Spy vs. spy: How GenAI is powering defenders and attackersCisco Talos·Dec 4, 11:00 UTC · Dec 4, 2025Exploit / PoC60
Fortinet Warns of New FortiWeb CVE-2025-58034 Vulnerability Exploited in the WildThe Hacker News·Nov 20, 04:35 UTC · Nov 20, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
Week in review: Windows kernel flaw patched, suspected Fortinet FortiWeb zero-day exploitedHelp Net Security·Nov 16, 00:00 UTC · Nov 16, 2025Exploit / PoC in the wildCVE-2025-12480CVE-2025-21042CVE-2025-62215+2 CVEs60
Samsung Mobile Flaw Exploited as ZeroThe Hacker News·Nov 11, 11:21 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-21042CVE-2025-21043CVE-2025-55177+1 CVEs60
Diplomatic entities in Belgium and Hungary hacked in ChinaThe Record·Oct 30, 18:17 UTC · Oct 30, 2025Exploit / PoC60
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
The BetterBank DeFi protocol exploited for reward mintingKaspersky Securelist·Oct 22, 10:00 UTC · Oct 22, 2025Exploit / PoC60
New Pixnapping Android Flaw Lets Rogue Apps Steal 2FA Codes Without PermissionsThe Hacker News·Oct 20, 18:54 UTC · Oct 20, 2025Exploit / PoC in the wildCVE-2025-4856160
GoAnywhere MFT zero-day used by StormSecurity Affairs·Oct 7, 19:23 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Attackers exploited critical Fortra GoAnywhere flaw in zero-day attacks (CVE-2025-10035)Help Net Security·Oct 7, 14:53 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Hackers exploit Fortra GoAnywhere flaw before public alertSecurity Affairs·Sep 26, 14:35 UTC · Sep 26, 2025Exploit / PoC in the wildCVE-2025-1003560
Gurucul’s AI-IRM accelerates insider risk detectionHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2025Exploit / PoC in the wildCVE-2026-8749160
Here’s what could happen if CISA 2015 expires next monthCyberScoop·Aug 18, 15:46 UTC · Aug 18, 2025Exploit / PoC in the wild60
You Are What You Eat: Why Your AI Security Tools Are Only as Strong as the Data You Feed ThemThe Hacker News·Aug 1, 11:00 UTC · Aug 1, 2025Exploit / PoC60
Dahua Camera flaws allow remote hacking. Update firmware nowSecurity Affairs·Jul 31, 05:55 UTC · Jul 31, 2025Exploit / PoCCVE-2025-31700CVE-2025-3170160
CISA is facing a tight CIRCIA deadline. Here’s how Sean Plankey can attempt to meet itCyberScoop·Jul 30, 12:09 UTC · Jul 30, 2025Exploit / PoC in the wild60
PerfektBlue Bluetooth attack allows hacking infotainment systems of Mercedes, Volkswagen, and SkodaSecurity Affairs·Jul 10, 18:29 UTC · Jul 10, 2025Exploit / PoCCVE-2024-45434CVE-2024-45431CVE-2024-45433+1 CVEs60
A flaw could allow recovery of the phone number associated with any Google accountSecurity Affairs·Jun 11, 07:06 UTC · Jun 11, 2025Exploit / PoC45
Two flaws in vBulletin forum software are under attackSecurity Affairs·Jun 1, 13:50 UTC · Jun 1, 2025Exploit / PoC in the wildCVE-2025-48827CVE-2025-4882860
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
Consensus forms on reauthorizing 2015 cyber infoCyberScoop·May 16, 14:47 UTC · May 16, 2025Exploit / PoC in the wild60
Highest-Risk Security Flaw Found in Commvault Backup SolutionsInfosecurity Magazine·Apr 24, 15:00 UTC · Apr 24, 2025Exploit / PoCCVE-2025-3402860
CISA reverses course, extends MITRE CVE contractCyberScoop·Apr 16, 14:52 UTC · Apr 16, 2025Exploit / PoC in the wild60
CISA Warns of CrushFTP Vulnerability Exploitation in the WildInfosecurity Magazine·Apr 8, 12:20 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2025-31161CVE-2025-2825CVE-2024-282560
Tj-actions Supply Chain Attack Traced Back to GitHub Token CompromiseInfosecurity Magazine·Apr 4, 12:00 UTC · Apr 4, 2025Exploit / PoC in the wildCVE-2025-3006660
Intelligence chiefs insist Signal chat was a simple mistakeCyberScoop·Mar 26, 20:32 UTC · Mar 26, 2025Exploit / PoC in the wild60
Why Most Microsegmentation Projects Fail—And How Andelyn Biosciences Got It RightThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Exploit / PoC60
CISA’s AI cybersecurity playbook calls for greater collaboration, but trust is key to successful executionCyberScoop·Feb 26, 12:00 UTC · Feb 26, 2025Exploit / PoC in the wild60
2,000 Palo Alto Networks devices compromised in latest attacksHelp Net Security·Feb 19, 08:15 UTC · Feb 19, 2025Exploit / PoCCVE-2024-0012CVE-2024-947460
Attackers exploit a new zeroSecurity Affairs·Feb 11, 23:06 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2024-55591160
Fortinet Warns of New Zero-Day Used in Attacks on Firewalls with Exposed InterfacesThe Hacker News·Jan 28, 13:09 UTC · Jan 28, 2025Exploit / PoC in the wildCVE-2024-5559160
Treasury workstations hacked by ChinaCyberScoop·Dec 31, 01:29 UTC · Dec 31, 2024Exploit / PoC in the wild60
Chinese Hackers Exploit Visual Studio Code in Southeast Asian CyberattacksThe Hacker News·Dec 10, 09:03 UTC · Dec 10, 2024Exploit / PoCCVE-2024-2491960
ProjectSend critical flaw actively exploited in the wild, experts warnSecurity Affairs·Nov 28, 07:28 UTC · Nov 28, 2024Exploit / PoC in the wildCVE-2024-1168060
Actively exploited Firefox zero-day fixed, update ASAP! (CVE-2024-9680)Help Net Security·Nov 26, 13:23 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-968060
Mozilla fixes critical Firefox bug exploited in the wildThe Record·Oct 10, 18:31 UTC · Oct 10, 2024Exploit / PoC in the wildCVE-2024-968060
Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical FlawThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Exploit / PoC in the wildCVE-2024-6670CVE-2024-6671CVE-2024-4885+1 CVEs60