Public PoC Released for Critical libssh2 CVE-2026-55200 ClientThe Hacker News·Jun 29, 07:06 UTC · Jun 29, 2026Exploit / PoC in the wildCVE-2026-55200CVE-2019-3855CVE-2026-55199+1 CVEs160
Seemplicity AI Analysts focus remediation on exploitable risksHelp Net Security·Jun 25, 00:00 UTC · Jun 25, 2026Exploit / PoC60
Researchers Trick AI Browsers Into Leaking CredentialsInfosecurity Magazine·Jun 24, 16:05 UTC · Jun 24, 2026Exploit / PoC45
Chaotic Eclipse Strikes Again: New Zero-Day Unlocks BitLocker in Four Hours of ResearchSecurity Affairs·Jun 11, 10:58 UTC · Jun 11, 2026Exploit / PoCCVE-2026-33825CVE-2026-45498CVE-2026-41091160
Critical Flowise Flaw Gives Attackers Full Server ControlInfosecurity Magazine·Jun 1, 14:00 UTC · Jun 1, 2026Exploit / PoCCVE-2026-4093360
A SpaceX Security Engineer Used AI to Find a 19-YearSecurity Affairs·Jun 1, 09:55 UTC · Jun 1, 2026Exploit / PoC45
U.S. CISA adds Palo Alto Networks PAN-OS flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 1, 08:36 UTC · Jun 1, 2026Exploit / PoC in the wildCVE-2026-025760
U.S. CISA adds Daemon Tools, TanStack, and Nx Console flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 28, 13:14 UTC · May 28, 2026Exploit / PoC in the wildCVE-2026-8398CVE-2026-45321CVE-2026-4802760
Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026The Hacker News·May 24, 08:15 UTC · May 24, 2026Exploit / PoCCVE-2026-4558560
DirtyDecrypt: PoC Released for yet another Linux flawSecurity Affairs·May 20, 07:36 UTC · May 20, 2026Exploit / PoC in the wildCVE-2026-31635CVE-2026-31431CVE-2026-43284+4 CVEs60
DirtyDecrypt PoC Released for Linux Kernel CVE-2026The Hacker News·May 20, 04:10 UTC · May 20, 2026Exploit / PoCCVE-2026-31635CVE-2026-31431CVE-2026-43284+4 CVEs60
Zero-Day Exploit Against Windows BitLockerSchneier on Security·May 18, 11:08 UTC · May 18, 2026Exploit / PoC60
Flaw in Claude’s Chrome extension allowed ‘any’ other plugin to hijack victims’ AICyberScoop·May 8, 13:14 UTC · May 8, 2026Exploit / PoC in the wild60
ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New StoriesThe Hacker News·Apr 24, 04:36 UTC · Apr 24, 2026Exploit / PoCCVE-2026-27175CVE-2026-27174CVE-2025-22952+1 CVEs60
New security loophole allows spying on internet users' online activityHelp Net Security·Apr 23, 13:32 UTC · Apr 23, 2026Exploit / PoC60
Researcher drops two more Microsoft Defender zero-days, all three now exploited in the wildHelp Net Security·Apr 23, 09:15 UTC · Apr 23, 2026Exploit / PoC in the wildCVE-2026-3382560
PentAGI: Open-source autonomous AI penetration testing systemHelp Net Security·Apr 22, 00:00 UTC · Apr 22, 2026Exploit / PoC60
Critical Magento 2 flaw exploited within 16 hoursSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Exploit / PoC60
Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in Recent Mass AttacksThe Hacker News·Apr 2, 07:21 UTC · Apr 2, 2026Exploit / PoC in the wildCVE-2023-32434CVE-2023-3860660
CursorJack’ Attack Path Exposes Code Execution Risk in AI DevelopmentInfosecurity Magazine·Mar 17, 15:00 UTC · Mar 17, 2026Exploit / PoC45
BlacksmithAI: Open-source AI-powered penetration testing frameworkHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2026Exploit / PoC145
U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 14, 16:27 UTC · Feb 14, 2026Exploit / PoC in the wildCVE-2026-1731CVE-2026-2485860
Attackers exploit BeyondTrust CVE-2026Security Affairs·Feb 13, 15:19 UTC · Feb 13, 2026Exploit / PoC in the wildCVE-2026-173160
Hundreds of Malicious Crypto Trading AddInfosecurity Magazine·Feb 3, 16:30 UTC · Feb 3, 2026Exploit / PoC57
We moved fast and broke things. It’s time for a change.CyberScoop·Feb 2, 11:00 UTC · Feb 2, 2026Exploit / PoC60
Some ChatGPT browser extensions are stealing your dataCyberScoop·Jan 26, 19:32 UTC · Jan 26, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
UAT-8837 targets critical infrastructure sectors in North AmericaCisco Talos·Jan 15, 11:00 UTC · Jan 15, 2026Exploit / PoCCVE-2025-5369060
Monitoring Tool Nezha Abused For Stealthy PostInfosecurity Magazine·Dec 22, 14:30 UTC · Dec 22, 2025Exploit / PoC45
U.S. CISA adds Google Chromium and Sierra Wireless AirLink ALEOS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 15, 18:56 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-14174CVE-2018-4063160
Atlassian fixed maximum severity flaw CVE-2025Security Affairs·Dec 15, 15:03 UTC · Dec 15, 2025Exploit / PoCCVE-2025-66516CVE-2025-54988CVE-2021-39227+1 CVEs60
Chrome Targeted by Active In-the-Wild Exploit Tied to Undisclosed HighThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-2783CVE-2025-4664CVE-2025-5419+7 CVEs160
Google fixed a new actively exploited Chrome zeroSecurity Affairs·Dec 11, 18:19 UTC · Dec 11, 2025Exploit / PoC in the wildCVE-2025-14372CVE-2025-14373CVE-2025-6554+6 CVEs60
Microsoft Fixes Three ZeroInfosecurity Magazine·Dec 10, 09:45 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62221CVE-2025-54100CVE-2025-64671+4 CVEs60
Critical React2Shell Flaw Added to CISA KEV After Confirmed Active ExploitationThe Hacker News·Dec 9, 06:18 UTC · Dec 9, 2025Exploit / PoC in the wildCVE-2025-5518260
React2Shell Under Active Exploitation by ChinaInfosecurity Magazine·Dec 8, 11:40 UTC · Dec 8, 2025Exploit / PoC in the wildCVE-2025-5518260
CISA Reports PRC Hackers Using BRICKSTORM for LongThe Hacker News·Dec 5, 09:15 UTC · Dec 5, 2025Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-38812+3 CVEs160
Hottest cybersecurity open-source tools of the month: November 2025Help Net Security·Nov 27, 00:00 UTC · Nov 27, 2025Exploit / PoC57