Cybersecurity jobs available right now: August 19, 2025Help Net Security·Jan 28, 13:12 UTC · Jan 28, 2026Exploit / PoC57
CISA Updates KEV Catalog with Four Actively Exploited Software VulnerabilitiesThe Hacker News·Jan 23, 15:24 UTC · Jan 23, 2026Exploit / PoC in the wildCVE-2025-68645CVE-2025-34026CVE-2025-31125+1 CVEs60
Unpatched Gogs Zero-Day Exploited Across 700+ Instances Amid Active AttacksThe Hacker News·Jan 13, 07:05 UTC · Jan 13, 2026Exploit / PoC in the wildCVE-2025-8110CVE-2024-5594760
Coolify Discloses 11 Critical Flaws Enabling Full Server Compromise on SelfThe Hacker News·Jan 10, 14:26 UTC · Jan 10, 2026Exploit / PoC in the wildCVE-2025-66209CVE-2025-66210CVE-2025-66211+8 CVEs60
FBI says ‘ongoing’ deepfake impersonation of U.S. gov officials dates back to 2023CyberScoop·Dec 19, 20:46 UTC · Dec 19, 2025Exploit / PoC in the wild60
GeminiJack zero-click flaw in Gemini Enterprise allowed corporate data exfiltrationSecurity Affairs·Dec 11, 20:16 UTC · Dec 11, 2025Exploit / PoC45
Organizations can now buy cyber insurance that covers deepfakesCyberScoop·Dec 11, 18:38 UTC · Dec 11, 2025Exploit / PoC in the wild60
New cybersecurity guidance paves the way for AI in critical infrastructureCyberScoop·Dec 11, 12:00 UTC · Dec 11, 2025Exploit / PoC in the wild60
Russian cybercrooks exploiting 7-Zip zero-day vulnerability (CVE-2025-0411)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-041160
Operational Cyber Threat IntelligenceRecorded Future·Nov 19, 00:00 UTC · Nov 19, 2025Exploit / PoC in the wild60
The realities of CISO burnout and exhaustionCyberScoop·Nov 18, 11:00 UTC · Nov 18, 2025Exploit / PoC60
QNAP fixed multiple zero-days in its software demonstrated at Pwn2Own 2025Security Affairs·Nov 10, 00:01 UTC · Nov 10, 2025Exploit / PoCCVE-2025-62847CVE-2025-62848CVE-2025-62849+6 CVEs60
Urgent: China-Linked Hackers Exploit New VMware ZeroThe Hacker News·Oct 1, 12:29 UTC · Oct 1, 2025Exploit / PoC in the wildCVE-2025-4124460
ShadowLeak Zero-Click Flaw Leaks Gmail Data via OpenAI ChatGPT Deep Research AgentThe Hacker News·Sep 20, 05:32 UTC · Sep 20, 2025Exploit / PoC145
Future of CVE Program in limbo as CISA, board members debate path forwardThe Record·Sep 19, 00:00 UTC · Sep 19, 2025Exploit / PoC in the wild60
MeetC2 - A serverless C2 framework that leverages Google Calendar APIs as a communication channelSecurity Affairs·Sep 6, 09:39 UTC · Sep 6, 2025Exploit / PoC45
IoT under siege: The return of the MiraiSecurity Affairs·Aug 24, 08:36 UTC · Aug 24, 2025Exploit / PoCCVE-2024-1285660
H1 2024 Malware & Vulnerability Trends Report: Zero-Day Exploits, Infostealers, and Emerging Malware ThreatsRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Exploit / PoC60
Malicious PyPI and npm Packages Discovered Exploiting Dependencies in Supply Chain AttacksThe Hacker News·Aug 19, 04:18 UTC · Aug 19, 2025Exploit / PoC157
Man-in-the-Prompt: The invisible attack threatening ChatGPT and other AI systemsSecurity Affairs·Aug 16, 17:27 UTC · Aug 16, 2025Exploit / PoC45
Microsoft: An organization without a response plan will be hit harder by a security incidentCyberScoop·Aug 8, 16:06 UTC · Aug 8, 2025Exploit / PoC60
CISA, Microsoft warn of critical Exchange hybrid flaw CVE-2025Security Affairs·Aug 7, 14:05 UTC · Aug 7, 2025Exploit / PoC in the wildCVE-2025-5378660
CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live AttacksThe Hacker News·Jul 23, 13:04 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
CitrixBleed 2 beckons sweeping alarm as exploits spread across the globeCyberScoop·Jul 14, 21:46 UTC · Jul 14, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-496660
Oligo Security strives to fill applicationCyberScoop·Jul 8, 15:40 UTC · Jul 8, 2025Exploit / PoC in the wild60
AT&T deploys new account lock feature to counter SIM swappingCyberScoop·Jul 1, 18:23 UTC · Jul 1, 2025Exploit / PoC in the wild60
Arrest, seizures in latest U.S. operation against North Korean IT workersCyberScoop·Jun 30, 18:13 UTC · Jun 30, 2025Exploit / PoC in the wild60
Senator Chides FBI for Weak Advice on Mobile SecurityKrebs on Security·Jun 30, 17:56 UTC · Jun 30, 2025Exploit / PoCCVE-2025-43200CVE-2025-2420060
Threat Intelligence and SIEM (Part 4) — An Active Cyber Defense ApproachRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Meta confused over WhatsApp ban issued to House staffersCyberScoop·Jun 24, 21:12 UTC · Jun 24, 2025Exploit / PoC in the wild60
Multi-national warning issued over Russia’s targeting of logistics, tech firmsCyberScoop·May 21, 18:41 UTC · May 21, 2025Exploit / PoC in the wildCVE-2023-23397CVE-2023-3883160
Yet another SonicWall SMA100 vulnerability exploited in the wild (CVE-2025-32819)Help Net Security·May 8, 00:00 UTC · May 8, 2025Exploit / PoC in the wildCVE-2025-32819CVE-2025-32820CVE-2025-3282160
44% Of The Zero-Days Exploited In 2024 Were In Enterprise SolutionsHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2025Exploit / PoCCVE-2024-53104CVE-2024-32896CVE-2024-29745+1 CVEs60
Allurity acquires Infigo IS to strengthen its position in EuropeHelp Net Security·Apr 28, 00:00 UTC · Apr 28, 2025Exploit / PoC60
Chrome Extension Uses AI Engine to Act Without User InputInfosecurity Magazine·Apr 25, 13:15 UTC · Apr 25, 2025Exploit / PoC145
PDFex attacks can exfiltrate content from encrypted PDF documentsHelp Net Security·Apr 22, 12:08 UTC · Apr 22, 2025Exploit / PoC45
Is Ivanti the problem or a symptom of a systemic issue with network devices?CyberScoop·Apr 14, 13:57 UTC · Apr 14, 2025Exploit / PoC in the wild60
UAT-5918 targets critical infrastructure entities in TaiwanCisco Talos·Mar 20, 10:00 UTC · Mar 20, 2025Exploit / PoC60