Intellexa and Cytrox: From fixer-upper to Intel AgencyCisco Talos·Dec 21, 16:00 UTC · Dec 21, 2023Exploit / PoC60
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
Cellebrite blocked Serbia from using its solution because misuse of the equipment for political reasonsSecurity Affairs·Feb 27, 09:41 UTC · Feb 27, 2025Exploit / PoCCVE-2024-4304760
WhatsApp fixed zero-day used to deploy Paragon Graphite spywareSecurity Affairs·Mar 20, 00:12 UTC · Mar 20, 2025Exploit / PoC60
Spyware and zero-day exploits increasingly go hand-inCyberScoop·Mar 27, 13:00 UTC · Mar 27, 2024Exploit / PoC in the wild60
LANDFALL spyware exploited Samsung zero-day CVE-2025Security Affairs·Nov 7, 21:54 UTC · Nov 7, 2025Exploit / PoC in the wildCVE-2025-21042CVE-2025-2104360
Italian-made spyware Dante linked to Chrome zero-day exploitation campaignHelp Net Security·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoCCVE-2025-278360
NSO Group must pay WhatsApp over $167M in damages for attacks on its usersSecurity Affairs·May 7, 08:57 UTC · May 7, 2025Exploit / PoCCVE-2019-356860
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent SpywareThe Hacker News·Nov 3, 17:57 UTC · Nov 3, 2025Exploit / PoC in the wildCVE-2025-2783160
Meta takes down surveillance-for-hire firms, calls for government action against the industryCyberScoop·Dec 15, 18:00 UTC · Dec 15, 2022Exploit / PoC in the wild60
Meta takes down 7 hacking-for-hire operations that targeted 50,000 usersCyberScoop·Dec 16, 21:34 UTC · Dec 16, 2021Exploit / PoC in the wild60
Spyware Vendors Caught Exploiting Zero-Day Vulnerabilities on Android and iOS DevicesThe Hacker News·Apr 3, 08:20 UTC · Apr 3, 2023Exploit / PoCCVE-2022-42856CVE-2021-30900CVE-2022-3723+7 CVEs60
WhatsApp zero-day exploited in targeted attacks to deliver NSO spywareSecurity Affairs·May 14, 08:02 UTC · May 14, 2019Exploit / PoCCVE-2019-356860
Reaper Group’s Updated Mobile ArsenalPalo Alto Unit 42·Aug 16, 06:27 UTC · Aug 16, 2018Exploit / PoC45
NSO Group used iOS exploits to spy on human rights advocates: Citizen LabThe Record·Apr 20, 14:50 UTC · Apr 20, 2023Exploit / PoC60
Google: Seven zero-days in 2021 developed commercially and sold to governmentsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Exploit / PoCCVE-2018-4344CVE-2019-8605CVE-2020-3837+3 CVEs60
U.S. CISA adds Samsung mobile devices flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 11, 09:00 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-21042CVE-2025-2104360
Memento Labs, the ghost of Hacking Team, has returned — or maybe it was never gone at all.Security Affairs·Oct 27, 20:31 UTC · Oct 27, 2025Exploit / PoCCVE-2025-2783CVE-2025-285760
Judge forbids NSO Group from targeting WhatsApp usersCyberScoop·Oct 20, 15:27 UTC · Oct 20, 2025Exploit / PoC in the wild60
Israeli surveillance firm QuaDream emerges from the darkSecurity Affairs·Feb 6, 18:31 UTC · Feb 6, 2022Exploit / PoCCVE-2021-3086060
Apple fixes zero-day vulnerabilities used to covertly deliver spyware (CVE-2023-32435)Help Net Security·Jun 22, 00:00 UTC · Jun 22, 2023Exploit / PoC in the wildCVE-2023-32435CVE-2023-32434CVE-2023-3243960
NSO Group argues WhatsApp injunction threatens existence, future U.S. government workCyberScoop·Nov 20, 23:11 UTC · Nov 20, 2025Exploit / PoC in the wild60
Zero-days exploited in the wild jumped 50% in 2023, fueled by spyware vendorsThe Record·Mar 27, 01:56 UTC · Mar 27, 2024Exploit / PoC in the wildCVE-2023-4863CVE-2023-41064CVE-2023-521760
Apple Rushes to Patch Zero-Day Flaws Exploited for Pegasus Spyware on iPhonesThe Hacker News·Sep 8, 11:27 UTC · Sep 8, 2023Exploit / PoC in the wildCVE-2023-41061CVE-2023-41064CVE-2023-3860660
US Gov adds surveillance firms Cytrox and Intellexa to Entity List for trafficking in cyber exploitsSecurity Affairs·Jul 19, 13:24 UTC · Jul 19, 2023Exploit / PoC60
CISA adds bugs exploited by commercial surveillance spyware to Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 1, 18:06 UTC · Apr 1, 2023Exploit / PoC in the wildCVE-2021-30900CVE-2022-38181CVE-2023-0266+6 CVEs60
U.S. CISA adds Apple products, and TP-Link routers flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 20, 13:19 UTC · Apr 20, 2026Exploit / PoC in the wildCVE-2025-43200CVE-2023-33538CVE-2025-2420060
Most Sophisticated iPhone Hack Ever Exploited Apple's Hidden Hardware FeatureThe Hacker News·Jan 4, 05:41 UTC · Jan 4, 2024Exploit / PoC in the wildCVE-2023-41990CVE-2023-32434CVE-2023-32435+4 CVEs160
New Apple Zero-Days Exploited to Target Egyptian exThe Hacker News·Sep 26, 11:42 UTC · Sep 26, 2023Exploit / PoCCVE-2023-41991CVE-2023-41992CVE-2023-41993+1 CVEs60
Apple addresses a new zero-day exploited to deploy the Pegasus spywareSecurity Affairs·Sep 23, 20:49 UTC · Sep 23, 2021Exploit / PoCCVE-2021-30860CVE-2021-30858CVE-2021-3086960
WhatsApp sued surveillance firms NSO Group and Q Cyber TechnologiesSecurity Affairs·Oct 30, 09:55 UTC · Oct 30, 2019Exploit / PoCCVE-2019-356860
DarkSword's GitHub leak threatens to turn elite iPhone hacking into a tool for the massesCyberScoop·Mar 24, 21:34 UTC · Mar 24, 2026Exploit / PoC in the wild160
Samsung Mobile Flaw Exploited as ZeroThe Hacker News·Nov 11, 11:21 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-21042CVE-2025-21043CVE-2025-55177+1 CVEs60
Judges strike skeptical note of NSO Group’s argument to dismiss case from El Salvadoran journosCyberScoop·Apr 10, 19:30 UTC · Apr 10, 2025Exploit / PoC in the wild60
Russian Journalist's iPhone Compromised by NSO Group's ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Exploit / PoC60
CISA adds recently discovered Apple zero-days to Known Exploited Vulnerabilities CatalogSecurity Affairs·Sep 11, 18:22 UTC · Sep 11, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-41061CVE-2023-37450+10 CVEs60
PWNYOURHOME, FINDMYPWN, LATENTIMAGE: 3 iOS ZeroSecurity Affairs·Apr 19, 05:24 UTC · Apr 19, 2023Exploit / PoC in the wild60
Facebook sues NSO Group for alleged WhatsApp hackCyberScoop·Oct 29, 21:50 UTC · Oct 29, 2019Exploit / PoC in the wild60