FortiOS Flaw Exploited as Zero-Day in Attacks on Government and OrganizationsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023Exploit / PoCCVE-2022-4247560
Russian hackers attempted to breach petroleum refining company in NATO country, researchers sayCyberScoop·Dec 20, 16:00 UTC · Dec 20, 2022Exploit / PoC in the wild60
Google Warns of Internet Explorer Zero-Day Vulnerability Exploited by ScarCruft HackersThe Hacker News·Dec 9, 17:03 UTC · Dec 9, 2022Exploit / PoC in the wildCVE-2020-1380CVE-2021-26411CVE-2022-4112860
Palo Alto Networks PAN-OS 11.0 Nova protects organizations against zero-day threatsHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2022Exploit / PoC60
Researchers unearth hacking group that's been active, yet undetected for yearsCyberScoop·Sep 22, 19:02 UTC · Sep 22, 2022Exploit / PoC in the wild60
Cyber Command urges private sector to share intelligence, aid defensive digital operationsCyberScoop·Jun 27, 20:35 UTC · Jun 27, 2022Exploit / PoC in the wild60
Microsoft Acknowledges Zero-Day, Follina Office Vulnerability, Suggests FixInfosecurity Magazine·May 31, 17:50 UTC · May 31, 2022Exploit / PoCCVE-2022-3019060
Watch Out! Researchers Spot New Microsoft Office ZeroThe Hacker News·May 30, 15:44 UTC · May 30, 2022Exploit / PoCCVE-2021-40444160
Microsoft Fixes Three ZeroInfosecurity Magazine·May 11, 09:00 UTC · May 11, 2022Exploit / PoC in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+2 CVEs60
More details emerge on China's widespread UkraineCyberScoop·May 5, 12:00 UTC · May 5, 2022Exploit / PoC in the wild60
Google: Record Year for Zero Days in 2021Infosecurity Magazine·Apr 21, 09:30 UTC · Apr 21, 2022Exploit / PoC in the wild60
Zero-day exploits found and disclosed hit a record high in 2021, Google Project Zero saysCyberScoop·Apr 19, 16:00 UTC · Apr 19, 2022Exploit / PoC in the wild60
Threat Source newsletter (April 14, 2022) — It's Tax Day, and you know what that meansCisco Talos·Apr 14, 18:00 UTC · Apr 14, 2022Exploit / PoC in the wildCVE-2022-2452160
Mysterious disclosure of a zero-day RCE flaw Spring4Shell in SpringSecurity Affairs·Mar 31, 08:59 UTC · Mar 31, 2022Exploit / PoCCVE-2010-162260
Severity of mobile threats rising, 10+ million mobile endpoints impactedHelp Net Security·Mar 17, 00:00 UTC · Mar 17, 2022Exploit / PoC60
Mobile Devices See 466% Annual Increase in ZeroInfosecurity Magazine·Mar 15, 10:30 UTC · Mar 15, 2022Exploit / PoC60
Google has 'definitive agreement' to buy Mandiant for $5.4BCyberScoop·Mar 8, 16:41 UTC · Mar 8, 2022Exploit / PoC in the wild60
Chinese Experts Uncover Details of Equation Group's Bvp47 Covert Hacking ToolThe Hacker News·Feb 25, 17:13 UTC · Feb 25, 2022Exploit / PoC60
Telehealth app Doxy.me is plugging a leak that exposed patient data to Facebook, GoogleCyberScoop·Dec 10, 15:36 UTC · Dec 10, 2021Exploit / PoC in the wild60
Warning — Hackers Exploiting New Windows Installer ZeroThe Hacker News·Dec 3, 03:42 UTC · Dec 3, 2021Exploit / PoCCVE-2021-4137960
Threat Source Newsletter (Dec. 2, 2021)Cisco Talos·Dec 2, 19:00 UTC · Dec 2, 2021Exploit / PoCCVE-2021-41379150
An Azure Sphere kernel exploit — or how I learned to stop worrying and love the IoTCisco Talos·Nov 29, 15:00 UTC · Nov 29, 2021Exploit / PoC45
Attackers exploiting zero-day vulnerability in Windows Installer — Here’s what you need to know and Talos’ coverageCisco Talos·Nov 23, 18:29 UTC · Nov 23, 2021Exploit / PoCCVE-2021-4137960
Hackers Exploit macOS Zero-Day to Hack Hong Kong Users with new ImplantThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2021Exploit / PoC in the wildCVE-2021-30869CVE-2021-1789CVE-2019-850660
Apple AirTag Bug Enables ‘Good Samaritan’ AttackKrebs on Security·Sep 28, 16:11 UTC · Sep 28, 2021Exploit / PoC60
Cybercrime is hitting communities of color at higher rates, study findsCyberScoop·Sep 27, 12:35 UTC · Sep 27, 2021Exploit / PoC in the wild60
Millions of HP OMEN gaming PCs impacted by CVE-2021Security Affairs·Sep 14, 16:25 UTC · Sep 14, 2021Exploit / PoCCVE-2021-3437CVE-2021-343860
Talos release protection against zero-day vulnerability (CVE-2021Cisco Talos·Sep 9, 15:38 UTC · Sep 9, 2021Exploit / PoC in the wildCVE-2021-4044460
Federal agencies are failing to protect sensitive data, Senate report findsCyberScoop·Aug 3, 12:57 UTC · Aug 3, 2021Exploit / PoC in the wild60
PuzzleMaker attacks with Chrome zeroKaspersky Securelist·Jun 8, 17:32 UTC · Jun 8, 2021Exploit / PoCCVE-2021-31955CVE-2021-31956CVE-2021-21220+1 CVEs60
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160
Deepfakes advertised on underground markets, signaling possible shift, Recorded Future saysCyberScoop·Apr 29, 14:00 UTC · Apr 29, 2021Exploit / PoC in the wild60
NSA Equation Group tool was used by Chinese hackers years before it was leaked onlineSecurity Affairs·Feb 22, 14:57 UTC · Feb 22, 2021Exploit / PoCCVE-2017-000560
Security researchers targeted by North Korean hackersHelp Net Security·Jan 29, 11:18 UTC · Jan 29, 2021Exploit / PoC60
Google Speech-to-Text API Can Help Attackers Easily Bypass Google reCAPTCHAThe Hacker News·Jan 6, 05:55 UTC · Jan 6, 2021Exploit / PoC45
Another 'Minecraft' lesson for kids: Beware of deceitful adware appsCyberScoop·Nov 23, 14:19 UTC · Nov 23, 2020Exploit / PoC in the wild60
Hacker-for-hire group leverages zeroCyberScoop·Oct 7, 22:19 UTC · Oct 7, 2020Exploit / PoC in the wild60
Hackers exploit Trump's COVID-19 diagnosis to spread a different kind of virusCyberScoop·Oct 7, 20:58 UTC · Oct 7, 2020Exploit / PoC in the wild60
SLOTHFULMEDIA, a new weapon in the arsenal of a sophisticated actorSecurity Affairs·Oct 5, 11:10 UTC · Oct 5, 2020Exploit / PoC60