CISA says it observed nearly year-old activity tied to Cisco zeroCyberScoop·Sep 25, 23:34 UTC · Sep 25, 2025Exploit / PoC in the wild60
ToolShell Exploit: Critical SharePoint ZeroRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs160
GPUHammer: New RowHammer Attack Variant Degrades AI Models on NVIDIA GPUsThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Exploit / PoC45
SafeLine WAF: Open Source Web Application Firewall with ZeroThe Hacker News·May 23, 10:30 UTC · May 23, 2025Exploit / PoC60
China-linked APT Silk Typhoon targets IT Supply ChainSecurity Affairs·Mar 5, 21:02 UTC · Mar 5, 2025Exploit / PoCCVE-2025-028260
Fortinet Warns of New Zero-Day Used in Attacks on Firewalls with Exposed InterfacesThe Hacker News·Jan 28, 13:09 UTC · Jan 28, 2025Exploit / PoC in the wildCVE-2024-5559160
BadRAM: $10 security flaw in AMD could allow hackers to access cloud computing secretsThe Record·Dec 10, 16:11 UTC · Dec 10, 2024Exploit / PoC in the wild60
Nucleus Security unveils POAM Process Automation for federal agenciesHelp Net Security·Oct 24, 00:00 UTC · Oct 24, 2024Exploit / PoC in the wild60
Expert released PoC exploit code for Veeam Backup Enterprise Manager flaw CVE-2024Security Affairs·Jun 11, 09:19 UTC · Jun 11, 2024Exploit / PoC in the wildCVE-2024-2984960
Network Security Trends: AugustPalo Alto Unit 42·Jun 6, 00:57 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-40438CVE-2021-34473CVE-2021-38647+9 CVEs60
MITRE EMB3D improves security for embedded devicesHelp Net Security·May 13, 00:00 UTC · May 13, 2024Exploit / PoC45
Palo Alto Networks warns of zeroThe Record·Apr 12, 14:52 UTC · Apr 12, 2024Exploit / PoC in the wildCVE-2024-340060
Federal government affected by Russian breach of MicrosoftCyberScoop·Apr 4, 20:10 UTC · Apr 4, 2024Exploit / PoC in the wild160
Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass ExploitationThe Hacker News·Feb 6, 14:36 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2024-21887CVE-2023-36661+1 CVEs60
Latest Ivanti Zero Day Exploited By Scores of IPsInfosecurity Magazine·Feb 6, 11:00 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2023-46805CVE-2024-21887+2 CVEs60
CISA orders federal agencies to disconnect Ivanti VPN instances by February 2Security Affairs·Feb 1, 19:46 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
CISA Emergency Directive Orders Action on Ivanti ZeroInfosecurity Magazine·Jan 22, 10:15 UTC · Jan 22, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
Ivanti Zero-Days Exploited By Multiple Actors GloballyInfosecurity Magazine·Jan 16, 10:15 UTC · Jan 16, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
Two zero-day bugs in Ivanti Connect Secure actively exploitedSecurity Affairs·Jan 11, 15:03 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
Citrix Bleed leveraged to steal data of 35+ million Comcast Xfinity customersHelp Net Security·Dec 20, 00:00 UTC · Dec 20, 2023Exploit / PoCCVE-2023-496660
PoC exploit for critical Apache Struts flaw found onlineHelp Net Security·Nov 20, 11:02 UTC · Nov 20, 2023Exploit / PoCCVE-2018-11776CVE-2017-563860
F5 fixes critical BIG-IP vulnerability, PoC is public (CVE-2023-46747)Help Net Security·Nov 2, 11:53 UTC · Nov 2, 2023Exploit / PoCCVE-2023-46747CVE-2020-5902CVE-2023-4674860
Tech Giants Reveal RecordInfosecurity Magazine·Oct 11, 09:30 UTC · Oct 11, 2023Exploit / PoCCVE-2023-4448760
New technique leads to largest DDoS attacks ever, Google and Amazon sayThe Record·Oct 10, 15:09 UTC · Oct 10, 2023Exploit / PoCCVE-2023-4448760
Almost all VPNs are vulnerable to traffic-leaking TunnelCrack attacksHelp Net Security·Aug 14, 00:00 UTC · Aug 14, 2023Exploit / PoC in the wildCVE-2023-36672CVE-2023-35838CVE-2023-36673+1 CVEs60
Threat Advisory: Microsoft Outlook privilege escalation vulnerability being exploited in the wildCisco Talos·Mar 15, 23:46 UTC · Mar 15, 2023Exploit / PoC in the wildCVE-2023-2339760
Microsoft confirms two Exchange Server zero days are being used in cyberattacksThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2022-41040CVE-2022-41082160
The Pentagon may require vendors certify their software is free of known flaws. Experts are split.CyberScoop·Aug 19, 17:34 UTC · Aug 19, 2022Exploit / PoC60
Microsoft patches Windows LSA spoofing zero-day under active attack (CVE-2022-26925)Help Net Security·May 12, 08:27 UTC · May 12, 2022Exploit / PoC in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+2 CVEs160
TLStorm 2.0: Critical bugs in widely-used Aruba, Avaya network switchesHelp Net Security·May 3, 00:00 UTC · May 3, 2022Exploit / PoCCVE-2022-23677CVE-2022-23676CVE-2022-29860+2 CVEs60
Chrome Limits Websites' Direct Access to Private Networks for Security ReasonsThe Hacker News·Jan 18, 04:53 UTC · Jan 18, 2022Exploit / PoC in the wild60
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
Threat Source Newsletter (Dec. 16, 2021)Cisco Talos·Dec 10, 12:00 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-4102CVE-2021-44228CVE-2021-4321560
Microsoft warns of a zero-day in Internet Explorer that is actively exploitedSecurity Affairs·Sep 8, 12:07 UTC · Sep 8, 2021Exploit / PoC in the wildCVE-2021-4044460
Kaseya fixed two of the three Kaseya Unitrends zeroSecurity Affairs·Aug 26, 17:13 UTC · Aug 26, 2021Exploit / PoC60
JFrog to acquire Vdoo to expand its end-to-end DevOps platform offeringHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2021Exploit / PoC in the wild60
Attackers are exploiting zero-day in Pulse Secure VPNs to breach orgs (CVE-2021-22893)Help Net Security·Apr 21, 00:00 UTC · Apr 21, 2021Exploit / PoCCVE-2021-22893CVE-2019-11510CVE-2020-8243+1 CVEs60