Cisco discloses maximumCyberScoop·Aug 15, 17:04 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-2026560
SafeLine WAF: Open Source Web Application Firewall with ZeroThe Hacker News·May 23, 10:30 UTC · May 23, 2025Exploit / PoC60
New Security Flaws Found in VMware Tools and CrushFTP — High Risk, PoC ReleasedThe Hacker News·Apr 8, 08:12 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2025-22230CVE-2025-2825CVE-2025-3116160
U.S. CISA adds Fortinet FortiOS/FortiProxy and GitHub Action flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 14:17 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2025-30066CVE-2024-5559160
Here’s what Google is (and isn’t) planning with SMS account verificationCyberScoop·Feb 27, 21:28 UTC · Feb 27, 2025Exploit / PoC in the wild60
Ivanti fixes three CSA zero-days exploited in the wild (CVE-2024-9379, CVE-2024-9380, CVE-2024-9381)Help Net Security·Jan 23, 10:55 UTC · Jan 23, 2025Exploit / PoC in the wildCVE-2024-9379CVE-2024-9380CVE-2024-9381+2 CVEs60
Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin AccessThe Hacker News·Dec 21, 09:00 UTC · Dec 21, 2024Exploit / PoCCVE-2024-41713CVE-2024-35286CVE-2024-55550+3 CVEs60
U.S. CISA adds Dahua IP Camera, Linux Kernel and Microsoft Exchange Server bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 24, 22:21 UTC · Aug 24, 2024Exploit / PoC in the wildCVE-2021-33044CVE-2021-33045CVE-2022-0185+1 CVEs60
Expert released PoC exploit code for Veeam Backup Enterprise Manager flaw CVE-2024Security Affairs·Jun 11, 09:19 UTC · Jun 11, 2024Exploit / PoC in the wildCVE-2024-2984960
Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
Network Security Trends: MayPalo Alto Unit 42·Jun 6, 01:20 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2020-11978CVE-2020-13927CVE-2021-2785060
Network Security Trends: AugustPalo Alto Unit 42·Jun 6, 00:57 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-40438CVE-2021-34473CVE-2021-38647+9 CVEs60
Experts released PoC exploit code for RCE in QNAP QTSSecurity Affairs·May 21, 07:34 UTC · May 21, 2024Exploit / PoCCVE-2024-27130CVE-2023-50361CVE-2023-50362+7 CVEs60
PoC for critical Arcserve UDP vulnerabilities published (CVE-2024-0799, CVE-2024-0800)Help Net Security·Mar 14, 00:00 UTC · Mar 14, 2024Exploit / PoCCVE-2024-0799CVE-2024-0800CVE-2024-080160
CISA adds JetBrains TeamCity bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 9, 19:43 UTC · Mar 9, 2024Exploit / PoC in the wildCVE-2024-27198CVE-2024-2719960
Five Eyes alliance warns of attacks exploiting known Ivanti Gateway flawsSecurity Affairs·Mar 1, 14:01 UTC · Mar 1, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-21893+2 CVEs60
CISA orders federal agencies to disconnect Ivanti VPN instances by February 2Security Affairs·Feb 1, 19:46 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
CISA adds Ivanti and Microsoft SharePoint bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 11, 15:33 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2024-21887CVE-2023-46805CVE-2023-2935760
CISA adds five vulnerabilities in Juniper devices to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 13, 18:51 UTC · Nov 13, 2023Exploit / PoC in the wildCVE-2023-36844CVE-2023-36845CVE-2023-36846+3 CVEs160
Alert: PoC Exploits Released for Citrix and VMware VulnerabilitiesThe Hacker News·Nov 2, 12:20 UTC · Nov 2, 2023Exploit / PoC in the wildCVE-2023-34051CVE-2023-4966CVE-2023-35182+2 CVEs60
Citrix NetScaler bug exploited in the wild since August (CVE-2023-4966)Help Net Security·Oct 30, 09:56 UTC · Oct 30, 2023Exploit / PoC in the wildCVE-2023-4966CVE-2023-351960
Experts Warn of Severe Flaws Affecting Milesight Routers and Titan SFTP ServersThe Hacker News·Oct 17, 10:16 UTC · Oct 17, 2023Exploit / PoC in the wildCVE-2023-43261CVE-2023-45685CVE-2023-45686+4 CVEs60
PoC exploit code released for CVE-2023-34039 bug in VMware Aria Operations for NetworksSecurity Affairs·Sep 3, 16:14 UTC · Sep 3, 2023Exploit / PoCCVE-2023-34039CVE-2023-2089060
Experts published PoC for Arcserve UDP auth bypass issueSecurity Affairs·Jun 29, 07:31 UTC · Jun 29, 2023Exploit / PoCCVE-2023-2625860
1Kosmos BlockID available in AWS MarketplaceHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2023Exploit / PoC45
Brute-Forcing a Fingerprint ReaderSchneier on Security·May 30, 11:16 UTC · May 30, 2023Exploit / PoC60
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Experts released PoC exploit code for critical bug CVE-2022Security Affairs·Oct 14, 09:38 UTC · Oct 14, 2022Exploit / PoC in the wildCVE-2022-4068460
TLStorm 2.0: Critical bugs in widely-used Aruba, Avaya network switchesHelp Net Security·May 3, 00:00 UTC · May 3, 2022Exploit / PoCCVE-2022-23677CVE-2022-23676CVE-2022-29860+2 CVEs60
NGINX project maintainers fix flaws in LDAP Reference ImplementationSecurity Affairs·Apr 12, 11:25 UTC · Apr 12, 2022Exploit / PoC60
CISA adds Sophos firewall bug to Known Exploited Vulnerabilities CatalogSecurity Affairs·Apr 1, 08:29 UTC · Apr 1, 2022Exploit / PoC in the wildCVE-2022-1040CVE-2022-26871CVE-2021-34484+5 CVEs60
VMware discloses a severe flaw in vCenter Server that has yet to fixSecurity Affairs·Nov 10, 22:45 UTC · Nov 10, 2021Exploit / PoC in the wildCVE-2021-2204860
Critical Auth Bypass Bug Affect NETGEAR Smart Switches — Patch and PoC ReleasedThe Hacker News·Sep 6, 10:33 UTC · Sep 6, 2021Exploit / PoC60
Patched: Critical bug with public PoC exploit in Cisco infrastructure virtualization software (CVE-2021-34746)Help Net Security·Sep 3, 00:00 UTC · Sep 3, 2021Exploit / PoCCVE-2021-3474660
How to improve your organization's Active Directory security postureHelp Net Security·Jul 6, 00:00 UTC · Jul 6, 2021Exploit / PoC60
3 0Day in SonicWall Enterprise Email Security products actively exploitedSecurity Affairs·Apr 21, 10:25 UTC · Apr 21, 2021Exploit / PoC in the wildCVE-2021-20021CVE-2021-20022CVE-2021-20023+1 CVEs60
Attackers are exploiting zero-day in Pulse Secure VPNs to breach orgs (CVE-2021-22893)Help Net Security·Apr 21, 00:00 UTC · Apr 21, 2021Exploit / PoCCVE-2021-22893CVE-2019-11510CVE-2020-8243+1 CVEs60
New Attack Could Let Hackers Clone Your Google Titan 2FA Security KeysThe Hacker News·Jan 8, 19:59 UTC · Jan 8, 2021Exploit / PoCCVE-2021-301150