U.S. CISA adds Windows and Qualcomm bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 10, 11:10 UTC · Oct 10, 2024Exploit / PoC in the wildCVE-2024-43047CVE-2024-43572CVE-2024-4357360
Microsoft warns of targeted attacks exploiting Windows zeroSecurity Affairs·Mar 23, 23:23 UTC · Mar 23, 2020Exploit / PoC60
Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilitiesCyberScoop·Feb 10, 20:50 UTC · Feb 10, 2026Exploit / PoC in the wildCVE-2026-21510CVE-2026-21513CVE-2026-21514+5 CVEs160
U.S. CISA adds Microsoft Office and Microsoft Windows flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 11, 07:37 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-21510CVE-2026-21513CVE-2026-21514+3 CVEs160
Microsoft Patch Tuesday: 6 exploited zero-days fixed in February 2026Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-21513CVE-2026-21514CVE-2026-21510+3 CVEs160
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
HPE discloses critical zeroSecurity Affairs·Dec 16, 21:33 UTC · Dec 16, 2020Exploit / PoCCVE-2020-720060
0patch releases unofficial patches for Windows 0days exploited in the wildSecurity Affairs·Mar 27, 17:52 UTC · Mar 27, 2020Exploit / PoC in the wild60
Pre-Installed Keeper Password Manager On Windows 10 exposes systems to passwords stealingSecurity Affairs·Dec 16, 11:26 UTC · Dec 16, 2017Exploit / PoC60
Microsoft addresses three Windows issues actively exploitedSecurity Affairs·Apr 14, 23:02 UTC · Apr 14, 2020Exploit / PoC in the wildCVE-2020-1020CVE-2020-0938CVE-2020-1027+1 CVEs160
Pre-Installed Password Manager On Windows 10 Lets Hackers Steal All Your PasswordsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2017Exploit / PoC60
CISA, Microsoft warn of Windows zero-day used in attack on ‘major’ Turkish defense orgThe Record·Jun 11, 14:16 UTC · Jun 11, 2025Exploit / PoCCVE-2025-3305360
DirtyMoe modules expand the bot using wormSecurity Affairs·Mar 21, 08:03 UTC · Mar 21, 2022Exploit / PoCCVE-2020-0674CVE-2019-9082CVE-2019-2725+3 CVEs60
Microsoft Fixes Two ZeroInfosecurity Magazine·Feb 14, 10:30 UTC · Feb 14, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2024-21410+1 CVEs60
Researchers Leak PoC Exploit for a Critical Windows RCE VulnerabilityThe Hacker News·Jul 2, 04:15 UTC · Jul 2, 2021Exploit / PoCCVE-2021-1675CVE-2020-1048CVE-2020-1300+1 CVEs60
Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572)Help Net Security·Oct 8, 00:00 UTC · Oct 8, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-38112+3 CVEs60
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
H1 2024 Malware & Vulnerability Trends Report: Zero-Day Exploits, Infostealers, and Emerging Malware ThreatsRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Exploit / PoC60
Week in review: Firmware-level Android backdoor found on tablets, Dell zero-day exploited since 2024Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2026Exploit / PoC in the wildCVE-2026-2441CVE-2026-22769CVE-2026-2329+1 CVEs60
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
U.S. CISA adds N-able N-Central flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 14, 08:03 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-8875CVE-2025-887660
On the StrongPity Waterhole Attacks Targeting Italian and Belgian Encryption UsersKaspersky Securelist·Oct 3, 23:40 UTC · Oct 3, 2016Exploit / PoC60
Week in review: Chrome zero-day is actually in libwebp, Sony hacking rumoursHelp Net Security·Oct 1, 00:00 UTC · Oct 1, 2023Exploit / PoC in the wildCVE-2023-42793CVE-2023-5129CVE-2023-4863+1 CVEs60
WeChat users targeted by hackers using recently disclosed Chromium exploitSecurity Affairs·Apr 20, 09:59 UTC · Apr 20, 2021Exploit / PoCCVE-2021-2122060
Microsoft discloses more than 130 vulnerabilities as part of July’s Patch Tuesday, four exploited in the wildCisco Talos·Jul 11, 19:26 UTC · Jul 11, 2023Exploit / PoC in the wildCVE-2023-32046CVE-2023-32049CVE-2023-35311+6 CVEs160
Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security toolsHelp Net Security·Oct 13, 00:00 UTC · Oct 13, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-9680+5 CVEs60
CISA added 9 new flaws to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Feb 16, 10:05 UTC · Feb 16, 2022Exploit / PoC in the wildCVE-2022-24086CVE-2022-0609CVE-2019-0752+9 CVEs60
Microsoft addressed critical flaw in Windows Host Compute Service Shim librarySecurity Affairs·May 3, 06:22 UTC · May 3, 2018Exploit / PoCCVE-2018-8115160
Microsoft Fixes Four ZeroInfosecurity Magazine·Jul 10, 09:40 UTC · Jul 10, 2024Exploit / PoC in the wildCVE-2024-38080CVE-2024-38112CVE-2024-35264+6 CVEs60
U.S. CISA adds Gladinet CentreStack, and CWP Control Web Panel flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 5, 08:06 UTC · Nov 5, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-4870360
CVE-2025-11371: Unpatched zero-day in Gladinet CentreStack, Triofox under attackSecurity Affairs·Oct 11, 20:27 UTC · Oct 11, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-3040660
Focus on what matters most: Exposure management and your attack surfaceHelp Net Security·Apr 8, 17:17 UTC · Apr 8, 2025Exploit / PoCCVE-2024-340060
Focus on What Matters Most: Exposure Management and Your Attack SurfaceThe Hacker News·Aug 23, 10:55 UTC · Aug 23, 2024Exploit / PoCCVE-2024-340060
Trick, treat, repeatCisco Talos·Oct 30, 18:00 UTC · Oct 30, 2025Exploit / PoC in the wildCVE-2025-5928760
CISA Adds Two N-able N-central Flaws to Known Exploited Vulnerabilities CatalogThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8875CVE-2025-8876CVE-2013-3893+1 CVEs60
U.S. CISA adds SKYSEA Client View, Rapid7 Velociraptor, Microsoft Windows, and IGEL OS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 16, 08:56 UTC · Oct 16, 2025Exploit / PoC in the wildCVE-2016-7836CVE-2025-6264CVE-2025-24990+2 CVEs60
July 2019 Patch Tuesday: Microsoft plugs two actively exploited zero-daysHelp Net Security·Jul 10, 00:00 UTC · Jul 10, 2019Exploit / PoC in the wildCVE-2019-0880CVE-2019-1132CVE-2019-1068+4 CVEs60
10 Critical Network Pentest Findings IT Teams OverlookThe Hacker News·Mar 21, 11:01 UTC · Mar 21, 2025Exploit / PoCCVE-2019-070860