Chinese Hackers Exploit Visual Studio Code in Southeast Asian CyberattacksThe Hacker News·Dec 10, 09:03 UTC · Dec 10, 2024Exploit / PoCCVE-2024-2491960
New Flaw in IDEs Like Visual Studio Code Lets Malicious Extensions Bypass Verified StatusThe Hacker News·Jul 1, 13:53 UTC · Jul 1, 2025Exploit / PoC157
CISA adds actively exploited flaw in .NET, Visual Studio to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 10, 08:28 UTC · Aug 10, 2023Exploit / PoC in the wildCVE-2023-3818060
Steganography in contemporary cyberattacksKaspersky Securelist·Aug 3, 09:00 UTC · Aug 3, 2017Exploit / PoC57
Mandiant devised a technique to bypass browser isolation using QR codesSecurity Affairs·Dec 9, 12:12 UTC · Dec 9, 2024Exploit / PoC45
CISA Adds Microsoft .NET Vulnerability to KEV Catalog Due to Active ExploitationThe Hacker News·Aug 11, 03:38 UTC · Aug 11, 2023Exploit / PoC in the wildCVE-2023-3818060
20 cybersecurity projects on GitHub you should check outHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2023Exploit / PoC45
Microsoft released out-ofSecurity Affairs·Oct 18, 15:04 UTC · Oct 18, 2020Exploit / PoC in the wildCVE-2020-17022CVE-2020-1702360
PoC released for CVE-2020Security Affairs·Jul 23, 16:37 UTC · Jul 23, 2020Exploit / PoCCVE-2020-114760
Chrome Flaw Allows Sites to Secretly Record Audio/Video Without IndicationThe Hacker News·May 30, 12:55 UTC · May 30, 2017Exploit / PoC45
Exploit weaponizes SAP NetWeaver bugs for full system compromiseSecurity Affairs·Aug 20, 00:01 UTC · Aug 20, 2025Exploit / PoC in the wildCVE-2025-31324CVE-2025-42999CVE-2025-30012+4 CVEs160
SAP zero-day vulnerability under widespread active exploitationCyberScoop·Apr 25, 17:51 UTC · Apr 25, 2025Exploit / PoC in the wildCVE-2025-3132460
SCYTHE 4.3 enables organizations to test and validate their defensesHelp Net Security·Jul 1, 00:00 UTC · Jul 1, 2024Exploit / PoC60
China turns to AI in hopes of creating viral online propaganda, Microsoft researchers sayCyberScoop·Sep 7, 13:00 UTC · Sep 7, 2023Exploit / PoC in the wild60
Security researchers targeted by North Korean hackersHelp Net Security·Jan 29, 11:18 UTC · Jan 29, 2021Exploit / PoC60
InPage zero-day exploit used to attack financial institutions in AsiaKaspersky Securelist·Nov 23, 08:59 UTC · Nov 23, 2016Exploit / PoCCVE-2012-0158CVE-2017-1282460
December 2019 Patch Tuesday: Microsoft fixes one actively exploited zero-dayHelp Net Security·Dec 10, 00:00 UTC · Dec 10, 2019Exploit / PoC in the wildCVE-2019-1458CVE-2019-1471CVE-2019-1485+5 CVEs60
Chrome design flaw allows sites to record Audio/Video without indicationSecurity Affairs·May 31, 13:18 UTC · May 31, 2017Exploit / PoC45
Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP ConfigsThe Hacker News·Jun 26, 13:53 UTC · Jun 26, 2026Exploit / PoCCVE-2026-12957CVE-2026-12958CVE-2025-59536+2 CVEs60
U.S. CISA adds Adobe, Fortinet, Microsoft Windows, Microsoft Exchange Server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 14, 07:38 UTC · Apr 14, 2026Exploit / PoC in the wildCVE-2026-34621CVE-2012-1854CVE-2020-9715+4 CVEs160
Zen-AI-Pentest: Open-source AI-powered penetration testing frameworkHelp Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Exploit / PoC45
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source CodeThe Hacker News·Jan 26, 16:53 UTC · Jan 26, 2026Exploit / PoCCVE-2025-69264CVE-2025-6926360
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
‘Elon Musk is playing with fire:’ All the legal risks that apply to Grok’s deepfake disasterCyberScoop·Jan 8, 18:51 UTC · Jan 8, 2026Exploit / PoC in the wild60
U.S. Sentencing Commission seeks input on criminal penalties for deepfakesCyberScoop·Dec 18, 23:21 UTC · Dec 18, 2025Exploit / PoC in the wild60
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Top 10 Takeaways from Predict 2025: Turning Intelligence Into ActionRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025Exploit / PoC in the wild60
Prioritizing Cyber Threats: Addressing the Overload ChallengeRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Ongoing attacks on Ivanti VPNs install a ton of sneaky, wellArs Technica · Security·Jan 9, 22:17 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-028260
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [6 Jan]The Hacker News·Jan 6, 12:05 UTC · Jan 6, 2025Exploit / PoCCVE-2024-49113CVE-2024-49112160
Week in review: Google fixes yet another Chrome zero-day exploit, YouTube as a cybercrime channelHelp Net Security·May 26, 00:00 UTC · May 26, 2024Exploit / PoC in the wildCVE-2024-5274CVE-2024-4985CVE-2023-43208+4 CVEs60
New Chrome Zero-Day Vulnerability CVE-2024The Hacker News·May 15, 00:00 UTC · May 15, 2024Exploit / PoC in the wildCVE-2024-4761CVE-2024-4671CVE-2024-0519+3 CVEs60
Incomplete disclosures by Apple and Google create “huge blindspot” for 0Ars Technica · Security·Sep 21, 22:19 UTC · Sep 21, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-486360
Yellow Pencil WordPress Plugin flaw expose tens of thousands of sitesSecurity Affairs·Aug 28, 11:49 UTC · Aug 28, 2023Exploit / PoC60
Skybox Security unveils cyber risk quantification capabilities to help users prioritize critical threatsHelp Net Security·May 19, 00:00 UTC · May 19, 2022Exploit / PoC in the wild60
Newly Discovered Bugs in VSCode Extensions Could Lead to Supply Chain AttacksThe Hacker News·May 31, 03:41 UTC · May 31, 2021Exploit / PoC57
N. Korean Hackers Targeting Security Experts to Steal Undisclosed ResearchesThe Hacker News·Apr 1, 07:14 UTC · Apr 1, 2021Exploit / PoCCVE-2021-164760
Webee and Semtech simplify LoRaWAN connectivity for growing low-power IoT app marketHelp Net Security·Mar 19, 00:00 UTC · Mar 19, 2021Exploit / PoC57
Fake Twitter personas, bogus blog delivered North KoreaCyberScoop·Jan 26, 15:03 UTC · Jan 26, 2021Exploit / PoC in the wild60