Over 8.3 million live websites using IIS 6.0 are affected by a ZeroSecurity Affairs·Aug 22, 21:18 UTC · Aug 22, 2018Exploit / PoC in the wildCVE-2017-726960
⚡ Weekly Recap: Instagram Account Hacks, Android ZeroThe Hacker News·Jun 9, 05:53 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2025-48595CVE-2026-28318CVE-2026-39210+43 CVEs60
Microsoft Releases Fix for Zero-Day Flaw in July 2022 Security Patch RolloutThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022Exploit / PoC in the wildCVE-2022-22047CVE-2022-22026CVE-2022-22049+14 CVEs60
Swiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspectedThe Record·Aug 4, 12:55 UTC · Aug 4, 2026Exploit / PoC in the wild60
Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch TuesdayThe Hacker News·Jul 21, 11:38 UTC · Jul 21, 2026Exploit / PoC in the wildCVE-2026-56164CVE-2026-56155CVE-2026-32201+2 CVEs60
New PetitPotam NTLM Relay Attack Lets Hackers Take Over Windows DomainsThe Hacker News·Jul 27, 05:19 UTC · Jul 27, 2021Exploit / PoC45
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026The Hacker News·Jul 17, 06:42 UTC · Jul 17, 2026Exploit / PoC in the wildCVE-2026-58644CVE-2026-32201CVE-2026-45659+3 CVEs60
Actively exploited zero-day in IIS 6.0 affects 60,000+ serversHelp Net Security·Mar 30, 00:00 UTC · Mar 30, 2017Exploit / PoC in the wildCVE-2017-726960
Microsoft fixes actively exploited Windows CLFS zero-day (CVE-2025-29824)Help Net Security·Apr 15, 08:11 UTC · Apr 15, 2025Exploit / PoC in the wildCVE-2025-29824CVE-2024-49138CVE-2025-26663+7 CVEs160
Shadow Brokers' latest leak could have come from beyond NSA staging serversCyberScoop·Jan 10, 19:15 UTC · Jan 10, 2017Exploit / PoC in the wild60
U.S. CISA adds Trimble Cityworks flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 7, 21:54 UTC · Feb 7, 2025Exploit / PoC in the wildCVE-2025-099460
CISA: Federal civilian agency hacked by nationCyberScoop·Mar 16, 17:46 UTC · Mar 16, 2023Exploit / PoC in the wild60
Hackers Targeting Myanmar Use Domain Fronting to Hide Malicious ActivitiesThe Hacker News·Nov 17, 15:13 UTC · Nov 17, 2021Exploit / PoC45
Russia's invasion of Ukraine has turned the global internet into a battlefieldCyberScoop·Mar 3, 18:10 UTC · Mar 3, 2022Exploit / PoC in the wild60
Rapid7 report millions of endpoints exposed via SMB, Telnet PortsSecurity Affairs·Aug 14, 16:52 UTC · Aug 14, 2017Exploit / PoC57
NightEagle APT Exploits Microsoft Exchange Flaw to Target China's Military and Tech SectorsThe Hacker News·Jul 10, 04:17 UTC · Jul 10, 2025Exploit / PoC60
Türkiye Hackers Exploited Output Messenger Zero-Day to Drop Golang Backdoors on Kurdish ServersThe Hacker News·May 15, 00:00 UTC · May 15, 2025Exploit / PoC in the wildCVE-2025-27920CVE-2025-2792160
LDAP as attack vector could power TerabitSecurity Affairs·Jun 28, 22:10 UTC · Jun 28, 2018Exploit / PoC60
A wave of ransom attacks is targeting MySQL Databases worldwideSecurity Affairs·Oct 2, 09:29 UTC · Oct 2, 2017Exploit / PoC145
Credentials (UN)Management in home bankingSecurity Affairs·Oct 25, 05:16 UTC · Oct 25, 2017Exploit / PoC45
Russians allegedly storm Ukrainian ISP, blackmail it to switch to Russian networksCyberScoop·May 16, 17:27 UTC · May 16, 2022Exploit / PoC in the wild60
Combating Human Trafficking With Threat Intelligence — ProsecutionRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC45
Russian attacks on Ukrainian infrastructure cause internet outages, cutting off a valuable wartime toolCyberScoop·Apr 12, 13:00 UTC · Apr 12, 2023Exploit / PoC60
Hijacking nearby Firefox mobile browsers via WiFi by exploiting a bugSecurity Affairs·Sep 19, 18:29 UTC · Sep 19, 2020Exploit / PoC45
Shadow Brokers leak NSA documents that may reveal operation aimed at Middle Eastern banksCyberScoop·Apr 14, 16:02 UTC · Apr 14, 2017Exploit / PoC in the wild60
Researcher Claims Hotspot Shield VPN Service Exposes You on the InternetThe Hacker News·Feb 7, 13:13 UTC · Feb 7, 2018Exploit / PoCCVE-2018-646060
Former Marine, cyber exec Nate Fick selected as State's inaugural cyber ambassadorCyberScoop·Jun 1, 19:42 UTC · Jun 1, 2022Exploit / PoC in the wild60
Security flaws in Universal Plug and Play expose million devicesSecurity Affairs·Apr 13, 10:28 UTC · Apr 13, 2018Exploit / PoC57
FBI assesses Russian apps may be counterintelligence threatCyberScoop·Dec 2, 22:47 UTC · Dec 2, 2019Exploit / PoC in the wild60
Hackers could hijack internet-connected speakers to remotely play whatever they wantCyberScoop·Dec 28, 19:39 UTC · Dec 28, 2017Exploit / PoC in the wild60
KRACK Demo: Critical Key Reinstallation Attack Against Widely-Used WPA2 WiThe Hacker News·Oct 19, 16:43 UTC · Oct 19, 2017Exploit / PoCCVE-2017-13077CVE-2017-13078CVE-2017-13079+7 CVEs60
Former top spy says U.S. not positioned to fight information wars in cyberspaceCyberScoop·Apr 26, 21:50 UTC · Apr 26, 2017Exploit / PoC in the wild60
Misconfigured Java web server component Jolokia expose website at cyber attacksSecurity Affairs·Jun 26, 05:14 UTC · Jun 26, 2018Exploit / PoC45
Usage of TLS in DDNS Services leads to Information Disclosure in Multiple VendorsSecurity Affairs·May 24, 08:58 UTC · May 24, 2024Exploit / PoC60
Researchers Uncover Government-Sponsored Mobile Hacking Group Operating Since 2012The Hacker News·Jan 19, 10:40 UTC · Jan 19, 2018Exploit / PoC60
The Zero-Day Scramble is Avoidable: A Guide to Attack Surface ReductionThe Hacker News·Mar 10, 16:16 UTC · Mar 10, 2026Exploit / PoC in the wild60
Hackable IoT washing machine provides channel for breaching hospital ITCyberScoop·Mar 27, 17:51 UTC · Mar 27, 2017Exploit / PoC in the wild60
Hackers find 15,000 credentials by scanning for git configurationCyberScoop·Oct 30, 14:00 UTC · Oct 30, 2024Exploit / PoC60
PuzzleMaker attacks with Chrome zeroKaspersky Securelist·Jun 8, 17:32 UTC · Jun 8, 2021Exploit / PoCCVE-2021-31955CVE-2021-31956CVE-2021-21220+1 CVEs60