OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face BreachThe Hacker News·Aug 1, 05:20 UTC · Aug 1, 2026Exploit / PoC60
A little-known npm package was North Korea’s warmCyberScoop·Jul 29, 21:09 UTC · Jul 29, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreThe Hacker News·Jul 28, 05:26 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-16232CVE-2025-66376CVE-2026-54121+52 CVEs60
Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security FlawsThe Hacker News·Jul 17, 05:50 UTC · Jul 17, 2026Exploit / PoC in the wildCVE-2026-15718CVE-2026-15719CVE-2026-15764+14 CVEs60
AI Can Find Bugs, But Human Knowledge Still Proves ThemThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC57
Unauthenticated file upload in Amasty Order Attributes for MagentoSansec (Magento / e-commerce security)·Jun 15, 20:13 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2026-5378760
CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active ExploitationThe Hacker News·Jun 10, 14:44 UTC · Jun 10, 2026Exploit / PoC in the wildCVE-2026-20245CVE-2026-11645CVE-2026-747360
U.S. CISA adds Cisco Catalyst SD-WAN, Arista Extensible Operating System (EOS), and Google Chromium V8 flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 10, 11:14 UTC · Jun 10, 2026Exploit / PoC in the wildCVE-2026-7473CVE-2026-11645CVE-2026-20245+2 CVEs60
Researchers Build Self-Replicating AI Worm That Operates Entirely on Local, OpenThe Hacker News·Jun 9, 11:59 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2026-39987CVE-2026-31431CVE-2026-43284+1 CVEs160
Ongoing exploitation of Cisco Catalyst SDCisco Talos·May 14, 16:02 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20133CVE-2026-20128+2 CVEs160
Beyond Acceleration and Automation: How AI + Intelligence Changes Cyber DefenseRecorded Future·May 14, 00:00 UTC · May 14, 2026Exploit / PoC in the wild60
cPanel's authentication bypass bug is being exploited in the wild, CISA warnsCyberScoop·Apr 30, 20:49 UTC · Apr 30, 2026Exploit / PoC in the wildCVE-2026-4194060
APTs use of lesser-known TTPs are no less of a headacheHelp Net Security·Apr 23, 13:37 UTC · Apr 23, 2026Exploit / PoC60
Mirai Variant Nexcorium Exploits CVE-2024The Hacker News·Apr 22, 15:13 UTC · Apr 22, 2026Exploit / PoC in the wildCVE-2024-3721CVE-2017-17215CVE-2023-33538+2 CVEs160
Anthropic Project Glasswing to Use AI to Fix Software Bugs With AIInfosecurity Magazine·Apr 8, 11:30 UTC · Apr 8, 2026Exploit / PoC60
Citrix NetScaler Under Active Recon for CVE-2026The Hacker News·Mar 31, 06:09 UTC · Mar 31, 2026Exploit / PoC in the wildCVE-2026-3055CVE-2023-4966CVE-2025-5777+2 CVEs60
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
U.S. CISA adds SmarterTools SmarterMail and React Native Community CLI flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 6, 09:22 UTC · Feb 6, 2026Exploit / PoC in the wildCVE-2025-11953CVE-2026-2442360
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source CodeThe Hacker News·Jan 26, 16:53 UTC · Jan 26, 2026Exploit / PoCCVE-2025-69264CVE-2025-6926360
Cisco Patches Zero-Day RCE Exploited by ChinaThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Exploit / PoCCVE-2025-2039360
Coolify Discloses 11 Critical Flaws Enabling Full Server Compromise on SelfThe Hacker News·Jan 10, 14:26 UTC · Jan 10, 2026Exploit / PoC in the wildCVE-2025-66209CVE-2025-66210CVE-2025-66211+8 CVEs60
China-linked APT UAT-9686 is targeting Cisco Secure Email Gateway and Secure Email and Web ManagerSecurity Affairs·Dec 19, 08:53 UTC · Dec 19, 2025Exploit / PoC in the wildCVE-2025-2039360
New research finds that Claude breaks bad if you teach it to cheatCyberScoop·Nov 24, 22:41 UTC · Nov 24, 2025Exploit / PoC in the wild60
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Amazon Uncovers Attacks Exploited Cisco ISE and Citrix NetScaler as ZeroThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2025-2033760
Hackers Target ICTBroadcast Servers via Cookie Exploit to Gain Remote Shell AccessThe Hacker News·Nov 7, 06:24 UTC · Nov 7, 2025Exploit / PoC in the wildCVE-2025-261160
CISA Adds Gladinet and CWP Flaws to KEV Catalog Amid Active Exploitation EvidenceThe Hacker News·Nov 5, 06:12 UTC · Nov 5, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-48703CVE-2025-11533+2 CVEs60
The AI-Designed Bioweapon Arms RaceSchneier on Security·Oct 30, 11:05 UTC · Oct 30, 2025Exploit / PoC60
Memento Labs, the ghost of Hacking Team, has returned — or maybe it was never gone at all.Security Affairs·Oct 27, 20:31 UTC · Oct 27, 2025Exploit / PoCCVE-2025-2783CVE-2025-285760
Contain or be contained: The security imperative of controlling autonomous AICyberScoop·Sep 25, 13:30 UTC · Sep 25, 2025Exploit / PoC in the wild60
Apache Tomcat: CVE-2025Recorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC in the wildCVE-2025-2481360
U.S. CISA urges FCEB agencies to fix two Microsoft SharePoint flaws immediately and added them to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 23, 21:59 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-5377060
CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live AttacksThe Hacker News·Jul 23, 13:04 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent AccessThe Hacker News·Jul 23, 06:05 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2025-53770+3 CVEs60
SharePoint under fire: new ToolShell attacks target enterprisesSecurity Affairs·Jul 22, 16:13 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49704CVE-2025-4970660
China-linked group Houken hit French organizations using zeroSecurity Affairs·Jul 3, 18:16 UTC · Jul 3, 2025Exploit / PoCCVE-2024-8963CVE-2024-938060
Chinese Hackers Target France in Ivanti ZeroInfosecurity Magazine·Jul 2, 12:00 UTC · Jul 2, 2025Exploit / PoCCVE-2024-8190CVE-2024-8963CVE-2024-9380160
SolarWinds: What the Intelligence Tells UsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Gladinet flaw CVE-2025Security Affairs·Apr 15, 07:05 UTC · Apr 15, 2025Exploit / PoC in the wildCVE-2025-3040660