House lawmakers take aim at education requirements for federal cyber jobsCyberScoop·Aug 21, 20:05 UTC · Aug 21, 2025Exploit / PoC in the wild60
94% of Wi-Fi networks lack protection against deauthentication attacksHelp Net Security·Mar 14, 00:00 UTC · Mar 14, 2025Exploit / PoC in the wild60
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Careto APT’s recent attacks discoveredKaspersky Securelist·Dec 12, 10:00 UTC · Dec 12, 2024Exploit / PoC160
White House is prioritizing secure internet routing, using memory safe languagesCyberScoop·Oct 10, 14:02 UTC · Oct 10, 2024Exploit / PoC in the wild60
South Korean Spies Exploit WPS Office ZeroInfosecurity Magazine·Aug 28, 09:50 UTC · Aug 28, 2024Exploit / PoCCVE-2024-7262CVE-2024-726360
GenAI buzz fading among senior executivesHelp Net Security·Aug 26, 00:00 UTC · Aug 26, 2024Exploit / PoC60
Obfuscation: There Are Two Sides To EverythingThe Hacker News·Aug 1, 11:07 UTC · Aug 1, 2024Exploit / PoC60
Why Are My Junctions Not Followed? Exploring Windows Redirection Trust MitigationPalo Alto Unit 42·Jun 5, 20:23 UTC · Jun 5, 2024Exploit / PoCCVE-2020-078750
Adobe patches newly exploited Flash zero-dayHelp Net Security·Dec 15, 12:35 UTC · Dec 15, 2023Exploit / PoC in the wildCVE-2018-1598260
Unveiling NKAbuse: a new multiplatform threat abusing the NKN protocolKaspersky Securelist·Dec 14, 13:00 UTC · Dec 14, 2023Exploit / PoCCVE-2017-563860
Advancing transparency and accountability in the cybersecurity industryHelp Net Security·Dec 14, 12:57 UTC · Dec 14, 2023Exploit / PoC45
CISA adds Looney Tunables Linux bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 22, 10:35 UTC · Nov 22, 2023Exploit / PoC in the wildCVE-2023-4911CVE-2017-984160
DoubleAgent attack uses built-in Windows tool to hijack applicationsHelp Net Security·Nov 21, 11:35 UTC · Nov 21, 2023Exploit / PoC60
Kali Linux 2020.4 released: New default shell, fresh tools, and more!Help Net Security·Nov 14, 08:39 UTC · Nov 14, 2023Exploit / PoC45
Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government, Military, and TelecomThe Hacker News·Aug 29, 15:43 UTC · Aug 29, 2023Exploit / PoCCVE-2023-286860
Microsoft fixed a flaw in Power Platform after being criticizedSecurity Affairs·Aug 6, 15:10 UTC · Aug 6, 2023Exploit / PoC in the wild60
It’s a hot 0-day summer for Apple, Google, and Microsoft security fixesArs Technica · Security·Aug 1, 17:55 UTC · Aug 1, 2023Exploit / PoCCVE-2023-37450CVE-2023-36884CVE-2023-32046+18 CVEs60
Russian cyberspies targeted the Slovak government for monthsThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoC60
Attack of drones: airborne cybersecurity nightmareSecurity Affairs·Dec 2, 21:22 UTC · Dec 2, 2022Exploit / PoC57
IT threat evolution Q2 2022Kaspersky Securelist·Aug 15, 09:54 UTC · Aug 15, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-26925CVE-2022-30190160
Browser synchronization abuse: Bookmarks as a covert data exfiltration channelHelp Net Security·Aug 2, 00:00 UTC · Aug 2, 2022Exploit / PoC45
Bitter APT Hackers Add Bangladesh to Their List of Targets in South AsiaThe Hacker News·May 12, 01:27 UTC · May 12, 2022Exploit / PoCCVE-2021-1732CVE-2021-28310CVE-2017-11882+2 CVEs60
Bitter APT adds Bangladesh to their targetsCisco Talos·May 11, 12:00 UTC · May 11, 2022Exploit / PoCCVE-2017-11882CVE-2018-0798CVE-2018-0802+1 CVEs60
Exploit in the Wild: #drupalgeddon2 - Analysis of CVE-2018Palo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-760060
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
Behind the scenes with the head of Kaspersky’s GReATKaspersky Securelist·Jun 22, 09:30 UTC · Jun 22, 2021Exploit / PoC60
Symantec confirms that Longhorn group is tied to CIA operators detailed in Vault 7Security Affairs·Apr 29, 10:24 UTC · Apr 29, 2021Exploit / PoC60
APT trends report Q1 2021Kaspersky Securelist·Apr 27, 10:00 UTC · Apr 27, 2021Exploit / PoC in the wild60
FBI silently removed web shells planted on Microsoft Exchange serversSecurity Affairs·Apr 14, 10:20 UTC · Apr 14, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
New Attack Could Let Hackers Clone Your Google Titan 2FA Security KeysThe Hacker News·Jan 8, 19:59 UTC · Jan 8, 2021Exploit / PoCCVE-2021-301150
HPE discloses critical zeroSecurity Affairs·Dec 16, 21:33 UTC · Dec 16, 2020Exploit / PoCCVE-2020-720060
Flaw in popular NodeJS 'express-fileupload' module allows DoS attacks and code injectionSecurity Affairs·Aug 5, 08:00 UTC · Aug 5, 2020Exploit / PoCCVE-2020-7699150
Republican momentum builds for bills requiring encryption circumventionCyberScoop·Jul 31, 17:53 UTC · Jul 31, 2020Exploit / PoC in the wild60
Palo Alto Networks Discovers Two Adobe Reader Privileged JavaScript ZeroPalo Alto Unit 42·Jul 3, 01:11 UTC · Jul 3, 2020Exploit / PoCCVE-2016-6957CVE-2016-695860
DarkHotel uses VPN zero-day in attacks on Chinese government agenciesSecurity Affairs·Apr 6, 13:24 UTC · Apr 6, 2020Exploit / PoC60
Mukashi, the new Mirai variant that targets Zyxel NASSecurity Affairs·Mar 21, 15:46 UTC · Mar 21, 2020Exploit / PoCCVE-2020-905460
3 Google Play Store Apps Exploit Android ZeroThe Hacker News·Jan 7, 16:41 UTC · Jan 7, 2020Exploit / PoCCVE-2019-221560
Hackers continue to exploit the Drupalgeddon2 flaw in attacks in the wildSecurity Affairs·Oct 8, 05:32 UTC · Oct 8, 2019Exploit / PoCCVE-2018-760060