Hackers can force iOS and macOS browsers to divulge passwords and much moreArs Technica · Security·Oct 25, 17:00 UTC · Oct 25, 2023Exploit / PoC in the wild60
Meet 'Meltdown' and 'Spectre,' the chip flaws causing problems for nearly everyoneCyberScoop·Jan 3, 22:52 UTC · Jan 3, 2018Exploit / PoC in the wildCVE-2017-5753CVE-2017-5717CVE-2017-575460
Google Chrome shifts browser architecture to thwart Spectre attacksCyberScoop·Jul 12, 14:51 UTC · Jul 12, 2018Exploit / PoC in the wild60
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
Safeguarding data is our best hope to control AICyberScoop·Jul 25, 17:25 UTC · Jul 25, 2023Exploit / PoC in the wild60
How 'China coup' tweets went viral, and what it says about the rapid spread of disinformationCyberScoop·Sep 26, 17:58 UTC · Sep 26, 2022Exploit / PoC in the wild60
Microsoft Fixes Two ZeroInfosecurity Magazine·Sep 14, 09:40 UTC · Sep 14, 2022Exploit / PoC in the wildCVE-2022-37969CVE-2022-23960CVE-2022-34722+1 CVEs60
August 2018 Patch Tuesday: Microsoft fixes two actively exploited zero-daysHelp Net Security·Aug 15, 00:00 UTC · Aug 15, 2018Exploit / PoC in the wildCVE-2018-8414CVE-2018-8373CVE-2018-8174+2 CVEs60
APT Trends report Q1 2018Kaspersky Securelist·Apr 12, 10:00 UTC · Apr 12, 2018Exploit / PoC in the wildCVE-2018-7445CVE-2017-1188260
Research points to amateurs for unprecedented DDoS attackCyberScoop·Oct 25, 21:03 UTC · Oct 25, 2016Exploit / PoC in the wild60
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber worldCyberScoop·Jul 31, 20:16 UTC · Jul 31, 2026Exploit / PoC in the wild60
Google security engineer accused of turning confidential search trends into $1.2M win on PolymarketCyberScoop·May 28, 18:13 UTC · May 28, 2026Exploit / PoC in the wild60
CISA credential leak raises alarms, and Capitol Hill demands answersCyberScoop·May 20, 14:43 UTC · May 20, 2026Exploit / PoC in the wild60
Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)Help Net Security·May 15, 00:00 UTC · May 15, 2026Exploit / PoC in the wildCVE-2026-20182CVE-2026-20127CVE-2022-20775+6 CVEs60
Government Hacking Tools Are Now in Criminals' Hands (with Lorenzo Franceschi404 Media·Apr 27, 14:02 UTC · Apr 27, 2026Exploit / PoC in the wild60
OpenAI expands Trusted Access for Cyber program with new GPT 5.4 Cyber modelCyberScoop·Apr 15, 13:59 UTC · Apr 15, 2026Exploit / PoC in the wild60
Citizen Lab links Cellebrite to the hacking of a Kenyan presidential candidate’s phoneCyberScoop·Feb 17, 11:00 UTC · Feb 17, 2026Exploit / PoC in the wild60
Fortinet starts patching exploited FortiCloud SSO zero-day (CVE-2026-24858)Help Net Security·Jan 28, 00:00 UTC · Jan 28, 2026Exploit / PoC in the wildCVE-2026-24858CVE-2025-5971860
Industry, government, nonprofits weigh voluntary rules for commercial hacking toolsCyberScoop·Jan 26, 14:11 UTC · Jan 26, 2026Exploit / PoC in the wild60
Attackers exploited critical Fortra GoAnywhere flaw in zero-day attacks (CVE-2025-10035)Help Net Security·Oct 7, 14:53 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Meta confused over WhatsApp ban issued to House staffersCyberScoop·Jun 24, 21:12 UTC · Jun 24, 2025Exploit / PoC in the wild60
Cybersecurity experts issue response to Trump order targeting Chris Krebs, SentinelOneCyberScoop·Apr 28, 20:57 UTC · Apr 28, 2025Exploit / PoC in the wild60
U.S. CISA adds Fortinet FortiOS/FortiProxy and GitHub Action flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 14:17 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2025-30066CVE-2024-5559160
Microsoft IDs developers behind alleged generative AI hacking-forCyberScoop·Feb 27, 18:30 UTC · Feb 27, 2025Exploit / PoC in the wild160
Attackers exploit a new zeroSecurity Affairs·Feb 11, 23:06 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2025-24472CVE-2024-55591160
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
Low-level cybercriminals are pouncing on CrowdStrikeCyberScoop·Jul 23, 22:05 UTC · Jul 23, 2024Exploit / PoC in the wild60
May 2024 Patch Tuesday: Microsoft fixes exploited zero-days (CVE-2024-30051, CVE-2024-30040)Help Net Security·May 31, 08:23 UTC · May 31, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2023-36033+2 CVEs160
Hackers exploited Windows 0-day for 6 months after Microsoft knew of itArs Technica · Security·Mar 4, 22:47 UTC · Mar 4, 2024Exploit / PoC in the wildCVE-2024-2133860
CISA adds Microsoft Windows bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 15, 10:04 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2024-21412CVE-2024-21351CVE-2023-3602560
CISA orders federal agencies to disconnect Ivanti VPN instances by February 2Security Affairs·Feb 1, 19:46 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Attacks against Denmark 's energy sector were not carried out by RussiaSecurity Affairs·Jan 14, 16:40 UTC · Jan 14, 2024Exploit / PoC in the wildCVE-2023-28771CVE-2020-9054CVE-2022-3052560
Hamas-linked app offers window into cyber infrastructure, possible links to IranCyberScoop·Oct 19, 17:40 UTC · Oct 19, 2023Exploit / PoC in the wild60
Incomplete disclosures by Apple and Google create “huge blindspot” for 0Ars Technica · Security·Sep 21, 22:19 UTC · Sep 21, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-486360
Microsoft downplays damaging report on Chinese hacking its own engineers vettedCyberScoop·Jul 31, 18:35 UTC · Jul 31, 2023Exploit / PoC in the wild60
Zenbleed: New Flaw in AMD Zen 2 Processors Puts Encryption Keys and Passwords at RiskThe Hacker News·Jul 27, 06:35 UTC · Jul 27, 2023Exploit / PoC in the wildCVE-2023-2059360
Apple fixes actively exploited WebKit zero-day in iOS, macOS (CVE-2023-23529)Help Net Security·Feb 14, 00:00 UTC · Feb 14, 2023Exploit / PoC in the wildCVE-2023-23529CVE-2023-2351460
Microsoft fixes exploited zero-day in the Windows CLFS Driver (CVE-2022-37969)Help Net Security·Sep 19, 07:02 UTC · Sep 19, 2022Exploit / PoC in the wildCVE-2022-37969CVE-2022-24521CVE-2022-34724+4 CVEs60
Hacktivists claiming attack on Iranian steel facilities dump tranche of 'top secret documents'CyberScoop·Jul 7, 17:30 UTC · Jul 7, 2022Exploit / PoC in the wild60
Suspicious withdrawals were indeed a 'security incident,' $30M stolen, Crypto.com saysCyberScoop·Jan 20, 16:20 UTC · Jan 20, 2022Exploit / PoC in the wild60