CrowdStrike: AI is now both the weapon and the target in cyberattacksCyberScoop·Aug 3, 07:01 UTC · Aug 3, 2026Exploit / PoC60
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitThe Hacker News·Jul 26, 07:47 UTC · Jul 26, 2026Exploit / PoC in the wild60
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11The Hacker News·Jul 24, 05:12 UTC · Jul 24, 2026Exploit / PoCCVE-2025-66199CVE-2026-3418360
Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch TuesdayThe Hacker News·Jul 21, 11:38 UTC · Jul 21, 2026Exploit / PoC in the wildCVE-2026-56164CVE-2026-56155CVE-2026-32201+2 CVEs60
SonicWall SMA appliances targeted in zero-day attacks (CVE-2026-15409, CVE-2026-15410)Help Net Security·Jul 21, 09:44 UTC · Jul 21, 2026Exploit / PoC in the wildCVE-2026-15409CVE-2026-1541060
Why blocking AI models won't stop the cyber threats they createCyberScoop·Jul 20, 14:24 UTC · Jul 20, 2026Exploit / PoC in the wild60
Security researchers find stalkers abusing Chrome's sync featureCyberScoop·Jul 15, 20:42 UTC · Jul 15, 2026Exploit / PoC in the wild60
Compromised AsyncAPI npm Packages Deliver MultiThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC157
Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User SessionsThe Hacker News·Jul 11, 06:45 UTC · Jul 11, 2026Exploit / PoC in the wildCVE-2025-27915CVE-2023-37580CVE-2024-2744360
U.S. CISA adds Adobe ColdFusion, Joomlack Page Builder, Langflow, and JoomShaper SP Page Builder flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 8, 08:38 UTC · Jul 8, 2026Exploit / PoC in the wildCVE-2026-48282CVE-2026-48908CVE-2026-55255+2 CVEs60
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataThe Hacker News·Jul 7, 14:07 UTC · Jul 7, 2026Exploit / PoC145
Seven Bugs in FatFs Put IoT and Embedded Devices at RiskSecurity Affairs·Jul 6, 10:20 UTC · Jul 6, 2026Exploit / PoCCVE-2026-6682CVE-2026-6683CVE-2026-6687+4 CVEs150
New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidThe Hacker News·Jul 3, 19:41 UTC · Jul 3, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-43074CVE-2026-31431+2 CVEs160
DHS to unveil replacement council for critical infrastructure cybersecurityCyberScoop·Jul 1, 20:29 UTC · Jul 1, 2026Exploit / PoC in the wild60
Guardian Agents: The Next Layer of Identity GovernanceThe Hacker News·Jun 26, 11:30 UTC · Jun 26, 2026Exploit / PoC145
Cisco Catalyst SD-WAN Manager CVE-2026The Hacker News·Jun 25, 05:31 UTC · Jun 25, 2026Exploit / PoC in the wildCVE-2026-20245CVE-2026-20182CVE-2026-20127+5 CVEs60
Malicious hackers exploit Cisco zero-day for highest access level at communications service providerCyberScoop·Jun 24, 19:00 UTC · Jun 24, 2026Exploit / PoC in the wildCVE-2026-20127CVE-2026-20182CVE-2026-2024560
NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCEThe Hacker News·Jun 18, 17:21 UTC · Jun 18, 2026Exploit / PoC in the wildCVE-2026-42945CVE-2026-28515CVE-2026-28517+1 CVEs60
Cybersecurity experts don’t think Anthropic’s Fable 5 presents a unique threatCyberScoop·Jun 15, 19:32 UTC · Jun 15, 2026Exploit / PoC in the wild60
Cloudflare moves up its post-quantum deadline as researchers narrow the path to Q-DayHelp Net Security·Jun 14, 15:32 UTC · Jun 14, 2026Exploit / PoC60
Anthropic disables new models after government calls them a national security concernCyberScoop·Jun 13, 18:30 UTC · Jun 13, 2026Exploit / PoC in the wild60
Check Point Warns Critical Auth Bypass Bug Exploited in the WildInfosecurity Magazine·Jun 9, 09:30 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2026-50751CVE-2026-5075260
⚡ Weekly Recap: Instagram Account Hacks, Android ZeroThe Hacker News·Jun 9, 05:53 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2025-48595CVE-2026-28318CVE-2026-39210+43 CVEs60
MOVEit Transfer zero-day attacks: The latest infoHelp Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC60
PoC for easily exploitable Fortra GoAnywhere MFT vulnerability released (CVE-2024-0204)Help Net Security·Jun 8, 10:34 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2024-0204CVE-2023-066960
Nightmare Eclipse incident shows the researcherCyberScoop·Jun 5, 14:48 UTC · Jun 5, 2026Exploit / PoC60
Autonomous AI-driven worm can reason its way through corporate networksHelp Net Security·Jun 3, 00:00 UTC · Jun 3, 2026Exploit / PoC in the wild60
Why you need BAS and autonomous pentesting togetherHelp Net Security·Jun 2, 00:00 UTC · Jun 2, 2026Exploit / PoC60
Attackers are exploiting Palo Alto Networks defect that initially flew under the radarCyberScoop·Jun 1, 22:29 UTC · Jun 1, 2026Exploit / PoC in the wildCVE-2026-025760
Microsoft calls zero-day releases ‘never justifiable’ as researcher threatens to drop moreThe Record·May 29, 13:37 UTC · May 29, 2026Exploit / PoC in the wild60
U.S. CISA adds a flaw in Drupal Core to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 24, 07:54 UTC · May 24, 2026Exploit / PoC in the wildCVE-2026-908260
Chaotic Eclipse discloses MiniPlasma zero-day, suggesting a missing or undone 2020 Windows security fixSecurity Affairs·May 18, 08:15 UTC · May 18, 2026Exploit / PoCCVE-2020-17103CVE-2026-3382560
AI is drowning software maintainers in junk security reportsHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC60
Linux Kernel bug Fragnesia allows local root access attacksSecurity Affairs·May 17, 12:40 UTC · May 17, 2026Exploit / PoCCVE-2026-4630050
Cisco zero-day under ongoing attack by persistent threat groupCyberScoop·May 15, 14:16 UTC · May 15, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20122CVE-2026-20128+2 CVEs60
Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)Help Net Security·May 15, 00:00 UTC · May 15, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20127CVE-2022-20775+6 CVEs60
Closed briefing sets stage for House hearing on Anthropic’s Mythos and cyber risksCyberScoop·May 13, 23:13 UTC · May 13, 2026Exploit / PoC in the wild60
Daybreak is OpenAI's answer to the AI arms race in cybersecurityCyberScoop·May 13, 14:36 UTC · May 13, 2026Exploit / PoC in the wild60
Sandyaa: Open-source autonomous security bug hunterHelp Net Security·May 13, 00:00 UTC · May 13, 2026Exploit / PoC45
Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomThe Hacker News·May 11, 11:51 UTC · May 11, 2026Exploit / PoC45