Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
Trump signs order stripping Chris Krebs of security clearanceCyberScoop·Apr 10, 14:51 UTC · Apr 10, 2025Exploit / PoC in the wild60
Amnesty Finds Cellebrite’s Zero-Day Used to Unlock Serbian Activist’s Android PhoneThe Hacker News·Mar 4, 08:43 UTC · Mar 4, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-5030260
Serbian student’s Android phone compromised by exploit from CellebriteArs Technica · Security·Feb 28, 23:08 UTC · Feb 28, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-5030260
CFPB nominee signals openness to continuing dataCyberScoop·Feb 27, 21:22 UTC · Feb 27, 2025Exploit / PoC in the wild60
Microsoft IDs developers behind alleged generative AI hacking-forCyberScoop·Feb 27, 18:30 UTC · Feb 27, 2025Exploit / PoC in the wild160
Apple Patches Actively Exploited iOS Zero-Day CVE-2025The Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025Exploit / PoC in the wildCVE-2025-24200CVE-2025-2408560
Apple fixes zero-day flaw exploited in "extremely sophisticated" attack (CVE-2025-24200)Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-2420060
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Removal of Cyber Safety Review Board members sparks alarm from cyber pros, key lawmakerCyberScoop·Jan 22, 21:26 UTC · Jan 22, 2025Exploit / PoC in the wild60
The UN cybercrime convention threatens security research. The US should do something about itCyberScoop·Nov 14, 12:00 UTC · Nov 14, 2024Exploit / PoC in the wild60
Putting an end to the AI cyber responsibility turf warsCyberScoop·Sep 30, 11:00 UTC · Sep 30, 2024Exploit / PoC in the wild60
Cybersecurity Researchers Warn of New Rust-Based Splinter PostThe Hacker News·Sep 25, 12:38 UTC · Sep 25, 2024Exploit / PoC45
Week in review: PostgreSQL databases under attack, new Chrome zero-day actively exploitedHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-6800CVE-2024-28987+2 CVEs60
Check Point VPN zero-day exploited since beginning of April (CVE-2024-24919)Help Net Security·Jun 5, 08:26 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2024-2491960
New Hampshire authorities charge Democratic operative behind Biden AI robocallCyberScoop·May 23, 18:30 UTC · May 23, 2024Exploit / PoC in the wild60
Three bills governing AI in elections pass Senate committeeCyberScoop·May 15, 17:29 UTC · May 15, 2024Exploit / PoC in the wild60
Apple and Google Launch Cross-Platform Feature to Detect Unwanted Bluetooth Tracking DevicesThe Hacker News·May 15, 00:00 UTC · May 15, 2024Exploit / PoC in the wildCVE-2024-23296CVE-2024-27804CVE-2024-2781860
Apple backports iOS zero-day patch, adds Bluetooth tracker alertHelp Net Security·May 14, 00:00 UTC · May 14, 2024Exploit / PoC in the wildCVE-2024-23296CVE-2024-2785260
Palo Alto Networks Outlines Remediation for Critical PANThe Hacker News·May 1, 06:14 UTC · May 1, 2024Exploit / PoC in the wildCVE-2024-340060
FBI seeks to balance risks, rewards of artificial intelligenceCyberScoop·Apr 4, 15:00 UTC · Apr 4, 2024Exploit / PoC in the wild60
The many ways electric cars are vulnerable to hacks, and whether that matters in a realCisco Talos·Feb 1, 19:00 UTC · Feb 1, 2024Exploit / PoC60
Securing AI systems against evasion, poisoning, and abuseHelp Net Security·Jan 9, 00:00 UTC · Jan 9, 2024Exploit / PoC45
Intellexa and Cytrox: From fixer-upper to Intel AgencyCisco Talos·Dec 21, 16:00 UTC · Dec 21, 2023Exploit / PoC60
Design flaw leaves Google Workspace vulnerable for takeoverHelp Net Security·Nov 28, 00:00 UTC · Nov 28, 2023Exploit / PoC57
Microsoft announces AI bug bounty programHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2023Exploit / PoC60
API Security Trends 2023 – Have Organizations Improved their Security Posture?The Hacker News·Oct 3, 11:59 UTC · Oct 3, 2023Exploit / PoC60
Russian Company Offers $20m For NonInfosecurity Magazine·Sep 29, 17:30 UTC · Sep 29, 2023Exploit / PoC60
Russian Journalist's iPhone Compromised by NSO Group's ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Exploit / PoC60
Twitter, now X, will begin collecting users' biometric dataCyberScoop·Aug 31, 18:49 UTC · Aug 31, 2023Exploit / PoC in the wild60
Ivanti zero-day exploited to target Norwegian government (CVE-2023-35078)Help Net Security·Jul 31, 13:19 UTC · Jul 31, 2023Exploit / PoC in the wildCVE-2023-3507860
Hackers exploited Ivanti zeroThe Record·Jul 25, 15:15 UTC · Jul 25, 2023Exploit / PoCCVE-2023-3507860
The federal government’s cybersecurity policies are falling into place just in time to be stalled againCisco Talos·Jul 20, 18:00 UTC · Jul 20, 2023Exploit / PoC in the wildCVE-2023-3745060
Mockingjay process injection technique allows EDR bypassSecurity Affairs·Jun 27, 21:51 UTC · Jun 27, 2023Exploit / PoC45
AI chatbots want your geolocation data. Privacy experts say beware.CyberScoop·Jun 8, 20:46 UTC · Jun 8, 2023Exploit / PoC in the wild60
20 cybersecurity projects on GitHub you should check outHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2023Exploit / PoC45
NSO Group Used 3 Zero-Click iPhone Exploits Against Human Rights DefendersThe Hacker News·Apr 20, 11:48 UTC · Apr 20, 2023Exploit / PoC60
More Zero-Days Have Been Linked to Private Companies Than Any Nation StateThe Record·Mar 30, 08:00 UTC · Mar 30, 2023Exploit / PoC60
Tech Industry Bids to Tackle CyberInfosecurity Magazine·Mar 29, 10:30 UTC · Mar 29, 2023Exploit / PoC60