Cybersecurity jobs available right now: May 13, 2025Help Net Security·Jan 30, 10:25 UTC · Jan 30, 2026Exploit / PoC60
China-Linked APT Exploited Sitecore ZeroThe Hacker News·Jan 22, 08:08 UTC · Jan 22, 2026Exploit / PoCCVE-2025-5369060
Cisco email security appliances rooted and backdoored via still unpatched zero-dayHelp Net Security·Jan 16, 14:17 UTC · Jan 16, 2026Exploit / PoCCVE-2025-20393CVE-2025-5777CVE-2025-7775160
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
Too many Cisco ASA firewalls still unsecure despite zero-day attack alertsHelp Net Security·Nov 13, 12:09 UTC · Nov 13, 2025Exploit / PoCCVE-2025-20333CVE-2025-20362CVE-2025-2035260
How to Make the Attack Lifecycle Actionable with IntelligenceRecorded Future·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoC45
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
U.S. CISA adds Synacor Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 21:39 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-2791560
Zimbra users targeted in zeroSecurity Affairs·Oct 7, 21:32 UTC · Oct 7, 2025Exploit / PoCCVE-2025-2791560
GoAnywhere MFT zero-day used by StormSecurity Affairs·Oct 7, 19:23 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Attackers exploited critical Fortra GoAnywhere flaw in zero-day attacks (CVE-2025-10035)Help Net Security·Oct 7, 14:53 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Libraesva ESG zero-day vulnerability exploited by attackers (CVE-2025-59689)Help Net Security·Sep 24, 00:00 UTC · Sep 24, 2025Exploit / PoCCVE-2025-5968960
How a fake ICS network can reveal real cyberattacksHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2025Exploit / PoC60
China-linked Silk Typhoon APT targets North AmericaSecurity Affairs·Aug 23, 08:34 UTC · Aug 23, 2025Exploit / PoCCVE-2023-351960
WinRAR zero-day exploited by RomCom hackers in targeted attacksHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-808860
China-linked group Houken hit French organizations using zeroSecurity Affairs·Jul 3, 18:16 UTC · Jul 3, 2025Exploit / PoCCVE-2024-8963CVE-2024-938060
Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
MITRE Caldera RCE vulnerability with public PoC fixed, patch ASAP! (CVE-2025–27364)Help Net Security·Apr 2, 08:49 UTC · Apr 2, 2025Exploit / PoC60
Tomorrow, and tomorrow, and tomorrow: Information security and the Baseball Hall of FameCisco Talos·Mar 20, 18:00 UTC · Mar 20, 2025Exploit / PoC60
Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW ProtectionsThe Hacker News·Feb 6, 03:48 UTC · Feb 6, 2025Exploit / PoC in the wildCVE-2025-041160
Sophos mounted counter-offensive operation to foil Chinese attackersHelp Net Security·Oct 31, 00:00 UTC · Oct 31, 2024Exploit / PoC in the wildCVE-2022-104060
US and Allies Accuse Russian Military of Destructive CyberInfosecurity Magazine·Sep 6, 11:20 UTC · Sep 6, 2024Exploit / PoC in the wild60
New 'Siren' mailing list aims to share threat intelligence for open source projectsThe Record·May 20, 14:20 UTC · May 20, 2024Exploit / PoC60
Five Eyes alliance warns of attacks exploiting known Ivanti Gateway flawsSecurity Affairs·Mar 1, 14:01 UTC · Mar 1, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-21893+2 CVEs60
Water Hydra’s Zero-Day Attack Chain Targets Financial TradersInfosecurity Magazine·Feb 14, 17:15 UTC · Feb 14, 2024Exploit / PoCCVE-2024-21412CVE-2023-3883160
Building a Robust Threat Intelligence with WazuhThe Hacker News·Dec 7, 10:51 UTC · Dec 7, 2023Exploit / PoC60
Lazarus Group Exploits Zero-Day Vulnerability to Hack South Korean Financial EntityThe Hacker News·Mar 11, 06:29 UTC · Mar 11, 2023Exploit / PoC60
From the front lines of ‘the first real cyberwar’The Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoC60
Citrix and NSA urge admins to fix actively exploited zeroSecurity Affairs·Dec 13, 20:46 UTC · Dec 13, 2022Exploit / PoC in the wildCVE-2022-2751860
Phosphorus enhances its xIoT security platform to strengthen enterprise device securityHelp Net Security·Nov 7, 08:45 UTC · Nov 7, 2022Exploit / PoC60
What Is Your Security Team Profile? Prevention, Detection, or Risk ManagementThe Hacker News·Sep 6, 12:03 UTC · Sep 6, 2022Exploit / PoC60
North Korean Hackers Exploited Chrome Zero-Day to Target Fintech, IT, and Media FirmsThe Hacker News·Mar 26, 02:04 UTC · Mar 26, 2022Exploit / PoCCVE-2022-060960
Notes on CVE-2022Kaspersky Securelist·Mar 14, 14:11 UTC · Mar 14, 2022Exploit / PoC in the wildCVE-2022-084760
Researchers detail Russia-linked group's cyberCyberScoop·Jan 31, 11:00 UTC · Jan 31, 2022Exploit / PoC in the wild60
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
Exploitation of the CVE-2021Kaspersky Securelist·Sep 16, 15:30 UTC · Sep 16, 2021Exploit / PoC in the wildCVE-2021-4044460
Threat Source newsletter (July 22, 2021)Cisco Talos·Jul 22, 18:00 UTC · Jul 22, 2021Exploit / PoCCVE-2021-1574CVE-2021-157660