⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Tulsi Gabbard tussles with senators over Snowden, surveillanceCyberScoop·Jan 30, 20:21 UTC · Jan 30, 2025Exploit / PoC in the wild60
How HHS has strengthened cybersecurity of hospitals and health care systemsCyberScoop·Jan 17, 11:00 UTC · Jan 17, 2025Exploit / PoC in the wild60
Advanced threat predictions for 2025Kaspersky Securelist·Nov 25, 10:02 UTC · Nov 25, 2024Exploit / PoCCVE-2024-23222CVE-2024-23225CVE-2024-23296+3 CVEs60
Thousands of Adobe Commerce e-stores hacked by exploiting CosmicSting bugSecurity Affairs·Oct 3, 14:36 UTC · Oct 3, 2024Exploit / PoC in the wildCVE-2024-34102CVE-2024-296160
Printer bug sends researchers into uproar, affects major Linux distrosCyberScoop·Sep 27, 11:41 UTC · Sep 27, 2024Exploit / PoCCVE-2024-47176CVE-2024-47076CVE-2024-47175+1 CVEs60
New Chrome zero-day actively exploited, patch quickly! (CVE-2024-7971)Help Net Security·Sep 19, 11:32 UTC · Sep 19, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-796560
White House to study open source software in critical infrastructureCyberScoop·Aug 9, 20:50 UTC · Aug 9, 2024Exploit / PoC in the wild60
Obfuscation: There Are Two Sides To EverythingThe Hacker News·Aug 1, 11:07 UTC · Aug 1, 2024Exploit / PoC60
CISA Urges Software Makers to Eliminate OS Command Injection FlawsInfosecurity Magazine·Jul 11, 14:30 UTC · Jul 11, 2024Exploit / PoC in the wildCVE-2024-20399CVE-2024-3400CVE-2024-2188760
Windows Recall will be opt-in and the data more secure, Microsoft saysHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2024Exploit / PoC145
Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
Dangling Domains: Security Threats, Detection and PrevalencePalo Alto Unit 42·Jun 6, 01:30 UTC · Jun 6, 2024Exploit / PoC45
Russian influence op keeps trying but struggles to win hearts and mindsCyberScoop·May 29, 15:54 UTC · May 29, 2024Exploit / PoC in the wild60
Usage of TLS in DDNS Services leads to Information Disclosure in Multiple VendorsSecurity Affairs·May 24, 08:58 UTC · May 24, 2024Exploit / PoC60
Google fixes Chrome zero-day with in-the-wild exploit (CVE-2024-4671)Help Net Security·May 16, 08:55 UTC · May 16, 2024Exploit / PoC in the wildCVE-2024-4671CVE-2024-4761160
Hackers Exploit OpenMetadata Flaws to Mine Crypto on KubernetesThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2024Exploit / PoCCVE-2024-28847CVE-2024-28848CVE-2024-28253+3 CVEs60
White House: Use memory-safe programming languages to protect the nationHelp Net Security·Feb 27, 00:00 UTC · Feb 27, 2024Exploit / PoC in the wild60
The many ways electric cars are vulnerable to hacks, and whether that matters in a realCisco Talos·Feb 1, 19:00 UTC · Feb 1, 2024Exploit / PoC60
Billions of Bluetooth-enabled devices vulnerable to new airborne attacksHelp Net Security·Jan 8, 12:40 UTC · Jan 8, 2024Exploit / PoCCVE-2017-1000251CVE-2017-1000250CVE-2017-0785+5 CVEs60
Correct bad network behavior to bolster application experienceHelp Net Security·Dec 18, 00:00 UTC · Dec 18, 2023Exploit / PoC60
Microsoft Fixes 34 CVEs and One ZeroInfosecurity Magazine·Dec 13, 10:30 UTC · Dec 13, 2023Exploit / PoCCVE-2023-20588CVE-2023-35628CVE-2023-35641+2 CVEs60
CISA adds five vulnerabilities in Juniper devices to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 13, 18:51 UTC · Nov 13, 2023Exploit / PoC in the wildCVE-2023-36844CVE-2023-36845CVE-2023-36846+3 CVEs160
Experts released PoC exploit code for Cisco IOS XE flaw CVE-2023Security Affairs·Oct 31, 12:03 UTC · Oct 31, 2023Exploit / PoC in the wildCVE-2023-2019860
Cisco IOS XE zero-day exploited by attackers to deliver implant (CVE-2023-20198)Help Net Security·Oct 31, 10:28 UTC · Oct 31, 2023Exploit / PoCCVE-2023-20198CVE-2021-143560
Apple news: iLeakage attack, MAC address leakage bugHelp Net Security·Oct 27, 00:00 UTC · Oct 27, 2023Exploit / PoCCVE-2023-32434CVE-2023-4284660
CISA adds Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 23, 19:49 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2021-1435CVE-2023-2019860
Cisco warns of a second IOS XE zeroSecurity Affairs·Oct 23, 18:42 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2023-20273CVE-2023-2019860
Cisco Zero-Day Exploited to Implant Malicious Lua Backdoor on Thousands of DevicesThe Hacker News·Oct 23, 04:33 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2023-20273CVE-2023-20198CVE-2021-143560
Unidentified attackers breach tens of thousands of Cisco devicesCyberScoop·Oct 18, 15:34 UTC · Oct 18, 2023Exploit / PoC in the wildCVE-2023-20198CVE-2021-143560
Exclusive: Ukraine says joint mission with US derailed Moscow’s cyberattacksThe Record·Oct 18, 12:26 UTC · Oct 18, 2023Exploit / PoC60
CVE-2023-20198 zero-day widely exploited to install implants on Cisco IOS XE systemsSecurity Affairs·Oct 17, 17:51 UTC · Oct 17, 2023Exploit / PoC in the wildCVE-2023-2019860
Cisco: Hackers targeting zero-day found in internetThe Record·Oct 16, 21:12 UTC · Oct 16, 2023Exploit / PoCCVE-2023-20198CVE-2021-143560
Cryptocurrency Startup Loses Encryption Key for Electronic WalletSchneier on Security·Sep 6, 11:05 UTC · Sep 6, 2023Exploit / PoC60
Week in review: 11 search engines for cybersecurity research, PoC for RCE in Juniper firewall releasedHelp Net Security·Sep 3, 00:00 UTC · Sep 3, 2023Exploit / PoCCVE-2023-34039CVE-2023-2089060
Experts published PoC exploit code for Juniper SRX firewall flawsSecurity Affairs·Aug 28, 18:35 UTC · Aug 28, 2023Exploit / PoCCVE-2023-36844CVE-2023-36845CVE-2023-36846+1 CVEs160
FBI: Barracuda Appliances Still Being Exploited By ChinaInfosecurity Magazine·Aug 25, 09:30 UTC · Aug 25, 2023Exploit / PoCCVE-2023-286860
Ivanti zero-day exploited to target Norwegian government (CVE-2023-35078)Help Net Security·Jul 31, 13:19 UTC · Jul 31, 2023Exploit / PoC in the wildCVE-2023-3507860
CISA adds Ivanti EPMM flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 26, 11:53 UTC · Jul 26, 2023Exploit / PoC in the wildCVE-2023-3507860