Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
SASE Threat Report: 8 Key Findings for Enterprise SecurityThe Hacker News·Jun 3, 10:56 UTC · Jun 3, 2024Exploit / PoCCVE-2021-4422860
Researcher Uncovers Flaws in Cox Modems, Potentially Impacting MillionsThe Hacker News·Jun 3, 10:48 UTC · Jun 3, 2024Exploit / PoC in the wild60
Log4Shell shows no sign of fading, spotted in 30% of CVE exploitsHelp Net Security·May 14, 00:00 UTC · May 14, 2024Exploit / PoCCVE-2017-9841CVE-2021-4422860
Attackers can steal NTLM password hashes via calendar invitesHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2024Exploit / PoCCVE-2023-35636150
Tech Giants Reveal RecordInfosecurity Magazine·Oct 11, 09:30 UTC · Oct 11, 2023Exploit / PoCCVE-2023-4448760
Week in review: 17 free AWS cybersecurity courses, exploited Chrome zero-dayHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2023Exploit / PoC in the wildCVE-2023-26369CVE-2023-36761CVE-2023-36802+1 CVEs60
Cisco fixes 3 high-severity DoS flaws in NXSecurity Affairs·Aug 27, 15:00 UTC · Aug 27, 2023Exploit / PoC in the wildCVE-2023-20200CVE-2023-20169CVE-2023-20168+2 CVEs60
#BHUSA: New Zero-Day Vulnerabilities Could Instantly Drain Crypto WalletsInfosecurity Magazine·Aug 9, 22:16 UTC · Aug 9, 2023Exploit / PoC60
Anomaly detection in certificateKaspersky Securelist·Jul 28, 10:00 UTC · Jul 28, 2023Exploit / PoC145
Unpatched Office zero-day CVE-2023-36884 actively exploited in targeted attacksSecurity Affairs·Jul 12, 07:39 UTC · Jul 12, 2023Exploit / PoC in the wildCVE-2023-3688460
MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?The Hacker News·Jul 1, 05:46 UTC · Jul 1, 2023Exploit / PoC in the wild60
20 cybersecurity projects on GitHub you should check outHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2023Exploit / PoC45
Microsoft releases guidance for Office zero-day used to target orgs in Russia, India, TibetThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoCCVE-2022-30190160
More than $13 million stolen from DeFi platform Deus FinanceThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoC60
5 free resources from the Cybersecurity and Infrastructure Security Agency (CISA)Help Net Security·Nov 21, 00:00 UTC · Nov 21, 2022Exploit / PoC in the wild60
Hackers maintained deep access inside military organization's network, U.S. officials revealCyberScoop·Oct 5, 02:36 UTC · Oct 5, 2022Exploit / PoC in the wild60
Week in review: Apple fixes exploited zero-days, 1,900 Signal users exposed, Amazon Ring app vulnHelp Net Security·Sep 9, 10:34 UTC · Sep 9, 2022Exploit / PoCCVE-2022-32894CVE-2022-3289360
IT threat evolution Q2 2022Kaspersky Securelist·Aug 15, 09:54 UTC · Aug 15, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-26925CVE-2022-30190160
Clever - and Exploitable - Windows Zero-DaySchneier on Security·Jun 1, 18:25 UTC · Jun 1, 2022Exploit / PoC60
Threat Advisory: Zero-day vulnerability in Microsoft diagnostic tool MSDT could lead to code executionCisco Talos·Jun 1, 14:19 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
FinCEN associate director says his agency has its eyes on DeFi projectsCyberScoop·May 19, 21:43 UTC · May 19, 2022Exploit / PoC in the wild60
Phishers exploit Google’s SMTP Relay service to deliver spoofed emailsHelp Net Security·May 3, 00:00 UTC · May 3, 2022Exploit / PoC45
NGINX project maintainers fix flaws in LDAP Reference ImplementationSecurity Affairs·Apr 12, 11:25 UTC · Apr 12, 2022Exploit / PoC60
How much can you trust your printer?Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2022Exploit / PoC60
Hackers stole more than $320 million in cryptocurrency from DeFi platform WormholeCyberScoop·Feb 3, 15:42 UTC · Feb 3, 2022Exploit / PoC in the wild60
Google Details Two Zero-Day Bugs Reported in Zoom Clients and MMR ServersThe Hacker News·Jan 22, 06:28 UTC · Jan 22, 2022Exploit / PoCCVE-2021-34423CVE-2021-3442460
Google Project Zero discloses details of two Zoom ZeroSecurity Affairs·Jan 21, 14:41 UTC · Jan 21, 2022Exploit / PoCCVE-2021-34423CVE-2021-3442460
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
Attack techniques observed by Kaspersky MDRKaspersky Securelist·Dec 15, 10:00 UTC · Dec 15, 2021Exploit / PoC in the wildCVE-2021-1675CVE-2021-3452760
New PetitPotam NTLM Relay Attack Lets Hackers Take Over Windows DomainsThe Hacker News·Jul 27, 05:19 UTC · Jul 27, 2021Exploit / PoC45
Microsoft publishes mitigations for the PetitPotam attackSecurity Affairs·Jul 26, 07:22 UTC · Jul 26, 2021Exploit / PoC45
Obtaining password hash of Windows systems with PetitPotam attackSecurity Affairs·Jul 24, 05:08 UTC · Jul 24, 2021Exploit / PoC45
$280 Million Stolen Per Month From Crypto TransactionsSecurity Affairs·Jun 2, 16:12 UTC · Jun 2, 2021Exploit / PoC57
Expert released PoC exploit code for Windows CVE-2021Security Affairs·May 17, 13:45 UTC · May 17, 2021Exploit / PoC in the wildCVE-2021-3116660
APT trends report Q1 2021Kaspersky Securelist·Apr 27, 10:00 UTC · Apr 27, 2021Exploit / PoC in the wild60
Researchers find flaw that leaks email addresses from Apple's AirDropCyberScoop·Apr 23, 15:18 UTC · Apr 23, 2021Exploit / PoC in the wild60
Webee and Semtech simplify LoRaWAN connectivity for growing low-power IoT app marketHelp Net Security·Mar 19, 00:00 UTC · Mar 19, 2021Exploit / PoC57
Google Hacker Details Zero-Click 'Wormable' WiThe Hacker News·Dec 2, 13:22 UTC · Dec 2, 2020Exploit / PoC in the wildCVE-2020-3843CVE-2020-2795060