NHS Warns of PoC Exploit for 7-Zip Symbolic LinkThe Hacker News·Nov 21, 06:44 UTC · Nov 21, 2025Exploit / PoC in the wildCVE-2025-11001CVE-2025-1100260
Fortinet Warns of New FortiWeb CVE-2025-58034 Vulnerability Exploited in the WildThe Hacker News·Nov 20, 04:35 UTC · Nov 20, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
U.S. CISA adds a new Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 19, 13:48 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
New FortiWeb zero-day CVE-2025Security Affairs·Nov 19, 06:55 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
China-linked UNC6384 exploits Windows zeroSecurity Affairs·Nov 1, 14:11 UTC · Nov 1, 2025Exploit / PoC60
Diplomatic entities in Belgium and Hungary hacked in ChinaThe Record·Oct 30, 18:17 UTC · Oct 30, 2025Exploit / PoC60
SolarWinds Releases Hotfix for Critical CVE-2025The Hacker News·Sep 23, 12:46 UTC · Sep 23, 2025Exploit / PoC in the wildCVE-2025-26399CVE-2024-28988CVE-2024-2898660
After SharePoint attacks, Microsoft stops sharing PoC exploit code with ChinaSecurity Affairs·Aug 22, 09:12 UTC · Aug 22, 2025Exploit / PoC in the wild160
Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root AccessThe Hacker News·Jul 29, 04:27 UTC · Jul 29, 2025Exploit / PoC in the wildCVE-2025-20281CVE-2025-20337CVE-2025-2028260
U.S. CISA urges FCEB agencies to fix two Microsoft SharePoint flaws immediately and added them to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 23, 21:59 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-5377060
Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Company ServersThe Hacker News·Jul 22, 03:59 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49704CVE-2025-49706+1 CVEs60
U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 21, 17:21 UTC · Jul 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs60
SharePoint zero-day CVE-2025Security Affairs·Jul 21, 07:27 UTC · Jul 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49706CVE-2025-4970460
CitrixBleed 2 beckons sweeping alarm as exploits spread across the globeCyberScoop·Jul 14, 21:46 UTC · Jul 14, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-496660
CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active ExploitationThe Hacker News·Jul 8, 05:08 UTC · Jul 8, 2025Exploit / PoC in the wildCVE-2014-3931CVE-2016-10033CVE-2019-5418+3 CVEs60
Patch Tuesday: Microsoft fixes 5 actively exploited zero-daysHelp Net Security·May 13, 00:00 UTC · May 13, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-32701CVE-2025-32706+4 CVEs60
Microsoft fixes actively exploited Windows CLFS zero-day (CVE-2025-29824)Help Net Security·Apr 15, 08:11 UTC · Apr 15, 2025Exploit / PoC in the wildCVE-2025-29824CVE-2024-49138CVE-2025-26663+7 CVEs160
Unpatched Windows Zero-Day Flaw Exploited by 11 StateThe Hacker News·Mar 19, 03:46 UTC · Mar 19, 2025Exploit / PoC60
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackersThe Record·Mar 18, 20:27 UTC · Mar 18, 2025Exploit / PoC in the wild60
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
Microsoft fixes two actively exploited zero-days (CVE-2025-21418, CVE-2025-21391)Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-21418CVE-2025-21391CVE-2024-38193+3 CVEs260
Pwn2Own Automotive 2025 Day 2: organizers awarded $335,500Security Affairs·Jan 23, 20:48 UTC · Jan 23, 2025Exploit / PoC60
Microsoft fixes actively exploited Windows Hyper-V zero-day flawsHelp Net Security·Jan 14, 00:00 UTC · Jan 14, 2025Exploit / PoC in the wildCVE-2025-21333CVE-2025-21334CVE-2025-21335+6 CVEs60
Microsoft fixes exploited zero-day (CVE-2024-49138)Help Net Security·Dec 10, 00:00 UTC · Dec 10, 2024Exploit / PoC in the wildCVE-2024-49138CVE-2024-49112CVE-2024-49114+1 CVEs160
Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
QNAP fixed second zeroSecurity Affairs·Oct 31, 09:45 UTC · Oct 31, 2024Exploit / PoCCVE-2024-50387CVE-2024-5038860
QNAP fixed NAS backup zeroSecurity Affairs·Oct 30, 08:13 UTC · Oct 30, 2024Exploit / PoCCVE-2024-5038860
Pwn2Own Ireland 2024 Day 2: participants demonstrated an exploit against Samsung Galaxy S24Security Affairs·Oct 24, 20:53 UTC · Oct 24, 2024Exploit / PoC60
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572)Help Net Security·Oct 8, 00:00 UTC · Oct 8, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-38112+3 CVEs60
Progress Software fixed 2 new critical flaws in WhatsUp GoldSecurity Affairs·Sep 29, 07:43 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-8785CVE-2024-46909CVE-2024-46905+4 CVEs60
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
Zero-day patched by Microsoft has been exploited by attackers for over a year (CVE-2024-38112)Help Net Security·Jul 16, 13:38 UTC · Jul 16, 2024Exploit / PoC in the wildCVE-2024-38112CVE-2024-3802160
Week in review: Atlassian Confluence RCE PoC, new Kali Linux, Patch Tuesday forecastHelp Net Security·Jun 9, 00:00 UTC · Jun 9, 2024Exploit / PoCCVE-2024-21683CVE-2024-28995CVE-2024-29972+4 CVEs60
Oracle WebLogic Server OS Command Injection Flaw Under Active AttackThe Hacker News·Jun 4, 08:27 UTC · Jun 4, 2024Exploit / PoC in the wildCVE-2017-3506CVE-2023-2183960
May 2024 Patch Tuesday: Microsoft fixes exploited zero-days (CVE-2024-30051, CVE-2024-30040)Help Net Security·May 31, 08:23 UTC · May 31, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2023-36033+2 CVEs160
NIST Confusion Continues as Cyber Pros Complain CVE Uploads StoppedInfosecurity Magazine·May 14, 15:50 UTC · May 14, 2024Exploit / PoC in the wild60
Week in review: Palo Alto Networks firewalls under attack, Microsoft patches two exploited zero-daysHelp Net Security·Apr 14, 00:00 UTC · Apr 14, 2024Exploit / PoC in the wildCVE-2024-3400CVE-2024-29988CVE-2024-26234+1 CVEs60