AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache ZeroThe Hacker News·Aug 7, 11:25 UTC · Aug 7, 2026Exploit / PoCCVE-2026-6307860
Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent ImportsThe Hacker News·Aug 5, 15:14 UTC · Aug 5, 2026Exploit / PoC in the wildCVE-2026-41679160
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as RootThe Hacker News·Jul 28, 13:10 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-53921CVE-2026-62948CVE-2026-62947160
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
Imperva introduces Serverless Protection to secure serverless computing functionsHelp Net Security·Apr 20, 08:49 UTC · Apr 20, 2026Exploit / PoC60
DarkSword iOS Exploit Kit Uses 6 Flaws, 3 ZeroThe Hacker News·Mar 23, 17:42 UTC · Mar 23, 2026Exploit / PoCCVE-2026-20700CVE-2025-43529CVE-2025-14174+3 CVEs60
Apple urges iPhone users to update as Coruna and DarkSword exploit kits emergeSecurity Affairs·Mar 20, 11:22 UTC · Mar 20, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+15 CVEs160
Apple issues emergency fixes for Coruna flaws in older iOS versionsSecurity Affairs·Mar 12, 15:28 UTC · Mar 12, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+10 CVEs60
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
Actively Exploited WSUS Bug Added to CISA KEV ListInfosecurity Magazine·Oct 28, 09:45 UTC · Oct 28, 2025Exploit / PoC in the wildCVE-2025-5928760
New Pixnapping Android Flaw Lets Rogue Apps Steal 2FA Codes Without PermissionsThe Hacker News·Oct 20, 18:54 UTC · Oct 20, 2025Exploit / PoC in the wildCVE-2025-4856160
F5 Breach Exposes BIG-IP Source Code — NationThe Hacker News·Oct 17, 09:15 UTC · Oct 17, 2025Exploit / PoC60
Apache Tomcat: CVE-2025Recorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC in the wildCVE-2025-2481360
U.S. CISA adds Wing FTP Server flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 16, 00:01 UTC · Jul 16, 2025Exploit / PoC in the wildCVE-2025-4781260
U.S. CISA adds Citrix NetScaler ADC and Gateway flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 15, 23:33 UTC · Jul 15, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-4966CVE-2025-534960
Cyber Silk Road: Tracing China’s Stealth TurnRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
SonicWall fixed SMA 100 flaws that could be chained to execute arbitrary codeSecurity Affairs·May 9, 07:50 UTC · May 9, 2025Exploit / PoCCVE-2025-32819CVE-2025-32820CVE-2025-3282160
Yet another SonicWall SMA100 vulnerability exploited in the wild (CVE-2025-32819)Help Net Security·May 8, 00:00 UTC · May 8, 2025Exploit / PoC in the wildCVE-2025-32819CVE-2025-32820CVE-2025-3282160
New Security Flaws Found in VMware Tools and CrushFTP — High Risk, PoC ReleasedThe Hacker News·Apr 8, 08:12 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2025-22230CVE-2025-2825CVE-2025-3116160
U.S. CISA adds Apache Tomcat flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 2, 13:47 UTC · Apr 2, 2025Exploit / PoC in the wildCVE-2025-2481360
Browser extension sales, updates pose hidden threat to enterprisesCyberScoop·Mar 27, 19:06 UTC · Mar 27, 2025Exploit / PoC60
UAT-5918 targets critical infrastructure entities in TaiwanCisco Talos·Mar 20, 10:00 UTC · Mar 20, 2025Exploit / PoC60
Threat actors rapidly exploit new Apache Tomcat flaw following PoC releaseSecurity Affairs·Mar 17, 19:59 UTC · Mar 17, 2025Exploit / PoC in the wildCVE-2025-2481360
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Department of Justice partners with Dutch police to break up HeartSender networkCyberScoop·Jan 30, 22:03 UTC · Jan 30, 2025Exploit / PoC in the wild60
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [6 Jan]The Hacker News·Jan 6, 12:05 UTC · Jan 6, 2025Exploit / PoCCVE-2024-49113CVE-2024-49112160
China-linked actor's malware DeepData exploits FortiClient VPN zero-daySecurity Affairs·Nov 19, 15:08 UTC · Nov 19, 2024Exploit / PoC60
Critical LiteSpeed Cache Plugin Flaw Exposes WordPress SitesInfosecurity Magazine·Aug 21, 16:30 UTC · Aug 21, 2024Exploit / PoC60
Critical Jenkins RCE flaw exploited in the wild. Patch now! (CVE-2024-23897)Help Net Security·Aug 14, 08:33 UTC · Aug 14, 2024Exploit / PoC in the wildCVE-2024-23897CVE-2024-2389860
Void Banshee APT exploited "lingering Windows relic" in zero-day attacksHelp Net Security·Jul 16, 00:00 UTC · Jul 16, 2024Exploit / PoCCVE-2024-3811260
Zyxel addressed three RCEs in end-ofSecurity Affairs·Jun 5, 08:01 UTC · Jun 5, 2024Exploit / PoCCVE-2024-29972CVE-2024-29973CVE-2024-29974+2 CVEs60
Researchers released exploit code for actively exploited Palo Alto PANSecurity Affairs·Apr 17, 05:42 UTC · Apr 17, 2024Exploit / PoC in the wildCVE-2024-3400160
Palo Alto Networks warns of zeroThe Record·Apr 12, 14:52 UTC · Apr 12, 2024Exploit / PoC in the wildCVE-2024-340060
Discover Why Proactive Web Security Outsmarts Traditional Antivirus SolutionsThe Hacker News·Nov 29, 09:21 UTC · Nov 29, 2023Exploit / PoC60
RDP and VPN use soars, increasing enterprise cyber riskHelp Net Security·Nov 14, 12:29 UTC · Nov 14, 2023Exploit / PoC in the wildCVE-2019-1573CVE-2019-11510CVE-2018-1337960
Barracuda Warns of Zero-Day Exploited to Breach Email Security Gateway AppliancesThe Hacker News·May 27, 07:08 UTC · May 27, 2023Exploit / PoC in the wildCVE-2023-286860
Radware Cloud Web DDoS Protection blocks Tsunami DDoS attacksHelp Net Security·May 23, 00:00 UTC · May 23, 2023Exploit / PoC60
Fortinet warns of a spike in attacks against TBK DVR devicesSecurity Affairs·May 5, 22:16 UTC · May 5, 2023Exploit / PoC in the wildCVE-2018-9995CVE-2016-2001660
Hackers Exploit High Severity Flaw in TBK DVR Camera SystemInfosecurity Magazine·May 2, 16:30 UTC · May 2, 2023Exploit / PoC in the wildCVE-2018-999560
Expert found critical flaws in OpenText ECM SystemSecurity Affairs·Jan 22, 18:51 UTC · Jan 22, 2023Exploit / PoCCVE-2022-45924CVE-2022-45922CVE-2022-45925+4 CVEs160