U.S. CISA adds Apple, Rockwell, and Hikvision flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 6, 08:42 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2023-43000CVE-2017-7921CVE-2021-22681+2 CVEs60
U.S. CISA adds Cisco SD-WAN flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 26, 15:04 UTC · Feb 26, 2026Exploit / PoC in the wildCVE-2022-20775CVE-2026-2012760
Hackers abused Cisco SD-WAN zero-day since 2023 to gain full admin controlSecurity Affairs·Feb 26, 14:43 UTC · Feb 26, 2026Exploit / PoC in the wildCVE-2026-20127CVE-2022-2077560
VMware Aria Operations flaws could enable remote attacksSecurity Affairs·Feb 24, 15:03 UTC · Feb 24, 2026Exploit / PoCCVE-2026-22719CVE-2026-22720CVE-2026-2272160
China-linked APT weaponized Dell RecoverPoint zeroSecurity Affairs·Feb 18, 12:15 UTC · Feb 18, 2026Exploit / PoC in the wildCVE-2026-2276960
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
U.S. CISA adds SolarWinds Web Help Desk, Sangoma FreePBX, and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 3, 21:06 UTC · Feb 3, 2026Exploit / PoC in the wildCVE-2019-19006CVE-2021-39935CVE-2025-40551+1 CVEs60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Week in review: PoC for Trend Micro Apex Central RCE released, Patch Tuesday forecastHelp Net Security·Jan 11, 00:00 UTC · Jan 11, 2026Exploit / PoC in the wildCVE-2025-69258CVE-2025-3716460
Atlassian fixed maximum severity flaw CVE-2025Security Affairs·Dec 15, 15:03 UTC · Dec 15, 2025Exploit / PoCCVE-2025-66516CVE-2025-54988CVE-2021-39227+1 CVEs60
U.S. CISA adds a new Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 19, 13:48 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
New FortiWeb zero-day CVE-2025Security Affairs·Nov 19, 06:55 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-58034CVE-2025-6444660
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
SAP fixed a maximum severity flaw in SQL Anywhere MonitorSecurity Affairs·Nov 11, 21:02 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-42890CVE-2025-42887CVE-2025-4294460
Hundreds of Salesforce customers impacted by attack spree linked to thirdCyberScoop·Aug 27, 01:22 UTC · Aug 27, 2025Exploit / PoC in the wild60
House lawmakers seek better tech for Commerce in fight against foreign powersCyberScoop·Aug 11, 17:44 UTC · Aug 11, 2025Exploit / PoC in the wild60
Google fixed two Qualcomm bugs that were actively exploited in the wildSecurity Affairs·Aug 6, 06:03 UTC · Aug 6, 2025Exploit / PoC in the wildCVE-2025-21479CVE-2025-27038CVE-2025-21480+1 CVEs60
U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 21, 17:21 UTC · Jul 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs60
SharePoint zero-day CVE-2025Security Affairs·Jul 21, 07:27 UTC · Jul 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49706CVE-2025-4970460
U.S. CISA adds Citrix NetScaler ADC and Gateway flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 15, 23:33 UTC · Jul 15, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-4966CVE-2025-534960
Prioritizing Cyber Threats: Addressing the Overload ChallengeRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Google fixed the second actively exploited Chrome zeroSecurity Affairs·Jun 3, 07:58 UTC · Jun 3, 2025Exploit / PoC in the wildCVE-2025-5419CVE-2025-5068CVE-2025-278360
SonicWall fixed SMA 100 flaws that could be chained to execute arbitrary codeSecurity Affairs·May 9, 07:50 UTC · May 9, 2025Exploit / PoCCVE-2025-32819CVE-2025-32820CVE-2025-3282160
U.S. CISA adds SonicWall SMA100 Appliance flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 17, 08:30 UTC · Apr 17, 2025Exploit / PoC in the wildCVE-2021-20035CVE-2024-53197CVE-2024-53150+2 CVEs60
New Security Flaws Found in VMware Tools and CrushFTP — High Risk, PoC ReleasedThe Hacker News·Apr 8, 08:12 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2025-22230CVE-2025-2825CVE-2025-3116160
U.S. CISA adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 7, 19:39 UTC · Apr 7, 2025Exploit / PoC in the wildCVE-2025-22457160
Apple backported fixes for three actively exploited flaws to older devicesSecurity Affairs·Apr 2, 08:52 UTC · Apr 2, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2025-24200CVE-2025-2420160
Firefox fixes flaw similar to Chrome zeroThe Record·Mar 28, 13:05 UTC · Mar 28, 2025Exploit / PoC in the wildCVE-2025-2857CVE-2025-2783CVE-2024-968060
Auth bypass CVE-2025Security Affairs·Mar 26, 07:07 UTC · Mar 26, 2025Exploit / PoC in the wildCVE-2025-22230CVE-2025-22224CVE-2025-22225+1 CVEs60
U.S. CISA adds Fortinet FortiOS/FortiProxy and GitHub Action flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 14:17 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2025-30066CVE-2024-5559160
U.S. CISA adds Craft CMS and Palo Alto Networks PAN-OS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 21, 10:40 UTC · Feb 21, 2025Exploit / PoC in the wildCVE-2025-23209CVE-2025-0111CVE-2025-0108+1 CVEs60
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Google fixed actively exploited kernel zeroSecurity Affairs·Feb 4, 00:31 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2024-53104CVE-2024-45569CVE-2024-43047+1 CVEs60
Cisco warns of a ClamAV bug with PoC exploitSecurity Affairs·Jan 26, 06:58 UTC · Jan 26, 2025Exploit / PoCCVE-2025-20128CVE-2023-2003260
Ongoing attacks on Ivanti VPNs install a ton of sneaky, wellArs Technica · Security·Jan 9, 22:17 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-028260
Nucleus Security unveils POAM Process Automation for federal agenciesHelp Net Security·Oct 24, 00:00 UTC · Oct 24, 2024Exploit / PoC in the wild60
Veeam fixed a critical flaw in Veeam Backup & Replication softwareSecurity Affairs·Oct 11, 21:46 UTC · Oct 11, 2024Exploit / PoCCVE-2024-40711CVE-2024-40713CVE-2024-40710+3 CVEs160
SonicWall warns that SonicOS bug exploited in attacksSecurity Affairs·Sep 6, 18:59 UTC · Sep 6, 2024Exploit / PoC in the wildCVE-2024-40766CVE-2022-22274CVE-2023-065660
Microsoft Zero-Day CVE-2024-38193 was exploited by North KoreaSecurity Affairs·Aug 19, 08:41 UTC · Aug 19, 2024Exploit / PoC in the wildCVE-2024-38193CVE-2024-2133860
Chinese Hackers Rely on Covert Proxy Networks to Evade DetectionInfosecurity Magazine·May 22, 15:45 UTC · May 22, 2024Exploit / PoC60