Progress Software fixed multiple highSecurity Affairs·Feb 11, 15:40 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-56131CVE-2024-56132CVE-2024-56133+3 CVEs60
Progress Software fixed 2 new critical flaws in WhatsUp GoldSecurity Affairs·Sep 29, 07:43 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-8785CVE-2024-46909CVE-2024-46905+4 CVEs60
PoC for Progress Telerik RCE chain released (CVE-2024-4358, CVE-2024-1800)Help Net Security·Jun 6, 10:01 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-4358CVE-2024-1800CVE-2023-3436260
WS_FTP flaw CVE-2023Security Affairs·Oct 2, 18:48 UTC · Oct 2, 2023Exploit / PoC in the wildCVE-2023-4004460
Critical Security Flaw in WhatsUp Gold Under Active AttackThe Hacker News·Aug 31, 15:14 UTC · Aug 31, 2024Exploit / PoC in the wildCVE-2024-4885CVE-2024-4883CVE-2024-4884+1 CVEs60
Critical zero-day vulnerability in MOVEit Transfer exploited by attackers!Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2023-066960
Progress Told ShareFile Customers to Pull the Plug on Their Servers. Here's What We Know.Security Affairs·Jul 12, 14:39 UTC · Jul 12, 2026Exploit / PoC in the wildCVE-2023-2448960
MOVEit Transfer software zeroSecurity Affairs·Jun 7, 13:57 UTC · Jun 7, 2023Exploit / PoC in the wild60
Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical FlawThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Exploit / PoC in the wildCVE-2024-6670CVE-2024-6671CVE-2024-4885+1 CVEs60
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs60
MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being ExploitedThe Hacker News·Jun 7, 08:52 UTC · Jun 7, 2023Exploit / PoC in the wildCVE-2023-3436260
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
Pentagon 'struggling' with cybersecurity of weapons hardwareCyberScoop·Sep 19, 15:00 UTC · Sep 19, 2016Exploit / PoC in the wild60
CISA: Federal civilian agency hacked by nationCyberScoop·Mar 16, 17:46 UTC · Mar 16, 2023Exploit / PoC in the wild60
XE Hacker Group Exploits VeraCore ZeroThe Hacker News·Feb 11, 03:52 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-57968CVE-2025-25181CVE-2017-9248+6 CVEs160
CISA sees elimination of ‘bad practices’ as next secure-byCyberScoop·Oct 28, 22:27 UTC · Oct 28, 2024Exploit / PoC in the wild60
Cisco, Hitachi, Microsoft, and Progress Flaws Actively Exploited—CISA Sounds AlarmThe Hacker News·Mar 4, 16:12 UTC · Mar 4, 2025Exploit / PoC in the wildCVE-2023-20118CVE-2022-43939CVE-2022-43769+2 CVEs60
Voting Village brings equipment to lawmakers to boost urgency on election securityCyberScoop·Oct 29, 23:57 UTC · Oct 29, 2019Exploit / PoC in the wild60
The worst part about finding Facebook disinformation is finding it againCyberScoop·Oct 26, 20:11 UTC · Oct 26, 2020Exploit / PoC in the wild60
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
Critical Wing FTP Server Vulnerability (CVE-2025-47812) Actively Being Exploited in the WildThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Exploit / PoC in the wildCVE-2025-4781260
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Washington summit grapples with securing open source softwareCyberScoop·Sep 13, 13:30 UTC · Sep 13, 2023Exploit / PoC in the wild60
OpenAI's rogue AI agent shows why we need federal rules for autonomous systemsCyberScoop·Jul 29, 10:00 UTC · Jul 29, 2026Exploit / PoC in the wild60
Apple Fixes Actively Exploited iPhone ZeroInfosecurity Magazine·Dec 14, 16:00 UTC · Dec 14, 2022Exploit / PoC in the wildCVE-2022-4285660
DHS threatened with subpoena over information about Kaspersky removalCyberScoop·Feb 2, 16:54 UTC · Feb 2, 2018Exploit / PoC in the wild60
House panel rejects call for cyberthreat report on ZTE amid possible Trump dealCyberScoop·Jun 6, 18:13 UTC · Jun 6, 2018Exploit / PoC in the wild60
CISA Urges Software Makers to Eliminate OS Command Injection FlawsInfosecurity Magazine·Jul 11, 14:30 UTC · Jul 11, 2024Exploit / PoC in the wildCVE-2024-20399CVE-2024-3400CVE-2024-2188760
Lame-duck versions of TikTok and WeChat are definitely a problem, security experts sayCyberScoop·Sep 18, 22:27 UTC · Sep 18, 2020Exploit / PoC in the wild60
NIST Confusion Continues as Cyber Pros Complain CVE Uploads StoppedInfosecurity Magazine·May 14, 15:50 UTC · May 14, 2024Exploit / PoC in the wild60
Voting-machine vendors have some serious questions to answer, senators sayCyberScoop·Mar 27, 16:49 UTC · Mar 27, 2019Exploit / PoC in the wild60
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
Anti-stalkerware group still working to protect domestic abuse victimsCyberScoop·Oct 19, 15:30 UTC · Oct 19, 2020Exploit / PoC in the wild60
Federal election agency adopts updated voting security standards. Not everyone is happy.CyberScoop·Feb 10, 22:50 UTC · Feb 10, 2021Exploit / PoC in the wild60
Why blocking AI models won't stop the cyber threats they createCyberScoop·Jul 20, 14:24 UTC · Jul 20, 2026Exploit / PoC in the wild60
Suppliers, logins, and AI tools are all becoming attack pathsHelp Net Security·Aug 6, 00:00 UTC · Aug 6, 2026Exploit / PoC in the wild160