PoC for easily exploitable Fortra GoAnywhere MFT vulnerability released (CVE-2024-0204)Help Net Security·Jun 8, 10:34 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2024-0204CVE-2023-066960
Critical Wing FTP Server vulnerability exploited in the wild (CVE-2025-47812)Help Net Security·Jun 8, 10:31 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2025-47812CVE-2025-47811CVE-2025-47813+1 CVEs60
Google security engineer accused of turning confidential search trends into $1.2M win on PolymarketCyberScoop·May 28, 18:13 UTC · May 28, 2026Exploit / PoC in the wild60
Anthropic: Mythos finds more than 10,000 software flaws in first monthCyberScoop·May 26, 15:15 UTC · May 26, 2026Exploit / PoC in the wild60
CISA credential leak raises alarms, and Capitol Hill demands answersCyberScoop·May 20, 14:43 UTC · May 20, 2026Exploit / PoC in the wild60
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomThe Hacker News·May 11, 11:51 UTC · May 11, 2026Exploit / PoC45
New security loophole allows spying on internet users' online activityHelp Net Security·Apr 23, 13:32 UTC · Apr 23, 2026Exploit / PoC60
OPSWAT delivers AI-powered perimeter defense with unified zero-day verdictsHelp Net Security·Apr 15, 10:12 UTC · Apr 15, 2026Exploit / PoC60
Two Ivanti EPMM Zero-Day RCE Flaws Actively Exploited, Security Updates ReleasedThe Hacker News·Apr 9, 04:57 UTC · Apr 9, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
AI-Driven Insider Risk Now a “Critical Business Threat,” Report WarnsInfosecurity Magazine·Mar 5, 16:00 UTC · Mar 5, 2026Exploit / PoC60
U.S. CISA adds a flaw in Soliton Systems K.K FileZen to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 25, 09:23 UTC · Feb 25, 2026Exploit / PoC in the wildCVE-2026-2510860
CISA Confirms Active Exploitation of FileZen CVE-2026The Hacker News·Feb 25, 05:23 UTC · Feb 25, 2026Exploit / PoC in the wildCVE-2026-2510860
U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 14, 16:27 UTC · Feb 14, 2026Exploit / PoC in the wildCVE-2026-1731CVE-2026-2485860
Attackers exploit BeyondTrust CVE-2026Security Affairs·Feb 13, 15:19 UTC · Feb 13, 2026Exploit / PoC in the wildCVE-2026-173160
Notepad++ infrastructure hack likely tied to ChinaSecurity Affairs·Feb 3, 09:35 UTC · Feb 3, 2026Exploit / PoC60
Ivanti provides temporary patches for actively exploited EPMM zero-day (CVE-2026-1281)Help Net Security·Feb 2, 10:44 UTC · Feb 2, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Cybersecurity can be America's secret weapon in the AI raceCyberScoop·Jan 30, 11:00 UTC · Jan 30, 2026Exploit / PoC in the wild60
If you don’t control your keys, you don’t control your dataCyberScoop·Jan 28, 14:46 UTC · Jan 28, 2026Exploit / PoC in the wild60
Spanish police disrupt Black Axe, arrest alleged leaders in action spanning four citiesCyberScoop·Jan 12, 23:13 UTC · Jan 12, 2026Exploit / PoC in the wild60
Convicted Bitfinex bitcoin launderer freed from prison, thanks Trump lawCyberScoop·Jan 5, 21:22 UTC · Jan 5, 2026Exploit / PoC in the wild60
How to determine if agentic AI browsers are safe enough for your enterpriseCyberScoop·Dec 23, 12:00 UTC · Dec 23, 2025Exploit / PoC in the wild60
Monitoring Tool Nezha Abused For Stealthy PostInfosecurity Magazine·Dec 22, 14:30 UTC · Dec 22, 2025Exploit / PoC145
Week in review: Exploited zero-day in Cisco email security appliances, Kali Linux 2025.4 releasedHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2025Exploit / PoC in the wildCVE-2025-59718CVE-2025-40602CVE-2025-14174+1 CVEs160
CISA Reports PRC Hackers Using BRICKSTORM for LongThe Hacker News·Dec 5, 09:15 UTC · Dec 5, 2025Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-38812+3 CVEs160
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
Ex-L3Harris executive accused of selling trade secrets to RussiaCyberScoop·Oct 23, 16:39 UTC · Oct 23, 2025Exploit / PoC in the wild60
Red Hat AI 3 helps enterprises scale AI workloads across hybrid environmentsHelp Net Security·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC145
Attackers exploited critical Fortra GoAnywhere flaw in zero-day attacks (CVE-2025-10035)Help Net Security·Oct 7, 14:53 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
U.S. CISA adds Smartbedded Meteobridge, Samsung, Juniper ScreenOS, Jenkins, and GNU Bash flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 4, 15:49 UTC · Oct 4, 2025Exploit / PoC in the wildCVE-2014-6278CVE-2015-7755CVE-2017-1000353+5 CVEs60
OneLogin Bug Let Attackers Use API Keys to Steal OIDC Secrets and Impersonate AppsThe Hacker News·Oct 1, 16:43 UTC · Oct 1, 2025Exploit / PoC in the wildCVE-2025-5936360
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
U.S. CISA adds CrushFTP, Google Chromium, and SysAid flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 24, 06:48 UTC · Jul 24, 2025Exploit / PoC in the wildCVE-2025-54309CVE-2025-6558CVE-2025-2776+2 CVEs60
U.S. CISA adds Wing FTP Server flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 16, 00:01 UTC · Jul 16, 2025Exploit / PoC in the wildCVE-2025-4781260
AT&T deploys new account lock feature to counter SIM swappingCyberScoop·Jul 1, 18:23 UTC · Jul 1, 2025Exploit / PoC in the wild60
Senator Chides FBI for Weak Advice on Mobile SecurityKrebs on Security·Jun 30, 17:56 UTC · Jun 30, 2025Exploit / PoCCVE-2025-43200CVE-2025-2420060
Many data brokers aren’t registering across state lines, privacy groups sayCyberScoop·Jun 25, 21:14 UTC · Jun 25, 2025Exploit / PoC in the wild60
How Amazon Web Services uses AI to be a security ‘force multiplier’CyberScoop·Jun 11, 18:31 UTC · Jun 11, 2025Exploit / PoC in the wild60