Washington summit grapples with securing open source softwareCyberScoop·Sep 13, 13:30 UTC · Sep 13, 2023Exploit / PoC in the wild60
Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry SoftwareThe Hacker News·Aug 25, 06:25 UTC · Aug 25, 2023Exploit / PoC in the wildCVE-2023-38035CVE-2023-35078CVE-2023-35081+2 CVEs60
Ivanti Sentry zero-day vulnerability exploited, patch ASAP! (CVE-2023-38035)Help Net Security·Aug 24, 12:34 UTC · Aug 24, 2023Exploit / PoC in the wildCVE-2023-3803560
CISA adds Ruckus bug and another six flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 16, 19:39 UTC · May 16, 2023Exploit / PoC in the wildCVE-2023-25717CVE-2021-3560CVE-2014-0196+4 CVEs160
PoC for critical ManageEngine bug to be released, so get patching! (CVE-2022-47966)Help Net Security·Feb 21, 17:23 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-4796660
Chinese researchers claim to have broken RSA with a quantum computer. Experts aren’t so sure.The Record·Feb 2, 00:00 UTC · Feb 2, 2023Exploit / PoC60
Hackers go after SonicWall email appliances with three zeroThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoC in the wildCVE-2021-20021CVE-2021-20023CVE-2021-2002260
Zoho ManageEngine PoC Exploit to be Released SoonThe Hacker News·Jan 21, 04:44 UTC · Jan 21, 2023Exploit / PoCCVE-2022-4796660
Patch your Zoho ManageEngine instance immediately! PoC Exploit for CVE-2022Security Affairs·Jan 19, 19:29 UTC · Jan 19, 2023Exploit / PoCCVE-2022-4796660
CISA director: Log4Shell has not resulted in 'significant' government intrusions yetThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC60
Most attackers lose interest in Log4ShellThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC in the wildCVE-2021-4422860
Iran-linked Mercury APT exploited Log4Shell in SysAid Apps for initial accessSecurity Affairs·Aug 26, 17:19 UTC · Aug 26, 2022Exploit / PoCCVE-2021-4422860
Microsoft Releases Fix for Zero-Day Flaw in July 2022 Security Patch RolloutThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022Exploit / PoC in the wildCVE-2022-22047CVE-2022-22026CVE-2022-22049+14 CVEs60
DHS Cyber Safety Review Board found no evidence China knew of Log4j before disclosureCyberScoop·Jul 14, 14:30 UTC · Jul 14, 2022Exploit / PoC in the wild60
Musk's plans to make Twitter's algorithms public raises disinformation conundrumCyberScoop·Apr 27, 13:26 UTC · Apr 27, 2022Exploit / PoC in the wild60
Almost a Fifth of Global Firms Targeted with Spring4ShellInfosecurity Magazine·Apr 6, 10:00 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-22963CVE-2022-2294760
CISA adds 95 flaws to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Mar 4, 20:37 UTC · Mar 4, 2022Exploit / PoC in the wildCVE-2002-0367CVE-2004-021060
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
Hackers exploit 3-years old flaw to wipe Western Digital devicesSecurity Affairs·Jun 25, 18:07 UTC · Jun 25, 2021Exploit / PoC in the wildCVE-2018-1847260
Hackers found leveraging three SonicWall zero-day vulnerabilitiesHelp Net Security·Apr 21, 00:00 UTC · Apr 21, 2021Exploit / PoCCVE-2021-20021CVE-2021-20022CVE-2021-2002360
U.S. indicts 4 Chinese military officials for role in Equifax hackCyberScoop·Feb 10, 15:34 UTC · Feb 10, 2020Exploit / PoC in the wild60
Open Document format creates twist in maldoc landscapeCisco Talos·Sep 30, 15:35 UTC · Sep 30, 2019Exploit / PoC45
Cryptocurrency miners aren’t dead yet: Documenting the voracious but simple “Panda”Cisco Talos·Sep 17, 15:09 UTC · Sep 17, 2019Exploit / PoCCVE-2017-10271CVE-2017-563860
What We Can Learn from the Capital One HackKrebs on Security·Aug 5, 17:20 UTC · Aug 5, 2019Exploit / PoC60
Hacker is targeting DNA sequencer applications from Iranian IP addressSecurity Affairs·Jun 17, 07:29 UTC · Jun 17, 2019Exploit / PoCCVE-2017-6526CVE-2017-6884CVE-2017-563860
Hackers exploit Jenkins flaw CVE-2018Security Affairs·May 9, 05:02 UTC · May 9, 2019Exploit / PoCCVE-2018-100086160
Cisco fixes 32 security issues in its products, including three critical flawsSecurity Affairs·Sep 6, 12:38 UTC · Sep 6, 2018Exploit / PoCCVE-2018-11776CVE-2018-0435CVE-2018-042360
ZDI offers hefty bounties for zero-days in popular web servers, CMSesHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2018Exploit / PoC60
Automated Hacking Tool Autosploit Cause Concerns Over Mass ExploitationSecurity Affairs·Feb 7, 15:00 UTC · Feb 7, 2018Exploit / PoC in the wild60
AutoSploit: Automated mass exploitation of remote hosts using Shodan and MetasploitHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2018Exploit / PoC in the wild60
AWS acquires threat hunting startup SqrrlCyberScoop·Jan 24, 16:49 UTC · Jan 24, 2018Exploit / PoC in the wild60
Another S3 blunder? Florida credit firm's sensitive customer data exposed in latest AWS S3 leakCyberScoop·Nov 30, 14:56 UTC · Nov 30, 2017Exploit / PoC in the wild60
A Company Offers $500,000 For Secure Messaging Apps ZeroThe Hacker News·Aug 29, 21:31 UTC · Aug 29, 2017Exploit / PoC60
Zerodium payouts for Messaging, Email App Exploits are $500,000Security Affairs·Aug 25, 07:09 UTC · Aug 25, 2017Exploit / PoC60
Linux Operation Windigo hit 500000 PC and 25000 dedicated serversSecurity Affairs·Aug 6, 20:36 UTC · Aug 6, 2017Exploit / PoC60