Google Revamps Bug Bounty Programs: Android Rewards Rise, Chrome Payouts Drop in the Age of AISecurity Affairs·May 3, 08:25 UTC · May 3, 2026Exploit / PoC57
Microsoft tries to fix again LNK flaw exploited by StuxnetSecurity Affairs·Apr 26, 14:32 UTC · Apr 26, 2026Exploit / PoCCVE-2010-2568CVE-2015-009660
Week in review: Windows zero-day exploit leaked, Patch Tuesday forecastHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2026Exploit / PoC in the wildCVE-2026-34197160
NCSC Urges Immediate Patching of F5 BIGInfosecurity Magazine·Mar 31, 08:45 UTC · Mar 31, 2026Exploit / PoC in the wildCVE-2025-5352160
Critical Citrix NetScaler Vulnerability Exploited in the WildInfosecurity Magazine·Mar 30, 10:45 UTC · Mar 30, 2026Exploit / PoC in the wildCVE-2026-305560
DarkSword iOS Exploit Kit Uses 6 Flaws, 3 ZeroThe Hacker News·Mar 23, 17:42 UTC · Mar 23, 2026Exploit / PoCCVE-2026-20700CVE-2025-43529CVE-2025-14174+3 CVEs60
What cybersecurity leaders are reading to stay aheadHelp Net Security·Dec 18, 00:00 UTC · Dec 18, 2025Exploit / PoC57
Researchers track dozens of organizations affected by React2Shell compromises tied to China’s MSSThe Record·Dec 8, 16:31 UTC · Dec 8, 2025Exploit / PoC in the wildCVE-2025-5518260
Chinese hackers exploiting React2Shell bug impacting countless websites, Amazon researchers sayThe Record·Dec 5, 16:22 UTC · Dec 5, 2025Exploit / PoC in the wildCVE-2025-5518260
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
Russian cybercrooks exploiting 7-Zip zero-day vulnerability (CVE-2025-0411)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-041160
Actively Exploited WSUS Bug Added to CISA KEV ListInfosecurity Magazine·Oct 28, 09:45 UTC · Oct 28, 2025Exploit / PoC in the wildCVE-2025-5928760
Top 10 Takeaways from Predict 2025: Turning Intelligence Into ActionRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025Exploit / PoC in the wild60
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
CISA alerts federal agencies of widespread attacks using Cisco zeroCyberScoop·Sep 25, 19:05 UTC · Sep 25, 2025Exploit / PoC in the wildCVE-2025-20333CVE-2025-20363CVE-2025-2036260
The GoLaxy papers: Inside China’s AI persona armyThe Record·Sep 19, 13:51 UTC · Sep 19, 2025Exploit / PoC57
Future of CVE Program in limbo as CISA, board members debate path forwardThe Record·Sep 19, 00:00 UTC · Sep 19, 2025Exploit / PoC in the wild60
Salesloft Drift security incident started with undetected GitHub accessCyberScoop·Sep 8, 22:44 UTC · Sep 8, 2025Exploit / PoC in the wild60
Netscaler vulnerability was exploited as zero-day for nearly two months (CVE-2025-6543)Help Net Security·Aug 29, 09:22 UTC · Aug 29, 2025Exploit / PoC in the wildCVE-2025-6543CVE-2025-577760
Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-dayHelp Net Security·Aug 24, 00:00 UTC · Aug 24, 2025Exploit / PoC in the wildCVE-2025-43300CVE-2018-0171CVE-2025-31324+1 CVEs60
PoC exploit for critical Erlang/OTP SSH bug is public (CVE-2025-32433)Help Net Security·Aug 14, 09:20 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-3243360
Microsoft SharePoint servers under attack via zero-day vulnerability (CVE-2025-53770)Help Net Security·Jul 22, 15:29 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49706CVE-2025-49704+1 CVEs60
Microsoft fixes zero-day exploited for cyber espionage (CVE-2025-33053)Help Net Security·Jun 16, 13:26 UTC · Jun 16, 2025Exploit / PoC in the wildCVE-2025-33053CVE-2025-33073CVE-2025-33070+6 CVEs60
Review: Learning Kali Linux, 2nd EditionHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2025Exploit / PoC45
CISA, Microsoft warn of Windows zero-day used in attack on ‘major’ Turkish defense orgThe Record·Jun 11, 14:16 UTC · Jun 11, 2025Exploit / PoCCVE-2025-3305360
Cisco fixes ClamAV vulnerability with available PoC and critical Meeting Management flawHelp Net Security·Jan 23, 00:00 UTC · Jan 23, 2025Exploit / PoC in the wildCVE-2025-20156CVE-2025-2012860
BadRAM: $10 security flaw in AMD could allow hackers to access cloud computing secretsThe Record·Dec 10, 16:11 UTC · Dec 10, 2024Exploit / PoC in the wild60
Actively exploited Firefox zero-day fixed, update ASAP! (CVE-2024-9680)Help Net Security·Nov 26, 13:23 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-968060
PoC exploit for exploited Ivanti Cloud Services Appliance flaw released (CVE-2024-8190)Help Net Security·Sep 19, 20:44 UTC · Sep 19, 2024Exploit / PoC in the wildCVE-2024-8190CVE-2024-896360
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
South Korean Spies Exploit WPS Office ZeroInfosecurity Magazine·Aug 28, 09:50 UTC · Aug 28, 2024Exploit / PoCCVE-2024-7262CVE-2024-726360
Microsoft Fixes Four ZeroInfosecurity Magazine·Jul 10, 09:40 UTC · Jul 10, 2024Exploit / PoC in the wildCVE-2024-38080CVE-2024-38112CVE-2024-35264+6 CVEs60
PoC for Progress Telerik RCE chain released (CVE-2024-4358, CVE-2024-1800)Help Net Security·Jun 6, 10:01 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-4358CVE-2024-1800CVE-2023-3436260
May 2024 Patch Tuesday: Microsoft fixes exploited zero-days (CVE-2024-30051, CVE-2024-30040)Help Net Security·May 31, 08:23 UTC · May 31, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2023-36033+2 CVEs160
New 'Siren' mailing list aims to share threat intelligence for open source projectsThe Record·May 20, 14:20 UTC · May 20, 2024Exploit / PoC60
Microsoft Fixes Three ZeroInfosecurity Magazine·May 15, 09:30 UTC · May 15, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2024-30046+1 CVEs60
Linux maintainers were infected for 2 years by SSHArs Technica · Security·May 15, 00:00 UTC · May 15, 2024Exploit / PoC60
Apple backports iOS zero-day patch, adds Bluetooth tracker alertHelp Net Security·May 14, 00:00 UTC · May 14, 2024Exploit / PoC in the wildCVE-2024-23296CVE-2024-2785260
GoFetch side-channel attack against Apple systems allows secret keys extractionSecurity Affairs·Mar 25, 08:23 UTC · Mar 25, 2024Exploit / PoC45
Securing Perimeter Products Must Be a Priority, Says NCSCInfosecurity Magazine·Mar 4, 10:15 UTC · Mar 4, 2024Exploit / PoC in the wild60