Hackers Deploy Open-Source Tool Sliver C2, Replacing Cobalt Strike, MetasploitInfosecurity Magazine·Jan 23, 18:00 UTC · Jan 23, 2023Exploit / PoC45
Google announces GUAC open source project on software supply chainsThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Exploit / PoC60
Owl Cyber Defense opens new regional office in Abu DhabiHelp Net Security·Jul 15, 00:00 UTC · Jul 15, 2021Exploit / PoC60
Flaws in Ovarro TBox RTUs Could Open Industrial Systems to Remote AttacksThe Hacker News·Apr 9, 11:59 UTC · Apr 9, 2021Exploit / PoCCVE-2021-22646CVE-2021-22642CVE-2021-22640+2 CVEs60
Zero-day flaws in widespread TCP/IP library open millions of IoT devices to remote attackHelp Net Security·Feb 11, 12:31 UTC · Feb 11, 2021Exploit / PoCCVE-2020-11896CVE-2020-1191460
Microsoft opens up coronavirus threat data to the publicCyberScoop·May 14, 22:25 UTC · May 14, 2020Exploit / PoC in the wild160
Critical PPP Daemon Flaw Opens Most Linux Systems to Remote HackersThe Hacker News·Mar 6, 14:17 UTC · Mar 6, 2020Exploit / PoC in the wildCVE-2020-859760
Critical OpenSMTPD Bug Opens Linux and OpenBSD Mail Servers to HackersThe Hacker News·Jan 30, 09:07 UTC · Jan 30, 2020Exploit / PoCCVE-2020-724760
By hacking one of their own homes, researchers want to open a window on IoT securityCyberScoop·Mar 5, 19:43 UTC · Mar 5, 2019Exploit / PoC60
How Just Opening A Site In Safari Could Have Hacked Your Apple macOSThe Hacker News·Nov 22, 08:52 UTC · Nov 22, 2018Exploit / PoCCVE-2017-13890CVE-2018-4176CVE-2018-417560
PPD-20 elimination opens arguments over how U.S. should conduct offensive hacking operationsCyberScoop·Aug 17, 14:41 UTC · Aug 17, 2018Exploit / PoC in the wild60
Apple's iOS 11.4.1 blocks tools governments use to crack open iPhonesCyberScoop·Jul 11, 13:10 UTC · Jul 11, 2018Exploit / PoC in the wild60
xboxlive digital certificate exposed opens users to MITM attacksSecurity Affairs·Dec 7, 21:40 UTC · Dec 7, 2017Exploit / PoC45
200 million registered voters exposed due to open AWS repositoryCyberScoop·Jun 19, 22:34 UTC · Jun 19, 2017Exploit / PoC in the wild60
Jupyter Notebook unwittingly opens huge server security holeHelp Net Security·Jan 26, 00:00 UTC · Jan 26, 2017Exploit / PoCCVE-2016-997050
3 flaws in StarBucks websites open its users to attacksSecurity Affairs·Sep 21, 06:51 UTC · Sep 21, 2015Exploit / PoC60
Anomaly Detection Rules & The Success of Open-Source Rule Testing: Don't Do That, Part 2Cisco Talos·Sep 10, 18:58 UTC · Sep 10, 2012Exploit / PoC45
Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent ImportsThe Hacker News·Aug 5, 15:14 UTC · Aug 5, 2026Exploit / PoC in the wildCVE-2026-41679160
OVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become RootSecurity Affairs·Aug 5, 14:24 UTC · Aug 5, 2026Exploit / PoCCVE-2026-6453160
Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsThe Hacker News·Jul 22, 14:13 UTC · Jul 22, 2026Exploit / PoC145
Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItThe Hacker News·Jul 9, 05:17 UTC · Jul 9, 2026Exploit / PoCCVE-2026-3986150
Trump budget boss Russell Vought open to reCyberScoop·Jun 30, 20:53 UTC · Jun 30, 2026Exploit / PoC in the wild60
AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code ExecutionThe Hacker News·Jun 19, 15:30 UTC · Jun 19, 2026Exploit / PoCCVE-2026-26030CVE-2026-25592160
NGINX Rift: an 18-year-old flaw in the world's most deployed web server just came to lightSecurity Affairs·May 14, 13:30 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-42945CVE-2026-42946CVE-2026-40701+1 CVEs60
ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New StoriesThe Hacker News·Apr 24, 04:36 UTC · Apr 24, 2026Exploit / PoCCVE-2026-27175CVE-2026-27174CVE-2025-22952+1 CVEs60
Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packagesHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2026Exploit / PoC in the wildCVE-2025-53521CVE-2026-21992CVE-2026-305560
Exposed Training Open the Door for CryptoThe Hacker News·Feb 11, 11:30 UTC · Feb 11, 2026Exploit / PoC in the wild60
Week in review: Exploited zero-day in Cisco email security appliances, Kali Linux 2025.4 releasedHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2025Exploit / PoC in the wildCVE-2025-59718CVE-2025-40602CVE-2025-14174+1 CVEs160
CFPB nominee signals openness to continuing dataCyberScoop·Feb 27, 21:22 UTC · Feb 27, 2025Exploit / PoC in the wild60
Week in review: Google fixes yet another Chrome zero-day exploit, YouTube as a cybercrime channelHelp Net Security·May 26, 00:00 UTC · May 26, 2024Exploit / PoC in the wildCVE-2024-5274CVE-2024-4985CVE-2023-43208+4 CVEs60
Five Core Tenets Of Highly Effective DevSecOps PracticesThe Hacker News·May 21, 11:33 UTC · May 21, 2024Exploit / PoC60
Product showcase: Cybellum's Product Security Lifecycle PlatformHelp Net Security·Mar 14, 11:46 UTC · Mar 14, 2024Exploit / PoC60
Week in review: AnyDesk phishing campaign targets employees, Microsoft fixes exploited zero-daysHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2024Exploit / PoC in the wildCVE-2024-21762CVE-2024-23313CVE-2023-43770+5 CVEs160
White House moves to ease education requirements for federal cyber contracting jobsCyberScoop·Jan 11, 20:19 UTC · Jan 11, 2024Exploit / PoC in the wild60
500 million WinRAR users open to compromise via a 19-year-old flawHelp Net Security·Dec 14, 14:20 UTC · Dec 14, 2023Exploit / PoC60
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260