Supermicro BMCs were susceptible to remote attacks, according to firmware security startupCyberScoop·Sep 3, 13:08 UTC · Sep 3, 2019Exploit / PoC in the wild60
Google Warns of Pixel Firmware Security Flaw Exploited as ZeroThe Hacker News·Jun 28, 04:04 UTC · Jun 28, 2024Exploit / PoC in the wildCVE-2024-32896CVE-2024-29745CVE-2024-29748+1 CVEs60
How an NSA researcher plans to allow everyone to guard against firmware attacksCyberScoop·Aug 23, 21:17 UTC · Aug 23, 2019Exploit / PoC in the wild60
Ivanti Pulse Secure Found Using 11-YearThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21893+1 CVEs60
CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, DThe Hacker News·Jun 27, 05:06 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2024-54085CVE-2024-0769CVE-2019-669360
Week in review: DNS DDoS, Linux kernel zero-day, VeraCrypt auditedHelp Net Security·Oct 23, 00:00 UTC · Oct 23, 2016Exploit / PoC in the wild60
Hackable firmware lurks inside Dell, HP and Lenovo computers amid supply chain security effortsCyberScoop·Feb 19, 15:59 UTC · Feb 19, 2020Exploit / PoC in the wild60
Microsoft's new 'Pluton' security processor gets buyCyberScoop·Nov 17, 17:26 UTC · Nov 17, 2020Exploit / PoC in the wild60
Eclypsium raises $25 million to protect businesses from breaches through supply chainsHelp Net Security·Jan 11, 11:58 UTC · Jan 11, 2024Exploit / PoC in the wild60
Realtek SDK flaws exploited to deliver Mirai bot variantSecurity Affairs·Aug 24, 07:01 UTC · Aug 24, 2021Exploit / PoC in the wildCVE-2021-35395CVE-2021-35392CVE-2021-35393+2 CVEs60
Microsoft banks on new silicon chips built by Intel, others to fend off firmware attacksCyberScoop·Oct 21, 15:46 UTC · Oct 21, 2019Exploit / PoC in the wild60
CISA Adds 3 D-Link Vulnerabilities to KEV Catalog Amid Active Exploitation EvidenceThe Hacker News·Aug 6, 06:51 UTC · Aug 6, 2025Exploit / PoC in the wildCVE-2020-25078CVE-2020-25079CVE-2020-4079960
Researchers Reveal ReVault Attack Targeting Dell ControlVault3 Firmware in 100+ Laptop ModelsThe Hacker News·Aug 10, 08:12 UTC · Aug 10, 2025Exploit / PoC in the wildCVE-2025-25050CVE-2025-25215CVE-2025-24922+2 CVEs60
Security keys have been good to Google, so now it's promoting one of its ownCyberScoop·Jul 25, 16:00 UTC · Jul 25, 2018Exploit / PoC in the wild60
Industrial networking manufacturer Moxa reports 'critical' router bugsCyberScoop·Jan 6, 19:47 UTC · Jan 6, 2025Exploit / PoC in the wildCVE-2024-9138CVE-2024-914060
Need more evidence that IoT security is a big deal? Here's what NIST has to sayCyberScoop·Jun 27, 15:22 UTC · Jun 27, 2019Exploit / PoC in the wild60
New DARPA program seeks cybersecurity through hardware designCyberScoop·Apr 21, 20:45 UTC · Apr 21, 2017Exploit / PoC in the wild60
Apple launches bug bounty programCyberScoop·Aug 4, 20:15 UTC · Aug 4, 2016Exploit / PoC in the wild60
Fortinet’s latest zero-day vulnerability carries frustrating familiarities for customersCyberScoop·Jan 29, 04:52 UTC · Jan 29, 2026Exploit / PoC in the wildCVE-2026-24858CVE-2025-5971860
Rare case of UEFI hacking hit targets interested in North Korea, Kaspersky saysCyberScoop·Oct 6, 14:47 UTC · Oct 6, 2020Exploit / PoC in the wild60
Week in review: Windows Server 2025 gets hotpatching option, PoC for SolarWinds WHD flaw releasedHelp Net Security·Sep 29, 00:00 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-759360
Cloud Security Alliance issues IoT security guideCyberScoop·Oct 11, 14:48 UTC · Oct 11, 2016Exploit / PoC in the wild60
September 2025 CVE LandscapeRecorded Future·Oct 17, 00:00 UTC · Oct 17, 2025Exploit / PoC in the wildCVE-2025-53690CVE-2021-21311CVE-2025-20333+6 CVEs60
BadRAM: $10 security flaw in AMD could allow hackers to access cloud computing secretsThe Record·Dec 10, 16:11 UTC · Dec 10, 2024Exploit / PoC in the wild60
'Small stickers' were enough to trick a Tesla's autopilot to drive into the wrong laneCyberScoop·Apr 1, 17:29 UTC · Apr 1, 2019Exploit / PoC in the wild60
Over 80,000 Hikvision cameras can be easily hackedSecurity Affairs·Aug 23, 16:50 UTC · Aug 23, 2022Exploit / PoC in the wildCVE-2021-3626060
Hacker Leaks Cellebrite's Phone-Hacking ToolsSchneier on Security·Jan 27, 14:16 UTC · Jan 27, 2020Exploit / PoC in the wild60
SonicWall fixes an NSM OnSecurity Affairs·May 29, 07:16 UTC · May 29, 2021Exploit / PoC in the wildCVE-2021-2002660
Google fixed an actively exploited zeroSecurity Affairs·Jun 13, 13:38 UTC · Jun 13, 2024Exploit / PoC in the wildCVE-2024-32896CVE-2024-32891CVE-2024-32892+5 CVEs60
Google Patches New Android Kernel Vulnerability Exploited in the WildThe Hacker News·Aug 10, 07:15 UTC · Aug 10, 2024Exploit / PoC in the wildCVE-2024-36971CVE-2024-32896CVE-2024-29745+2 CVEs60
Cisco warns about public exploit code for critical flaws in its 220 Series smart switchesHelp Net Security·Sep 3, 07:36 UTC · Sep 3, 2019Exploit / PoC in the wildCVE-2019-1938CVE-2019-1935CVE-2019-1974+4 CVEs60
JFrog to acquire Vdoo to expand its end-to-end DevOps platform offeringHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2021Exploit / PoC in the wild60
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
DARPA is looking to avoid another version of Meltdown or SpectreCyberScoop·Apr 4, 19:58 UTC · Apr 4, 2018Exploit / PoC in the wild60
Hacking into iPhone is harder than ever, says company paid to hack into iPhonesCyberScoop·Oct 6, 20:07 UTC · Oct 6, 2017Exploit / PoC in the wild60
More than 900k routers of Deutsche Telekom German users went offlineSecurity Affairs·Nov 25, 22:30 UTC · Nov 25, 2017Exploit / PoC in the wild60
Sophos backports fix for CVE-2022Security Affairs·Dec 13, 10:22 UTC · Dec 13, 2023Exploit / PoC in the wildCVE-2022-323660
Accenture shells out $4.18B on three companies in big industrial cybersecurity pushCyberScoop·Jun 18, 15:05 UTC · Jun 18, 2026Exploit / PoC in the wild60
Most Sophisticated iPhone Hack Ever Exploited Apple's Hidden Hardware FeatureThe Hacker News·Jan 4, 05:41 UTC · Jan 4, 2024Exploit / PoC in the wildCVE-2023-41990CVE-2023-32434CVE-2023-32435+4 CVEs160
Google: Android bug detected exploited in the wildThe Record·Nov 17, 00:00 UTC · Nov 17, 2022Exploit / PoC in the wildCVE-2020-1126160