Cybercrime gang exploited VeraCore zero-day vulnerabilities for years (CVE-2025-25181, CVE-2024-57968)Help Net Security·Feb 11, 13:53 UTC · Feb 11, 2025Exploit / PoCCVE-2025-25181CVE-2024-57968160
The Mask APT is back after 10 years of silenceSecurity Affairs·Dec 18, 08:20 UTC · Dec 18, 2024Exploit / PoC60
Hackers Could Have Remotely Controlled Kia Cars Using Only License PlatesThe Hacker News·Sep 26, 16:02 UTC · Sep 26, 2024Exploit / PoC in the wild60
Russian Hackers Exploit Safari and Chrome Flaws in HighThe Hacker News·Aug 31, 15:13 UTC · Aug 31, 2024Exploit / PoC in the wildCVE-2023-41993CVE-2024-4671CVE-2024-5274+2 CVEs60
Iranian hackers using social media, job recruitment sites to lure Israeli spiesCyberScoop·Aug 28, 21:00 UTC · Aug 28, 2024Exploit / PoC in the wild60
Google Patches New Android Kernel Vulnerability Exploited in the WildThe Hacker News·Aug 10, 07:15 UTC · Aug 10, 2024Exploit / PoC in the wildCVE-2024-36971CVE-2024-32896CVE-2024-29745+2 CVEs60
0.0.0.0 Day flaw allows malicious websites to bypass security in major browsersSecurity Affairs·Aug 8, 18:01 UTC · Aug 8, 2024Exploit / PoC in the wild60
Hackers Exploit Fortinet Flaw, Deploy ScreenConnect, Metasploit in New CampaignThe Hacker News·Apr 18, 14:09 UTC · Apr 18, 2024Exploit / PoCCVE-2023-4878860
Unveiling NKAbuse: a new multiplatform threat abusing the NKN protocolKaspersky Securelist·Dec 14, 13:00 UTC · Dec 14, 2023Exploit / PoCCVE-2017-563860
Phishers go after business email credentials by impersonating U.S. DOLHelp Net Security·Dec 12, 12:56 UTC · Dec 12, 2023Exploit / PoC60
Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacksSecurity Affairs·Oct 26, 05:20 UTC · Oct 26, 2023Exploit / PoCCVE-2020-35730CVE-2022-27926CVE-2023-563160
Yellow Pencil WordPress Plugin flaw expose tens of thousands of sitesSecurity Affairs·Aug 28, 11:49 UTC · Aug 28, 2023Exploit / PoC60
Encryption Flaws in Popular Chinese Language App Put Users' Typed Data at RiskThe Hacker News·Aug 11, 04:51 UTC · Aug 11, 2023Exploit / PoCCVE-2023-33241CVE-2023-3324260
Phishers Exploit Salesforce's Email Services ZeroThe Hacker News·Aug 4, 10:16 UTC · Aug 4, 2023Exploit / PoC60
Experts devised a new exploit for the PaperCut flaw that can bypass all current detectionSecurity Affairs·May 5, 11:01 UTC · May 5, 2023Exploit / PoC in the wildCVE-2023-2735060
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Hackers are actively exploiting a flaw in Elementor Pro WordPress pluginSecurity Affairs·Mar 31, 20:36 UTC · Mar 31, 2023Exploit / PoC in the wild60
Google: North Korean hackers are still targeting security researchersThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoC60
Google: Seven zero-days in 2021 developed commercially and sold to governmentsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoCCVE-2018-4344CVE-2019-8605CVE-2020-3837+3 CVEs60
Week in review: 3FA, Fortinet firewalls under attack, and the riskiest connected devicesHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2022Exploit / PoC in the wildCVE-2022-41033CVE-2022-40684CVE-2022-36067+1 CVEs160
Clever - and Exploitable - Windows Zero-DaySchneier on Security·Jun 1, 18:25 UTC · Jun 1, 2022Exploit / PoC60
Threat Advisory: Zero-day vulnerability in Microsoft diagnostic tool MSDT could lead to code executionCisco Talos·Jun 1, 14:19 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
Watch Out! Researchers Spot New Microsoft Office ZeroThe Hacker News·May 30, 15:44 UTC · May 30, 2022Exploit / PoCCVE-2021-40444160
Critical Magento zero-day flaw CVE-2022Security Affairs·Feb 14, 12:09 UTC · Feb 14, 2022Exploit / PoC in the wildCVE-2022-2408660
Exploitation of the CVE-2021Kaspersky Securelist·Sep 16, 15:30 UTC · Sep 16, 2021Exploit / PoC in the wildCVE-2021-4044460
Spook.Js attack allows to bypass Google Chrome Site Isolation protectionsSecurity Affairs·Sep 13, 15:26 UTC · Sep 13, 2021Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Suspected Chinese hackers are breaking into nearby military targetsCyberScoop·Apr 29, 13:54 UTC · Apr 29, 2021Exploit / PoC in the wild60
Palo Alto Networks Discovers Two Adobe Reader Privileged JavaScript ZeroPalo Alto Unit 42·Jul 3, 01:11 UTC · Jul 3, 2020Exploit / PoCCVE-2016-6957CVE-2016-695860
Verisign, Amazon patch zero-day vulnerability that utilized homoglyph charactersCyberScoop·Mar 5, 23:15 UTC · Mar 5, 2020Exploit / PoC in the wild60
Kaspersky: North Korean hackers getting more careful, targeted in financial hacksCyberScoop·Jan 9, 23:19 UTC · Jan 9, 2020Exploit / PoC in the wild60
P2P Weakness Exposes Millions of IoT DevicesKrebs on Security·Apr 26, 14:30 UTC · Apr 26, 2019Exploit / PoCCVE-2019-11219CVE-2019-1122060
PDF zero-day samples harvest user data when opened in ChromeSecurity Affairs·Feb 28, 04:15 UTC · Feb 28, 2019Exploit / PoC60
63 New Flaws (Including 0The Hacker News·Nov 15, 00:00 UTC · Nov 15, 2018Exploit / PoC in the wildCVE-2018-8589CVE-2018-8584CVE-2018-8566+47 CVEs60
30 Years Ago, The World'S First Cyberattack Set The Stage For Modern Cybersecurity ChallengesCyberScoop·Nov 2, 19:48 UTC · Nov 2, 2018Exploit / PoC in the wild60
Zero-day exploit (CVE-2018-8453) used in targeted attacksKaspersky Securelist·Oct 10, 07:00 UTC · Oct 10, 2018Exploit / PoCCVE-2018-8453CVE-2017-026360
Popular TP-Link wireless home router open to remote hijackingHelp Net Security·Oct 3, 00:00 UTC · Oct 3, 2018Exploit / PoCCVE-2018-11714CVE-2018-15702CVE-2018-15700+1 CVEs50
Magecart strikes again, this time at electronics retailer NeweggCyberScoop·Sep 19, 15:35 UTC · Sep 19, 2018Exploit / PoC in the wild60
Flash zero-day shows up in Qatar amid geopolitical strugglesCyberScoop·Jun 7, 20:08 UTC · Jun 7, 2018Exploit / PoC in the wild60
Turla APT group leverages for the first time the Metasploit framework for the Mosquito campaignSecurity Affairs·May 23, 13:47 UTC · May 23, 2018Exploit / PoC57