Week in review: PostgreSQL databases under attack, new Chrome zero-day actively exploitedHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-6800CVE-2024-28987+2 CVEs60
Cross-industry standards for data provenance in AIHelp Net Security·Jul 22, 00:00 UTC · Jul 22, 2024Exploit / PoC60
Attackers Are Taking Advantage of the Open-Source Service Interactsh for Malicious PurposesPalo Alto Unit 42·Jun 6, 01:14 UTC · Jun 6, 2024Exploit / PoCCVE-2017-9506CVE-2017-12629CVE-2019-2767+23 CVEs60
Critical FortiClient EMS vulnerability fixed, (fake?) PoC for sale (CVE-2023-48788)Help Net Security·Apr 15, 08:17 UTC · Apr 15, 2024Exploit / PoC in the wildCVE-2023-4878860
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260
Zero-Day Flaw in Zimbra Email Software Exploited by Four Hacker GroupsThe Hacker News·Nov 17, 03:48 UTC · Nov 17, 2023Exploit / PoCCVE-2023-3758060
Zimbra zero-day exploited to steal government emails by 4 groupsSecurity Affairs·Nov 16, 20:49 UTC · Nov 16, 2023Exploit / PoCCVE-2023-3758060
Hackers target Greece, Tunisia, Moldova, Vietnam and Pakistan with Zimbra zeroThe Record·Nov 16, 17:06 UTC · Nov 16, 2023Exploit / PoCCVE-2023-37580CVE-2022-2468260
A flaw in libcue library impacts GNOME Linux systemsSecurity Affairs·Oct 10, 16:59 UTC · Oct 10, 2023Exploit / PoCCVE-2023-4364160
Chrome zero-day exploited in the wild, patch now! (CVE-2023-4863)Help Net Security·Sep 29, 08:22 UTC · Sep 29, 2023Exploit / PoC in the wildCVE-2023-4863CVE-2023-41064CVE-2023-41061+1 CVEs60
Fake WinRAR PoC spread VenomRAT malwareHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2023Exploit / PoCCVE-2023-4047CVE-2023-25157CVE-2023-4047760
Week in review: VirusTotal data leak, Citrix NetScaler zero-day exploitationHelp Net Security·Jul 23, 00:00 UTC · Jul 23, 2023Exploit / PoC in the wildCVE-2023-3519CVE-2023-29298CVE-2023-38203+3 CVEs60
Is it OK to publish PoC exploits for vulnerabilities and patches?Help Net Security·Apr 26, 10:40 UTC · Apr 26, 2023Exploit / PoC60
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Threat Advisory: Microsoft Outlook privilege escalation vulnerability being exploited in the wildCisco Talos·Mar 15, 23:46 UTC · Mar 15, 2023Exploit / PoC in the wildCVE-2023-2339760
Jenkins project discloses security breach following Confluence server hackThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Exploit / PoC in the wildCVE-2021-2608460
CI Fuzz CLI: Open-source tool to test Java apps for unexpected behaviorsHelp Net Security·Dec 2, 00:00 UTC · Dec 2, 2022Exploit / PoC60
PoC released for Microsoft Exchange ProxyLogon vulnerabilitiesThe Record·Nov 17, 00:00 UTC · Nov 17, 2022Exploit / PoC57
PoC exploit code for the critical Realtek RCE flaw released onlineSecurity Affairs·Aug 18, 07:11 UTC · Aug 18, 2022Exploit / PoCCVE-2022-2725560
Threat actors target the infoSec community with fake PoC exploitsSecurity Affairs·May 23, 18:21 UTC · May 23, 2022Exploit / PoCCVE-2022-26809CVE-2022-2450060
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Attack techniques observed by Kaspersky MDRKaspersky Securelist·Dec 15, 10:00 UTC · Dec 15, 2021Exploit / PoC in the wildCVE-2021-1675CVE-2021-3452760
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
Researcher released PoC exploit code for 3 iOS zeroSecurity Affairs·Sep 24, 15:17 UTC · Sep 24, 2021Exploit / PoC60
Microsoft rolled out emergency update for Windows PrintNightmareSecurity Affairs·Jul 7, 07:47 UTC · Jul 7, 2021Exploit / PoC in the wildCVE-2021-34527CVE-2021-167560
CISA alert urges to disable Windows Print Spooler to percent PrintNightmare attacksSecurity Affairs·Jul 2, 08:53 UTC · Jul 2, 2021Exploit / PoCCVE-2021-167560
PoC exploit for CVE-2021Security Affairs·Jun 29, 17:08 UTC · Jun 29, 2021Exploit / PoCCVE-2021-167560
Google releases Spectre PoC code exploit for Chrome browserSecurity Affairs·Mar 14, 09:52 UTC · Mar 14, 2021Exploit / PoCCVE-2017-5754CVE-2017-5753CVE-2017-571550
Operation Earth Kitsune: hackers target the Korean diasporaSecurity Affairs·Oct 30, 23:50 UTC · Oct 30, 2020Exploit / PoCCVE-2019-578260
Apache Solr RCEs with public PoCs could soon be exploitedHelp Net Security·Nov 25, 00:00 UTC · Nov 25, 2019Exploit / PoCCVE-2019-1240960
NSA’s reverse engineering tool Ghidra impacted by a bug — but there's no need to panicCyberScoop·Oct 1, 21:13 UTC · Oct 1, 2019Exploit / PoC in the wildCVE-2019-1694160
Microsoft pushes open-source software kit to election agencies, votingCyberScoop·May 7, 01:14 UTC · May 7, 2019Exploit / PoC in the wild60
PoC Code for container escape flaw in runc published onlineSecurity Affairs·Feb 18, 20:35 UTC · Feb 18, 2019Exploit / PoCCVE-2019-5736150
First major Kubernetes flaw enables hackers to access backend servers undetectedCyberScoop·Dec 5, 14:15 UTC · Dec 5, 2018Exploit / PoC in the wildCVE-2018-100219560
Critical Apache Struts flaw CVE-2018Security Affairs·Aug 28, 16:07 UTC · Aug 28, 2018Exploit / PoCCVE-2018-11776CVE-2017-563860
Delving deep into VBScriptKaspersky Securelist·Jul 3, 13:00 UTC · Jul 3, 2018Exploit / PoCCVE-2018-8174CVE-2014-6332160
Apple reports spike in national security requests amid promises of more transparencyCyberScoop·May 29, 18:36 UTC · May 29, 2018Exploit / PoC in the wild60
Code for massive 'Memcrashed' DDoS attack made publicCyberScoop·Mar 7, 21:13 UTC · Mar 7, 2018Exploit / PoC in the wild60
15-Year-Old Apple macOS 0-Day Kernel Flaw Disclosed, Allows Root AccessThe Hacker News·Jan 2, 08:18 UTC · Jan 2, 2018Exploit / PoC60