Microsoft patches four exploited zero-days, but lags with fixes for a fifth (CVE-2023-36884)Help Net Security·Aug 4, 09:09 UTC · Aug 4, 2023Exploit / PoC in the wildCVE-2023-36884CVE-2023-32049CVE-2023-35311+2 CVEs160
How companies could share cyber risks without exposing their secretsCyberScoop·Aug 4, 10:00 UTC · Aug 4, 2026Exploit / PoC in the wild60
Adobe releases patches to address ColdFusion 0day exploited in the WildSecurity Affairs·Mar 2, 08:23 UTC · Mar 2, 2019Exploit / PoC in the wildCVE-2019-7816CVE-2018-1596160
Atlassian fixed maximum severity flaw CVE-2025Security Affairs·Dec 15, 15:03 UTC · Dec 15, 2025Exploit / PoCCVE-2025-66516CVE-2025-54988CVE-2021-39227+1 CVEs60
Achieving Success in Regular Threat Reporting: Analyst InsightsRecorded Future·Jan 14, 00:00 UTC · Jan 14, 2026Exploit / PoC in the wild60
Network Attack Trends: FebruaryPalo Alto Unit 42·Jun 6, 12:33 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-25296CVE-2021-25297CVE-2021-25298+4 CVEs60
Google fixed the second actively exploited Chrome zeroSecurity Affairs·Jun 3, 07:58 UTC · Jun 3, 2025Exploit / PoC in the wildCVE-2025-5419CVE-2025-5068CVE-2025-278360
Synack PTaaS platform offers complete security testing suiteHelp Net Security·Aug 1, 00:00 UTC · Aug 1, 2024Exploit / PoC60
Zero-Day Vulnerabilities Are on the RiseSchneier on Security·Apr 27, 18:40 UTC · Apr 27, 2022Exploit / PoC in the wild60
CISA's new KEV nomination form opens reporting to vendors and researchersHelp Net Security·Jun 19, 12:14 UTC · Jun 19, 2026Exploit / PoC in the wild60
Incomplete disclosures by Apple and Google create “huge blindspot” for 0Ars Technica · Security·Sep 21, 22:19 UTC · Sep 21, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-486360
Adobe fixes critical and important flaws in Flash Player and Experience ManagerSecurity Affairs·May 10, 05:29 UTC · May 10, 2017Exploit / PoCCVE-2017-3071CVE-2017-3068CVE-2017-3069+5 CVEs60
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
China's government is keeping its security researchers from attending conferencesCyberScoop·Mar 8, 19:22 UTC · Mar 8, 2018Exploit / PoC in the wild60
A critical flaw in WordPress GDPR compliance plugin exploited in the wildSecurity Affairs·Nov 12, 10:08 UTC · Nov 12, 2018Exploit / PoC in the wild60
Apple AirTag Bug Enables ‘Good Samaritan’ AttackKrebs on Security·Sep 28, 16:11 UTC · Sep 28, 2021Exploit / PoC60
Google addresses HighSecurity Affairs·Oct 25, 09:19 UTC · Oct 25, 2019Exploit / PoCCVE-2019-13695CVE-2019-13699CVE-2019-1370060
Flaw in Guardzilla home security devices allows outsiders to view stored video, researchers sayCyberScoop·Dec 27, 23:18 UTC · Dec 27, 2018Exploit / PoC in the wild60
Adobe fixed the CVE-2018-5002 Flash Zero-Day exploited in targeted attacks in the Middle EastSecurity Affairs·Jun 7, 14:17 UTC · Jun 7, 2018Exploit / PoCCVE-2018-5002CVE-2018-4945CVE-2018-5000+2 CVEs60
After SharePoint attacks, Microsoft stops sharing PoC exploit code with ChinaSecurity Affairs·Aug 22, 09:12 UTC · Aug 22, 2025Exploit / PoC in the wild160
Urgent Apple iOS and macOS Updates Released to Fix Actively Exploited ZeroThe Hacker News·Sep 27, 04:38 UTC · Sep 27, 2021Exploit / PoC in the wildCVE-2021-30869CVE-2021-30858CVE-2021-3086060
Accessing YesBank online Banking with stolen Credit Card Numb & PINSecurity Affairs·Oct 21, 09:51 UTC · Oct 21, 2016Exploit / PoC60
Researcher Discloses 4 Zero-Day Bugs in IBM's Enterprise Security SoftwareThe Hacker News·Jun 10, 14:41 UTC · Jun 10, 2020Exploit / PoC60
HackerOne cuts ties with mobile voting firm Voatz after it clashed with researchersCyberScoop·Mar 30, 17:54 UTC · Mar 30, 2020Exploit / PoC60
Microsoft Warns of Uptick in Hackers Leveraging Publicly-Disclosed 0The Hacker News·Dec 14, 04:04 UTC · Dec 14, 2022Exploit / PoCCVE-2021-35211CVE-2021-40539CVE-2021-44077+2 CVEs60
Critical Flaw in Grammarly Spell Checker Could Let Attackers Steal Your DataThe Hacker News·Feb 6, 06:47 UTC · Feb 6, 2018Exploit / PoC60
AI Can Find Bugs, But Human Knowledge Still Proves ThemThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC57
Anthropic: Claude Mythos identified 10,000+ software flawsHelp Net Security·May 26, 00:00 UTC · May 26, 2026Exploit / PoC60
New Intel CPU Flaw Exploits HyperThe Hacker News·Nov 4, 09:24 UTC · Nov 4, 2018Exploit / PoCCVE-2018-540750
Tesla offers 'goodwill' to security researchers hacking its carsCyberScoop·Sep 6, 20:05 UTC · Sep 6, 2018Exploit / PoC in the wild60
Argo CD flaw could allow stealing sensitive data from Kubernetes AppsSecurity Affairs·Feb 6, 13:50 UTC · Feb 6, 2022Exploit / PoCCVE-2022-24348160
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
Western Digital's My Cloud NAS Devices Turn Out to Be Easily HackedThe Hacker News·Sep 19, 20:28 UTC · Sep 19, 2018Exploit / PoCCVE-2018-1715360
Server-side exploits dominate the threat landscapeHelp Net Security·Feb 12, 13:49 UTC · Feb 12, 2018Exploit / PoC in the wild60
Ripple20 flaws potentially expose hundreds of millions of devices to hackSecurity Affairs·Jun 16, 20:33 UTC · Jun 16, 2020Exploit / PoC60
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2026-26268CVE-2026-10591150
Google Project Zero to publicly announce bugs within a week of reporting themThe Record·Jul 30, 11:52 UTC · Jul 30, 2025Exploit / PoC60
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60