Microsoft Fixes Two ZeroInfosecurity Magazine·Feb 14, 10:30 UTC · Feb 14, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2024-21410+1 CVEs60
How can SMBs extend their SecOps capabilities without adding headcount?Help Net Security·Jan 10, 11:42 UTC · Jan 10, 2024Exploit / PoC45
Operation Triangulation attacks relied on an undocumented hardware featureSecurity Affairs·Dec 28, 23:10 UTC · Dec 28, 2023Exploit / PoCCVE-2023-41990CVE-2023-32434CVE-2023-38606160
RunC container escape flaw enables root access to host systemHelp Net Security·Dec 14, 14:27 UTC · Dec 14, 2023Exploit / PoCCVE-2019-573650
Can your Netgear router be hijacked? Check now!Help Net Security·Nov 21, 11:43 UTC · Nov 21, 2023Exploit / PoCCVE-2017-552150
DoubleAgent attack uses built-in Windows tool to hijack applicationsHelp Net Security·Nov 21, 11:35 UTC · Nov 21, 2023Exploit / PoC60
Everything You Wanted to Know About AI Security but Were Afraid to AskThe Hacker News·Sep 4, 11:29 UTC · Sep 4, 2023Exploit / PoC60
Ivanti: Customers ‘impacted’ by new zeroThe Record·Aug 21, 18:55 UTC · Aug 21, 2023Exploit / PoCCVE-2023-3803560
Google Fixes 26 Bugs Amid Fake Update WarningInfosecurity Magazine·Aug 17, 09:30 UTC · Aug 17, 2023Exploit / PoCCVE-2023-2312CVE-2023-434960
Ivanti zero-day exploited to target Norwegian government (CVE-2023-35078)Help Net Security·Jul 31, 13:19 UTC · Jul 31, 2023Exploit / PoC in the wildCVE-2023-3507860
WordPress sites using the Ultimate Member plugin are under attackSecurity Affairs·Jul 2, 06:36 UTC · Jul 2, 2023Exploit / PoCCVE-2023-346060
New ChatGPT Attack Technique Spreads Malicious PackagesInfosecurity Magazine·Jun 6, 16:00 UTC · Jun 6, 2023Exploit / PoC45
KeePass fixed bug that allows extraction of cleartext master pwdSecurity Affairs·Jun 5, 18:24 UTC · Jun 5, 2023Exploit / PoCCVE-2023-3278450
Microsoft investigating reports of ‘aCropalypse’ imageThe Record·Mar 22, 20:20 UTC · Mar 22, 2023Exploit / PoCCVE-2023-2103650
Google Exposes 18 ZeroInfosecurity Magazine·Mar 17, 17:00 UTC · Mar 17, 2023Exploit / PoCCVE-2023-2403360
Exploit released for Microsoft bug allowing attacker to masquerade as legitimate entityThe Record·Feb 3, 00:00 UTC · Feb 3, 2023Exploit / PoCCVE-2022-3468960
Life during wartime: Ukraine ‘has to be ready for new more powerful and complex’ cyberattacksThe Record·Feb 3, 00:00 UTC · Feb 3, 2023Exploit / PoC60
Researchers release PoC exploit for critical Windows CryptoAPI bug (CVE-2022-34689)Help Net Security·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoCCVE-2022-34689CVE-2020-060160
Microsoft releases guidance for Office zero-day used to target orgs in Russia, India, TibetThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-3019060
CISA adds seven bugs to Known Exploited Vulnerabilities CatalogThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-1040CVE-2022-2687160
Microsoft confirms ‘DogWalk’ zeroThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Exploit / PoC in the wildCVE-2022-3471360
Google Chrome, D-Link bugs among twelve added to CISA’s list of known exploited vulnerabilitiesThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2022-3075CVE-2018-2628CVE-2020-993460
White House: U.S. agencies have 90 days to create inventory of all softwareThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC60
Experts downplay reach of Apache bug ‘Text4Shell’The Record·Jan 9, 00:00 UTC · Jan 9, 2023Exploit / PoCCVE-2022-4288960
Google announces GUAC open source project on software supply chainsThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Exploit / PoC60
Senate intel committee to revive ‘roadshow’ on Chinese threatsThe Record·Dec 16, 00:00 UTC · Dec 16, 2022Exploit / PoC60
Security experts targeted with malicious CVE PoC exploits on GitHubSecurity Affairs·Oct 24, 07:24 UTC · Oct 24, 2022Exploit / PoCCVE-2019-070850
Microsoft Confirms Two Exchange ZeroInfosecurity Magazine·Sep 30, 15:30 UTC · Sep 30, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
8-year-old Linux Kernel flaw DirtyCred is nasty as Dirty PipeSecurity Affairs·Aug 22, 17:51 UTC · Aug 22, 2022Exploit / PoCCVE-2022-0847CVE-2022-2588CVE-2021-415460
Surge in CVEs as Microsoft Fixes Exploited Zero Day BugsInfosecurity Magazine·Aug 10, 10:00 UTC · Aug 10, 2022Exploit / PoCCVE-2022-34713CVE-2022-30134CVE-2022-30133+1 CVEs60
Elementor Fixes Critical Bug in Popular WordPress PluginInfosecurity Magazine·Apr 14, 09:00 UTC · Apr 14, 2022Exploit / PoC60
Dirty Pipe Linux flaw impacts most QNAP NAS devicesSecurity Affairs·Mar 15, 11:32 UTC · Mar 15, 2022Exploit / PoCCVE-2022-084760
Quebec shuts down thousands of sites as disclosure of the Log4Shell flawSecurity Affairs·Dec 12, 20:27 UTC · Dec 12, 2021Exploit / PoCCVE-2021-4422860
Researcher released PoC exploit code for 3 iOS zeroSecurity Affairs·Sep 24, 15:17 UTC · Sep 24, 2021Exploit / PoC60
Are you using a Sophos UTM appliance? Be sure it is up to date!Security Affairs·Aug 23, 15:40 UTC · Aug 23, 2021Exploit / PoCCVE-2020-2522360
Microsoft patches actively exploited zero-day (CVE-2021-36948), more Print Spooler flawsHelp Net Security·Aug 10, 00:00 UTC · Aug 10, 2021Exploit / PoC in the wildCVE-2021-36948CVE-2021-36936CVE-2021-34483+3 CVEs160
June 2021 Patch Tuesday: Microsoft fixes six actively exploited zero-daysHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2021Exploit / PoC in the wildCVE-2021-33742CVE-2021-31201CVE-2021-31199+6 CVEs60
Adding complexity through simplification: Breaking down SASEHelp Net Security·May 27, 00:00 UTC · May 27, 2021Exploit / PoC60
Expert released PoC exploit for Microsoft Exchange flawSecurity Affairs·May 3, 21:08 UTC · May 3, 2021Exploit / PoCCVE-2021-28482CVE-2021-28480CVE-2021-28481+1 CVEs160