⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
China-linked APT UNC3886 targets Singapore telcosSecurity Affairs·Feb 10, 08:40 UTC · Feb 10, 2026Exploit / PoCCVE-2022-4132860
Ivanti provides temporary patches for actively exploited EPMM zero-day (CVE-2026-1281)Help Net Security·Feb 2, 10:44 UTC · Feb 2, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Cybersecurity jobs available right now: May 13, 2025Help Net Security·Jan 30, 10:25 UTC · Jan 30, 2026Exploit / PoC60
Cybersecurity jobs available right now: August 19, 2025Help Net Security·Jan 28, 13:12 UTC · Jan 28, 2026Exploit / PoC57
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Week in review: Exploited zero-day in Cisco email security appliances, Kali Linux 2025.4 releasedHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2025Exploit / PoC in the wildCVE-2025-59718CVE-2025-40602CVE-2025-14174+1 CVEs160
What cybersecurity leaders are reading to stay aheadHelp Net Security·Dec 18, 00:00 UTC · Dec 18, 2025Exploit / PoC57
Organizations can now buy cyber insurance that covers deepfakesCyberScoop·Dec 11, 18:38 UTC · Dec 11, 2025Exploit / PoC in the wild60
Gainsight CEO downplays impact of attack that spread to Salesforce environmentsCyberScoop·Nov 26, 00:28 UTC · Nov 26, 2025Exploit / PoC in the wild60
China-linked UNC6384 exploits Windows zeroSecurity Affairs·Nov 1, 14:11 UTC · Nov 1, 2025Exploit / PoC60
Diplomatic entities in Belgium and Hungary hacked in ChinaThe Record·Oct 30, 18:17 UTC · Oct 30, 2025Exploit / PoC60
Top 10 Takeaways from Predict 2025: Turning Intelligence Into ActionRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025Exploit / PoC in the wild60
Researchers say Israeli government likely behind AICyberScoop·Oct 3, 17:16 UTC · Oct 3, 2025Exploit / PoC in the wild60
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
UK NCSC warns that attackers exploited Cisco firewall zero-days to deploy RayInitiator and LINE VIPER malwareSecurity Affairs·Sep 26, 11:49 UTC · Sep 26, 2025Exploit / PoCCVE-2025-20362CVE-2025-20333CVE-2025-2036360
Libraesva ESG zero-day vulnerability exploited by attackers (CVE-2025-59689)Help Net Security·Sep 24, 00:00 UTC · Sep 24, 2025Exploit / PoCCVE-2025-5968960
How a fake ICS network can reveal real cyberattacksHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2025Exploit / PoC60
Salesloft Drift security incident started with undetected GitHub accessCyberScoop·Sep 8, 22:44 UTC · Sep 8, 2025Exploit / PoC in the wild60
WhatsApp, Apple warn of highly targeted attacks with zeroThe Record·Sep 2, 15:48 UTC · Sep 2, 2025Exploit / PoCCVE-2025-55177CVE-2025-4330060
Netscaler vulnerability was exploited as zero-day for nearly two months (CVE-2025-6543)Help Net Security·Aug 29, 09:22 UTC · Aug 29, 2025Exploit / PoC in the wildCVE-2025-6543CVE-2025-577760
Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent AccessThe Hacker News·Jul 23, 06:05 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2025-53770+3 CVEs60
Singapore warns China-linked group UNC3886 targets its critical infrastructureSecurity Affairs·Jul 20, 17:17 UTC · Jul 20, 2025Exploit / PoCCVE-2022-4132860
China-linked group Houken hit French organizations using zeroSecurity Affairs·Jul 3, 18:16 UTC · Jul 3, 2025Exploit / PoCCVE-2024-8963CVE-2024-938060
Chinese Hackers Target France in Ivanti ZeroInfosecurity Magazine·Jul 2, 12:00 UTC · Jul 2, 2025Exploit / PoCCVE-2024-8190CVE-2024-8963CVE-2024-9380160
Threat Intelligence and SIEM (Part 4) — An Active Cyber Defense ApproachRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Week in review: Microsoft fixes exploited zero-day, Mirai botnets target unpatched Wazuh serversHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2025Exploit / PoC in the wildCVE-2025-33053CVE-2025-24016CVE-2025-43200+1 CVEs60
ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised DevicesThe Hacker News·May 29, 08:55 UTC · May 29, 2025Exploit / PoC in the wildCVE-2023-20118CVE-2023-3978060
44% Of The Zero-Days Exploited In 2024 Were In Enterprise SolutionsHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2025Exploit / PoCCVE-2024-53104CVE-2024-32896CVE-2024-29745+1 CVEs60
Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
Is Ivanti the problem or a symptom of a systemic issue with network devices?CyberScoop·Apr 14, 13:57 UTC · Apr 14, 2025Exploit / PoC in the wild60
Google Releases April Android Update to Address Two ZeroInfosecurity Magazine·Apr 8, 16:45 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2024-53150CVE-2024-53197CVE-2024-53104+1 CVEs60
U.S. CISA adds Fortinet FortiOS/FortiProxy and GitHub Action flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 14:17 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2025-30066CVE-2024-5559160
U.S. CISA adds Apple products and Juniper Junos OS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 14, 00:02 UTC · Mar 14, 2025Exploit / PoC in the wildCVE-2025-21590CVE-2025-2420160
China-linked APT UNC3886 targets EoL Juniper routersSecurity Affairs·Mar 13, 23:47 UTC · Mar 13, 2025Exploit / PoCCVE-2022-41328CVE-2025-2159060
U.S. CISA adds Linux kernel and VMware ESXi and Workstation flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 5, 06:09 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2024-50302CVE-2025-22225CVE-2025-22224+3 CVEs60
Google fixed two actively exploited Android flawsSecurity Affairs·Mar 4, 13:29 UTC · Mar 4, 2025Exploit / PoC in the wildCVE-2024-43093CVE-2024-50302CVE-2024-53104+1 CVEs60