JFrog Confirms OpenAI Models Exploited Artifactory ZeroThe Hacker News·Jul 30, 03:54 UTC · Jul 30, 2026Exploit / PoCCVE-2026-65617CVE-2026-65923CVE-2026-66018+1 CVEs60
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreThe Hacker News·Jul 28, 05:26 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-16232CVE-2025-66376CVE-2026-54121+52 CVEs60
NVIDIA Forms 37-Member Open Secure AI Alliance and OpenThe Hacker News·Jul 27, 18:10 UTC · Jul 27, 2026Exploit / PoC60
Axonius expands Asset Cloud with Cyber Assets and Exposures enhancementsHelp Net Security·Jul 23, 00:00 UTC · Jul 23, 2026Exploit / PoC60
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeThe Hacker News·Jul 18, 05:23 UTC · Jul 18, 2026Exploit / PoC in the wildCVE-2026-63030CVE-2026-6013760
Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootThe Hacker News·Jul 10, 15:57 UTC · Jul 10, 2026Exploit / PoCCVE-2026-3324360
Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItThe Hacker News·Jul 9, 05:17 UTC · Jul 9, 2026Exploit / PoCCVE-2026-3986150
The Threat Isn’t the Frontier ModelRecorded Future·Jul 8, 00:00 UTC · Jul 8, 2026Exploit / PoC in the wild60
CyberProof Agentic MXDR Service brings AI agents to managed detection and responseHelp Net Security·Jul 7, 00:00 UTC · Jul 7, 2026Exploit / PoC60
New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit ReposThe Hacker News·Jul 2, 07:29 UTC · Jul 2, 2026Exploit / PoCCVE-2025-64446CVE-2025-55182CVE-2025-14847+5 CVEs160
Public PoC Released for Critical libssh2 CVE-2026-55200 ClientThe Hacker News·Jun 29, 07:06 UTC · Jun 29, 2026Exploit / PoC in the wildCVE-2026-55200CVE-2019-3855CVE-2026-55199+1 CVEs160
usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 DevicesSecurity Affairs·Jun 22, 07:12 UTC · Jun 22, 2026Exploit / PoC45
Accenture shells out $4.18B on three companies in big industrial cybersecurity pushCyberScoop·Jun 18, 15:05 UTC · Jun 18, 2026Exploit / PoC in the wild60
Qualys Agent Val validates exploitability and cuts remediation noiseHelp Net Security·Jun 17, 07:10 UTC · Jun 17, 2026Exploit / PoC in the wild60
Corelight enhances Open NDR to detect AI-driven threats and unknown assetsHelp Net Security·Jun 17, 00:00 UTC · Jun 17, 2026Exploit / PoC in the wild60
U.S. CISA adds Oracle PeopleSoft Enterprise PeopleTools flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 13, 09:19 UTC · Jun 13, 2026Exploit / PoC in the wildCVE-2026-3527360
Zero trust physical security needs trust decisions at the edgeHelp Net Security·Jun 2, 00:00 UTC · Jun 2, 2026Exploit / PoC60
Tuskira Quell identifies, mitigates, and validates zero-day risk before breachHelp Net Security·Jun 2, 00:00 UTC · Jun 2, 2026Exploit / PoC60
A SpaceX Security Engineer Used AI to Find a 19-YearSecurity Affairs·Jun 1, 09:55 UTC · Jun 1, 2026Exploit / PoC45
India's CERT-In Sets 12Infosecurity Magazine·May 26, 10:30 UTC · May 26, 2026Exploit / PoC in the wild60
The readiness paradox: Why a false sense of cyber confidence is becoming a liabilityCyberScoop·May 21, 10:00 UTC · May 21, 2026Exploit / PoC in the wild60
Ongoing exploitation of Cisco Catalyst SDCisco Talos·May 14, 16:02 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20133CVE-2026-20128+2 CVEs160
NGINX Rift: an 18-year-old flaw in the world's most deployed web server just came to lightSecurity Affairs·May 14, 13:30 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-42945CVE-2026-42946CVE-2026-40701+1 CVEs60
Industrial networks continue to leak onto the internetHelp Net Security·May 13, 10:12 UTC · May 13, 2026Exploit / PoC60
Major world economies spell out key elements of AI ‘ingredients list’CyberScoop·May 12, 21:09 UTC · May 12, 2026Exploit / PoC in the wild60
U.S. CISA adds a flaw in BerriAI LiteLLM to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 11, 09:14 UTC · May 11, 2026Exploit / PoC in the wildCVE-2026-4220860
Rowhammer Attack Against NVIDIA ChipsSchneier on Security·May 6, 10:37 UTC · May 6, 2026Exploit / PoC45
Small Defense Firms Lack Network Data to Stop NationInfosecurity Magazine·May 4, 12:00 UTC · May 4, 2026Exploit / PoC60
A dozen allied agencies say China is building covert hacker networks out of everyday routersCyberScoop·Apr 23, 16:13 UTC · Apr 23, 2026Exploit / PoC in the wild60
Researcher drops two more Microsoft Defender zero-days, all three now exploited in the wildHelp Net Security·Apr 23, 09:15 UTC · Apr 23, 2026Exploit / PoC in the wildCVE-2026-3382560
Imperva introduces Serverless Protection to secure serverless computing functionsHelp Net Security·Apr 20, 08:49 UTC · Apr 20, 2026Exploit / PoC60
Critical Nginx-ui MCP Flaw Actively Exploited in the WildInfosecurity Magazine·Apr 15, 13:00 UTC · Apr 15, 2026Exploit / PoC in the wildCVE-2026-3303260
OPSWAT delivers AI-powered perimeter defense with unified zero-day verdictsHelp Net Security·Apr 15, 10:12 UTC · Apr 15, 2026Exploit / PoC60
AI Security Institute Advocates Security Best Practices After Mythos TInfosecurity Magazine·Apr 14, 09:30 UTC · Apr 14, 2026Exploit / PoC60
Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packagesHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2026Exploit / PoC in the wildCVE-2025-53521CVE-2026-21992CVE-2026-305560
Critical Nginx UI flaw CVE-2026Security Affairs·Mar 8, 19:10 UTC · Mar 8, 2026Exploit / PoCCVE-2026-2794460
How 'silent probing' can make your security playbook a liabilityCyberScoop·Mar 2, 11:00 UTC · Mar 2, 2026Exploit / PoC in the wild60
Thousands of Public Google Cloud API Keys Exposed with Gemini Access After API EnablementThe Hacker News·Feb 28, 17:01 UTC · Feb 28, 2026Exploit / PoC in the wild60