CISA Adds 8 Exploited Flaws to KEV, Sets AprilThe Hacker News·Apr 21, 13:51 UTC · Apr 21, 2026Exploit / PoC in the wildCVE-2023-27351CVE-2024-27199CVE-2025-2749+7 CVEs60
Wyden warns Social Security chief: Trump’s voter database is ‘blatant voter suppression’CyberScoop·Apr 3, 16:30 UTC · Apr 3, 2026Exploit / PoC in the wild60
BlacksmithAI: Open-source AI-powered penetration testing frameworkHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2026Exploit / PoC145
U.S. CISA adds Dell RecoverPoint and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 19, 15:16 UTC · Feb 19, 2026Exploit / PoC in the wildCVE-2021-22175CVE-2026-22769CVE-2020-779660
China-linked APT weaponized Dell RecoverPoint zeroSecurity Affairs·Feb 18, 12:15 UTC · Feb 18, 2026Exploit / PoC in the wildCVE-2026-2276960
Zen-AI-Pentest: Open-source AI-powered penetration testing frameworkHelp Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Exploit / PoC45
We moved fast and broke things. It’s time for a change.CyberScoop·Feb 2, 11:00 UTC · Feb 2, 2026Exploit / PoC60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
UAT-7290 targets high value telecommunications infrastructure in South AsiaCisco Talos·Jan 8, 11:00 UTC · Jan 8, 2026Exploit / PoC60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs60
Meta Expands WhatsApp Security Research with New Proxy Tool and $4M in Bounties This YearThe Hacker News·Nov 18, 18:08 UTC · Nov 18, 2025Exploit / PoC in the wildCVE-2025-5948960
How to Make the Attack Lifecycle Actionable with IntelligenceRecorded Future·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoC45
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
Top 10 Takeaways from Predict 2025: Turning Intelligence Into ActionRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025Exploit / PoC in the wild60
Elderwood project, who is behind Op. Aurora and ongoing attacks?Security Affairs·Oct 6, 23:14 UTC · Oct 6, 2025Exploit / PoC60
MeetC2 - A serverless C2 framework that leverages Google Calendar APIs as a communication channelSecurity Affairs·Sep 6, 09:39 UTC · Sep 6, 2025Exploit / PoC45
CISA guide seeks a unified approach to software ‘ingredients lists’CyberScoop·Sep 3, 19:20 UTC · Sep 3, 2025Exploit / PoC in the wild60
IoT under siege: The return of the MiraiSecurity Affairs·Aug 24, 08:36 UTC · Aug 24, 2025Exploit / PoCCVE-2024-1285660
PoC exploit for critical Erlang/OTP SSH bug is public (CVE-2025-32433)Help Net Security·Aug 14, 09:20 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-3243360
Microsoft SharePoint servers under attack via zero-day vulnerability (CVE-2025-53770)Help Net Security·Jul 22, 15:29 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49706CVE-2025-49704+1 CVEs60
Log4Shell: How It’s Exploited and Mitigating DamageRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2021-4422860
SolarWinds: What the Intelligence Tells UsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Critical Versa Concerto Flaws Let Attackers Escape Docker and Compromise HostsThe Hacker News·May 23, 04:44 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-34025CVE-2025-34026CVE-2024-45410+1 CVEs160
⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto HeistsThe Hacker News·May 6, 07:05 UTC · May 6, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-50302+25 CVEs60
Commix: Open-source OS command injection exploitation toolHelp Net Security·Apr 2, 08:47 UTC · Apr 2, 2025Exploit / PoC145
Chainguard's FIPS-compliant Cassandra addresses security demand of federal and regulated marketsCyberScoop·Mar 5, 17:00 UTC · Mar 5, 2025Exploit / PoC in the wild60
The Mask APT Resurfaces with Sophisticated MultiThe Hacker News·Dec 18, 04:08 UTC · Dec 18, 2024Exploit / PoCCVE-2012-0773160
390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC ExploitsThe Hacker News·Dec 17, 04:40 UTC · Dec 17, 2024Exploit / PoC57
CISA pitches updated cyber incident response plan as an ‘agile, actionable’ frameworkCyberScoop·Dec 16, 20:00 UTC · Dec 16, 2024Exploit / PoC in the wild60
Careto APT’s recent attacks discoveredKaspersky Securelist·Dec 12, 10:00 UTC · Dec 12, 2024Exploit / PoC160
Justice Department rule aims to curb the sale of Americans’ personal data overseasCyberScoop·Oct 21, 20:00 UTC · Oct 21, 2024Exploit / PoC in the wild60
US accuses RT, others of covert arms dealing, global influence operationsCyberScoop·Sep 13, 20:27 UTC · Sep 13, 2024Exploit / PoC in the wild60
GitHub Token Leak Exposes Python's Core Repositories to Potential AttacksThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2024Exploit / PoC in the wild160
Splunk fixed tens of flaws in Splunk Enterprise and Cloud PlatformSecurity Affairs·Jul 4, 09:06 UTC · Jul 4, 2024Exploit / PoC in the wildCVE-2024-36985CVE-2024-36984CVE-2024-36997+12 CVEs60
CISA adds GeoSolutionsGroup JAI-EXT, Linux Kernel, and Roundcube Webmail bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 27, 14:38 UTC · Jun 27, 2024Exploit / PoC in the wildCVE-2022-24816CVE-2022-2586CVE-2020-13965160
Moroccan cybercrime group impersonates nonprofits and abuses cloud services to rake in gift card cashCyberScoop·May 23, 13:08 UTC · May 23, 2024Exploit / PoC in the wild60
Week in review: AnyDesk phishing campaign targets employees, Microsoft fixes exploited zero-daysHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2024Exploit / PoC in the wildCVE-2024-21762CVE-2024-23313CVE-2023-43770+5 CVEs160
Intellexa and Cytrox: From fixer-upper to Intel AgencyCisco Talos·Dec 21, 16:00 UTC · Dec 21, 2023Exploit / PoC60
Urgent: New Chrome Zero-Day Vulnerability Exploited in the WildThe Hacker News·Dec 21, 12:00 UTC · Dec 21, 2023Exploit / PoC in the wildCVE-2023-7024CVE-2023-2033CVE-2023-2136+5 CVEs60