Not Just Criminals, But Governments Were Also Using MS Word 0The Hacker News·Apr 15, 00:00 UTC · Apr 15, 2017Exploit / PoC in the wildCVE-2017-019960
Macro Intruders: Sneaking Past Office DefensesCisco Talos·Aug 2, 13:42 UTC · Aug 2, 2016Exploit / PoC in the wild60
New Microsoft Word zero-day used to spread 'lawful intercept' malware, analysts sayCyberScoop·Sep 12, 20:38 UTC · Sep 12, 2017Exploit / PoC in the wildCVE-2017-875960
Iran-linked hackers used Microsoft Word flaw against Israeli targets, security firm saysCyberScoop·Apr 27, 20:24 UTC · Apr 27, 2017Exploit / PoC in the wildCVE-2017-019960
Under tough surveillance, China's cybercriminals find creative ways to chatCyberScoop·May 4, 13:56 UTC · May 4, 2017Exploit / PoC in the wild60
Zero-day bug exploited by attackers via macro-less Office documents (CVE-2022-30190)Help Net Security·May 31, 00:00 UTC · May 31, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Researchers warn of a Windows ZeroSecurity Affairs·Apr 11, 10:36 UTC · Apr 11, 2017Exploit / PoC in the wild60
Russia-linked hackers impersonate NATO in attempt to hack Romanian governmentCyberScoop·May 11, 14:16 UTC · May 11, 2017Exploit / PoC in the wild60
Cisco Coverage for CVE-2017Cisco Talos·Apr 14, 18:54 UTC · Apr 14, 2017Exploit / PoC in the wildCVE-2017-019960
Racial slurs discovered in leaked Yandex source codeCyberScoop·Jan 27, 19:55 UTC · Jan 27, 2023Exploit / PoC in the wild60
Chinese Hackers Begin Exploiting Latest Microsoft Office ZeroThe Hacker News·Jun 1, 10:00 UTC · Jun 1, 2022Exploit / PoC in the wildCVE-2022-30190160
Microsoft Office versions impacted by an actively exploited zeroSecurity Affairs·May 30, 12:06 UTC · May 30, 2022Exploit / PoC in the wild60
Hackers Use New Flash Zero-Day Exploit to Distribute FinFisher SpywareThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2017Exploit / PoC in the wildCVE-2017-11292CVE-2017-875960
No longer 'federal,' no longer exclusively 'cyber' — NIST security controls break outCyberScoop·Aug 17, 13:09 UTC · Aug 17, 2017Exploit / PoC in the wild60
Tech companies pledge to protect 2024 elections from AICyberScoop·Feb 16, 22:24 UTC · Feb 16, 2024Exploit / PoC in the wild60
First Microsoft Patch Tuesday zero-day of 2024 disclosed as part of group of 75 vulnerabilitiesCisco Talos·Feb 13, 18:59 UTC · Feb 13, 2024Exploit / PoC in the wildCVE-2024-21351CVE-2024-20684CVE-2024-21357+3 CVEs60
Microsoft patches four exploited zero-days, but lags with fixes for a fifth (CVE-2023-36884)Help Net Security·Aug 4, 09:09 UTC · Aug 4, 2023Exploit / PoC in the wildCVE-2023-36884CVE-2023-32049CVE-2023-35311+2 CVEs160
Google Warns of Internet Explorer Zero-Day Vulnerability Exploited by ScarCruft HackersThe Hacker News·Dec 9, 17:03 UTC · Dec 9, 2022Exploit / PoC in the wildCVE-2020-1380CVE-2021-26411CVE-2022-4112860
Researchers detail Russia-linked group's cyberCyberScoop·Jan 31, 11:00 UTC · Jan 31, 2022Exploit / PoC in the wild60
Why Everyone Needs to Take the Latest CISA Directive SeriouslyThe Hacker News·Dec 3, 09:23 UTC · Dec 3, 2021Exploit / PoC in the wildCVE-2019-021160
Microsoft patches actively exploited Windows zero-day (CVE-2021-40449)Help Net Security·Oct 12, 00:00 UTC · Oct 12, 2021Exploit / PoC in the wildCVE-2021-40449CVE-2021-40486CVE-2021-26427+5 CVEs60
Microsoft patches actively exploited MSHTML zero-day RCE (CVE-2021-40444)Help Net Security·Sep 17, 09:50 UTC · Sep 17, 2021Exploit / PoC in the wildCVE-2021-40444CVE-2021-36965CVE-2021-38647+10 CVEs60
North Korean hackers target U.S. entities amid stalled denuclearization talksCyberScoop·Sep 11, 22:17 UTC · Sep 11, 2019Exploit / PoC in the wild60
63 New Flaws (Including 0The Hacker News·Nov 15, 00:00 UTC · Nov 15, 2018Exploit / PoC in the wildCVE-2018-8589CVE-2018-8584CVE-2018-8566+47 CVEs60
Let It Ride: The Sofacy Group’s DealersChoice Attacks ContinuePalo Alto Unit 42·Nov 1, 10:41 UTC · Nov 1, 2018Exploit / PoC in the wildCVE-2016-7855CVE-2016-7255CVE-2015-7645160
Researchers found a semi-legit way to turn an Amazon Echo into a wiretapCyberScoop·Apr 26, 14:59 UTC · Apr 26, 2018Exploit / PoC in the wild60
BlackOasis APT leverages new Flash zeroSecurity Affairs·Oct 17, 07:05 UTC · Oct 17, 2017Exploit / PoC in the wildCVE-2017-11292CVE-2017-8759CVE-2015-5119+2 CVEs60
Adobe releases emergency fix for Flash Player zero-day exploited in the wildHelp Net Security·Oct 17, 00:00 UTC · Oct 17, 2017Exploit / PoC in the wildCVE-2017-11292CVE-2017-875960
Fin7 weaponization of DDE is just their latest slick move, say researchersCyberScoop·Oct 16, 20:38 UTC · Oct 16, 2017Exploit / PoC in the wild60
Report: Dropbox, Google, LinkedIn among services that allow repeated singleCyberScoop·Aug 10, 14:05 UTC · Aug 10, 2017Exploit / PoC in the wild60
Chinese tech firm continues to secretly siphon data from Android phonesCyberScoop·Jul 25, 10:00 UTC · Jul 25, 2017Exploit / PoC in the wild60
Spearphishing attacks on energy firms tied to yearsCyberScoop·Jul 7, 19:10 UTC · Jul 7, 2017Exploit / PoC in the wild60
Microsoft Patch Tuesday fixes three flaws actively exploited in attacks in the wildSecurity Affairs·Apr 12, 08:29 UTC · Apr 12, 2017Exploit / PoC in the wildCVE-2017-0199CVE-2017-0210CVE-2017-2605+5 CVEs60
Week in review: IIS zero-day, iOS scareware, new issue of (IN)SECUREHelp Net Security·Apr 2, 00:00 UTC · Apr 2, 2017Exploit / PoC in the wild60
Top Women in Cybersecurity: Tarah WheelerCyberScoop·Mar 16, 10:00 UTC · Mar 16, 2017Exploit / PoC in the wild60
BlackBerry's pivot to mobile security software is complete. Will it matter?CyberScoop·Nov 11, 14:50 UTC · Nov 11, 2016Exploit / PoC in the wild60
House GOP security plan offers vague cyber strategyCyberScoop·Jun 10, 15:08 UTC · Jun 10, 2016Exploit / PoC in the wild60
Cyber Q&A: State Dept. CISO laments 'security fatigue'CyberScoop·Jun 1, 23:00 UTC · Jun 1, 2016Exploit / PoC in the wild60