‘Stranger Things’ emerge when OT security is stuck in the pastCyberScoop·Nov 26, 12:00 UTC · Nov 26, 2025Exploit / PoC in the wild60
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent SpywareThe Hacker News·Nov 3, 17:57 UTC · Nov 3, 2025Exploit / PoC in the wildCVE-2025-2783160
Pro-Iran Hackers Aligned Cyber with Kinetic War AimsInfosecurity Magazine·Aug 5, 11:30 UTC · Aug 5, 2025Exploit / PoC60
U.S. CISA adds RoundCube Webmail and Erlang Erlang/OTP SSH server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 10, 13:34 UTC · Jun 10, 2025Exploit / PoC in the wildCVE-2025-32433CVE-2024-4200960
ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised DevicesThe Hacker News·May 29, 08:55 UTC · May 29, 2025Exploit / PoC in the wildCVE-2023-20118CVE-2023-3978060
Zero-Day Alert: Google Releases Chrome Patch for Exploit Used in Russian Espionage AttacksThe Hacker News·Mar 27, 05:51 UTC · Mar 27, 2025Exploit / PoC in the wildCVE-2025-278360
Chinese Hackers Exploit Visual Studio Code in Southeast Asian CyberattacksThe Hacker News·Dec 10, 09:03 UTC · Dec 10, 2024Exploit / PoCCVE-2024-2491960
Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
watchTowr Finds New ZeroInfosecurity Magazine·Nov 15, 12:15 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-47575CVE-2024-2311360
Chinese Velvet Ant Uses Cisco ZeroInfosecurity Magazine·Aug 26, 09:00 UTC · Aug 26, 2024Exploit / PoC in the wildCVE-2024-2039960
Chinese APT40 group swifly leverages public PoC exploitsHelp Net Security·Jul 9, 00:00 UTC · Jul 9, 2024Exploit / PoC57
Water Hydra’s Zero-Day Attack Chain Targets Financial TradersInfosecurity Magazine·Feb 14, 17:15 UTC · Feb 14, 2024Exploit / PoCCVE-2024-21412CVE-2023-3883160
Rust Payloads Exploiting Ivanti 0Infosecurity Magazine·Jan 30, 15:00 UTC · Jan 30, 2024Exploit / PoCCVE-2024-21887CVE-2023-4680560
Operation Triangulation attacks relied on an undocumented hardware featureSecurity Affairs·Dec 28, 23:10 UTC · Dec 28, 2023Exploit / PoCCVE-2023-41990CVE-2023-32434CVE-2023-38606160
Researchers want more detail on industrial control system alertsCyberScoop·Nov 22, 16:04 UTC · Nov 22, 2023Exploit / PoC in the wild60
Week in review: Cybersecurity cheat sheets, widely exploited Cisco zero-day, KeePass-themed malvertisingHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2023Exploit / PoC in the wildCVE-2023-20198CVE-2023-4966CVE-2023-3883160
FBI: Barracuda Appliances Still Being Exploited By ChinaInfosecurity Magazine·Aug 25, 09:30 UTC · Aug 25, 2023Exploit / PoCCVE-2023-286860
Zimbra fixed actively exploited zero-day CVE-2023Security Affairs·Jul 27, 21:49 UTC · Jul 27, 2023Exploit / PoC in the wildCVE-2023-3875060
The federal government’s cybersecurity policies are falling into place just in time to be stalled againCisco Talos·Jul 20, 18:00 UTC · Jul 20, 2023Exploit / PoC in the wildCVE-2023-3745060
Zimbra urges customers to manually fix actively exploited zeroSecurity Affairs·Jul 13, 20:12 UTC · Jul 13, 2023Exploit / PoC in the wildCVE-2022-41352CVE-2022-27925160
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
2022 Zero-Day exploitation continues at a worrisome paceSecurity Affairs·Mar 21, 15:28 UTC · Mar 21, 2023Exploit / PoCCVE-2022-24682CVE-2022-1040CVE-2022-30190+5 CVEs60
Week in review: Public MS Word RCE PoC, API exploitation, Patch Tuesday forecastHelp Net Security·Mar 12, 00:00 UTC · Mar 12, 2023Exploit / PoCCVE-2023-27532CVE-2023-25610CVE-2023-21716160
Malicious hacking activity increasingly targeting critical infrastructureHelp Net Security·Mar 9, 19:41 UTC · Mar 9, 2023Exploit / PoC60
IoC detection experiments with ChatGPTKaspersky Securelist·Feb 15, 10:00 UTC · Feb 15, 2023Exploit / PoC57
CISA adds Fortra MFT, TerraMaster NAS, Intel driver Flaws, to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Feb 11, 10:35 UTC · Feb 11, 2023Exploit / PoC in the wildCVE-2023-0669CVE-2015-2291CVE-2022-2499060
Chinese Hackers Begin Exploiting Latest Microsoft Office ZeroThe Hacker News·Jun 1, 10:00 UTC · Jun 1, 2022Exploit / PoC in the wildCVE-2022-30190160
More details emerge on China's widespread UkraineCyberScoop·May 5, 12:00 UTC · May 5, 2022Exploit / PoC in the wild60
Week in review: Attackers exploiting VMware RCE, Microsoft fixes actively exploited zero-dayHelp Net Security·Apr 17, 00:00 UTC · Apr 17, 2022Exploit / PoC in the wildCVE-2022-24521CVE-2022-26904CVE-2022-26809+1 CVEs60
CISA adds WatchGuard flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Apr 12, 08:36 UTC · Apr 12, 2022Exploit / PoC in the wildCVE-2022-23176CVE-2021-42287CVE-2021-42278+5 CVEs60
Attackers exploit another zero-day in ManageEngine software (CVE-2021-44515)Help Net Security·Dec 21, 09:45 UTC · Dec 21, 2021Exploit / PoCCVE-2021-44515CVE-2021-4407760
Nation-state actors are exploiting Zoho zero-day CVE-2021Security Affairs·Dec 20, 21:25 UTC · Dec 20, 2021Exploit / PoC in the wildCVE-2021-4451560
Russian national accused of hacking, illegal trading is extradited to USCyberScoop·Dec 20, 17:43 UTC · Dec 20, 2021Exploit / PoC in the wild60
Attack techniques observed by Kaspersky MDRKaspersky Securelist·Dec 15, 10:00 UTC · Dec 15, 2021Exploit / PoC in the wildCVE-2021-1675CVE-2021-3452760
FBI Issues Flash Alert on Actively Exploited FatPipe VPN ZeroThe Hacker News·Nov 19, 09:27 UTC · Nov 19, 2021Exploit / PoC in the wild60
Zero-Day flaw in FatPipe products actively exploited, FBI warnsSecurity Affairs·Nov 18, 15:34 UTC · Nov 18, 2021Exploit / PoC in the wild60
MysterySnail attacks with Windows zeroKaspersky Securelist·Oct 13, 14:49 UTC · Oct 13, 2021Exploit / PoCCVE-2016-3309CVE-2021-4044960
June 2021 Patch Tuesday: Microsoft fixes six actively exploited zero-daysHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2021Exploit / PoC in the wildCVE-2021-33742CVE-2021-31201CVE-2021-31199+6 CVEs60
FBI silently removed web shells planted on Microsoft Exchange serversSecurity Affairs·Apr 14, 10:20 UTC · Apr 14, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Zero-day vulnerability in Desktop Window Manager (CVE-2021Kaspersky Securelist·Apr 13, 17:35 UTC · Apr 13, 2021Exploit / PoC in the wildCVE-2021-1732CVE-2021-2831060