Stop Your Legacy Infrastructure from Hijacking Your AI AgentsThe Hacker News·Jul 20, 06:32 UTC · Jul 20, 2026Exploit / PoC in the wildCVE-2025-2481360
UAT-5918 targets critical infrastructure entities in TaiwanCisco Talos·Mar 20, 10:00 UTC · Mar 20, 2025Exploit / PoC60
PoC for critical ManageEngine bug to be released, so get patching! (CVE-2022-47966)Help Net Security·Feb 21, 17:23 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-4796660
China-linked APT UAT-8837 targets North American critical infrastructureSecurity Affairs·Jan 17, 15:50 UTC · Jan 17, 2026Exploit / PoCCVE-2025-5369060
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
Researchers Warn Against Zoho ManageEngine Exploit AttacksInfosecurity Magazine·Jan 17, 17:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-4796660
Iran-linked Mercury APT exploited Log4Shell in SysAid Apps for initial accessSecurity Affairs·Aug 26, 17:19 UTC · Aug 26, 2022Exploit / PoCCVE-2021-4422860
Microsoft Uncovers Austrian Company Exploiting Windows and Adobe ZeroThe Hacker News·Jul 29, 02:58 UTC · Jul 29, 2022Exploit / PoCCVE-2022-22047CVE-2021-31199CVE-2021-31201+2 CVEs160
Nation-state actors are exploiting Zoho zero-day CVE-2021Security Affairs·Dec 20, 21:25 UTC · Dec 20, 2021Exploit / PoC in the wildCVE-2021-4451560
Chinese hackers hit thousands of organizations using Microsoft ExchangeSecurity Affairs·Mar 9, 19:09 UTC · Mar 9, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
URGENT — 4 Actively Exploited 0The Hacker News·Mar 3, 07:56 UTC · Mar 3, 2021Exploit / PoC in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Tomorrow, and tomorrow, and tomorrow: Information security and the Baseball Hall of FameCisco Talos·Mar 20, 18:00 UTC · Mar 20, 2025Exploit / PoC60
Hackers exploited Windows 0-day for 6 months after Microsoft knew of itArs Technica · Security·Mar 4, 22:47 UTC · Mar 4, 2024Exploit / PoC in the wildCVE-2024-2133860
Hackers go after SonicWall email appliances with three zeroThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoC in the wildCVE-2021-20021CVE-2021-20023CVE-2021-2002260
19.6 Billion Files Are Sitting Open on the Internet. No Password RequiredSecurity Affairs·May 28, 07:48 UTC · May 28, 2026Exploit / PoC60
Researchers find hardcoded passwords in popular buildingCyberScoop·Jan 15, 16:39 UTC · Jan 15, 2019Exploit / PoCCVE-2019-390660
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825)Help Net Security·Apr 7, 09:29 UTC · Apr 7, 2025Exploit / PoC in the wildCVE-2025-2825CVE-2025-3116160
September 2025 CVE LandscapeRecorded Future·Oct 17, 00:00 UTC · Oct 17, 2025Exploit / PoC in the wildCVE-2025-53690CVE-2021-21311CVE-2025-20333+6 CVEs60
Infosecurity's Top 10 Cybersecurity Stories of 2025Infosecurity Magazine·Jan 1, 08:30 UTC · Jan 1, 2026Exploit / PoC in the wildCVE-2024-5559160
It's a Zero-day? It's Malware? No! It's Username and PasswordThe Hacker News·Sep 1, 09:46 UTC · Sep 1, 2023Exploit / PoC60
PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987)Help Net Security·Oct 16, 09:25 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-2898660
Fileless attacks against enterprise networksKaspersky Securelist·Feb 8, 08:58 UTC · Feb 8, 2017Exploit / PoC60
IT threat evolution Q1 2019Kaspersky Securelist·May 23, 10:00 UTC · May 23, 2019Exploit / PoCCVE-2019-0797CVE-2018-858960
State-sponsored hackers likely behind zero-day attacks on Palo Alto firewallsHelp Net Security·May 7, 00:00 UTC · May 7, 2026Exploit / PoC in the wildCVE-2026-030060
FortiBleed Exposes Admin Passwords for 75,000 Fortinet FirewallsSecurity Affairs·Jun 18, 07:31 UTC · Jun 18, 2026Exploit / PoC in the wild60
Gas is too expensive? Let’s make it cheap!Kaspersky Securelist·Feb 7, 10:00 UTC · Feb 7, 2018Exploit / PoCCVE-2017-1472860
U.S. CISA adds AMI MegaRAC SPx, D-Link DIR-859 routers, and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 26, 08:15 UTC · Jun 26, 2025Exploit / PoC in the wildCVE-2024-54085CVE-2024-0769CVE-2019-669360
China-linked APT Silk Typhoon targets IT Supply ChainSecurity Affairs·Mar 5, 21:02 UTC · Mar 5, 2025Exploit / PoCCVE-2025-028260
BlueHammer: Windows zero-day exploit leakedHelp Net Security·Jun 30, 11:31 UTC · Jun 30, 2026Exploit / PoC in the wildCVE-2026-3382560
Shadows Brokers released another archive that suggests NSA compromised a SWIFT systemSecurity Affairs·Oct 26, 21:01 UTC · Oct 26, 2017Exploit / PoC60
How alleged Iranian hackers are posing as an Israeli scientist to spy on US medical professionalsCyberScoop·Mar 31, 14:19 UTC · Mar 31, 2021Exploit / PoC in the wild60
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
Latest Hacking Tools Leak Indicates NSA Was Targeting SWIFT Banking NetworkThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2017Exploit / PoC60
Shadow Brokers leak NSA documents that may reveal operation aimed at Middle Eastern banksCyberScoop·Apr 14, 16:02 UTC · Apr 14, 2017Exploit / PoC in the wild60
Critical Splunk Enterprise Flaw Lets Attackers Run Code Without AuthenticationThe Hacker News·Jun 19, 06:08 UTC · Jun 19, 2026Exploit / PoC in the wildCVE-2026-2025360
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
China-linked APT UNC3886 exploits VMware zeroSecurity Affairs·Jan 22, 22:57 UTC · Jan 22, 2024Exploit / PoCCVE-2023-34048CVE-2023-20867260
ClawJacked flaw exposed OpenClaw users to data theftSecurity Affairs·Mar 2, 09:42 UTC · Mar 2, 2026Exploit / PoC60