Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Sergey Pavlovich, wanted by US on hacking-related charges since 2008, was 'surprised' by Russian arrestCyberScoop·Nov 6, 13:50 UTC · Nov 6, 2021Exploit / PoC in the wild60
Facebook blames networking issues, not a cyberattack, for long downtimeCyberScoop·Oct 5, 12:53 UTC · Oct 5, 2021Exploit / PoC in the wild60
Spook.Js attack allows to bypass Google Chrome Site Isolation protectionsSecurity Affairs·Sep 13, 15:26 UTC · Sep 13, 2021Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Microsoft Warns of Critical "PrintNightmare" Flaw Being Exploited in the WildThe Hacker News·Jul 3, 07:11 UTC · Jul 3, 2021Exploit / PoC in the wildCVE-2021-34527CVE-2021-167560
Hackers exploit 3-years old flaw to wipe Western Digital devicesSecurity Affairs·Jun 25, 18:07 UTC · Jun 25, 2021Exploit / PoC in the wildCVE-2018-1847260
After Gaza ceasefire, MoleRATs hacking group continues to target Middle Eastern governmentsCyberScoop·Jun 17, 21:43 UTC · Jun 17, 2021Exploit / PoC in the wild60
Hack of IT provider exposes data on 4.5 million Air India passengersCyberScoop·May 24, 15:24 UTC · May 24, 2021Exploit / PoC in the wild60
China-linked APT used Pulse Secure VPN zero-day to hack US defense contractorsSecurity Affairs·Apr 21, 05:38 UTC · Apr 21, 2021Exploit / PoCCVE-2021-2289360
Microsoft fixes 2 critical Exchange Server flaws reported by the NSASecurity Affairs·Apr 13, 21:05 UTC · Apr 13, 2021Exploit / PoCCVE-2021-28480CVE-2021-28481CVE-2021-28482+1 CVEs60
Using memory encryption in web applications to help reduce the risk of Spectre attacksHelp Net Security·Mar 25, 00:00 UTC · Mar 25, 2021Exploit / PoC57
ProxyLogon PoC Exploit Released; Likely to Fuel More Disruptive Cyber AttacksThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2021Exploit / PoC in the wildCVE-2021-2685560
Chinese hackers hit thousands of organizations using Microsoft ExchangeSecurity Affairs·Mar 9, 19:09 UTC · Mar 9, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Google fixes the second zero-day in Chrome in 2 weeks actively exploitedSecurity Affairs·Nov 3, 08:25 UTC · Nov 3, 2020Exploit / PoC in the wildCVE-2020-16009CVE-2020-16010CVE-2020-16004+7 CVEs60
Twitter updates hacked materials policy following blowup over New York Post storyCyberScoop·Oct 16, 15:22 UTC · Oct 16, 2020Exploit / PoC in the wild60
Before targeting Belarus, Eastern EuropeCyberScoop·Oct 2, 16:29 UTC · Oct 2, 2020Exploit / PoC in the wild60
No, Michigan voter data wasn’t hacked by the RussiansCyberScoop·Sep 1, 21:18 UTC · Sep 1, 2020Exploit / PoC in the wild60
Twilio breach spotlights struggle to keep corporate software kits out of the wrong handsCyberScoop·Jul 24, 16:37 UTC · Jul 24, 2020Exploit / PoC in the wild60
Australia blames a state actor for major disruptions. China is already denying it.CyberScoop·Jun 19, 15:33 UTC · Jun 19, 2020Exploit / PoC in the wild60
Intel CPUs Vulnerable to New 'SGAxe' and 'CrossTalk' SideThe Hacker News·Jun 10, 12:59 UTC · Jun 10, 2020Exploit / PoCCVE-2020-0549CVE-2020-054350
New Noise-Resilient Attack On Intel and AMD CPUs Makes FlushThe Hacker News·May 30, 10:32 UTC · May 30, 2020Exploit / PoC45
Zero-day broker: Stop sending us Apple bugs, we have enough alreadyCyberScoop·May 13, 20:49 UTC · May 13, 2020Exploit / PoC in the wild60
How one security researcher used radio signals to hop an air gapCyberScoop·Apr 22, 13:13 UTC · Apr 22, 2020Exploit / PoC in the wild60
Experts shed the light on mysterious critical VMware vCenter Server issueSecurity Affairs·Apr 17, 21:41 UTC · Apr 17, 2020Exploit / PoCCVE-2020-3952CVE-2020-3950CVE-2020-395160
NSO CEO claims Facebook wanted NSO surveillance tool to spy on usersSecurity Affairs·Apr 8, 13:47 UTC · Apr 8, 2020Exploit / PoCCVE-2019-356860
Hackers target zero-day flaws in enterprise Draytek network devicesSecurity Affairs·Mar 28, 11:28 UTC · Mar 28, 2020Exploit / PoCCVE-2020-851560
Verisign, Amazon patch zero-day vulnerability that utilized homoglyph charactersCyberScoop·Mar 5, 23:15 UTC · Mar 5, 2020Exploit / PoC in the wild60
More Spectre/Meltdown-Like AttacksSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Exploit / PoC45
3 Google Play Store Apps Exploit Android ZeroThe Hacker News·Jan 7, 16:41 UTC · Jan 7, 2020Exploit / PoCCVE-2019-221560
New PlunderVolt Attack Targets Intel SGX Enclaves by Tweaking CPU VoltageThe Hacker News·Dec 11, 11:08 UTC · Dec 11, 2019Exploit / PoCCVE-2019-1115750
Microsoft drops emergency Internet Explorer fix for actively exploited zero-dayHelp Net Security·Sep 24, 00:00 UTC · Sep 24, 2019Exploit / PoC in the wildCVE-2019-1367CVE-2019-125560
Massive iPhone Hack Targets UyghursSchneier on Security·Sep 3, 06:09 UTC · Sep 3, 2019Exploit / PoC60
FIN6 recently expanded operations to target eCommerce sitesSecurity Affairs·Aug 31, 14:48 UTC · Aug 31, 2019Exploit / PoC57
Russia's state-funded news outlet RT keeps hyping fringe stories on Clinton, collusion long after 2016CyberScoop·Aug 29, 14:21 UTC · Aug 29, 2019Exploit / PoC in the wild60
What We Can Learn from the Capital One HackKrebs on Security·Aug 5, 17:20 UTC · Aug 5, 2019Exploit / PoC60
US Cyber Command warns of Iran-linked hackers exploiting CVE-2017Security Affairs·Jul 3, 06:26 UTC · Jul 3, 2019Exploit / PoCCVE-2017-11774150
TeamViewer hacked? The company officially denies itSecurity Affairs·May 17, 21:39 UTC · May 17, 2019Exploit / PoC60
Elfin Hacking Group Targets Multiple U.S. and Saudi Arabian FirmsThe Hacker News·Mar 28, 08:18 UTC · Mar 28, 2019Exploit / PoC in the wildCVE-2018-2025060
Using steganography to obfuscate PDF exploitsSecurity Affairs·Jan 27, 07:00 UTC · Jan 27, 2019Exploit / PoCCVE-2013-334660