Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs60
CISA adds Sophos firewall bug to Known Exploited Vulnerabilities CatalogSecurity Affairs·Apr 1, 08:29 UTC · Apr 1, 2022Exploit / PoC in the wildCVE-2022-1040CVE-2022-26871CVE-2021-34484+5 CVEs60
Critical Flaws Found in Windows NTLM Security ProtocolThe Hacker News·Jul 12, 07:23 UTC · Jul 12, 2017Exploit / PoCCVE-2017-856360
Expert published PoC exploit code for Kerberos Bronze Bit attackSecurity Affairs·Dec 10, 18:23 UTC · Dec 10, 2020Exploit / PoCCVE-2020-1704950
Microsoft fixes actively exploited Windows CLFS zero-day (CVE-2025-29824)Help Net Security·Apr 15, 08:11 UTC · Apr 15, 2025Exploit / PoC in the wildCVE-2025-29824CVE-2024-49138CVE-2025-26663+7 CVEs160
Microsoft Exchange 0day and exploit could allow anyone to be an adminSecurity Affairs·Jan 25, 12:28 UTC · Jan 25, 2019Exploit / PoC45
UAT-8837 targets critical infrastructure sectors in North AmericaCisco Talos·Jan 15, 11:00 UTC · Jan 15, 2026Exploit / PoCCVE-2025-5369060
Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
Microsoft fixes zero-day exploited for cyber espionage (CVE-2025-33053)Help Net Security·Jun 16, 13:26 UTC · Jun 16, 2025Exploit / PoC in the wildCVE-2025-33053CVE-2025-33073CVE-2025-33070+6 CVEs60
Microsoft fixes two actively exploited zero-days (CVE-2025-21418, CVE-2025-21391)Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-21418CVE-2025-21391CVE-2024-38193+3 CVEs260
Microsoft Releases Windows Update (Dec 2020) to Fix 58 Security FlawsThe Hacker News·Dec 9, 04:58 UTC · Dec 9, 2020Exploit / PoC in the wildCVE-2020-17132CVE-2020-17118CVE-2020-17121+4 CVEs60
A SpaceX Security Engineer Used AI to Find a 19-YearSecurity Affairs·Jun 1, 09:55 UTC · Jun 1, 2026Exploit / PoC45
PoC exploit released for critical AD CS domain-takeover flaw (CVE-2026-54121)Help Net Security·Jul 27, 00:00 UTC · Jul 27, 2026Exploit / PoCCVE-2026-54121160
New DFSCoerce NTLM Relay Attack Enables Hackers to Perform Windows Domain TakeoverInfosecurity Magazine·Jun 21, 16:30 UTC · Jun 21, 2022Exploit / PoC45
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain ControllerThe Hacker News·Jul 28, 04:01 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-54121160
Attackers can steal NTLM password hashes via calendar invitesHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2024Exploit / PoCCVE-2023-35636150
Anomaly detection in certificateKaspersky Securelist·Jul 28, 10:00 UTC · Jul 28, 2023Exploit / PoC145
China-linked APT UAT-8837 targets North American critical infrastructureSecurity Affairs·Jan 17, 15:50 UTC · Jan 17, 2026Exploit / PoCCVE-2025-5369060
How NTLM is being abused in 2025 cyberattacksKaspersky Securelist·Nov 26, 15:53 UTC · Nov 26, 2025Exploit / PoC in the wild60
Microsoft Updates September 2014Kaspersky Securelist·Sep 11, 01:54 UTC · Sep 11, 2014Exploit / PoCCVE-2013-733160
June 2021 Patch Tuesday: Microsoft fixes six actively exploited zero-daysHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2021Exploit / PoC in the wildCVE-2021-33742CVE-2021-31201CVE-2021-31199+6 CVEs60
Critical Golden dMSA Attack in Windows Server 2025 Enables CrossThe Hacker News·Jul 21, 06:31 UTC · Jul 21, 2025Exploit / PoC60
FortiBleed Targeted FortiGate Firewalls in 110 MillionThe Hacker News·Jun 25, 05:28 UTC · Jun 25, 2026Exploit / PoC60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560