Apache Software Foundation fixes important flaws in Apache TomcatSecurity Affairs·Jul 25, 06:35 UTC · Jul 25, 2018Exploit / PoC in the wildCVE-2018-8037CVE-2018-1336CVE-2018-8034160
Log4j zero-day gets security fix just as scans for vulnerable systems ramp upThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Exploit / PoCCVE-2021-4422860
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
Apache Spot: open source big data analytics for cyberCyberScoop·Sep 30, 01:20 UTC · Sep 30, 2016Exploit / PoC in the wild60
CISA's new JCDC worked as intended, witnesses say at Senate hearing on Log4Shell bugCyberScoop·Feb 8, 18:22 UTC · Feb 8, 2022Exploit / PoC in the wild60
White House hosts open-source software security summit in light of expansive Log4j flawCyberScoop·Jan 13, 14:08 UTC · Jan 13, 2022Exploit / PoC in the wild60
PoC exploit for critical Apache Struts flaw found onlineHelp Net Security·Nov 20, 11:02 UTC · Nov 20, 2023Exploit / PoCCVE-2018-11776CVE-2017-563860
New Apache Web Server Bug Threatens Security of Shared Web HostsThe Hacker News·Apr 3, 09:07 UTC · Apr 3, 2019Exploit / PoCCVE-2019-0211CVE-2019-0217CVE-2019-021560
Apache fixes actively exploited web server zeroThe Record·Dec 16, 00:00 UTC · Dec 16, 2022Exploit / PoC in the wildCVE-2021-4177360
Apache fixes critical HTTP/2 double-free flaw CVE-2026Security Affairs·May 6, 11:00 UTC · May 6, 2026Exploit / PoCCVE-2026-23918160
Critical Apache HTTP/2 Flaw (CVE-2026The Hacker News·May 5, 16:46 UTC · May 5, 2026Exploit / PoCCVE-2026-2391860
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
Experts warn of possible attacks after PoC code for CVE-2018Security Affairs·Aug 27, 15:13 UTC · Aug 27, 2018Exploit / PoCCVE-2018-11776CVE-2017-563860
Chinese researchers claim to have broken RSA with a quantum computer. Experts aren’t so sure.The Record·Feb 2, 00:00 UTC · Feb 2, 2023Exploit / PoC60
DHS Cyber Safety Review Board found no evidence China knew of Log4j before disclosureCyberScoop·Jul 14, 14:30 UTC · Jul 14, 2022Exploit / PoC in the wild60
CISA adds Log4Shell flaw to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 13, 13:44 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-44515CVE-2021-44168+10 CVEs60
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Google Researcher Reported 3 Flaws in Apache Web Server SoftwareThe Hacker News·Aug 25, 06:52 UTC · Aug 25, 2020Exploit / PoC in the wildCVE-2020-9490CVE-2020-11984CVE-2020-1199360
Chainguard's FIPS-compliant Cassandra addresses security demand of federal and regulated marketsCyberScoop·Mar 5, 17:00 UTC · Mar 5, 2025Exploit / PoC in the wild60
The new organization needed to digitally protect the U.S.CyberScoop·Jul 10, 11:00 UTC · Jul 10, 2017Exploit / PoC in the wild60
Washington summit grapples with securing open source softwareCyberScoop·Sep 13, 13:30 UTC · Sep 13, 2023Exploit / PoC in the wild60
CISA's KEV Catalog Updated with 3 New Flaws Threatening IT Management SystemsThe Hacker News·Mar 11, 06:26 UTC · Mar 11, 2023Exploit / PoC in the wildCVE-2022-35914CVE-2022-33891CVE-2022-28810+3 CVEs60
NVIDIA Forms 37-Member Open Secure AI Alliance and OpenThe Hacker News·Jul 27, 18:10 UTC · Jul 27, 2026Exploit / PoC60
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
U.S. CISA adds SonicWall SonicOS and Palo Alto PAN-OS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 19, 22:32 UTC · Feb 19, 2025Exploit / PoC in the wildCVE-2025-0108CVE-2024-5370460
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
0x20k of Ghost Squad released ODay Exploit Targeting Apache HadoopSecurity Affairs·Nov 1, 14:34 UTC · Nov 1, 2018Exploit / PoC60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New StoriesThe Hacker News·Apr 24, 04:36 UTC · Apr 24, 2026Exploit / PoCCVE-2026-27175CVE-2026-27174CVE-2025-22952+1 CVEs60
Threat Advisory: Critical Apache Log4j vulnerability being exploited in the wildCisco Talos·Dec 10, 19:37 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60