Expert found critical flaws in OpenText ECM SystemSecurity Affairs·Jan 22, 18:51 UTC · Jan 22, 2023Exploit / PoCCVE-2022-45924CVE-2022-45922CVE-2022-45925+4 CVEs160
Facebook sues four Vietnamese nationals for hijacking accountsThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Exploit / PoC60
How to abuse GitHub Codespaces to deliver malicious contentSecurity Affairs·Jan 17, 15:41 UTC · Jan 17, 2023Exploit / PoC45
Google: Three recent zero-days have been used against Armenian targetsThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoCCVE-2021-21166CVE-2021-30551CVE-2021-33742+2 CVEs60
'Poisoned' Tor Browser tracks Chinese users' online history, locationCyberScoop·Oct 5, 00:10 UTC · Oct 5, 2022Exploit / PoC in the wild60
Microsoft Finds Account Takeover Bug in TikTokInfosecurity Magazine·Sep 1, 09:50 UTC · Sep 1, 2022Exploit / PoC in the wildCVE-2022-2879960
Google fixed a new Chrome ZeroSecurity Affairs·Aug 17, 17:01 UTC · Aug 17, 2022Exploit / PoC in the wildCVE-2022-2856CVE-2022-2852CVE-2022-2854+11 CVEs60
Multiple government hacking groups stay busy targeting Ukraine and the region, Google researchers sayCyberScoop·May 3, 16:00 UTC · May 3, 2022Exploit / PoC in the wild60
Zimbra zero-day actively exploited by an alleged Chinese threat actorSecurity Affairs·Feb 4, 09:54 UTC · Feb 4, 2022Exploit / PoC in the wild60
Exploit in the Wild: #drupalgeddon2 - Analysis of CVE-2018Palo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-760060
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Are you using a Sophos UTM appliance? Be sure it is up to date!Security Affairs·Aug 23, 15:40 UTC · Aug 23, 2021Exploit / PoCCVE-2020-2522360
NK-linked InkySquid APT leverages IE exploits in recent attacksSecurity Affairs·Aug 19, 06:51 UTC · Aug 19, 2021Exploit / PoC in the wildCVE-2020-1380CVE-2021-2641160
Explosion of 0-day exploits: The bad news and the good newsHelp Net Security·Jul 15, 00:00 UTC · Jul 15, 2021Exploit / PoC in the wildCVE-2021-21166CVE-2021-30551CVE-2021-3374260
APT trends report Q1 2021Kaspersky Securelist·Apr 27, 10:00 UTC · Apr 27, 2021Exploit / PoC in the wild60
Google releases Spectre PoC code exploit for Chrome browserSecurity Affairs·Mar 14, 09:52 UTC · Mar 14, 2021Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Attackers are exploiting Cisco ASA/FTD flaw in search for sensitive dataHelp Net Security·Jul 29, 07:05 UTC · Jul 29, 2020Exploit / PoCCVE-2020-345250
79 Netgear router models affected by a dangerous ZeroSecurity Affairs·Jun 18, 16:04 UTC · Jun 18, 2020Exploit / PoC60
Over 800K WordPress sites are at risk due to a flaw in Ninja Forms pluginSecurity Affairs·May 1, 08:38 UTC · May 1, 2020Exploit / PoC in the wild60
‘War Dialing’ Tool Exposes Zoom’s Password ProblemsKrebs on Security·Apr 6, 02:52 UTC · Apr 6, 2020Exploit / PoC60
100K+ WordPress sites using the Contact Form 7 Datepicker plugin are exposed to hackSecurity Affairs·Apr 3, 08:50 UTC · Apr 3, 2020Exploit / PoC in the wild60
A critical flaw in Rank Math WordPress plugin allows hackers to give users Admins privilegesSecurity Affairs·Mar 31, 21:43 UTC · Mar 31, 2020Exploit / PoC in the wild60
Hackers are messing with routers' DNS settings as telework surges around the worldCyberScoop·Mar 25, 23:54 UTC · Mar 25, 2020Exploit / PoC in the wild60
FBI admitted attack against the Freedom HostingSecurity Affairs·Mar 14, 15:57 UTC · Mar 14, 2020Exploit / PoC60
Flaws in Popup Builder WordPress plugin expose 100K+ websites to hackSecurity Affairs·Mar 13, 11:42 UTC · Mar 13, 2020Exploit / PoC in the wildCVE-2020-10196CVE-2020-1019560
Crooks are attempting to take over tens of thousands of WordPress sitesSecurity Affairs·Feb 29, 16:15 UTC · Feb 29, 2020Exploit / PoC in the wild60
Hackers are actively exploiting a ZeroSecurity Affairs·Feb 20, 06:31 UTC · Feb 20, 2020Exploit / PoC in the wild60
Cyberthreats to financial institutions 2020: Overview and predictionsKaspersky Securelist·Dec 3, 14:59 UTC · Dec 3, 2019Exploit / PoC60
A zombie game with 50,000 Play Store downloads was pulling sensitive data from GmailCyberScoop·Jun 28, 18:46 UTC · Jun 28, 2019Exploit / PoC45
Expert released PoC for Outlook for Android flaw addressed by MicrosoftSecurity Affairs·Jun 23, 08:12 UTC · Jun 23, 2019Exploit / PoCCVE-2019-110560
PoC Released for Outlook Flaw that Microsoft Patched 6 Month After DiscoveryThe Hacker News·Jun 22, 16:59 UTC · Jun 22, 2019Exploit / PoCCVE-2019-110560
Critical Flaw Reported in Popular Evernote Extension for Chrome UsersThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2019Exploit / PoCCVE-2019-1259260
IT threat evolution Q1 2019Kaspersky Securelist·May 23, 10:00 UTC · May 23, 2019Exploit / PoCCVE-2019-0797CVE-2018-858960
WordPress Social Warfare plugin zeroSecurity Affairs·Mar 24, 11:01 UTC · Mar 24, 2019Exploit / PoC in the wild60
Severe Flaws in SHAREit Android App Let Hackers Steal Your FilesThe Hacker News·Feb 27, 13:22 UTC · Feb 27, 2019Exploit / PoC60
Boffins discovered seven new Meltdown and Spectre attacksSecurity Affairs·Nov 14, 22:58 UTC · Nov 14, 2018Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Magecart hackers change tactic and target vulnerable Magento extensionsSecurity Affairs·Oct 24, 20:55 UTC · Oct 24, 2018Exploit / PoC60
Security and privacy improvements in macOS MojaveHelp Net Security·Sep 25, 00:00 UTC · Sep 25, 2018Exploit / PoC60