Shadowserver finds 6,000+ likely vulnerable SmarterMail servers exposed onlineSecurity Affairs·Jan 27, 15:28 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-2376060
Researchers find Jordan government used Cellebrite phoneCyberScoop·Jan 22, 17:26 UTC · Jan 22, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AIThe Hacker News·Jan 20, 09:20 UTC · Jan 20, 2026Exploit / PoCCVE-2025-29824CVE-2025-2775CVE-2025-2776+19 CVEs60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Sources: DHS finalizing replacement for disbanded critical infrastructure security councilCyberScoop·Jan 15, 15:18 UTC · Jan 15, 2026Exploit / PoC in the wild60
Microsoft seizes RedVDS infrastructure, disrupts fastCyberScoop·Jan 14, 15:00 UTC · Jan 14, 2026Exploit / PoC in the wild60
Convicted Bitfinex bitcoin launderer freed from prison, thanks Trump lawCyberScoop·Jan 5, 21:22 UTC · Jan 5, 2026Exploit / PoC in the wild60
Infosecurity's Top 10 Cybersecurity Stories of 2025Infosecurity Magazine·Jan 1, 08:30 UTC · Jan 1, 2026Exploit / PoC in the wildCVE-2024-5559160
Chinese hackers exploiting React2Shell bug impacting countless websites, Amazon researchers sayThe Record·Dec 5, 16:22 UTC · Dec 5, 2025Exploit / PoC in the wildCVE-2025-5518260
Amazon warns of global rise in specialized cyberCyberScoop·Nov 19, 18:23 UTC · Nov 19, 2025Exploit / PoC in the wild60
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
SolarWinds Releases Hotfix for Critical CVE-2025The Hacker News·Sep 23, 12:46 UTC · Sep 23, 2025Exploit / PoC in the wildCVE-2025-26399CVE-2024-28988CVE-2024-2898660
Future of CVE Program in limbo as CISA, board members debate path forwardThe Record·Sep 19, 00:00 UTC · Sep 19, 2025Exploit / PoC in the wild60
Google fixes critical Chrome flaw, researcher earns $43KSecurity Affairs·Sep 11, 14:09 UTC · Sep 11, 2025Exploit / PoC in the wildCVE-2025-10200CVE-2025-1020160
Critical Wing FTP Server Vulnerability (CVE-2025-47812) Actively Being Exploited in the WildThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Exploit / PoC in the wildCVE-2025-4781260
China-linked group Houken hit French organizations using zeroSecurity Affairs·Jul 3, 18:16 UTC · Jul 3, 2025Exploit / PoCCVE-2024-8963CVE-2024-938060
Arrest, seizures in latest U.S. operation against North Korean IT workersCyberScoop·Jun 30, 18:13 UTC · Jun 30, 2025Exploit / PoC in the wild60
Researchers Warn of AI Attacks After PoC Exploits Atlassian's AI AgentInfosecurity Magazine·Jun 19, 11:50 UTC · Jun 19, 2025Exploit / PoC45
Federal cyber insurance backstop should be tied to expiring terrorism insurance law, report recommendsCyberScoop·Jun 17, 13:00 UTC · Jun 17, 2025Exploit / PoC in the wild60
Multi-national warning issued over Russia’s targeting of logistics, tech firmsCyberScoop·May 21, 18:41 UTC · May 21, 2025Exploit / PoC in the wildCVE-2023-23397CVE-2023-3883160
Chinese law enforcement places NSA operatives on wanted list over alleged cyberattacksCyberScoop·Apr 16, 19:19 UTC · Apr 16, 2025Exploit / PoC in the wild60
Trump signs order stripping Chris Krebs of security clearanceCyberScoop·Apr 10, 14:51 UTC · Apr 10, 2025Exploit / PoC in the wild60
China Accuses NSA's TAO Unit of Hacking its Military Research UniversityThe Hacker News·Mar 3, 09:33 UTC · Mar 3, 2025Exploit / PoC60
U.S. CISA adds Microsoft .NET Framework, Apache OFBiz, and Paessler PRTG Network Monitor flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 5, 15:03 UTC · Feb 5, 2025Exploit / PoC in the wildCVE-2024-45195CVE-2024-29059CVE-2018-9276+1 CVEs60
Microsoft Fixes AI, Cloud, and ERP Security Flaws; One Exploited in Active AttacksThe Hacker News·Dec 1, 07:13 UTC · Dec 1, 2024Exploit / PoC in the wildCVE-2024-49035CVE-2024-49038CVE-2024-49052+1 CVEs160
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
Sophos mounted counter-offensive operation to foil Chinese attackersHelp Net Security·Oct 31, 00:00 UTC · Oct 31, 2024Exploit / PoC in the wildCVE-2022-104060
Former Verizon employee pleads guilty to conspiring to aid Chinese spy agencyCyberScoop·Aug 23, 19:43 UTC · Aug 23, 2024Exploit / PoC in the wild60
Obfuscation: There Are Two Sides To EverythingThe Hacker News·Aug 1, 11:07 UTC · Aug 1, 2024Exploit / PoC60
GitHub Token Leak Exposes Python's Core Repositories to Potential AttacksThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2024Exploit / PoC in the wild160
US intel officials: Kremlin once again prefers TrumpCyberScoop·Jul 9, 23:00 UTC · Jul 9, 2024Exploit / PoC in the wild60
Chinese APT40 group swifly leverages public PoC exploitsHelp Net Security·Jul 9, 00:00 UTC · Jul 9, 2024Exploit / PoC57
Biden administration bans sale of Kaspersky software in USCyberScoop·Jun 21, 20:27 UTC · Jun 21, 2024Exploit / PoC in the wild60
PoC for Progress Telerik RCE chain released (CVE-2024-4358, CVE-2024-1800)Help Net Security·Jun 6, 10:01 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-4358CVE-2024-1800CVE-2023-3436260
House Republicans propose eliminating funding for election securityCyberScoop·Jun 5, 17:58 UTC · Jun 5, 2024Exploit / PoC in the wild60
CISA adds Chrome zero-days to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 17, 08:50 UTC · May 17, 2024Exploit / PoC in the wildCVE-2024-4761CVE-2024-4947CVE-2024-467160
Google fixes sixth actively exploited Chrome zeroSecurity Affairs·May 16, 13:02 UTC · May 16, 2024Exploit / PoC in the wildCVE-2024-4761CVE-2024-4671CVE-2024-0519+3 CVEs60