Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since MidThe Hacker News·Mar 6, 10:06 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2026-2276960
Hikvision and Rockwell Automation CVSS 9.8 Flaws Added to CISA KEV CatalogThe Hacker News·Mar 6, 06:30 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2017-7921CVE-2021-2268160
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
AWS CodeBuild Misconfiguration Exposed GitHub Repos to Potential Supply Chain AttacksThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Exploit / PoC in the wild60
Microsoft seizes RedVDS infrastructure, disrupts fastCyberScoop·Jan 14, 15:00 UTC · Jan 14, 2026Exploit / PoC in the wild60
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
Active Exploits Hit Dassault and XWiki — CISA Confirms Critical Flaws Under AttackThe Hacker News·Oct 30, 09:41 UTC · Oct 30, 2025Exploit / PoC in the wildCVE-2025-6204CVE-2025-6205CVE-2025-24893+1 CVEs60
Attackers exploited critical Fortra GoAnywhere flaw in zero-day attacks (CVE-2025-10035)Help Net Security·Oct 7, 14:53 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Researchers say Israeli government likely behind AICyberScoop·Oct 3, 17:16 UTC · Oct 3, 2025Exploit / PoC in the wild60
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
Urgent: Cisco ASA Zero-Day Duo Under Attack; CISA Triggers Emergency Mitigation DirectiveThe Hacker News·Sep 26, 05:35 UTC · Sep 26, 2025Exploit / PoC in the wildCVE-2025-20333CVE-2025-2036260
CISA says it observed nearly year-old activity tied to Cisco zeroCyberScoop·Sep 25, 23:34 UTC · Sep 25, 2025Exploit / PoC in the wild60
When ‘minimal impact’ isn’t reassuring: lessons from the largest npm supply chain compromiseCyberScoop·Sep 15, 13:21 UTC · Sep 15, 2025Exploit / PoC in the wild60
Two groups exploit WinRAR flaws in separate cyberThe Record·Aug 11, 16:23 UTC · Aug 11, 2025Exploit / PoCCVE-2025-8088CVE-2025-621860
New WinRAR ZeroInfosecurity Magazine·Aug 11, 16:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-36884CVE-2024-968060
WinRAR zero-day exploited by RomCom hackers in targeted attacksHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-808860
Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root AccessThe Hacker News·Jul 29, 04:27 UTC · Jul 29, 2025Exploit / PoC in the wildCVE-2025-20281CVE-2025-20337CVE-2025-2028260
⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto HeistsThe Hacker News·May 6, 07:05 UTC · May 6, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-50302+25 CVEs60
Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security ProductsThe Hacker News·Apr 30, 03:22 UTC · Apr 30, 2025Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-53104+10 CVEs160
U.S. CISA adds Cisco Smart Licensing Utility flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 31, 19:56 UTC · Mar 31, 2025Exploit / PoC in the wildCVE-2024-20439CVE-2024-20440CVE-2024-030560
What’s in Your Head? A Plastic Spoon and Lost Baby Memories404 Media·Mar 22, 13:00 UTC · Mar 22, 2025Exploit / PoC45
Cisco Smart Licensing Utility flaws actively exploited in the wildSecurity Affairs·Mar 21, 09:26 UTC · Mar 21, 2025Exploit / PoC in the wildCVE-2024-20439CVE-2024-20440CVE-2024-030560
Russian group RomCom exploited Firefox and Tor Browser zero-days to target attacks Europe and North AmericaSecurity Affairs·Nov 27, 08:37 UTC · Nov 27, 2024Exploit / PoC in the wildCVE-2024-9680CVE-2024-4903960
RomCom Exploits Zero-Day Firefox and Windows Flaws in Sophisticated CyberattacksThe Hacker News·Nov 27, 04:06 UTC · Nov 27, 2024Exploit / PoCCVE-2024-9680CVE-2024-49039CVE-2023-3688460
Advanced threat predictions for 2025Kaspersky Securelist·Nov 25, 10:02 UTC · Nov 25, 2024Exploit / PoCCVE-2024-23222CVE-2024-23225CVE-2024-23296+3 CVEs60
FBI Seeks Public Help to Identify Chinese Hackers Behind Global Cyber IntrusionsThe Hacker News·Nov 11, 05:16 UTC · Nov 11, 2024Exploit / PoCCVE-2020-12271CVE-2020-15069CVE-2020-29574+2 CVEs60
US businesses struggle to obtain cyber insurance, lawmakers are toldCyberScoop·Jun 27, 22:21 UTC · Jun 27, 2024Exploit / PoC in the wild60
Week in review: Google fixes yet another Chrome zero-day exploit, YouTube as a cybercrime channelHelp Net Security·May 26, 00:00 UTC · May 26, 2024Exploit / PoC in the wildCVE-2024-5274CVE-2024-4985CVE-2023-43208+4 CVEs60
China-Linked Hackers Suspected in ArcaneDoor Cyberattacks Targeting Network DevicesThe Hacker News·May 12, 14:25 UTC · May 12, 2024Exploit / PoCCVE-2024-20353CVE-2024-2035960
Krebs, Luber added to Cyber Safety Review BoardCyberScoop·May 6, 22:42 UTC · May 6, 2024Exploit / PoC in the wild60
CISA adds Cisco ASA and FTD and CrushFTP VFS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 25, 20:17 UTC · Apr 25, 2024Exploit / PoC in the wildCVE-2024-20353CVE-2024-20359CVE-2024-4040+1 CVEs60
Nation-state actors exploited two zero-days in ASA and FTD firewalls to breach government networksSecurity Affairs·Apr 24, 20:31 UTC · Apr 24, 2024Exploit / PoCCVE-2024-20353CVE-2024-20359CVE-2018-0101160
Critical FortiClient EMS vulnerability fixed, (fake?) PoC for sale (CVE-2023-48788)Help Net Security·Apr 15, 08:17 UTC · Apr 15, 2024Exploit / PoC in the wildCVE-2023-4878860
CISA Adds Three Security Flaws with Active Exploitation to KEV CatalogThe Hacker News·Nov 18, 04:36 UTC · Nov 18, 2023Exploit / PoC in the wildCVE-2023-36584CVE-2023-1671CVE-2020-2551+4 CVEs60
Atlassian Finds Public Exploit for Critical BugInfosecurity Magazine·Nov 3, 10:25 UTC · Nov 3, 2023Exploit / PoC in the wildCVE-2023-22518CVE-2022-26134CVE-2023-22515160
Cyber workforce demand is outpacing supply, survey findsCyberScoop·Oct 31, 10:00 UTC · Oct 31, 2023Exploit / PoC in the wild60
China turns to AI in hopes of creating viral online propaganda, Microsoft researchers sayCyberScoop·Sep 7, 13:00 UTC · Sep 7, 2023Exploit / PoC in the wild60
Satellite hack on eve of Ukraine war was a coordinated, multiCyberScoop·Aug 10, 23:50 UTC · Aug 10, 2023Exploit / PoC in the wild60