Enigma, Vector, and TgToxic: The New Threats to Cryptocurrency UsersThe Hacker News·Feb 11, 13:10 UTC · Feb 11, 2023Exploit / PoC in the wildCVE-2015-229160
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
Microsoft downplays damaging report on Chinese hacking its own engineers vettedCyberScoop·Jul 31, 18:35 UTC · Jul 31, 2023Exploit / PoC in the wild60
FinCEN associate director says his agency has its eyes on DeFi projectsCyberScoop·May 19, 21:43 UTC · May 19, 2022Exploit / PoC in the wild60
ChatGPT Security Issue Enabled Data Theft via Single PromptInfosecurity Magazine·Mar 31, 13:01 UTC · Mar 31, 2026Exploit / PoC in the wild60
Microsoft seizes 50 websites used by North Korean hackers to gather intelligenceCyberScoop·Dec 31, 14:30 UTC · Dec 31, 2019Exploit / PoC in the wild60
Russian agents allegedly hired this cyberCyberScoop·Mar 17, 15:49 UTC · Mar 17, 2017Exploit / PoC in the wild60
Foreign VPN apps need a close look from DHS, senators sayCyberScoop·Feb 7, 20:44 UTC · Feb 7, 2019Exploit / PoC in the wild60
DHS orders feds to adopt DMARC email securityCyberScoop·Oct 17, 14:24 UTC · Oct 17, 2017Exploit / PoC in the wild60
CISA added Zoho ManageEngine RCE (CVE-2022-47966) to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Jan 24, 11:03 UTC · Jan 24, 2023Exploit / PoC in the wildCVE-2022-4796660
Microsoft fixes many zero-days under attackHelp Net Security·Nov 8, 00:00 UTC · Nov 8, 2022Exploit / PoC in the wildCVE-2022-41091CVE-2022-41049CVE-2022-41128+3 CVEs60
Agari: Most agencies on track for DMARC deadlineCyberScoop·Jul 26, 14:34 UTC · Jul 26, 2018Exploit / PoC in the wild60
Proposed State Department bureau takes wrong approach to U.S. cyber diplomacyCyberScoop·Jun 7, 15:58 UTC · Jun 7, 2019Exploit / PoC in the wild60
Proofpoint: One month out from deadline, half of agency domains are DMARC compliantCyberScoop·Sep 17, 19:15 UTC · Sep 17, 2018Exploit / PoC in the wild60
U.S. CISA adds BeyondTrust PRA and RS and Qlik Sense flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 13, 22:10 UTC · Jan 13, 2025Exploit / PoC in the wildCVE-2024-12686CVE-2024-12356CVE-2023-4836560
Cybersecurity vendors lag badly on DMARC email security, survey showsCyberScoop·Jul 27, 02:23 UTC · Jul 27, 2017Exploit / PoC in the wild60
Spanish cops arrest four in 'FluBot' text hacking schemeCyberScoop·Mar 8, 15:38 UTC · Mar 8, 2021Exploit / PoC in the wild60
Attacks against Denmark 's energy sector were not carried out by RussiaSecurity Affairs·Jan 14, 16:40 UTC · Jan 14, 2024Exploit / PoC in the wildCVE-2023-28771CVE-2020-9054CVE-2022-3052560
The ‘staggering’ cybersecurity weakness that isn’t getting enough focus, according to a top Secret Service officialCyberScoop·Jan 30, 15:41 UTC · Jan 30, 2026Exploit / PoC in the wild60
European police nab 26 suspects in SIM swapping dragnetCyberScoop·Mar 13, 14:41 UTC · Mar 13, 2020Exploit / PoC in the wild60
Critical PPP Daemon Flaw Opens Most Linux Systems to Remote HackersThe Hacker News·Mar 6, 14:17 UTC · Mar 6, 2020Exploit / PoC in the wildCVE-2020-859760
Senators move to quash the use of Chinese AI system by federal contractorsCyberScoop·May 9, 18:33 UTC · May 9, 2025Exploit / PoC in the wild60
U.S. CISA adds Cisco ASA and FTD, and RoundCube Webmail bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 25, 07:40 UTC · Oct 25, 2024Exploit / PoC in the wildCVE-2024-20481CVE-2024-3738360
Iranian-linked election interference operation shows signs of recent accessCyberScoop·Sep 24, 19:42 UTC · Sep 24, 2024Exploit / PoC in the wild60
U.S. CISA adds Microsoft Windows and Rejetto HTTP File Server bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 10, 07:33 UTC · Jul 10, 2024Exploit / PoC in the wildCVE-2024-23692CVE-2024-38080CVE-2024-38112+1 CVEs60
FBI recommends no charges in Clinton email case, mystifying former intelligence officialsCyberScoop·Jul 5, 12:38 UTC · Jul 5, 2016Exploit / PoC in the wild60
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
U.S. CISA adds Google Chromium and Sierra Wireless AirLink ALEOS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 15, 18:56 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-14174CVE-2018-4063160
Researchers catch Yemeni hackers spying on Middle East military phonesCyberScoop·Jul 9, 18:34 UTC · Jul 9, 2024Exploit / PoC in the wild60
DDoS attacks in Q1 2018Kaspersky Securelist·Apr 26, 10:00 UTC · Apr 26, 2018Exploit / PoC in the wild60
New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell, Brute Ratel FrameworkThe Hacker News·May 6, 13:53 UTC · May 6, 2025Exploit / PoC in the wildCVE-2017-9844CVE-2025-31324CVE-2017-1263760
U.S. CISA adds a flaw in BerriAI LiteLLM to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 11, 09:14 UTC · May 11, 2026Exploit / PoC in the wildCVE-2026-4220860
Russian hackers have been mooching off existing OilRig infrastructureCyberScoop·Oct 21, 16:27 UTC · Oct 21, 2019Exploit / PoC in the wild60
U.S. CISA adds Prettier eslint-config-prettier, Vite Vitejs, Versa Concerto SD-WAN orchestration platform and Synacor Zimbra Collaboration Suite flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 23, 11:50 UTC · Jan 23, 2026Exploit / PoC in the wildCVE-2025-31125CVE-2025-34026CVE-2025-54313+1 CVEs60
Microsoft Fixes Two ZeroInfosecurity Magazine·Feb 14, 10:30 UTC · Feb 14, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2024-21410+1 CVEs60
First major Kubernetes flaw enables hackers to access backend servers undetectedCyberScoop·Dec 5, 14:15 UTC · Dec 5, 2018Exploit / PoC in the wildCVE-2018-100219560
NGINX Rift: an 18-year-old flaw in the world's most deployed web server just came to lightSecurity Affairs·May 14, 13:30 UTC · May 14, 2026Exploit / PoC in the wildCVE-2026-42945CVE-2026-42946CVE-2026-40701+1 CVEs60
Utilities will have stricter cybersecurity reporting requirements under new rulingCyberScoop·Jul 19, 18:51 UTC · Jul 19, 2018Exploit / PoC in the wild60
DHS releases emergency order to prevent DNS hijackingCyberScoop·Jan 22, 19:45 UTC · Jan 22, 2019Exploit / PoC in the wild60
U.S. CISA adds Microsoft .NET Framework, Apache OFBiz, and Paessler PRTG Network Monitor flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 5, 15:03 UTC · Feb 5, 2025Exploit / PoC in the wildCVE-2024-45195CVE-2024-29059CVE-2018-9276+1 CVEs60