From summer camp to grind seasonCisco Talos·Sep 4, 18:02 UTC · Sep 4, 2025Exploit / PoCCVE-2025-5517760
On the StrongPity Waterhole Attacks Targeting Italian and Belgian Encryption UsersKaspersky Securelist·Oct 3, 23:40 UTC · Oct 3, 2016Exploit / PoC60
Adobe patches newly exploited Flash zero-dayHelp Net Security·Dec 15, 12:35 UTC · Dec 15, 2023Exploit / PoC in the wildCVE-2018-1598260
NVIDIA Forms 37-Member Open Secure AI Alliance and OpenThe Hacker News·Jul 27, 18:10 UTC · Jul 27, 2026Exploit / PoC60
North Korean Hackers Exploit Zero-Day Bug to Target Cybersecurity ResearchersThe Hacker News·Sep 8, 16:50 UTC · Sep 8, 2023Exploit / PoCCVE-2021-34514CVE-2022-2188160
GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC57
Traps Prevents Microsoft Office Equation Editor Zero-Day CVE-2018Palo Alto Unit 42·Jan 28, 21:26 UTC · Jan 28, 2022Exploit / PoCCVE-2017-11882CVE-2018-080260
Browser extension sales, updates pose hidden threat to enterprisesCyberScoop·Mar 27, 19:06 UTC · Mar 27, 2025Exploit / PoC60
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
U.S. CISA adds a flaw in TrueConf Client to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 4, 16:43 UTC · Apr 4, 2026Exploit / PoC in the wildCVE-2026-350260
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
TrueConf zero-day vulnerability exploited to target government networksHelp Net Security·Apr 2, 00:00 UTC · Apr 2, 2026Exploit / PoCCVE-2026-350260
New MySQL Zero Days — Hacking Website DatabasesThe Hacker News·Sep 12, 17:56 UTC · Sep 12, 2016Exploit / PoCCVE-2016-6662CVE-2016-666360
How to Make the Attack Lifecycle Actionable with IntelligenceRecorded Future·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoC45
Network Attack Trends: FebruaryPalo Alto Unit 42·Jun 6, 12:33 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-25296CVE-2021-25297CVE-2021-25298+4 CVEs60
Two Critical 0-Day Remote Exploits for vBulletin Forum Disclosed PubliclyThe Hacker News·Dec 18, 08:17 UTC · Dec 18, 2017Exploit / PoCCVE-2017-1767260
Hugging Face platform continues to be plagued by vulnerable ‘pickles’CyberScoop·Feb 6, 16:34 UTC · Feb 6, 2025Exploit / PoC in the wild60
USB threat to industrial facilities comes into sharp focus with new Honeywell dataCyberScoop·Nov 5, 20:37 UTC · Nov 5, 2018Exploit / PoC in the wild60
Snapd Flaw Lets Attackers Gain Root Access On Linux SystemsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2019Exploit / PoCCVE-2019-730450
Red Hat Linux DHCP Client Found Vulnerable to Command Injection AttacksThe Hacker News·May 15, 00:00 UTC · May 15, 2018Exploit / PoCCVE-2018-111160
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
KDE Linux Desktops Could Get Hacked Without Even Opening Malicious FilesThe Hacker News·Aug 8, 07:26 UTC · Aug 8, 2019Exploit / PoC60
Thousands of applications affected by a zeroSecurity Affairs·Oct 20, 08:38 UTC · Oct 20, 2018Exploit / PoC in the wildCVE-2018-920660
Critical Versa Concerto Flaws Let Attackers Escape Docker and Compromise HostsThe Hacker News·May 23, 04:44 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-34025CVE-2025-34026CVE-2024-45410+1 CVEs160
Flash zero-day shows up in Qatar amid geopolitical strugglesCyberScoop·Jun 7, 20:08 UTC · Jun 7, 2018Exploit / PoC in the wild60
Google's disruption rips millions of devices out of malicious networkCyberScoop·Jan 30, 15:37 UTC · Jan 30, 2026Exploit / PoC in the wild60
Budding infosec pros and aspiring cyber crooks targeted with fake PoC exploitsHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2025Exploit / PoCCVE-2025-10294CVE-2025-59295CVE-2025-59230+7 CVEs60
Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious CodeThe Hacker News·May 15, 00:00 UTC · May 15, 2024Exploit / PoC in the wildCVE-2024-25641CVE-2024-29895CVE-2024-31445+4 CVEs60
Hands-on Review: Myrror Security Code-Aware and AttackThe Hacker News·Feb 17, 07:01 UTC · Feb 17, 2024Exploit / PoC60
Google Play Store scrubs more than 100 adwareCyberScoop·Jul 1, 20:00 UTC · Jul 1, 2019Exploit / PoC60
Proof It's Possible to Hack German Elections; Hackers Tamper with VotingThe Hacker News·Sep 7, 17:33 UTC · Sep 7, 2017Exploit / PoC60
Hackers mined $90,000 worth of Monero with a simple Docker Hub trickCyberScoop·Jun 14, 21:56 UTC · Jun 14, 2018Exploit / PoC in the wild60
CISA Updates KEV Catalog with Four Actively Exploited Software VulnerabilitiesThe Hacker News·Jan 23, 15:24 UTC · Jan 23, 2026Exploit / PoC in the wildCVE-2025-68645CVE-2025-34026CVE-2025-31125+1 CVEs60
The best and worst ways to get users to improve their account securityCisco Talos·Sep 5, 18:00 UTC · Sep 5, 2024Exploit / PoCCVE-2024-797160
catdoc zero-day, NVIDIA, High-Logic FontCreator and Parallel vulnerabilitiesCisco Talos·Jun 11, 14:03 UTC · Jun 11, 2025Exploit / PoCCVE-2024-48877CVE-2024-52035CVE-2024-54028+6 CVEs60
North Korea-backed hackers target security researchers with 0Ars Technica · Security·Sep 7, 22:05 UTC · Sep 7, 2023Exploit / PoC60
Google to Remove App that Made Google Pixel Devices Vulnerable to AttacksThe Hacker News·Sep 4, 09:01 UTC · Sep 4, 2024Exploit / PoC in the wild60
Let It Ride: The Sofacy Group’s DealersChoice Attacks ContinuePalo Alto Unit 42·Nov 1, 10:41 UTC · Nov 1, 2018Exploit / PoC in the wildCVE-2016-7855CVE-2016-7255CVE-2015-7645160