RedNovember Targets Government, Defense, and Technology OrganizationsRecorded Future·Nov 14, 00:00 UTC · Nov 14, 2024Exploit / PoC in the wild60
Threat Source newsletter (Aug. 4, 2022) — BlackHat 2022 previewCisco Talos·Aug 4, 18:00 UTC · Aug 4, 2022Exploit / PoC in the wildCVE-2022-2613860
CISA adds bugs exploited by commercial surveillance spyware to Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 1, 18:06 UTC · Apr 1, 2023Exploit / PoC in the wildCVE-2021-30900CVE-2022-38181CVE-2023-0266+6 CVEs60
Log4Shell was in the wild at least nine days before public disclosureSecurity Affairs·Dec 13, 09:47 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-22448CVE-2021-4422860
Bank heist with FIN7 traits went down while leaders were on the run, research suggestsCyberScoop·Jun 4, 12:55 UTC · Jun 4, 2019Exploit / PoC in the wild60
Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government NetworksThe Hacker News·May 23, 04:01 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-094460
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Financial hacking teams FIN7, Cobalt Group update tactics to haunt banks and retailCyberScoop·Aug 14, 15:18 UTC · Aug 14, 2019Exploit / PoC in the wild60
Ongoing exploitation of Cisco Catalyst SDCisco Talos·May 14, 16:02 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20133CVE-2026-20128+2 CVEs160
React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency MitigationThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-55182CVE-2021-4422860
Critical React2Shell Flaw Added to CISA KEV After Confirmed Active ExploitationThe Hacker News·Dec 9, 06:18 UTC · Dec 9, 2025Exploit / PoC in the wildCVE-2025-5518260
Underground AI models promise to be hackers ‘cyber pentesting waifu’CyberScoop·Nov 26, 01:13 UTC · Nov 26, 2025Exploit / PoC in the wild60
CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active ExploitationThe Hacker News·Jul 8, 05:08 UTC · Jul 8, 2025Exploit / PoC in the wildCVE-2014-3931CVE-2016-10033CVE-2019-5418+3 CVEs60
Log4Shell: How It’s Exploited and Mitigating DamageRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2021-4422860
Google Chrome Zero-Day CVE-2025-2783 Exploited by TaxOff to Deploy Trinper BackdoorThe Hacker News·Jun 18, 10:32 UTC · Jun 18, 2025Exploit / PoC in the wildCVE-2025-2783CVE-2024-647360
U.S. CISA adds Trimble Cityworks flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 7, 21:54 UTC · Feb 7, 2025Exploit / PoC in the wildCVE-2025-099460
CISA adds Microsoft COM for Windows bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 8, 20:41 UTC · Aug 8, 2024Exploit / PoC in the wildCVE-2018-0824160
Global critical infrastructure faces relentless cyber activityHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2024Exploit / PoC in the wild60
Online influence operators continue fine-tuning use of AI to deceive their targets, researchers sayCyberScoop·Aug 17, 12:00 UTC · Aug 17, 2023Exploit / PoC in the wild60
Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and GatewayThe Hacker News·Jul 22, 03:57 UTC · Jul 22, 2023Exploit / PoC in the wildCVE-2023-3519CVE-2023-3466CVE-2023-3467+3 CVEs60
The federal government’s cybersecurity policies are falling into place just in time to be stalled againCisco Talos·Jul 20, 18:00 UTC · Jul 20, 2023Exploit / PoC in the wildCVE-2023-3745060
Atlassian warns that Confluence zeroThe Record·Jan 13, 00:00 UTC · Jan 13, 2023Exploit / PoC in the wildCVE-2022-2613460
IT threat evolution Q2 2022Kaspersky Securelist·Aug 15, 09:54 UTC · Aug 15, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-26925CVE-2022-30190160
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Atlassian rolled out fixes for Confluence zeroSecurity Affairs·Jun 5, 09:51 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Unpatched Atlassian Confluence zero-day exploited, fix expected today (CVE-2022-26134)Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC in the wildCVE-2022-2613460
Attackers are leveraging Follina. What can you do?Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Google Cloud offers good news and bad news on Log4Shell, other issuesCyberScoop·Feb 15, 17:25 UTC · Feb 15, 2022Exploit / PoC in the wild60
Threat Advisory: Critical Apache Log4j vulnerability being exploited in the wildCisco Talos·Dec 10, 19:37 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60
Exploitation of the CVE-2021Kaspersky Securelist·Sep 16, 15:30 UTC · Sep 16, 2021Exploit / PoC in the wildCVE-2021-4044460
NK-linked InkySquid APT leverages IE exploits in recent attacksSecurity Affairs·Aug 19, 06:51 UTC · Aug 19, 2021Exploit / PoC in the wildCVE-2020-1380CVE-2021-2641160
Google: four zero-day flaws have been exploited in the wildSecurity Affairs·Jul 14, 21:25 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-1879CVE-2021-21166CVE-2021-30551+1 CVEs60
Suspected Chinese hackers target telecoms, research in Taiwan, Recorded Future saysCyberScoop·Jul 8, 21:26 UTC · Jul 8, 2021Exploit / PoC in the wild60
ProxyLogon PoC Exploit Released; Likely to Fuel More Disruptive Cyber AttacksThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2021Exploit / PoC in the wildCVE-2021-2685560
Chinese intelligence-linked hackers are exploiting known flaws to target Washington, US saysCyberScoop·Sep 14, 16:56 UTC · Sep 14, 2020Exploit / PoC in the wild60
How COVID-19 changed Cyber Command's 'Cyber Flag' exerciseCyberScoop·Jun 25, 21:51 UTC · Jun 25, 2020Exploit / PoC in the wild60
Vietnam’s premier hacking group ramps up targeting of global car companiesCyberScoop·Mar 22, 01:23 UTC · Mar 22, 2019Exploit / PoC in the wild60
Iran-linked APT is exploiting the Zerologon flaw in attacksSecurity Affairs·Oct 6, 07:41 UTC · Oct 6, 2020Exploit / PoC in the wildCVE-2020-1472CVE-2019-0604160
Magecart strikes more than 2 million websites as more groups get involvedCyberScoop·Oct 4, 10:00 UTC · Oct 4, 2019Exploit / PoC in the wild60
US Launches Gold Eagle to Coordinate AIInfosecurity Magazine·Jul 16, 08:50 UTC · Jul 16, 2026Exploit / PoC in the wild60