, 07:50 UTC · May 2, 2025Exploit / PoC in the wildCVE-2024-38475CVE-2023-4422160
Two SonicWall SMA100 flaws actively exploited in the wildSecurity Affairs·May 1, 08:31 UTC · May 1, 2025Exploit / PoC in the wildCVE-2023-44221CVE-2024-3847560
Tariffs could slow replacement of telecom networks, according to industry officialCyberScoop·Apr 30, 19:59 UTC · Apr 30, 2025Exploit / PoC in the wild60
44% Of The Zero-Days Exploited In 2024 Were In Enterprise SolutionsHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2025Exploit / PoCCVE-2024-53104CVE-2024-32896CVE-2024-29745+1 CVEs60
CISA Adds CrushFTP Vulnerability to KEV Catalog Following Confirmed Active ExploitationThe Hacker News·Apr 8, 15:56 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2025-31161CVE-2025-2825CVE-2024-282560
Apple Backports Critical Fixes for 3 Recent 0-Days Impacting Older iOS and macOS DevicesThe Hacker News·Apr 1, 11:43 UTC · Apr 1, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2025-24200CVE-2025-2420160
Senators criticize Trump officials’ discussion of war plans over Signal, but administration answers don’t come easilyCyberScoop·Mar 25, 18:07 UTC · Mar 25, 2025Exploit / PoC in the wild60
U.S. CISA adds six Microsoft Windows flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 12, 19:18 UTC · Mar 12, 2025Exploit / PoC in the wildCVE-2025-24983CVE-2025-24984CVE-2025-24985+3 CVEs60