Defenders must adapt to shrinking exploitation timelinesHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2023-28121CVE-2023-2799760
Analyzing the Patch Timeline for Zero-Day ExploitsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Threat Advisory: Critical Apache Log4j vulnerability being exploited in the wildCisco Talos·Dec 10, 19:37 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60
CISA says it observed nearly year-old activity tied to Cisco zeroCyberScoop·Sep 25, 23:34 UTC · Sep 25, 2025Exploit / PoC in the wild60
Speed and Scale: How Threat Volume and Velocity Shape Cyber Risk Narratives for Governance BodiesRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC160
Mozilla issued an urgent Firefox update to fix actively exploited flawSecurity Affairs·Oct 10, 07:40 UTC · Oct 10, 2024Exploit / PoC in the wildCVE-2024-9680CVE-2024-29944CVE-2024-2994360
Intellexa and Cytrox: From fixer-upper to Intel AgencyCisco Talos·Dec 21, 16:00 UTC · Dec 21, 2023Exploit / PoC60
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
Contrast Community Edition Empowers Developers to Write Secure Code FasterThe Hacker News·Aug 12, 08:25 UTC · Aug 12, 2020Exploit / PoC60
Unraveling the Lamberts ToolkitKaspersky Securelist·Apr 11, 09:59 UTC · Apr 11, 2017Exploit / PoCCVE-2014-414860
Microsoft CondemnsInfosecurity Magazine·May 28, 12:00 UTC · May 28, 2026Exploit / PoC in the wildCVE-2026-41091CVE-2026-45498CVE-2026-4558560
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AIThe Hacker News·May 26, 12:07 UTC · May 26, 2026Exploit / PoC in the wild60
Chaotic Eclipse discloses MiniPlasma zero-day, suggesting a missing or undone 2020 Windows security fixSecurity Affairs·May 18, 08:15 UTC · May 18, 2026Exploit / PoCCVE-2020-17103CVE-2026-3382560
Hackers Used AI to Develop First Known ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC160
AI is separating the companies built to scale from the ones built to sellCyberScoop·May 12, 10:00 UTC · May 12, 2026Exploit / PoC in the wild60
Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packagesHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2026Exploit / PoC in the wildCVE-2025-53521CVE-2026-21992CVE-2026-305560
What’s next for DHS’s forthcoming replacement critical infrastructure protection panel, AI information sharingCyberScoop·Feb 3, 21:27 UTC · Feb 3, 2026Exploit / PoC in the wild60
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
CISA publishes a post-quantum shopping list for agencies. Security professionals aren’t soldCyberScoop·Jan 27, 00:20 UTC · Jan 27, 2026Exploit / PoC in the wild60
FBI says ‘ongoing’ deepfake impersonation of U.S. gov officials dates back to 2023CyberScoop·Dec 19, 20:46 UTC · Dec 19, 2025Exploit / PoC in the wild60
GOP senator confirms pending White House quantum push, touts legislative alternativesCyberScoop·Oct 1, 15:30 UTC · Oct 1, 2025Exploit / PoC in the wild60
Trump administration planning expansion of U.S. quantum strategyCyberScoop·Sep 19, 15:42 UTC · Sep 19, 2025Exploit / PoC in the wild60
Cyber Silk Road: Tracing China’s Stealth TurnRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Here’s what Google is (and isn’t) planning with SMS account verificationCyberScoop·Feb 27, 21:28 UTC · Feb 27, 2025Exploit / PoC in the wild60
Russian group RomCom exploited Firefox and Tor Browser zero-days to target attacks Europe and North AmericaSecurity Affairs·Nov 27, 08:37 UTC · Nov 27, 2024Exploit / PoC in the wildCVE-2024-9680CVE-2024-4903960
U.S. CISA adds Microsoft Windows Kernel, Mozilla Firefox and SolarWinds Web Help Desk bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 16, 10:48 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2024-30088CVE-2024-9680CVE-2024-2898760
Firefox Zero-Day Under Attack: Update Your Browser ImmediatelyThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Exploit / PoC in the wildCVE-2024-968060
Kaspersky Says it is Being Targeted By ZeroInfosecurity Magazine·Jun 2, 09:30 UTC · Jun 2, 2023Exploit / PoC60
Experts released PoC exploits for bugs in Netgear Orbi routersSecurity Affairs·Mar 22, 18:15 UTC · Mar 22, 2023Exploit / PoC in the wildCVE-2022-37337CVE-2022-38452CVE-2022-36429+1 CVEs60
White House: U.S. agencies have 90 days to create inventory of all softwareThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC60
Microsoft mitigations for recently disclosed Exchange zeroSecurity Affairs·Oct 4, 06:40 UTC · Oct 4, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Microsoft confirms Exchange zeroSecurity Affairs·Sep 30, 10:18 UTC · Sep 30, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Lack of speedy notification was 'a mistake,' Okta saysCyberScoop·Mar 28, 19:47 UTC · Mar 28, 2022Exploit / PoC in the wild60
Symantec confirms that Longhorn group is tied to CIA operators detailed in Vault 7Security Affairs·Apr 29, 10:24 UTC · Apr 29, 2021Exploit / PoC60
Hackers breach European agency to access BioNTech, Pfizer COVIDCyberScoop·Dec 9, 22:48 UTC · Dec 9, 2020Exploit / PoC in the wild60
Beers with Talos Ep. #61: Hacking for good is a bad ideaCisco Talos·Sep 11, 14:48 UTC · Sep 11, 2019Exploit / PoC in the wild60
Facebook paid $25,000 for CSRF exploit that leads to Account TakeoverSecurity Affairs·Feb 17, 09:35 UTC · Feb 17, 2019Exploit / PoC60