Supermicro BMCs were susceptible to remote attacks, according to firmware security startupCyberScoop·Sep 3, 13:08 UTC · Sep 3, 2019Exploit / PoC in the wild60
Google Warns of Pixel Firmware Security Flaw Exploited as ZeroThe Hacker News·Jun 28, 04:04 UTC · Jun 28, 2024Exploit / PoC in the wildCVE-2024-32896CVE-2024-29745CVE-2024-29748+1 CVEs60
ReFirm Labs releases updates to its Centrifuge PlatformHelp Net Security·Apr 26, 00:00 UTC · Apr 26, 2019Exploit / PoC60
How an NSA researcher plans to allow everyone to guard against firmware attacksCyberScoop·Aug 23, 21:17 UTC · Aug 23, 2019Exploit / PoC in the wild60
Ivanti Pulse Secure Found Using 11-YearThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21893+1 CVEs60
Just about every Windows and Linux device vulnerable to new LogoFAIL firmware attackArs Technica · Security·Dec 6, 15:02 UTC · Dec 6, 2023Exploit / PoC60
CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, DThe Hacker News·Jun 27, 05:06 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2024-54085CVE-2024-0769CVE-2019-669360
BootKitty Linux UEFI bootkit spotted exploiting LogoFAIL flawsSecurity Affairs·Dec 3, 08:11 UTC · Dec 3, 2024Exploit / PoCCVE-2023-4023850
Week in review: DNS DDoS, Linux kernel zero-day, VeraCrypt auditedHelp Net Security·Oct 23, 00:00 UTC · Oct 23, 2016Exploit / PoC in the wild60
Mysterious company is offering up to $250K for VM Hacks via bug bountySecurity Affairs·Aug 11, 07:13 UTC · Aug 11, 2017Exploit / PoC45
Week in review: Deloitte hack, insecure Mac firmware, new issue of (IN)SECUREHelp Net Security·Oct 1, 00:00 UTC · Oct 1, 2017Exploit / PoC60
Hackable firmware lurks inside Dell, HP and Lenovo computers amid supply chain security effortsCyberScoop·Feb 19, 15:59 UTC · Feb 19, 2020Exploit / PoC in the wild60
Microsoft's new 'Pluton' security processor gets buyCyberScoop·Nov 17, 17:26 UTC · Nov 17, 2020Exploit / PoC in the wild60
ESET researchers analyze first UEFI bootkit for Linux systemsHelp Net Security·Nov 27, 00:00 UTC · Nov 27, 2024Exploit / PoC57
Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootThe Hacker News·Jul 10, 15:57 UTC · Jul 10, 2026Exploit / PoCCVE-2026-3324360
Eclypsium raises $25 million to protect businesses from breaches through supply chainsHelp Net Security·Jan 11, 11:58 UTC · Jan 11, 2024Exploit / PoC in the wild60
Realtek SDK flaws exploited to deliver Mirai bot variantSecurity Affairs·Aug 24, 07:01 UTC · Aug 24, 2021Exploit / PoC in the wildCVE-2021-35395CVE-2021-35392CVE-2021-35393+2 CVEs60
Two New Bluetooth Chip Flaws Expose Millions of Devices to Remote AttacksThe Hacker News·Nov 1, 18:48 UTC · Nov 1, 2018Exploit / PoCCVE-2018-16986CVE-2018-708060
NIST NVD Disruption Sees CVE Enrichment on HoldInfosecurity Magazine·Mar 15, 16:46 UTC · Mar 15, 2024Exploit / PoC60
Microsoft banks on new silicon chips built by Intel, others to fend off firmware attacksCyberScoop·Oct 21, 15:46 UTC · Oct 21, 2019Exploit / PoC in the wild60
CISA Adds 3 D-Link Vulnerabilities to KEV Catalog Amid Active Exploitation EvidenceThe Hacker News·Aug 6, 06:51 UTC · Aug 6, 2025Exploit / PoC in the wildCVE-2020-25078CVE-2020-25079CVE-2020-4079960
Found on VirusTotal: The world’s first UEFI bootkit for LinuxArs Technica · Security·Nov 27, 19:21 UTC · Nov 27, 2024Exploit / PoC145
Zero trust physical security needs trust decisions at the edgeHelp Net Security·Jun 2, 00:00 UTC · Jun 2, 2026Exploit / PoC60
Researchers Reveal ReVault Attack Targeting Dell ControlVault3 Firmware in 100+ Laptop ModelsThe Hacker News·Aug 10, 08:12 UTC · Aug 10, 2025Exploit / PoC in the wildCVE-2025-25050CVE-2025-25215CVE-2025-24922+2 CVEs60
Security keys have been good to Google, so now it's promoting one of its ownCyberScoop·Jul 25, 16:00 UTC · Jul 25, 2018Exploit / PoC in the wild60
How much can you trust your printer?Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2022Exploit / PoC60
Industrial networking manufacturer Moxa reports 'critical' router bugsCyberScoop·Jan 6, 19:47 UTC · Jan 6, 2025Exploit / PoC in the wildCVE-2024-9138CVE-2024-914060
Zero day broker firm Zerodium has tripled iOS exploit bounty to $1.5MSecurity Affairs·Sep 30, 13:21 UTC · Sep 30, 2016Exploit / PoC60
Chinese researchers from Tencent hacked a Tesla model once againSecurity Affairs·May 22, 22:00 UTC · May 22, 2018Exploit / PoC45
PanelShock 0-day flaw puts thousands Schneider Electric products at riskSecurity Affairs·Nov 1, 09:03 UTC · Nov 1, 2016Exploit / PoCCVE-2016-8367CVE-2016-837460
Need more evidence that IoT security is a big deal? Here's what NIST has to sayCyberScoop·Jun 27, 15:22 UTC · Jun 27, 2019Exploit / PoC in the wild60
New DARPA program seeks cybersecurity through hardware designCyberScoop·Apr 21, 20:45 UTC · Apr 21, 2017Exploit / PoC in the wild60
Apple launches bug bounty programCyberScoop·Aug 4, 20:15 UTC · Aug 4, 2016Exploit / PoC in the wild60
Fortinet’s latest zero-day vulnerability carries frustrating familiarities for customersCyberScoop·Jan 29, 04:52 UTC · Jan 29, 2026Exploit / PoC in the wildCVE-2026-24858CVE-2025-5971860
A flaw in Ledger Crypto Wallets could allow to drain your cryptocurrency accounts. Fix it!Security Affairs·Mar 21, 10:04 UTC · Mar 21, 2018Exploit / PoC57
15-Year-old Finds Flaw in Ledger Crypto WalletKrebs on Security·Mar 20, 17:42 UTC · Mar 20, 2018Exploit / PoC45
New Bootkit “Bootkitty” Targets Linux Systems via UEFIInfosecurity Magazine·Nov 27, 16:30 UTC · Nov 27, 2024Exploit / PoC60
VDOO releases runtime protection agent for connected devicesHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2019Exploit / PoC60