DeleFriend Weakness Puts Google Workspace Security at RiskInfosecurity Magazine·Nov 29, 16:30 UTC · Nov 29, 2023Exploit / PoC60
Salesloft Drift compromised en masse, impacting all thirdCyberScoop·Aug 28, 19:48 UTC · Aug 28, 2025Exploit / PoC in the wild60
Week in review: PoC for Windows Print Spooler flaw leaked, conquering synthetic identity fraudHelp Net Security·Jul 4, 00:00 UTC · Jul 4, 2021Exploit / PoCCVE-2021-34527CVE-2021-1675CVE-2020-358060
Week in review: Palo Alto Networks firewalls under attack, Microsoft patches two exploited zero-daysHelp Net Security·Apr 14, 00:00 UTC · Apr 14, 2024Exploit / PoC in the wildCVE-2024-3400CVE-2024-29988CVE-2024-26234+1 CVEs60
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
Week in review: Windows zero-day exploit leaked, Patch Tuesday forecastHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2026Exploit / PoC in the wildCVE-2026-34197160
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [3 February]The Hacker News·Feb 4, 11:56 UTC · Feb 4, 2025Exploit / PoC in the wildCVE-2025-24085CVE-2024-41710CVE-2025-0626+30 CVEs60
Suppliers, logins, and AI tools are all becoming attack pathsHelp Net Security·Aug 6, 00:00 UTC · Aug 6, 2026Exploit / PoC in the wild160
CISA issues recommendations to federal agencies on openCyberScoop·Jul 30, 18:24 UTC · Jul 30, 2026Exploit / PoC in the wild60
U.S. CISA adds Microsoft Office, GNU InetUtils, SmarterTools SmarterMail, and Linux Kernel flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 27, 14:54 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2018-14634CVE-2025-52691CVE-2026-21509+2 CVEs60
From summer camp to grind seasonCisco Talos·Sep 4, 18:02 UTC · Sep 4, 2025Exploit / PoCCVE-2025-5517760
CISA delivers new directive to agencies on securing cloud environmentsCyberScoop·Dec 17, 22:04 UTC · Dec 17, 2024Exploit / PoC in the wild160
Week in review: VMware ESXi zero-day exploited, SMS Stealer malware targeting Android usersHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2024Exploit / PoC in the wildCVE-2023-45249CVE-2024-3708560
Here’s what Google is (and isn’t) planning with SMS account verificationCyberScoop·Feb 27, 21:28 UTC · Feb 27, 2025Exploit / PoC in the wild60
Wiz Uncovers Critical Access Bypass Flaw in AIThe Hacker News·Jul 30, 07:43 UTC · Jul 30, 2025Exploit / PoC in the wild60
GhostToken Flaw Could Let Attackers Hide Malicious Apps in Google Cloud PlatformThe Hacker News·Apr 22, 05:34 UTC · Apr 22, 2023Exploit / PoC60
Phishers Exploit Salesforce's Email Services ZeroThe Hacker News·Aug 4, 10:16 UTC · Aug 4, 2023Exploit / PoC60
Chinese hackers used Google Calendar to aid attacks on government entitiesCyberScoop·May 28, 19:25 UTC · May 28, 2025Exploit / PoC60
NSA warns of Russian government-backed hackers aiming at US defense sector targetsCyberScoop·Dec 7, 15:20 UTC · Dec 7, 2020Exploit / PoC in the wild60
Chinese hackers use Log4j exploit to go after academic institutionCyberScoop·Dec 29, 17:00 UTC · Dec 29, 2021Exploit / PoC in the wild60
Critical VMware Workspace ONE Access Flaw Under Active Exploitation in the WildThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022Exploit / PoC in the wildCVE-2022-2295460
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
CrowdStrike is buying Seraphic Security to lock down the browser, where work actually happensCyberScoop·Jan 13, 15:25 UTC · Jan 13, 2026Exploit / PoC in the wild60
NSA, FBI, DHS expose Russian intelligence hacking tradecraftCyberScoop·Apr 15, 13:56 UTC · Apr 15, 2021Exploit / PoC in the wild60
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreThe Hacker News·Jul 28, 05:26 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-16232CVE-2025-66376CVE-2026-54121+52 CVEs60
Broad coalition of advocacy groups urges Slack to protect users' messages from eavesdroppingCyberScoop·May 24, 15:39 UTC · May 24, 2023Exploit / PoC in the wild60
Top 12 Security Flaws Russian Spy Hackers Are Exploiting in the WildThe Hacker News·May 11, 06:23 UTC · May 11, 2021Exploit / PoCCVE-2018-13379CVE-2019-9670CVE-2019-11510+9 CVEs60
NSA warns defense contractors of potential SolarWinds falloutCyberScoop·Dec 18, 21:57 UTC · Dec 18, 2020Exploit / PoC in the wild60
Flax Typhoon can turn your own software against youCyberScoop·Oct 14, 13:36 UTC · Oct 14, 2025Exploit / PoC60
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source CodeThe Hacker News·Jan 26, 16:53 UTC · Jan 26, 2026Exploit / PoCCVE-2025-69264CVE-2025-6926360
Week in review: Windows kernel flaw patched, suspected Fortinet FortiWeb zero-day exploitedHelp Net Security·Nov 16, 00:00 UTC · Nov 16, 2025Exploit / PoC in the wildCVE-2025-12480CVE-2025-21042CVE-2025-62215+2 CVEs60
Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without AuthenticationThe Hacker News·Jul 22, 15:38 UTC · Jul 22, 2026Exploit / PoC in the wildCVE-2026-29059CVE-2026-60137CVE-2026-63030+2 CVEs60