Burglars can easily make Google Nest security cameras stop recordingHelp Net Security·Mar 21, 00:00 UTC · Mar 21, 2017Exploit / PoC45
Januscape: 16-Year-Old Linux KVM Bug Enables Cloud VM Escape AttacksSecurity Affairs·Jul 7, 07:07 UTC · Jul 7, 2026Exploit / PoCCVE-2026-53359CVE-2026-46316CVE-2026-43284+1 CVEs60
16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 SystemsThe Hacker News·Jul 7, 04:58 UTC · Jul 7, 2026Exploit / PoCCVE-2026-53359CVE-2026-43284CVE-2026-43500+2 CVEs60
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux HostsThe Hacker News·Aug 6, 17:58 UTC · Aug 6, 2026Exploit / PoC in the wildCVE-2026-64561CVE-2026-53359CVE-2026-4631660
Week in review: Leaking LastPass extensions, 300+ hackable Cisco switchesHelp Net Security·Mar 26, 00:00 UTC · Mar 26, 2017Exploit / PoC60
New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitchThe Hacker News·Aug 5, 11:43 UTC · Aug 5, 2026Exploit / PoCCVE-2026-6453150
Identity discovery: The overlooked lever in strategic risk reductionHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2026Exploit / PoC60
PackageGate bugs let attackers bypass protections in NPM, PNPM, VLT, and BunSecurity Affairs·Jan 28, 08:43 UTC · Jan 28, 2026Exploit / PoC160
Why master YARA: from routine to extreme threat hunting cases. FollowKaspersky Securelist·Sep 29, 14:00 UTC · Sep 29, 2020Exploit / PoC45
Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)Help Net Security·Aug 6, 00:00 UTC · Aug 6, 2026Exploit / PoCCVE-2026-20200CVE-2026-20272160
OVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become RootSecurity Affairs·Aug 5, 14:24 UTC · Aug 5, 2026Exploit / PoCCVE-2026-6453160
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitThe Hacker News·Jul 26, 07:47 UTC · Jul 26, 2026Exploit / PoC in the wild60
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeThe Hacker News·Jul 18, 05:23 UTC · Jul 18, 2026Exploit / PoC in the wildCVE-2026-63030CVE-2026-6013760
Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootThe Hacker News·Jul 10, 15:57 UTC · Jul 10, 2026Exploit / PoCCVE-2026-3324360
China’s Zero-Day Pipeline: From Discovery to DeploymentRecorded Future·Jun 4, 00:00 UTC · Jun 4, 2026Exploit / PoC60
SessionReaper attacks have started, 3 in 5 stores still vulnerableSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Exploit / PoC in the wildCVE-2025-54236CVE-2026-7565060
Unprivileged users could exploit AppArmor bugs to gain root accessSecurity Affairs·Mar 16, 08:05 UTC · Mar 16, 2026Exploit / PoC60
Russia-linked APT28 exploited MSHTML zero-day CVE-2026Security Affairs·Mar 2, 14:46 UTC · Mar 2, 2026Exploit / PoCCVE-2026-2151360
What’s next for DHS’s forthcoming replacement critical infrastructure protection panel, AI information sharingCyberScoop·Feb 3, 21:27 UTC · Feb 3, 2026Exploit / PoC in the wild60
CISA Reports PRC Hackers Using BRICKSTORM for LongThe Hacker News·Dec 5, 09:15 UTC · Dec 5, 2025Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-38812+3 CVEs160
New $50 Battering RAM Attack Breaks Intel and AMD Cloud Security ProtectionsThe Hacker News·Oct 1, 10:52 UTC · Oct 1, 2025Exploit / PoCCVE-2025-4030060
Two ZeroInfosecurity Magazine·Sep 10, 10:15 UTC · Sep 10, 2025Exploit / PoCCVE-2024-21907CVE-2025-55234CVE-2025-54110+2 CVEs60
Cisco Warns of Critical Flaw Affecting OnThe Hacker News·Jul 18, 13:13 UTC · Jul 18, 2024Exploit / PoC in the wildCVE-2024-20419CVE-2024-20401CVE-2024-34102+2 CVEs60
Researchers published PoC exploit code for actively exploited Windows elevation of privilege issueSecurity Affairs·Jun 8, 21:27 UTC · Jun 8, 2023Exploit / PoC in the wildCVE-2023-2933660
Researchers Warn of Critical Security Bugs in Schneider Electric Modicon PLCsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2023Exploit / PoCCVE-2022-45788CVE-2022-45789CVE-2021-31886160
Microsoft Warns of Critical "PrintNightmare" Flaw Being Exploited in the WildThe Hacker News·Jul 3, 07:11 UTC · Jul 3, 2021Exploit / PoC in the wildCVE-2021-34527CVE-2021-167560
Week in review: Costliest cybersecurity failures, DNS hijacking protection, AWS security automationHelp Net Security·Sep 6, 00:00 UTC · Sep 6, 2020Exploit / PoCCVE-2020-349560
Flaw in popular NodeJS 'express-fileupload' module allows DoS attacks and code injectionSecurity Affairs·Aug 5, 08:00 UTC · Aug 5, 2020Exploit / PoCCVE-2020-7699150
Over A Billion Malicious Ad Impressions Exploit WebKit Flaw to Target Apple UsersThe Hacker News·Oct 1, 09:02 UTC · Oct 1, 2019Exploit / PoCCVE-2019-584060
YouTube disables 210 channels spreading disinformation about Hong KongCyberScoop·Aug 23, 14:13 UTC · Aug 23, 2019Exploit / PoC in the wild60
Crooks leverages .htaccess injector on Joomla and WordPress sites for malicious redirectsSecurity Affairs·May 27, 12:39 UTC · May 27, 2019Exploit / PoCCVE-2018-920660
The problem with vulnerable IoT companion appsHelp Net Security·Feb 7, 00:00 UTC · Feb 7, 2019Exploit / PoC45
Cellebrite's newest target: Your IoTCyberScoop·Jul 9, 16:44 UTC · Jul 9, 2018Exploit / PoC in the wild60
Using legitimate tools to hide malicious codeKaspersky Securelist·Nov 8, 10:00 UTC · Nov 8, 2017Exploit / PoC45