16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 SystemsThe Hacker News·Jul 7, 04:58 UTC · Jul 7, 2026Exploit / PoCCVE-2026-53359CVE-2026-43284CVE-2026-43500+2 CVEs60
Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw publishedHelp Net Security·Nov 2, 00:00 UTC · Nov 2, 2025Exploit / PoCCVE-2025-2783CVE-2025-40778CVE-2025-59287+1 CVEs160
U.S. CISA adds a flaw in Linux Kernel to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 4, 10:26 UTC · May 4, 2026Exploit / PoC in the wildCVE-2026-3143160
Copy Fail: New Linux bug enables Root via page‑cache corruptionSecurity Affairs·Apr 30, 18:23 UTC · Apr 30, 2026Exploit / PoCCVE-2026-31431160
Unprivileged users could exploit AppArmor bugs to gain root accessSecurity Affairs·Mar 16, 08:05 UTC · Mar 16, 2026Exploit / PoC60
Incomplete disclosures by Apple and Google create “huge blindspot” for 0Ars Technica · Security·Sep 21, 22:19 UTC · Sep 21, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-486360
DirtyDecrypt PoC Released for Linux Kernel CVE-2026The Hacker News·May 20, 04:10 UTC · May 20, 2026Exploit / PoCCVE-2026-31635CVE-2026-31431CVE-2026-43284+4 CVEs60
New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC in the wildCVE-2026-4630060
Zero-Day Flaw in Linux Kernel Found by AIInfosecurity Magazine·May 1, 10:45 UTC · May 1, 2026Exploit / PoCCVE-2026-3143160
Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container IsolationThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2026Exploit / PoC60
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network PlatformsThe Hacker News·Feb 11, 13:28 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-0488CVE-2026-0509CVE-2025-32007+4 CVEs60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs160
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
Google "confirms" that exploited Chrome zero-day is actually in libwebp (CVE-2023-5129)Help Net Security·Sep 29, 10:48 UTC · Sep 29, 2023Exploit / PoC in the wildCVE-2023-5129CVE-2023-4863CVE-2023-4106460
Chrome zero-day exploited in the wild, patch now! (CVE-2023-4863)Help Net Security·Sep 29, 08:22 UTC · Sep 29, 2023Exploit / PoC in the wildCVE-2023-4863CVE-2023-41064CVE-2023-41061+1 CVEs60
Microsoft Releases Fix for Zero-Day Flaw in July 2022 Security Patch RolloutThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022Exploit / PoC in the wildCVE-2022-22047CVE-2022-22026CVE-2022-22049+14 CVEs60
Microsoft Releases Fix for New ZeroThe Hacker News·May 11, 16:06 UTC · May 11, 2022Exploit / PoC in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+14 CVEs60
Critical Flaws Discovered in Azure App That Microsoft Secretly Installs on Linux VMsThe Hacker News·Sep 17, 19:17 UTC · Sep 17, 2021Exploit / PoCCVE-2021-38647CVE-2021-38648CVE-2021-38645+1 CVEs60
Critical PPP Daemon Flaw Opens Most Linux Systems to Remote HackersThe Hacker News·Mar 6, 14:17 UTC · Mar 6, 2020Exploit / PoC in the wildCVE-2020-859760
Content-Type: Malicious - New Apache Struts2 0Cisco Talos·Mar 8, 21:20 UTC · Mar 8, 2017Exploit / PoC in the wildCVE-2017-563860