Security Affairs newsletter Round 559 by Pierluigi PaganiniSecurity Affairs·Jan 18, 13:46 UTC · Jan 18, 2026Exploit / PoC in the wild60
Security Affairs newsletter Round 312 by Pierluigi PaganiniSecurity Affairs·May 9, 08:48 UTC · May 9, 2021Exploit / PoC60
Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
CISA adds iPhone bugs to Known Exploited Vulnerabilities catalogSecurity Affairs·May 22, 18:37 UTC · May 22, 2023Exploit / PoC in the wildCVE-2023-32409CVE-2023-28204CVE-2023-3237360
Critical fixed critical flaws in Cisco Small Business SwitchesSecurity Affairs·May 18, 17:21 UTC · May 18, 2023Exploit / PoCCVE-2023-20159CVE-2023-20160CVE-2023-20161+6 CVEs60
CISA adds Ruckus bug and another six flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 16, 19:39 UTC · May 16, 2023Exploit / PoC in the wildCVE-2023-25717CVE-2021-3560CVE-2014-0196+4 CVEs160
A Linux NetFilter kernel flaw allows escalating privileges to 'root'Security Affairs·May 9, 19:58 UTC · May 9, 2023Exploit / PoCCVE-2023-3223350
Fortinet fixed two severe issues in FortiADC and FortiOSSecurity Affairs·May 5, 22:03 UTC · May 5, 2023Exploit / PoCCVE-2023-27999CVE-2023-2264060
Experts devised a new exploit for the PaperCut flaw that can bypass all current detectionSecurity Affairs·May 5, 11:01 UTC · May 5, 2023Exploit / PoC in the wildCVE-2023-2735060
“Cyber Spetsnaz” is Attacking Government AgenciesSecurity Affairs·Jun 6, 07:06 UTC · Jun 6, 2022Exploit / PoC60
Exclusive: A criminal group using SSH TCP direct forward attack is also targeting Italian infrastructureSecurity Affairs·Mar 4, 17:44 UTC · Mar 4, 2017Exploit / PoC45
TeamViewer hacked? The company officially denies itSecurity Affairs·May 17, 21:39 UTC · May 17, 2019Exploit / PoC60
Apple fixed three new actively exploited zeroSecurity Affairs·May 18, 23:33 UTC · May 18, 2023Exploit / PoC in the wildCVE-2023-32409CVE-2023-28204CVE-2023-32373+3 CVEs60
KeePass 2.X Master Password Dumper allows retrieving the KeePass master passwordSecurity Affairs·May 18, 20:17 UTC · May 18, 2023Exploit / PoCCVE-2023-3278450
Fortinet warns of a spike in attacks against TBK DVR devicesSecurity Affairs·May 5, 22:16 UTC · May 5, 2023Exploit / PoC in the wildCVE-2018-9995CVE-2016-2001660
DFSCoerce NTLM relay attack allows taking control over Win domainsSecurity Affairs·Jun 21, 12:01 UTC · Jun 21, 2022Exploit / PoC145
Google expert detailed a 5-Year-Old flaw in Apple Safari exploited in the wildSecurity Affairs·Jun 20, 14:37 UTC · Jun 20, 2022Exploit / PoC in the wildCVE-2022-2262060
Critical flaw in Ninja Forms WordPress Plugin actively exploited in the wildSecurity Affairs·Jun 19, 22:31 UTC · Jun 19, 2022Exploit / PoC in the wild60
Chinese APT exploited Sophos Firewall ZeroSecurity Affairs·Jun 17, 23:00 UTC · Jun 17, 2022Exploit / PoC in the wildCVE-2022-1040CVE-2022-2613460
Hertzbleed Side-Channel Attack allows to remotely steal encryption keys from AMD and Intel chipsSecurity Affairs·Jun 15, 22:59 UTC · Jun 15, 2022Exploit / PoCCVE-2022-23823CVE-2022-2443650
A flaw in Zimbra email suite allows stealing login credentials of the usersSecurity Affairs·Jun 14, 23:12 UTC · Jun 14, 2022Exploit / PoCCVE-2022-2792460
HID Mercury Access Controller flaws could allow to unlock DoorsSecurity Affairs·Jun 12, 09:36 UTC · Jun 12, 2022Exploit / PoCCVE-2022-31479CVE-2022-31480CVE-2022-31481+5 CVEs60
Red TIM Research discovers a critical command Injection on ResiSecurity Affairs·Jun 6, 10:36 UTC · Jun 6, 2022Exploit / PoCCVE-2022-29539CVE-2022-2953860
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Atlassian rolled out fixes for Confluence zeroSecurity Affairs·Jun 5, 09:51 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
China-linked TA413 group actively exploits Microsoft Follina ZeroSecurity Affairs·Jun 1, 10:25 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
Microsoft shared workarounds for the Microsoft Office Follina 0daySecurity Affairs·May 31, 11:19 UTC · May 31, 2022Exploit / PoCCVE-2022-30190160
Microsoft Office versions impacted by an actively exploited zeroSecurity Affairs·May 30, 12:06 UTC · May 30, 2022Exploit / PoC in the wild60
GhostTouch: how to remotely control touchscreens with EMISecurity Affairs·May 27, 14:45 UTC · May 27, 2022Exploit / PoC45
Experts released PoC exploit code for VMware CVE-2022Security Affairs·May 27, 05:58 UTC · May 27, 2022Exploit / PoCCVE-2022-22972CVE-2022-2297360
Do not use Tails OS until a flaw in the bundled Tor Browser will be fixedSecurity Affairs·May 26, 10:31 UTC · May 26, 2022Exploit / PoCCVE-2022-1802CVE-2022-152960
CISA adds 41 flaws to its Known Exploited Vulnerabilities CatalogSecurity Affairs·May 25, 08:36 UTC · May 25, 2022Exploit / PoC in the wildCVE-2021-1048CVE-2021-0920CVE-2022-20821+8 CVEs60
Cisco fixes an IOS XR flaw actively exploited in the wildSecurity Affairs·May 23, 18:30 UTC · May 23, 2022Exploit / PoC in the wildCVE-2022-2082160
Flaw in PayPal can allow attackers to steal money from users' accountSecurity Affairs·May 23, 18:29 UTC · May 23, 2022Exploit / PoC45
Threat actors target the infoSec community with fake PoC exploitsSecurity Affairs·May 23, 18:21 UTC · May 23, 2022Exploit / PoCCVE-2022-26809CVE-2022-2450060
iPhone Rapid Security Response fix issued by Apple fails to installSecurity Affairs·May 2, 13:05 UTC · May 2, 2023Exploit / PoC in the wild60
CISA adds TP-Link, Apache, and Oracle bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 2, 07:11 UTC · May 2, 2023Exploit / PoC in the wildCVE-2023-1389CVE-2021-45046CVE-2021-44228+1 CVEs60
VMware fixed 2 zeroSecurity Affairs·Apr 25, 19:49 UTC · Apr 25, 2023Exploit / PoCCVE-2023-20869CVE-2023-2087060
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160