Network Security Trends: MayPalo Alto Unit 42·Jun 5, 17:26 UTC · Jun 5, 2024Exploit / PoC in the wild60
PoC exploit for Ivanti EPMM privilege escalation flaw released (CVE 2024-22026)Help Net Security·May 20, 00:00 UTC · May 20, 2024Exploit / PoCCVE-2024-22026CVE-2023-46806CVE-2023-4680760
ThreatX provides always-active API security from development to runtimeHelp Net Security·Apr 30, 00:00 UTC · Apr 30, 2024Exploit / PoC60
BlueVoyant Supply Chain Defense enhancements reduce issues in third-party ecosystemsHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2023Exploit / PoC60
MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?The Hacker News·Jul 1, 05:46 UTC · Jul 1, 2023Exploit / PoC in the wild60
Aqua Security strengthens software supply chain security with pipeline integrity scanningHelp Net Security·May 10, 00:00 UTC · May 10, 2023Exploit / PoC60
CISOs struggle to manage risk due to DevSecOps inefficienciesHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2023Exploit / PoC60
GrammaTech unveils new versions of its CodeSentry binary SCA platformHelp Net Security·Mar 9, 00:00 UTC · Mar 9, 2023Exploit / PoC60
Expert found critical flaws in OpenText ECM SystemSecurity Affairs·Jan 22, 18:51 UTC · Jan 22, 2023Exploit / PoCCVE-2022-45924CVE-2022-45922CVE-2022-45925+4 CVEs160
Hacked Cellebrite and MSAB Software ReleasedSchneier on Security·Jan 15, 00:00 UTC · Jan 15, 2023Exploit / PoC160
CISA adds seven bugs to Known Exploited Vulnerabilities CatalogThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-1040CVE-2022-2687160
Malicious code exploiting recent VMware bug publicly available, company warnsThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2022-31656CVE-2022-31659CVE-2022-22972+1 CVEs60
Micron Authenta enhancements boost end-to-end cloud services across the IoT ecosystemHelp Net Security·Nov 16, 00:00 UTC · Nov 16, 2022Exploit / PoC60
CISA added SAP flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Aug 19, 15:44 UTC · Aug 19, 2022Exploit / PoC in the wildCVE-2022-22536CVE-2022-22532CVE-2022-2253360
Appdome ThreatScope brings attack and threat intelligence into the mobile DevOps CI/CD pipelineHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2022Exploit / PoC60
Nearly Three-Quarters of Firms Suffer Downtime from DNS AttacksInfosecurity Magazine·Jun 1, 09:45 UTC · Jun 1, 2022Exploit / PoC60
PQShield collaborates with Microchip Technology to address quantum threatHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2022Exploit / PoC60
CISA orders federal agencies to fix VMware flaws by May 23, 2022Security Affairs·May 19, 06:13 UTC · May 19, 2022Exploit / PoCCVE-2022-22972CVE-2022-22973CVE-2022-22954+1 CVEs60
Skybox Security unveils cyber risk quantification capabilities to help users prioritize critical threatsHelp Net Security·May 19, 00:00 UTC · May 19, 2022Exploit / PoC in the wild60
Bitter APT Hackers Add Bangladesh to Their List of Targets in South AsiaThe Hacker News·May 12, 01:27 UTC · May 12, 2022Exploit / PoCCVE-2021-1732CVE-2021-28310CVE-2017-11882+2 CVEs60
Critical VMware Workspace ONE Access Flaw Under Active Exploitation in the WildThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022Exploit / PoC in the wildCVE-2022-2295460
VMware Workspace ONE Access CVE-2022Security Affairs·Apr 14, 10:42 UTC · Apr 14, 2022Exploit / PoC in the wildCVE-2022-2295460
SentinelOne to acquire identity security firm Attivo Networks for $616.5MCyberScoop·Mar 15, 15:00 UTC · Mar 15, 2022Exploit / PoC in the wild60
70% of financial service providers are implementing API securityHelp Net Security·Mar 15, 00:00 UTC · Mar 15, 2022Exploit / PoC45
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
Shifting security further left: DevSecOps becoming SecDevOpsHelp Net Security·Dec 20, 00:00 UTC · Dec 20, 2021Exploit / PoC60
Google fixed the 17th zero-day in Chrome since the start of the yearSecurity Affairs·Dec 14, 08:11 UTC · Dec 14, 2021Exploit / PoC in the wildCVE-2021-4102CVE-2021-21148CVE-2021-21166+17 CVEs60
When it comes to securing systems against quantum computers, there is no one-size-fits-all solutionHelp Net Security·Nov 15, 00:00 UTC · Nov 15, 2021Exploit / PoC60
How do I select a container security solution for my business?Help Net Security·Sep 8, 00:00 UTC · Sep 8, 2021Exploit / PoC60
The knowledge gap around runtime security and the associated risksHelp Net Security·Jul 26, 00:00 UTC · Jul 26, 2021Exploit / PoC60
Google Details iOS, Chrome, IE ZeroThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2021Exploit / PoC in the wildCVE-2021-1879CVE-2021-21166CVE-2021-30551+1 CVEs60
Google: four zero-day flaws have been exploited in the wildSecurity Affairs·Jul 14, 21:25 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-1879CVE-2021-21166CVE-2021-30551+1 CVEs60
MyBook Users Urged to Unplug Devices from InternetKrebs on Security·Jun 25, 20:37 UTC · Jun 25, 2021Exploit / PoC in the wildCVE-2018-1847260
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160
Week in review: Pulse Secure zero-day actively exploited, how to select an IAM solutionHelp Net Security·Apr 25, 00:00 UTC · Apr 25, 2021Exploit / PoC in the wildCVE-2021-2289360
Beware! Fully-Functional Exploit Released Online for SAP Solution Manager FlawThe Hacker News·Apr 9, 07:57 UTC · Apr 9, 2021Exploit / PoCCVE-2020-620760
Another Google Chrome 0-Day Bug Found Actively Exploited In-theThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2021Exploit / PoC in the wildCVE-2021-21193CVE-2021-21166CVE-2021-2114860
Week in review: Pen testing, Sunspot malware, Microsoft plugs Defender zero-dayHelp Net Security·Jan 25, 18:50 UTC · Jan 25, 2021Exploit / PoC in the wildCVE-2021-164760