Linux developers weigh emergency "killswitch" for vulnerable kernel functionsHelp Net Security·May 11, 00:00 UTC · May 11, 2026Exploit / PoCCVE-2026-31431CVE-2026-43284CVE-2026-4350050
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025The Hacker News·Apr 25, 08:43 UTC · Apr 25, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-2245760
Independent tests show why orgs should use thirdCyberScoop·Apr 2, 14:35 UTC · Apr 2, 2025Exploit / PoC60
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
Microsoft fixes two actively exploited zero-days (CVE-2025-21418, CVE-2025-21391)Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-21418CVE-2025-21391CVE-2024-38193+3 CVEs260
Remediation Times Drop Sharply as Cyber Hygiene Take Up SurgesInfosecurity Magazine·Jan 14, 10:15 UTC · Jan 14, 2025Exploit / PoC in the wild60
CISA report touts cyber hygiene enrollment surge for critical infrastructure orgsCyberScoop·Jan 10, 22:04 UTC · Jan 10, 2025Exploit / PoC in the wild60
U.S. CISA adds Synacor Zimbra Collaboration flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 05:24 UTC · Oct 7, 2024Exploit / PoC in the wildCVE-2024-4551960
Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal FlawThe Hacker News·Oct 4, 06:25 UTC · Oct 4, 2024Exploit / PoC in the wildCVE-2024-4551960
Critical Zimbra Postjournal flaw CVE-2024-45519 actively exploited in the wild. Patch it now!Security Affairs·Oct 2, 09:21 UTC · Oct 2, 2024Exploit / PoC in the wildCVE-2024-4551960
China-linked APT UNC3886 exploits VMware zeroSecurity Affairs·Jan 22, 22:57 UTC · Jan 22, 2024Exploit / PoCCVE-2023-34048CVE-2023-20867260
Atlas VPN zero-day allows sites to discover users' IP addressHelp Net Security·Sep 18, 19:49 UTC · Sep 18, 2023Exploit / PoC60
A zero-day in Atlas VPN Linux Client leaks users' IP addressSecurity Affairs·Sep 6, 16:50 UTC · Sep 6, 2023Exploit / PoC60
Chinese Hackers Exploit VMware Zero-Day to Backdoor Windows and Linux SystemsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Exploit / PoCCVE-2023-20867CVE-2023-20887CVE-2023-20888+1 CVEs60
China-linked APT UNC3886 used VMware ESXi ZeroSecurity Affairs·Jun 14, 08:44 UTC · Jun 14, 2023Exploit / PoCCVE-2023-2086760
CISA adds Ruckus bug and another six flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 16, 19:39 UTC · May 16, 2023Exploit / PoC in the wildCVE-2023-25717CVE-2021-3560CVE-2014-0196+4 CVEs160
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Hafnium Update: Continued Microsoft Exchange Server ExploitationCisco Talos·Mar 10, 00:52 UTC · Mar 10, 2021Exploit / PoC60
Exploiting a bug in Azure Functions to escape DockerSecurity Affairs·Feb 1, 07:32 UTC · Feb 1, 2021Exploit / PoC145
New Docker Container Escape Bug Affects Microsoft Azure FunctionsThe Hacker News·Jan 27, 15:59 UTC · Jan 27, 2021Exploit / PoC160
Critical PPP Daemon Flaw Opens Most Linux Systems to Remote HackersThe Hacker News·Mar 6, 14:17 UTC · Mar 6, 2020Exploit / PoC in the wildCVE-2020-859760
Friday Squid Blogging: New Tool for Grabbing Squid and other Fragile Sea CreaturesSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Exploit / PoC160
Of hoodies and headphones: a spotlight on risks surrounding audio output devicesMalwarebytes Labs·Apr 21, 17:00 UTC · Apr 21, 2019Exploit / PoC60
Severe Flaws in SHAREit Android App Let Hackers Steal Your FilesThe Hacker News·Feb 27, 13:22 UTC · Feb 27, 2019Exploit / PoC60
Avnet advances IoT security with Azure Sphere Starter KitHelp Net Security·Jan 9, 00:00 UTC · Jan 9, 2019Exploit / PoC60
DarkVishnya: Banks attacked through direct connection to local networkKaspersky Securelist·Dec 6, 10:00 UTC · Dec 6, 2018Exploit / PoC57
Cisco issues new, complete fixes for critical flaw in enterprise security appliancesHelp Net Security·Feb 12, 02:17 UTC · Feb 12, 2018Exploit / PoC in the wildCVE-2018-010160
New, stronger crypto standard lacks backward compatibilityCyberScoop·Sep 20, 17:00 UTC · Sep 20, 2016Exploit / PoC in the wild60
IT threat evolution in Q2 2016. OverviewKaspersky Securelist·Aug 11, 10:57 UTC · Aug 11, 2016Exploit / PoCCVE-2015-2545CVE-2016-1010CVE-2016-014760