Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal FlawThe Hacker News·Oct 4, 06:25 UTC · Oct 4, 2024Exploit / PoC in the wildCVE-2024-4551960
Critical Zimbra Postjournal flaw CVE-2024-45519 actively exploited in the wild. Patch it now!Security Affairs·Oct 2, 09:21 UTC · Oct 2, 2024Exploit / PoC in the wildCVE-2024-4551960
Expert released PoC exploit code for Veeam Backup Enterprise Manager flaw CVE-2024Security Affairs·Jun 11, 09:19 UTC · Jun 11, 2024Exploit / PoC in the wildCVE-2024-2984960
Threat Brief: VMware Vulnerabilities Exploited in the Wild (CVE-2022Palo Alto Unit 42·Jun 5, 20:43 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2022-22954CVE-2022-22960CVE-2022-22972+8 CVEs60
#RSAC: CISA Launches Vulnrichment Program to Address NVD ChallengesInfosecurity Magazine·May 8, 19:00 UTC · May 8, 2024Exploit / PoC in the wild60
Talos discloses multiple zero-day vulnerabilities, two of which could lead to code executionCisco Talos·May 8, 16:00 UTC · May 8, 2024Exploit / PoCCVE-2023-49606CVE-2023-47166CVE-2023-4721260
“Highly capable” hackers root corporate networks by exploiting firewall 0Ars Technica · Security·Apr 12, 20:48 UTC · Apr 12, 2024Exploit / PoC in the wildCVE-2024-340060
Unveiling NKAbuse: a new multiplatform threat abusing the NKN protocolKaspersky Securelist·Dec 14, 13:00 UTC · Dec 14, 2023Exploit / PoCCVE-2017-563860
Just about every Windows and Linux device vulnerable to new LogoFAIL firmware attackArs Technica · Security·Dec 6, 15:02 UTC · Dec 6, 2023Exploit / PoC60
January 2021 Patch Tuesday: Microsoft plugs Defender zero-day RCEHelp Net Security·Nov 14, 08:33 UTC · Nov 14, 2023Exploit / PoC in the wildCVE-2021-1647CVE-2021-1648CVE-2021-1658+8 CVEs60
Nation State Hackers Exploiting ZeroThe Hacker News·Oct 26, 03:42 UTC · Oct 26, 2023Exploit / PoCCVE-2020-35730CVE-2023-563160
Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government, Military, and TelecomThe Hacker News·Aug 29, 15:43 UTC · Aug 29, 2023Exploit / PoCCVE-2023-286860
BrutePrint Attack allows to unlock smartphones with bruteSecurity Affairs·May 30, 08:52 UTC · May 30, 2023Exploit / PoC60
New BrutePrint Attack Lets Attackers Unlock Smartphones with Fingerprint BruteThe Hacker News·May 29, 14:31 UTC · May 29, 2023Exploit / PoC60
Tick APT Targeted High-Value Customers of East Asian DataThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2023Exploit / PoC60
Severe Security Flaw Found in "jsonwebtoken" Library Used by 22,000+ ProjectsThe Hacker News·Jan 31, 03:01 UTC · Jan 31, 2023Exploit / PoCCVE-2022-2352960
Hackers Can Use Ultrasonic Waves to Secretly Control Voice Assistant DevicesThe Hacker News·Dec 30, 09:06 UTC · Dec 30, 2022Exploit / PoC in the wild60
Security experts targeted with malicious CVE PoC exploits on GitHubSecurity Affairs·Oct 24, 07:24 UTC · Oct 24, 2022Exploit / PoCCVE-2019-070850
Surge in Magento 2 template attacks exploiting CVE-2022Security Affairs·Sep 23, 13:55 UTC · Sep 23, 2022Exploit / PoC in the wildCVE-2022-2408660
Browser synchronization abuse: Bookmarks as a covert data exfiltration channelHelp Net Security·Aug 2, 00:00 UTC · Aug 2, 2022Exploit / PoC45
Critical bug in popular chipsets exposes 2/3 of Android devices to hackSecurity Affairs·Apr 21, 20:17 UTC · Apr 21, 2022Exploit / PoCCVE-2021-0674CVE-2021-0675CVE-2021-3035160
Apple releases fixes for two zeroThe Record·Apr 21, 00:00 UTC · Apr 21, 2022Exploit / PoC in the wildCVE-2022-22675CVE-2022-22674CVE-2022-22587+2 CVEs60
Spring4Shell: No need to panic, but mitigations are advisedHelp Net Security·Apr 6, 12:06 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22963CVE-2010-1622CVE-2022-2296560
Mysterious disclosure of a zero-day RCE flaw Spring4Shell in SpringSecurity Affairs·Mar 31, 08:59 UTC · Mar 31, 2022Exploit / PoCCVE-2010-162260
Chinese Experts Uncover Details of Equation Group's Bvp47 Covert Hacking ToolThe Hacker News·Feb 25, 17:13 UTC · Feb 25, 2022Exploit / PoC60
Tips to mitigate public-key cryptography risk in a quantum computing worldHelp Net Security·Feb 10, 00:00 UTC · Feb 10, 2022Exploit / PoC60
Creating Wireless Signals with Ethernet Cable to Steal Data from AirThe Hacker News·Dec 4, 04:47 UTC · Dec 4, 2021Exploit / PoC57
MysterySnail attacks with Windows zeroKaspersky Securelist·Oct 13, 14:49 UTC · Oct 13, 2021Exploit / PoCCVE-2016-3309CVE-2021-4044960
Microsoft catches hackers using Morse Code to help cover their tracksCyberScoop·Aug 13, 13:14 UTC · Aug 13, 2021Exploit / PoC in the wild60
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160
Flaws in Ovarro TBox RTUs Could Open Industrial Systems to Remote AttacksThe Hacker News·Apr 9, 11:59 UTC · Apr 9, 2021Exploit / PoCCVE-2021-22646CVE-2021-22642CVE-2021-22640+2 CVEs60
How one security researcher used radio signals to hop an air gapCyberScoop·Apr 22, 13:13 UTC · Apr 22, 2020Exploit / PoC in the wild60
Is Emotet gang targeting companies with external SOC?Security Affairs·Oct 14, 17:49 UTC · Oct 14, 2019Exploit / PoC60
Hackers continue to exploit the Drupalgeddon2 flaw in attacks in the wildSecurity Affairs·Oct 8, 05:32 UTC · Oct 8, 2019Exploit / PoCCVE-2018-760060
Open Document format creates twist in maldoc landscapeCisco Talos·Sep 30, 15:35 UTC · Sep 30, 2019Exploit / PoC45
Russian government hackers used office technology to try to breach privileged accountsCyberScoop·Aug 5, 18:39 UTC · Aug 5, 2019Exploit / PoC in the wild60