Cybersecurity jobs available right now: April 10, 2024Help Net Security·Oct 9, 06:24 UTC · Oct 9, 2024Exploit / PoC60
US and Allies Accuse Russian Military of Destructive CyberInfosecurity Magazine·Sep 6, 11:20 UTC · Sep 6, 2024Exploit / PoC in the wild60
Void Banshee APT exploited "lingering Windows relic" in zero-day attacksHelp Net Security·Jul 16, 00:00 UTC · Jul 16, 2024Exploit / PoCCVE-2024-3811260
TotalRecall shows how easily data collected by Windows Recall can be stolenHelp Net Security·Jun 5, 00:00 UTC · Jun 5, 2024Exploit / PoC45
Hackers Exploit Fortinet Flaw, Deploy ScreenConnect, Metasploit in New CampaignThe Hacker News·Apr 18, 14:09 UTC · Apr 18, 2024Exploit / PoCCVE-2023-4878860
Critical FortiClient EMS vulnerability fixed, (fake?) PoC for sale (CVE-2023-48788)Help Net Security·Apr 15, 08:17 UTC · Apr 15, 2024Exploit / PoC in the wildCVE-2023-4878860
Winter Vivern: Zero-Day XSS Exploit Targets Roundcube ServersInfosecurity Magazine·Oct 25, 17:00 UTC · Oct 25, 2023Exploit / PoCCVE-2020-35730CVE-2023-563160
Microsoft fixes exploited WordPad, Skype for Business zero-days (CVE-2023-36563, CVE-2023-41763)Help Net Security·Oct 10, 00:00 UTC · Oct 10, 2023Exploit / PoC in the wildCVE-2023-36563CVE-2023-41763CVE-2023-44487+2 CVEs60
Qualys unveils first-party software risk management solutionHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2023Exploit / PoC60
Microsoft Bug Allowed Hackers to Breach Over Two Dozen Organizations via Forged Azure AD TokensThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Exploit / PoC in the wild60
Experts devised a new exploit for the PaperCut flaw that can bypass all current detectionSecurity Affairs·May 5, 11:01 UTC · May 5, 2023Exploit / PoC in the wildCVE-2023-2735060
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Microsoft Exchange admins advised to expand antivirus scanningHelp Net Security·Feb 27, 00:00 UTC · Feb 27, 2023Exploit / PoC60
Zoho ManageEngine PoC Exploit to be Released SoonThe Hacker News·Jan 21, 04:44 UTC · Jan 21, 2023Exploit / PoCCVE-2022-4796660
Microsoft updates guidance for ‘ProxyNotShell’ bugs after researchers get around mitigationsThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
PoC exploit code for ProxyNotShell Microsoft Exchange bugs released onlineSecurity Affairs·Nov 20, 19:41 UTC · Nov 20, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Microsoft: Two New 0-Day Flaws in Exchange ServerKrebs on Security·Sep 30, 17:03 UTC · Sep 30, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-41082160
Iran-linked Mercury APT exploited Log4Shell in SysAid Apps for initial accessSecurity Affairs·Aug 26, 17:19 UTC · Aug 26, 2022Exploit / PoCCVE-2021-4422860
Attackers are leveraging Follina. What can you do?Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Clever - and Exploitable - Windows Zero-DaySchneier on Security·Jun 1, 18:25 UTC · Jun 1, 2022Exploit / PoC60
China-linked TA413 group actively exploits Microsoft Follina ZeroSecurity Affairs·Jun 1, 10:25 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
Microsoft Acknowledges Zero-Day, Follina Office Vulnerability, Suggests FixInfosecurity Magazine·May 31, 17:50 UTC · May 31, 2022Exploit / PoCCVE-2022-3019060
Watch Out! Researchers Spot New Microsoft Office ZeroThe Hacker News·May 30, 15:44 UTC · May 30, 2022Exploit / PoCCVE-2021-40444160
Threat actors target the infoSec community with fake PoC exploitsSecurity Affairs·May 23, 18:21 UTC · May 23, 2022Exploit / PoCCVE-2022-26809CVE-2022-2450060
Traps Prevents Microsoft Office Equation Editor Zero-Day CVE-2018Palo Alto Unit 42·Jan 28, 21:26 UTC · Jan 28, 2022Exploit / PoCCVE-2017-11882CVE-2018-080260
Attack techniques observed by Kaspersky MDRKaspersky Securelist·Dec 15, 10:00 UTC · Dec 15, 2021Exploit / PoC in the wildCVE-2021-1675CVE-2021-3452760
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
Expert released PoC code for Microsoft Exchange CVE-2021Security Affairs·Nov 23, 17:14 UTC · Nov 23, 2021Exploit / PoC in the wildCVE-2021-4232160
Microsoft patches actively exploited Exchange, Excel zero-days (CVE-2021-42321, CVE-2021-42292)Help Net Security·Nov 9, 00:00 UTC · Nov 9, 2021Exploit / PoC in the wildCVE-2021-42321CVE-2021-42292CVE-2021-38666+2 CVEs60
Chinese hacking group DEV-0322 behind Solarwinds ServSecurity Affairs·Jul 14, 08:48 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
APT trends report Q1 2021Kaspersky Securelist·Apr 27, 10:00 UTC · Apr 27, 2021Exploit / PoC in the wild60
No, I Did Not Hack Your MS Exchange ServerKrebs on Security·Mar 28, 18:16 UTC · Mar 28, 2021Exploit / PoC in the wild60
FIN8 cybercrime group resurges with improved hacking toolCyberScoop·Mar 10, 22:21 UTC · Mar 10, 2021Exploit / PoC in the wild60
Zero-day vulnerabilities in Microsoft Exchange ServerKaspersky Securelist·Mar 4, 17:20 UTC · Mar 4, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
'MuddyWater' spies suspected in attacks against Middle East governments, telecomsCyberScoop·Oct 21, 13:53 UTC · Oct 21, 2020Exploit / PoC in the wild60
SMBleed could allow a remote attacker to leak kernel memorySecurity Affairs·Jun 11, 09:40 UTC · Jun 11, 2020Exploit / PoCCVE-2020-1206CVE-2020-079660
Cyberthreats to financial institutions 2020: Overview and predictionsKaspersky Securelist·Dec 3, 14:59 UTC · Dec 3, 2019Exploit / PoC60