Active Attacks Exploit Gladinet's Hard-Coded Keys for Unauthorized Access and Code ExecutionThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-30406CVE-2025-1461160
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs60
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Trick, treat, repeatCisco Talos·Oct 30, 18:00 UTC · Oct 30, 2025Exploit / PoC in the wildCVE-2025-5928760
U.S. CISA adds Synacor Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 21:39 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-2791560
Zimbra users targeted in zeroSecurity Affairs·Oct 7, 21:32 UTC · Oct 7, 2025Exploit / PoCCVE-2025-2791560
U.S. CISA adds D-Link cameras and Network Video Recorder flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 6, 06:09 UTC · Aug 6, 2025Exploit / PoC in the wildCVE-2020-25078CVE-2020-25079CVE-2022-4079960
CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, DThe Hacker News·Jun 27, 05:06 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2024-54085CVE-2024-0769CVE-2019-669360
Critical flaw in Cisco ISE impacts cloud deployments on AWS, Microsoft Azure, and Oracle Cloud InfrastructureSecurity Affairs·Jun 5, 08:31 UTC · Jun 5, 2025Exploit / PoC in the wildCVE-2025-2028660
Proofpoint to acquire Hornetsecurity for over $1 billionCyberScoop·May 15, 22:40 UTC · May 15, 2025Exploit / PoC in the wild60
Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation ConfirmedThe Hacker News·May 10, 06:43 UTC · May 10, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2025-392860
Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028)Help Net Security·May 5, 07:42 UTC · May 5, 2025Exploit / PoC in the wildCVE-2025-3402860
Week in review: MITRE ATT&CK v17.0 released, PoC for Erlang/OTP SSH bug is publicHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2025Exploit / PoCCVE-2025-32433CVE-2025-34028CVE-2025-2761060
NetApp SnapCenter Flaw Could Let Users Gain Remote Admin Access on PlugThe Hacker News·Mar 27, 06:06 UTC · Mar 27, 2025Exploit / PoC in the wildCVE-2025-2651260
U.S. CISA adds Edimax IC-7100 IP Camera, NAKIVO, and SAP NetWeaver AS Java flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 12:18 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-1316CVE-2024-48248CVE-2017-1263760
WordPress plugin Jetpack fixes nearly decadeThe Record·Oct 15, 14:11 UTC · Oct 15, 2024Exploit / PoC in the wild60
Here’s what corporate boards are asking Kevin Mandia aboutCyberScoop·Sep 20, 15:02 UTC · Sep 20, 2024Exploit / PoC in the wild60
Las Vegas didn’t fold during CrowdStrike outageCyberScoop·Aug 16, 13:00 UTC · Aug 16, 2024Exploit / PoC in the wild60
Critical Acronis Cyber Infrastructure vulnerability exploited in the wild (CVE-2023-45249)Help Net Security·Jul 29, 00:00 UTC · Jul 29, 2024Exploit / PoC in the wildCVE-2023-4524960
U.S. election official: ‘Whack-a-mole’ strategies less effective to combat disinfoCyberScoop·Jun 18, 21:04 UTC · Jun 18, 2024Exploit / PoC in the wild60
Strategically Aged Domain Detection: Capture APT Attacks With DNS Traffic TrendsPalo Alto Unit 42·Jun 6, 00:57 UTC · Jun 6, 2024Exploit / PoC57
PoC for critical Arcserve UDP vulnerabilities published (CVE-2024-0799, CVE-2024-0800)Help Net Security·Mar 14, 00:00 UTC · Mar 14, 2024Exploit / PoCCVE-2024-0799CVE-2024-0800CVE-2024-080160
Raspberry Robin spotted using two new 1Security Affairs·Feb 11, 19:37 UTC · Feb 11, 2024Exploit / PoC in the wildCVE-2023-36802CVE-2023-2936060
Zimbra Warns of Critical Zero-Day Flaw in Email Software Amid Active ExploitationThe Hacker News·Nov 16, 15:50 UTC · Nov 16, 2023Exploit / PoC in the wildCVE-2023-20214CVE-2023-3758060
Atlassian Finds Public Exploit for Critical BugInfosecurity Magazine·Nov 3, 10:25 UTC · Nov 3, 2023Exploit / PoC in the wildCVE-2023-22518CVE-2022-26134CVE-2023-22515160
Cryptocurrency Startup Loses Encryption Key for Electronic WalletSchneier on Security·Sep 6, 11:05 UTC · Sep 6, 2023Exploit / PoC60
Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry SoftwareThe Hacker News·Aug 25, 06:25 UTC · Aug 25, 2023Exploit / PoC in the wildCVE-2023-38035CVE-2023-35078CVE-2023-35081+2 CVEs60
Week in review: Ivanti zero-day exploited, MikroTik vulnerability could compromise 900,000 routersHelp Net Security·Aug 13, 19:33 UTC · Aug 13, 2023Exploit / PoCCVE-2023-30799CVE-2023-35078CVE-2023-3860660
Zimbra urges customers to manually fix actively exploited zeroSecurity Affairs·Jul 13, 20:12 UTC · Jul 13, 2023Exploit / PoC in the wildCVE-2022-41352CVE-2022-27925160
Zero-Day Alert: Apple Releases Patches for Actively Exploited Flaws in iOS, macOS, and SafariThe Hacker News·Jul 11, 03:31 UTC · Jul 11, 2023Exploit / PoC in the wildCVE-2023-32434CVE-2023-32435CVE-2023-32439+6 CVEs60
PoC for Arcserve UDP authentication bypass flaw published (CVE-2023-26258)Help Net Security·Jun 29, 00:00 UTC · Jun 29, 2023Exploit / PoCCVE-2023-2625860
Apple fixes zero-day vulnerabilities used to covertly deliver spyware (CVE-2023-32435)Help Net Security·Jun 22, 00:00 UTC · Jun 22, 2023Exploit / PoC in the wildCVE-2023-32435CVE-2023-32434CVE-2023-3243960
Ukrainian hackers target telecom firm connected to Russian central bankCyberScoop·Jun 9, 19:25 UTC · Jun 9, 2023Exploit / PoC in the wild60
New Zero-Click Hack Targets iOS Users with Stealthy RootThe Hacker News·Jun 3, 05:04 UTC · Jun 3, 2023Exploit / PoC60
Kaspersky Says it is Being Targeted By ZeroInfosecurity Magazine·Jun 2, 09:30 UTC · Jun 2, 2023Exploit / PoC60
Emerging consensus for an ICS security approachHelp Net Security·Mar 9, 19:41 UTC · Mar 9, 2023Exploit / PoC60
Apple delivers belated zero-day patch for iOS v12 (CVE-2022-42856)Help Net Security·Jan 24, 00:00 UTC · Jan 24, 2023Exploit / PoC in the wildCVE-2022-4285660
New Actively Exploited Zero-Day Vulnerability Discovered in Apple ProductsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2022Exploit / PoC in the wildCVE-2022-42856CVE-2022-22587CVE-2022-22594+7 CVEs60
‘Every Attack Was Like a Slightly Deadlier Version Than the Last:’ NYT’s Perlroth Talks About Her New BookThe Record·Nov 17, 16:28 UTC · Nov 17, 2022Exploit / PoC60
Over 280,000 WordPress Sites Attacked Using WPGateway Plugin ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Exploit / PoC in the wildCVE-2022-318060