Disappearing bytes: Reverse engineering the MS Office RTF parserKaspersky Securelist·Feb 21, 14:00 UTC · Feb 21, 2018Exploit / PoC145
Atlassian fixed maximum severity flaw CVE-2025Security Affairs·Dec 15, 15:03 UTC · Dec 15, 2025Exploit / PoCCVE-2025-66516CVE-2025-54988CVE-2021-39227+1 CVEs60
Just about every Windows and Linux device vulnerable to new LogoFAIL firmware attackArs Technica · Security·Dec 6, 15:02 UTC · Dec 6, 2023Exploit / PoC60
A bug in Gnome pic parser can be exploited to run malicious VBScriptsSecurity Affairs·Jul 20, 07:55 UTC · Jul 20, 2017Exploit / PoC145
New Apache Struts Zero-Day Vulnerability Being Exploited in the WildThe Hacker News·Mar 9, 12:03 UTC · Mar 9, 2017Exploit / PoC in the wildCVE-2017-563860
AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache ZeroThe Hacker News·Aug 7, 11:25 UTC · Aug 7, 2026Exploit / PoCCVE-2026-6307860
catdoc zero-day, NVIDIA, High-Logic FontCreator and Parallel vulnerabilitiesCisco Talos·Jun 11, 14:03 UTC · Jun 11, 2025Exploit / PoCCVE-2024-48877CVE-2024-52035CVE-2024-54028+6 CVEs60
Critical Flaw in ESET Antivirus Exposes Mac Users to Remote HackingThe Hacker News·Feb 28, 14:06 UTC · Feb 28, 2017Exploit / PoCCVE-2016-9892CVE-2016-071860
WordPress XSS2Shell Flaw Turns Simple Login Bug Into Full Server TakeoverSecurity Affairs·Aug 7, 16:49 UTC · Aug 7, 2026Exploit / PoC57
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitThe Hacker News·Jul 26, 07:47 UTC · Jul 26, 2026Exploit / PoC in the wild60
29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP RequestsThe Hacker News·Jun 23, 11:30 UTC · Jun 23, 2026Exploit / PoC in the wildCVE-2026-47729CVE-2026-50012160
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Cisco warns of a ClamAV bug with PoC exploitSecurity Affairs·Jan 26, 06:58 UTC · Jan 26, 2025Exploit / PoCCVE-2025-20128CVE-2023-2003260
Ubuntu snapd flaw allows getting root access to the system.Security Affairs·Feb 13, 21:41 UTC · Feb 13, 2019Exploit / PoC45
3 New Code Execution Flaws Discovered in Atlantis Word ProcessorThe Hacker News·Nov 20, 16:30 UTC · Nov 20, 2018Exploit / PoCCVE-2018-4038CVE-2018-4039CVE-2018-404060
Windows Remote Assistance Exploit Lets Hackers Steal Sensitive FilesThe Hacker News·Mar 20, 18:56 UTC · Mar 20, 2018Exploit / PoCCVE-2018-0878160
A zero day flaw in OpenJPEG JPEG 2000 could lead arbitrary code executionSecurity Affairs·Oct 2, 17:35 UTC · Oct 2, 2016Exploit / PoCCVE-2016-833260
Bypassing MiniUPnP Stack Smashing ProtectionCisco Talos·Jan 27, 16:01 UTC · Jan 27, 2016Exploit / PoC145
AI Can Find Bugs, But Human Knowledge Still Proves ThemThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC57
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2025-32711150
How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from BoltThe Hacker News·Jul 6, 11:30 UTC · Jul 6, 2026Exploit / PoC45
Seven Bugs in FatFs Put IoT and Embedded Devices at RiskSecurity Affairs·Jul 6, 10:20 UTC · Jul 6, 2026Exploit / PoCCVE-2026-6682CVE-2026-6683CVE-2026-6687+4 CVEs150
FortiBleed Targeted FortiGate Firewalls in 110 MillionThe Hacker News·Jun 25, 05:28 UTC · Jun 25, 2026Exploit / PoC60
Microsoft Fixes Three ZeroInfosecurity Magazine·Dec 10, 09:45 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62221CVE-2025-54100CVE-2025-64671+4 CVEs60
Critical React2Shell Flaw Added to CISA KEV After Confirmed Active ExploitationThe Hacker News·Dec 9, 06:18 UTC · Dec 9, 2025Exploit / PoC in the wildCVE-2025-5518260
U.S. CISA adds JQuery flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 24, 19:59 UTC · Jan 24, 2025Exploit / PoC in the wildCVE-2020-1102360
Cisco fixes ClamAV vulnerability with available PoC and critical Meeting Management flawHelp Net Security·Jan 23, 00:00 UTC · Jan 23, 2025Exploit / PoC in the wildCVE-2025-20156CVE-2025-2012860
CISA adds Jenkins Command Line Interface (CLI) bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 19, 19:46 UTC · Aug 19, 2024Exploit / PoC in the wildCVE-2024-2389760
Network Security Trends: November 2021 to January 2022Palo Alto Unit 42·Jun 5, 20:41 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-38647+13 CVEs60
Multiple PoC exploits released for Jenkins flaw CVE-2024Security Affairs·Jan 28, 18:25 UTC · Jan 28, 2024Exploit / PoCCVE-2024-2389760
Expert released PoC code for critical Microsoft Word RCE flawSecurity Affairs·Mar 7, 15:04 UTC · Mar 7, 2023Exploit / PoCCVE-2023-21716160
PoC exploit for recently patched Microsoft Word RCE is public (CVE-2023-21716)Help Net Security·Mar 6, 00:00 UTC · Mar 6, 2023Exploit / PoCCVE-2023-2171660
Latest Firefox 95 Includes RLBox Sandboxing to Protect Browser from Malicious CodeThe Hacker News·Dec 7, 05:21 UTC · Dec 7, 2021Exploit / PoC60
Critical PPP Daemon Flaw Opens Most Linux Systems to Remote HackersThe Hacker News·Mar 6, 14:17 UTC · Mar 6, 2020Exploit / PoC in the wildCVE-2020-859760
A WhatsApp bug could have allowed crashing of all group membersSecurity Affairs·Dec 17, 15:31 UTC · Dec 17, 2019Exploit / PoC45
ZDResearch Advanced Web Hacking Training 2018The Hacker News·Sep 25, 13:16 UTC · Sep 25, 2018Exploit / PoC60
Firefox 0-day exploited in the wild to unmask Tor usersHelp Net Security·Jun 26, 21:24 UTC · Jun 26, 2018Exploit / PoC in the wild60
SigSpoof GnuPG flaw could be exploited to spoof message signaturesSecurity Affairs·Jun 15, 07:46 UTC · Jun 15, 2018Exploit / PoCCVE-2018-1202060
Windows Remote Assistance flaw could be exploited to steal sensitive filesSecurity Affairs·Mar 21, 07:26 UTC · Mar 21, 2018Exploit / PoCCVE-2018-087860