Google patches actively exploited Chrome zero-day (CVE‑2025‑6554)Help Net Security·Sep 18, 11:55 UTC · Sep 18, 2025Exploit / PoC in the wildCVE-2025-655460
Mozilla fixes Firefox zero-days exploited in the wild (CVE-2022-26485, CVE-2022-26486)Help Net Security·Mar 7, 00:00 UTC · Mar 7, 2022Exploit / PoC in the wildCVE-2022-26485CVE-2022-2648660
Adobe, Microsoft Plug Critical Security HolesKrebs on Security·Sep 15, 00:00 UTC · Sep 15, 2017Exploit / PoC in the wildCVE-2017-8759CVE-2017-862860
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
ToolShell Exploit: Critical SharePoint ZeroRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs160
GOOGLE FIXED THE FOURTH CHROME ZEROSecurity Affairs·Sep 11, 21:14 UTC · Sep 11, 2023Exploit / PoC in the wildCVE-2023-4863CVE-2023-2033CVE-2023-2136+1 CVEs160
Unpatched Office zero-day CVE-2023-36884 actively exploited in targeted attacksSecurity Affairs·Jul 12, 07:39 UTC · Jul 12, 2023Exploit / PoC in the wildCVE-2023-3688460
Apple Rolls Out Urgent Patches for Zero-Day Flaws Impacting iPhones, iPads and MacsThe Hacker News·Jul 26, 04:20 UTC · Jul 26, 2023Exploit / PoC in the wildCVE-2023-38606CVE-2023-32434CVE-2023-32435+2 CVEs60
U.S. CISA adds a JetBrains TeamCity flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 6, 08:22 UTC · Aug 6, 2026Exploit / PoC in the wildCVE-2026-6307760
PlunderVolt attack hijacks Intel SGX Enclaves by tweaking CPU VoltageSecurity Affairs·Dec 11, 15:14 UTC · Dec 11, 2019Exploit / PoCCVE-2019-1115750
Threat Source Newsletter (Dec. 2, 2021)Cisco Talos·Dec 2, 19:00 UTC · Dec 2, 2021Exploit / PoCCVE-2021-41379150
Google addressed the tenth actively exploited Chrome zeroSecurity Affairs·Aug 26, 22:59 UTC · Aug 26, 2024Exploit / PoC in the wildCVE-2024-7965CVE-2024-7971CVE-2024-5274+7 CVEs60
Google fixed the first Chrome zeroSecurity Affairs·Apr 14, 19:50 UTC · Apr 14, 2023Exploit / PoC in the wildCVE-2023-203360
Adobe patches critical Adobe Experience Manager Forms vulnerabilities with public PoCHelp Net Security·Oct 16, 15:34 UTC · Oct 16, 2025Exploit / PoC in the wildCVE-2025-54253CVE-2025-54254CVE-2025-4953360
U.S. CISA adds Linux kernel and VMware ESXi and Workstation flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 5, 06:09 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2024-50302CVE-2025-22225CVE-2025-22224+3 CVEs60
Hackers are using Zerologon exploits in attacks in the wildSecurity Affairs·Sep 24, 08:48 UTC · Sep 24, 2020Exploit / PoCCVE-2020-147250
Google addressed the ninth actively exploited Chrome zeroSecurity Affairs·Aug 26, 22:50 UTC · Aug 26, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-0519CVE-2024-2887+6 CVEs60
Apple fixes iPhone and iPad bug actively exploited in ‘extremely sophisticated attacks’Security Affairs·Feb 10, 23:53 UTC · Feb 10, 2025Exploit / PoC in the wildCVE-2025-24200CVE-2023-41064CVE-2023-41061+1 CVEs60
Palo Alto Networks Prisma Access 2.0 securely enables work-from-anywhereHelp Net Security·Feb 17, 00:00 UTC · Feb 17, 2021Exploit / PoC60
Google fixed actively exploited kernel zeroSecurity Affairs·Feb 4, 00:31 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2024-53104CVE-2024-45569CVE-2024-43047+1 CVEs60
Apple fixed the tenth actively exploited zeroSecurity Affairs·Dec 14, 11:12 UTC · Dec 14, 2022Exploit / PoC in the wildCVE-2022-42856CVE-2022-22587CVE-2022-22594+6 CVEs60
VMware fixed Workstation flaw disclosed at Tianfu Cup PWN competitionSecurity Affairs·Nov 23, 15:31 UTC · Nov 23, 2018Exploit / PoCCVE-2018-698360
Google fixes sixth actively exploited Chrome zeroSecurity Affairs·May 16, 13:02 UTC · May 16, 2024Exploit / PoC in the wildCVE-2024-4761CVE-2024-4671CVE-2024-0519+3 CVEs60
ScamClub malvertising gang abused WebKit zero-day to redirect to online gift card scamsSecurity Affairs·Feb 17, 18:24 UTC · Feb 17, 2021Exploit / PoC60
Android devices could be hacked by viewing a malicious PNG ImageSecurity Affairs·Feb 7, 06:28 UTC · Feb 7, 2019Exploit / PoC in the wildCVE-2019-1986CVE-2019-1987CVE-2019-198860
Threat Source Newsletter (Dec. 16, 2021)Cisco Talos·Dec 10, 12:00 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-4102CVE-2021-44228CVE-2021-4321560
Dirty Pipe Linux flaw impacts most QNAP NAS devicesSecurity Affairs·Mar 15, 11:32 UTC · Mar 15, 2022Exploit / PoCCVE-2022-084760
Microsoft Releases Fix for New ZeroThe Hacker News·May 11, 16:06 UTC · May 11, 2022Exploit / PoC in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+14 CVEs60
Zyxel addressed three RCEs in end-ofSecurity Affairs·Jun 5, 08:01 UTC · Jun 5, 2024Exploit / PoCCVE-2024-29972CVE-2024-29973CVE-2024-29974+2 CVEs60
Google addressed an actively exploited zeroSecurity Affairs·Sep 6, 17:41 UTC · Sep 6, 2023Exploit / PoC in the wildCVE-2023-35674CVE-2023-35658CVE-2023-35673+2 CVEs60
Cisco plugs critical holes in small business routersHelp Net Security·Feb 3, 00:00 UTC · Feb 3, 2022Exploit / PoCCVE-2022-20699CVE-2022-20712CVE-2022-2074960
Apple addressed 2 new iOS zeroSecurity Affairs·Nov 30, 22:33 UTC · Nov 30, 2023Exploit / PoC in the wildCVE-2023-42916CVE-2023-42917CVE-2023-5217+16 CVEs160
SWAPGS Attack: A new Spectre haunts machines with Intel CPUsHelp Net Security·May 28, 11:23 UTC · May 28, 2020Exploit / PoCCVE-2019-112550
Kaspersky experts found a Chrome 0Security Affairs·Nov 1, 10:52 UTC · Nov 1, 2019Exploit / PoC in the wildCVE-2019-13720CVE-2019-1372160
Why you should download Apple's iOS 10.2.1 right nowCyberScoop·Jan 24, 21:29 UTC · Jan 24, 2017Exploit / PoC in the wild60
Apple addressed two actively exploited zeroSecurity Affairs·Nov 20, 19:08 UTC · Nov 20, 2024Exploit / PoC in the wildCVE-2024-44309CVE-2024-4430860
Google addressed a new Chrome ZeroSecurity Affairs·Nov 29, 19:04 UTC · Nov 29, 2023Exploit / PoC in the wildCVE-2023-6345CVE-2023-5217CVE-2023-6348+8 CVEs60
Microsoft issues emergency patch for IE Zero Day exploited in the wildSecurity Affairs·Dec 20, 09:34 UTC · Dec 20, 2018Exploit / PoC in the wildCVE-2018-865360
CISA adds Chrome and Citrix NetScaler to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 18, 19:07 UTC · Jan 18, 2024Exploit / PoC in the wildCVE-2023-6548CVE-2023-6549CVE-2024-051960