When trust turns toxic: Lessons from the Salesloft Drift incidentCyberScoop·Nov 24, 11:00 UTC · Nov 24, 2025Exploit / PoC in the wild60
Hackers turn open-source AI framework into global cryptojacking operationCyberScoop·Nov 19, 15:29 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2023-48022160
Bugcrowd expands AI-powered, human-led security with Mayhem Security acquisitionHelp Net Security·Nov 4, 00:00 UTC · Nov 4, 2025Exploit / PoC60
New Pixnapping Android Flaw Lets Rogue Apps Steal 2FA Codes Without PermissionsThe Hacker News·Oct 20, 18:54 UTC · Oct 20, 2025Exploit / PoC in the wildCVE-2025-4856160
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
U.S. CISA adds Cisco ISE and PaperCut NG/MF flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 5, 18:59 UTC · Aug 5, 2025Exploit / PoC in the wildCVE-2025-20281CVE-2025-20337CVE-2023-2533+1 CVEs60
Cisco confirms active exploitation of ISE and ISESecurity Affairs·Jul 22, 19:52 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-20281CVE-2025-20282CVE-2025-2033760
Week in review: Microsoft fixes exploited zero-day, Mirai botnets target unpatched Wazuh serversHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2025Exploit / PoC in the wildCVE-2025-33053CVE-2025-24016CVE-2025-43200+1 CVEs60
70% Of Leaked Secrets Remain Active Two Years LaterHelp Net Security·Mar 20, 00:00 UTC · Mar 20, 2025Exploit / PoC60
Destructive Attacks on Financial Institutions Surge 13%Infosecurity Magazine·Feb 5, 10:00 UTC · Feb 5, 2025Exploit / PoC60
CISA Adds Second BeyondTrust Flaw to KEV Catalog Amid Active AttacksThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025Exploit / PoC in the wildCVE-2024-12686CVE-2024-12356CVE-2023-4836560
Cybersecurity jobs available right now: October 16, 2024Help Net Security·Nov 25, 09:23 UTC · Nov 25, 2024Exploit / PoC45
U.S. CISA adds Palo Alto Networks Expedition bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 15, 09:36 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-9463CVE-2024-9465CVE-2024-9464+3 CVEs60
Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security toolsHelp Net Security·Oct 13, 00:00 UTC · Oct 13, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-9680+5 CVEs60
Palo Alto fixed critical flaws in PAN-OS firewalls that allow for full compromise of the devicesSecurity Affairs·Oct 10, 05:24 UTC · Oct 10, 2024Exploit / PoCCVE-2024-9463CVE-2024-9464CVE-2024-9465+3 CVEs60
Week in review: PostgreSQL databases under attack, new Chrome zero-day actively exploitedHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-6800CVE-2024-28987+2 CVEs60
Week in review: CrowdStrike-triggered outage insights, recovery, and measuring cybersecurity ROIHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2024Exploit / PoCCVE-2024-6327CVE-2024-4111060
Experts warn of a flaw in Fluent Bit utility that is used by major cloud platforms and firmsSecurity Affairs·May 21, 09:55 UTC · May 21, 2024Exploit / PoCCVE-2024-432360
Experts warn of BIG-IP Next Central Manager flaws that allow device takeoverSecurity Affairs·May 9, 08:30 UTC · May 9, 2024Exploit / PoCCVE-2024-26026CVE-2024-2179360
Open access to AI foundational models poses various security and compliance risks, report findsCyberScoop·Dec 13, 11:00 UTC · Dec 13, 2023Exploit / PoC in the wild60
DeleFriend Weakness Puts Google Workspace Security at RiskInfosecurity Magazine·Nov 29, 16:30 UTC · Nov 29, 2023Exploit / PoC60
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
Experts disclosed 2 critical flaws in Alibaba cloud database servicesSecurity Affairs·Apr 20, 16:02 UTC · Apr 20, 2023Exploit / PoC60
Google fixes a new Chrome zeroSecurity Affairs·Sep 14, 06:24 UTC · Sep 14, 2021Exploit / PoC in the wildCVE-2021-21148CVE-2021-21166CVE-2021-21193+14 CVEs160
Zoho warns of zero-day authentication bypass flaw actively exploitedSecurity Affairs·Sep 9, 06:49 UTC · Sep 9, 2021Exploit / PoC in the wildCVE-2021-4053960
Zero-day vulnerability in Desktop Window Manager (CVE-2021Kaspersky Securelist·Apr 13, 17:35 UTC · Apr 13, 2021Exploit / PoC in the wildCVE-2021-1732CVE-2021-2831060
Bypassing Google Audio reCAPTCHA with a new version of unCaptcha2Security Affairs·Jan 5, 09:09 UTC · Jan 5, 2021Exploit / PoC45
RSA Conference announces finalists for Innovation Sandbox Contest 2019Help Net Security·May 12, 11:31 UTC · May 12, 2020Exploit / PoC60
GreatHorn improves its threat detection, user protection, and incident response capabilitiesHelp Net Security·Feb 13, 00:00 UTC · Feb 13, 2020Exploit / PoC60
Apache Solr RCEs with public PoCs could soon be exploitedHelp Net Security·Nov 25, 00:00 UTC · Nov 25, 2019Exploit / PoCCVE-2019-1240960
Severe Flaw Disclosed In StackStorm DevOps Automation SoftwareThe Hacker News·Mar 11, 10:16 UTC · Mar 11, 2019Exploit / PoCCVE-2019-958060
Hacking Virtual Reality – Researchers Exploit Popular Bigscreen VR AppThe Hacker News·Feb 22, 13:17 UTC · Feb 22, 2019Exploit / PoC45
unCaptcha automated system bypasses Google reCAPTCHA once againSecurity Affairs·Jan 3, 08:00 UTC · Jan 3, 2019Exploit / PoC45
Twitter fixed bug could have exposed Direct Messages to thirdSecurity Affairs·Dec 16, 10:32 UTC · Dec 16, 2018Exploit / PoC45
Expert found a way to bypass Windows UAC by mocking trusted DirectorySecurity Affairs·Nov 13, 07:51 UTC · Nov 13, 2018Exploit / PoC45
0x20k of Ghost Squad released ODay Exploit Targeting Apache HadoopSecurity Affairs·Nov 1, 14:34 UTC · Nov 1, 2018Exploit / PoC60
GitHub rolls out new token scanning, security alert featuresCyberScoop·Oct 17, 20:26 UTC · Oct 17, 2018Exploit / PoC in the wild60