Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the CostThe Hacker News·Jul 28, 09:21 UTC · Jul 28, 2026Exploit / PoC45
Researcher Says AI Helped Develop Linux TrafficThe Hacker News·Jul 28, 08:04 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-5326460
Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validationHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2026Exploit / PoC60
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitThe Hacker News·Jul 26, 07:47 UTC · Jul 26, 2026Exploit / PoC in the wild60
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11The Hacker News·Jul 24, 05:12 UTC · Jul 24, 2026Exploit / PoCCVE-2025-66199CVE-2026-3418360
WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass ScanningThe Hacker News·Jul 22, 15:41 UTC · Jul 22, 2026Exploit / PoC in the wildCVE-2026-63030CVE-2026-6013760
Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsThe Hacker News·Jul 22, 14:13 UTC · Jul 22, 2026Exploit / PoC145
Xint Pulse offers on-demand black-box penetration testing for web applicationsHelp Net Security·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC60
Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2026-26268CVE-2026-10591150
Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited PagesThe Hacker News·Jul 8, 12:17 UTC · Jul 8, 2026Exploit / PoC in the wild60
Cybersecurity experts don’t think Anthropic’s Fable 5 presents a unique threatCyberScoop·Jun 15, 19:32 UTC · Jun 15, 2026Exploit / PoC in the wild60
New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML FilesThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoCCVE-2026-4558560
Anthropic's new model is Mythos on a leashCyberScoop·Jun 9, 19:46 UTC · Jun 9, 2026Exploit / PoC in the wild60
One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now PublicThe Hacker News·Jun 8, 20:17 UTC · Jun 8, 2026Exploit / PoCCVE-2026-2311150
Anthropic: Mythos finds more than 10,000 software flaws in first monthCyberScoop·May 26, 15:15 UTC · May 26, 2026Exploit / PoC in the wild60
Zero-Click WhatsApp Account Takeover Hits iPhone Users Running iOS 16. No Linked Devices, No WarningSecurity Affairs·May 25, 10:29 UTC · May 25, 2026Exploit / PoC in the wildCVE-2025-43300CVE-2025-5517760
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
Critical defect in Java security engine poses serious downstream security risksCyberScoop·Mar 10, 17:36 UTC · Mar 10, 2026Exploit / PoC in the wildCVE-2026-2900060
Russia-linked APT28 exploited MSHTML zero-day CVE-2026Security Affairs·Mar 2, 14:46 UTC · Mar 2, 2026Exploit / PoCCVE-2026-2151360
U.S. CISA adds RoundCube Webmail flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 21, 11:19 UTC · Feb 21, 2026Exploit / PoC in the wildCVE-2025-49113CVE-2025-6846160
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
watchTowr Active Defense delivers automated protection from exposure to defenseHelp Net Security·Dec 9, 00:00 UTC · Dec 9, 2025Exploit / PoC in the wild60
MeetC2 - A serverless C2 framework that leverages Google Calendar APIs as a communication channelSecurity Affairs·Sep 6, 09:39 UTC · Sep 6, 2025Exploit / PoC45
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
Researchers Share CitrixBleed 2 Detection Analysis After Initial HoldInfosecurity Magazine·Jul 7, 14:00 UTC · Jul 7, 2025Exploit / PoCCVE-2025-5777CVE-2025-534960
New Flaw in IDEs Like Visual Studio Code Lets Malicious Extensions Bypass Verified StatusThe Hacker News·Jul 1, 13:53 UTC · Jul 1, 2025Exploit / PoC157
Unverified code is the next national security threatCyberScoop·Jun 9, 15:56 UTC · Jun 9, 2025Exploit / PoC in the wild60
Mitel MiCollab zero-day and PoC exploit unveiledHelp Net Security·Dec 5, 00:00 UTC · Dec 5, 2024Exploit / PoCCVE-2024-41713CVE-2024-3528660
watchTowr Finds New ZeroInfosecurity Magazine·Nov 15, 12:15 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-47575CVE-2024-2311360
watchTowr raises $19 million to accelerate global growthHelp Net Security·Oct 10, 00:00 UTC · Oct 10, 2024Exploit / PoCCVE-2024-2202460
PyPI Revival Hijack Puts Thousands of Applications at RiskInfosecurity Magazine·Sep 5, 17:00 UTC · Sep 5, 2024Exploit / PoC in the wild60
CISA adds SolarWinds Web Help Desk bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 16, 20:13 UTC · Aug 16, 2024Exploit / PoC in the wildCVE-2024-2898660
Google Warns of Pixel Firmware Security Flaw Exploited as ZeroThe Hacker News·Jun 28, 04:04 UTC · Jun 28, 2024Exploit / PoC in the wildCVE-2024-32896CVE-2024-29745CVE-2024-29748+1 CVEs60
Can your Netgear router be hijacked? Check now!Help Net Security·Nov 21, 11:43 UTC · Nov 21, 2023Exploit / PoCCVE-2017-552150
CISA adds five vulnerabilities in Juniper devices to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 13, 18:51 UTC · Nov 13, 2023Exploit / PoC in the wildCVE-2023-36844CVE-2023-36845CVE-2023-36846+3 CVEs160
Microsoft announces AI bug bounty programHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2023Exploit / PoC60
12,000 Juniper SRX firewalls and EX switches vulnerable to CVE-2023Security Affairs·Sep 19, 11:53 UTC · Sep 19, 2023Exploit / PoCCVE-2023-36845CVE-2023-36844CVE-2023-36846+1 CVEs60
Threat actors started exploiting Juniper flaws shortly after PoC releaseSecurity Affairs·Aug 30, 15:14 UTC · Aug 30, 2023Exploit / PoC in the wildCVE-2023-36844CVE-2023-36845CVE-2023-36846+1 CVEs160