Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation ConfirmedThe Hacker News·May 10, 06:43 UTC · May 10, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2025-392860
Highest-Risk Security Flaw Found in Commvault Backup SolutionsInfosecurity Magazine·Apr 24, 15:00 UTC · Apr 24, 2025Exploit / PoCCVE-2025-3402860
Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028)Help Net Security·May 5, 07:42 UTC · May 5, 2025Exploit / PoC in the wildCVE-2025-3402860
CISA Adds Actively Exploited Broadcom and Commvault Flaws to KEV DatabaseThe Hacker News·May 1, 07:46 UTC · May 1, 2025Exploit / PoC in the wildCVE-2025-1976CVE-2025-392860
Commvault Metallic ThreatWise proactively detects unknown and zero-day threatsHelp Net Security·Sep 22, 00:00 UTC · Sep 22, 2022Exploit / PoC60
Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-dayHelp Net Security·Aug 24, 00:00 UTC · Aug 24, 2025Exploit / PoC in the wildCVE-2025-43300CVE-2018-0171CVE-2025-31324+1 CVEs60
CrowdStrike warns of uptick in Silk Typhoon attacks this summerCyberScoop·Aug 22, 16:39 UTC · Aug 22, 2025Exploit / PoC in the wildCVE-2023-3519CVE-2025-392860
Week in review: MITRE ATT&CK v17.0 released, PoC for Erlang/OTP SSH bug is publicHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2025Exploit / PoCCVE-2025-32433CVE-2025-34028CVE-2025-2761060
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network PlatformsThe Hacker News·Feb 11, 13:28 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-0488CVE-2026-0509CVE-2025-32007+4 CVEs60
Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure EntitiesThe Hacker News·Feb 7, 11:03 UTC · Feb 7, 2026Exploit / PoC60
China-linked Murky Panda targets and moves laterally through cloud servicesHelp Net Security·Aug 22, 00:00 UTC · Aug 22, 2025Exploit / PoCCVE-2023-3519CVE-2025-392860
U.S. CISA adds GoVision device flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 8, 08:04 UTC · May 8, 2025Exploit / PoC in the wildCVE-2024-6047CVE-2024-1112060
U.S. CISA adds SonicWall SMA100 and Apache HTTP Server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 2, 07:50 UTC · May 2, 2025Exploit / PoC in the wildCVE-2024-38475CVE-2023-4422160
Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security toolsHelp Net Security·Oct 13, 00:00 UTC · Oct 13, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-9680+5 CVEs60
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260