Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
Coruna iOS Exploit Kit Uses 23 Exploits Across Five Chains Targeting iOS 13The Hacker News·Mar 26, 10:55 UTC · Mar 26, 2026Exploit / PoC in the wildCVE-2024-23222CVE-2022-48503CVE-2023-43000+9 CVEs60
DarkSword emerges as powerful iOS exploit tool in global attacksSecurity Affairs·Mar 19, 14:09 UTC · Mar 19, 2026Exploit / PoCCVE-2025-31277CVE-2026-20700CVE-2025-43529+3 CVEs60
Second iOS exploit kit now in use by suspected Russian hackersCyberScoop·Mar 18, 15:29 UTC · Mar 18, 2026Exploit / PoC60
Coruna: Spy-grade iOS exploit kit powering financial crimeHelp Net Security·Mar 6, 10:01 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2024-23222CVE-2022-48503CVE-2023-43000+5 CVEs60
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
Notepad++ supply chain attack: Researchers reveal details, IoCs, targetsHelp Net Security·Feb 17, 10:13 UTC · Feb 17, 2026Exploit / PoC60
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
Notepad++ infrastructure hack likely tied to ChinaSecurity Affairs·Feb 3, 09:35 UTC · Feb 3, 2026Exploit / PoC60
Hackers turn open-source AI framework into global cryptojacking operationCyberScoop·Nov 19, 15:29 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2023-48022160
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent SpywareThe Hacker News·Nov 3, 17:57 UTC · Nov 3, 2025Exploit / PoC in the wildCVE-2025-2783160
China-linked UNC6384 exploits Windows zeroSecurity Affairs·Nov 1, 14:11 UTC · Nov 1, 2025Exploit / PoC60
Italian-made spyware Dante linked to Chrome zero-day exploitation campaignHelp Net Security·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoCCVE-2025-278360
Reducing abuse of Microsoft 365 Exchange Online’s Direct SendCisco Talos·Oct 21, 10:00 UTC · Oct 21, 2025Exploit / PoC60
U.S. CISA adds Synacor Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 21:39 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-2791560
Zimbra users targeted in zeroSecurity Affairs·Oct 7, 21:32 UTC · Oct 7, 2025Exploit / PoCCVE-2025-2791560
Researchers say Israeli government likely behind AICyberScoop·Oct 3, 17:16 UTC · Oct 3, 2025Exploit / PoC in the wild60
The npm incident frightened everyone, but ended up being nothing to fret aboutCyberScoop·Sep 10, 14:35 UTC · Sep 10, 2025Exploit / PoC in the wild60
China-linked Silk Typhoon APT targets North AmericaSecurity Affairs·Aug 23, 08:34 UTC · Aug 23, 2025Exploit / PoCCVE-2023-351960
Wiz Uncovers Critical Access Bypass Flaw in AIThe Hacker News·Jul 30, 07:43 UTC · Jul 30, 2025Exploit / PoC in the wild60
Log4Shell: How It’s Exploited and Mitigating DamageRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2021-4422860
Cyber Silk Road: Tracing China’s Stealth TurnRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
SafeLine WAF: Open Source Web Application Firewall with ZeroThe Hacker News·May 23, 10:30 UTC · May 23, 2025Exploit / PoC60
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
Attackers are chaining flaws to breach Palo Alto Networks firewallsHelp Net Security·Apr 18, 10:11 UTC · Apr 18, 2025Exploit / PoC in the wildCVE-2025-0108CVE-2024-9474CVE-2025-0111+1 CVEs60
China-linked APT Silk Typhoon targets IT Supply ChainSecurity Affairs·Mar 5, 21:02 UTC · Mar 5, 2025Exploit / PoCCVE-2025-028260
2,000 Palo Alto Networks devices compromised in latest attacksHelp Net Security·Feb 19, 08:15 UTC · Feb 19, 2025Exploit / PoCCVE-2024-0012CVE-2024-947460
From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal effortsCyberScoop·Feb 3, 14:03 UTC · Feb 3, 2025Exploit / PoC60
Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS BotnetThe Hacker News·Jan 23, 05:18 UTC · Jan 23, 2025Exploit / PoCCVE-2013-3307CVE-2016-20016CVE-2017-5259+7 CVEs160
Privacy-focused mobile phone launches for highCyberScoop·Nov 21, 14:28 UTC · Nov 21, 2024Exploit / PoC in the wild60
FBI Seeks Public Help to Identify Chinese Hackers Behind Global Cyber IntrusionsThe Hacker News·Nov 11, 05:16 UTC · Nov 11, 2024Exploit / PoCCVE-2020-12271CVE-2020-15069CVE-2020-29574+2 CVEs60
Invisible text that AI chatbots understand and humans can’t? Yep, it’s a thing.Ars Technica · Security·Oct 15, 00:00 UTC · Oct 15, 2024Exploit / PoC145
New hacker group uses open-source tools to spy on entities in AsiaThe Record·Jul 18, 12:25 UTC · Jul 18, 2024Exploit / PoC60
Threat Brief: VMware Vulnerabilities Exploited in the Wild (CVE-2022Palo Alto Unit 42·Jun 5, 20:43 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2022-22954CVE-2022-22960CVE-2022-22972+8 CVEs60
Oracle WebLogic Server OS Command Injection Flaw Under Active AttackThe Hacker News·Jun 4, 08:27 UTC · Jun 4, 2024Exploit / PoC in the wildCVE-2017-3506CVE-2023-2183960
TheMoon bot infected 40,000 devices in January and FebruarySecurity Affairs·Mar 26, 21:19 UTC · Mar 26, 2024Exploit / PoC60
China-Linked Group Breaches Networks via Connectwise, F5 Software FlawsThe Hacker News·Mar 23, 05:40 UTC · Mar 23, 2024Exploit / PoCCVE-2023-22518CVE-2024-1709CVE-2023-46747+2 CVEs60