AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM MemoryThe Hacker News·Aug 6, 11:30 UTC · Aug 6, 2026Exploit / PoC60
CISA alerts federal agencies of widespread attacks using Cisco zeroCyberScoop·Sep 25, 19:05 UTC · Sep 25, 2025Exploit / PoC in the wildCVE-2025-20333CVE-2025-20363CVE-2025-2036260
U.S. CISA adds CISCO Secure Firewall ASA and Secure FTD flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 26, 11:22 UTC · Sep 26, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-2033360
Urgent: Cisco ASA Zero-Day Duo Under Attack; CISA Triggers Emergency Mitigation DirectiveThe Hacker News·Sep 26, 05:35 UTC · Sep 26, 2025Exploit / PoC in the wildCVE-2025-20333CVE-2025-2036260
Cyber Command flags North Korean-linked hackers behind ongoing financial heistsCyberScoop·Nov 11, 15:03 UTC · Nov 11, 2019Exploit / PoC in the wild60
September 2025 CVE LandscapeRecorded Future·Oct 17, 00:00 UTC · Oct 17, 2025Exploit / PoC in the wildCVE-2025-53690CVE-2021-21311CVE-2025-20333+6 CVEs60
Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packagesHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2026Exploit / PoC in the wildCVE-2025-53521CVE-2026-21992CVE-2026-305560
Using an agent for the Mythic framework: pros and cons in pentestingKaspersky Securelist·May 13, 10:00 UTC · May 13, 2025Exploit / PoC60
ProjectSauron APT, aka Strider, found targeting firms in Russia, ChinaSecurity Affairs·Mar 10, 07:13 UTC · Mar 10, 2018Exploit / PoC60
IT threat evolution Q2 2014Kaspersky Securelist·Aug 4, 11:00 UTC · Aug 4, 2014Exploit / PoCCVE-2014-051560
Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWebHelp Net Security·Jul 20, 00:00 UTC · Jul 20, 2025Exploit / PoC in the wildCVE-2025-6558CVE-2025-2525760
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
Operation Triangulation attacks relied on an undocumented hardware featureSecurity Affairs·Dec 28, 23:10 UTC · Dec 28, 2023Exploit / PoCCVE-2023-41990CVE-2023-32434CVE-2023-38606160
Behind the scenes with the head of Kaspersky’s GReATKaspersky Securelist·Jun 22, 09:30 UTC · Jun 22, 2021Exploit / PoC60
Almost unfixable “Sinkclose” bug affects hundreds of millions of AMD chipsArs Technica · Security·Aug 10, 13:00 UTC · Aug 10, 2024Exploit / PoC60
CISA adds Cisco ASA and FTD and CrushFTP VFS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 25, 20:17 UTC · Apr 25, 2024Exploit / PoC in the wildCVE-2024-20353CVE-2024-20359CVE-2024-4040+1 CVEs60
Nation-state actors exploited two zero-days in ASA and FTD firewalls to breach government networksSecurity Affairs·Apr 24, 20:31 UTC · Apr 24, 2024Exploit / PoCCVE-2024-20353CVE-2024-20359CVE-2018-0101160
UK NCSC warns that attackers exploited Cisco firewall zero-days to deploy RayInitiator and LINE VIPER malwareSecurity Affairs·Sep 26, 11:49 UTC · Sep 26, 2025Exploit / PoCCVE-2025-20362CVE-2025-20333CVE-2025-2036360
U.S. CISA urges FCEB agencies to fix two Microsoft SharePoint flaws immediately and added them to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 23, 21:59 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-5377060
SharePoint under fire: new ToolShell attacks target enterprisesSecurity Affairs·Jul 22, 16:13 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49704CVE-2025-4970660
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Atlassian rolled out fixes for Confluence zeroSecurity Affairs·Jun 5, 09:51 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, DeviceThe Hacker News·Jun 18, 15:29 UTC · Jun 18, 2026Exploit / PoCCVE-2026-2012760
Rockwell Automation ControlLogix Bugs Expose Industrial Systems to Remote AttacksThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Exploit / PoCCVE-2023-3595CVE-2023-359660
Unpatched Atlassian Confluence zero-day exploited, fix expected today (CVE-2022-26134)Help Net Security·Jun 3, 00:00 UTC · Jun 3, 2022Exploit / PoC in the wildCVE-2022-2613460
ToolShell Exploit: Critical SharePoint ZeroRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs160
Google Chrome zero-day exploited in the wild (CVE-2022-4262)Help Net Security·Dec 6, 00:00 UTC · Dec 6, 2022Exploit / PoC in the wildCVE-2022-426260
How NTLM is being abused in 2025 cyberattacksKaspersky Securelist·Nov 26, 15:53 UTC · Nov 26, 2025Exploit / PoC in the wild60
FruityArmor APT exploited Windows ZeroSecurity Affairs·Oct 10, 12:26 UTC · Oct 10, 2018Exploit / PoCCVE-2016-339360
China-linked APT Velvet Ant exploited zeroSecurity Affairs·Aug 23, 07:21 UTC · Aug 23, 2024Exploit / PoC in the wildCVE-2024-2039960
Experts uncovered a watering hole attack on leading Hong Kong Telecom Site exploiting CVE-2018Security Affairs·Mar 27, 07:34 UTC · Mar 27, 2018Exploit / PoCCVE-2018-487860
APTs use of lesser-known TTPs are no less of a headacheHelp Net Security·Apr 23, 13:37 UTC · Apr 23, 2026Exploit / PoC60
Fire Ant Exploits VMware Flaws to Compromise ESXi Hosts and vCenter EnvironmentsThe Hacker News·Jul 29, 04:24 UTC · Jul 29, 2025Exploit / PoCCVE-2023-34048CVE-2023-20867CVE-2022-138860
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
The Slingshot APT FAQKaspersky Securelist·Mar 9, 15:20 UTC · Mar 9, 2018Exploit / PoCCVE-2007-5633CVE-2010-1592CVE-2009-082460
Apple urges iPhone users to update as Coruna and DarkSword exploit kits emergeSecurity Affairs·Mar 20, 11:22 UTC · Mar 20, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+15 CVEs160
May 2018 Patch Tuesday: Microsoft fixes 2 zero-day flaws reportedly exploited by APT groupSecurity Affairs·May 9, 08:09 UTC · May 9, 2018Exploit / PoC in the wildCVE-2018-8174CVE-2018-8120CVE-2018-8170+1 CVEs60
Two New Bluetooth Chip Flaws Expose Millions of Devices to Remote AttacksThe Hacker News·Nov 1, 18:48 UTC · Nov 1, 2018Exploit / PoCCVE-2018-16986CVE-2018-708060
Cisco ASA zero-day vulnerabilities exploited in sophisticated attacksHelp Net Security·Nov 13, 13:30 UTC · Nov 13, 2025Exploit / PoCCVE-2025-20362CVE-2025-20333CVE-2025-2036360