On the StrongPity Waterhole Attacks Targeting Italian and Belgian Encryption UsersKaspersky Securelist·Oct 3, 23:40 UTC · Oct 3, 2016Exploit / PoC60
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
Latest WinRAR Flaw Being Exploited in the Wild to Hack Windows ComputersThe Hacker News·Feb 26, 13:45 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-2025060
Recently fixed WinRAR bug actively exploited in the wildSecurity Affairs·Mar 15, 14:00 UTC · Mar 15, 2019Exploit / PoC in the wildCVE-2018-2025060
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
Critical bug in WINRAR affects all versions released in the last 19 yearsSecurity Affairs·Feb 23, 16:13 UTC · Feb 23, 2019Exploit / PoC60
Latest WinRAR, Drupal flaws under active exploitationHelp Net Security·Feb 26, 00:00 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-20250CVE-2019-634060
High-severity WinRAR 0Ars Technica · Security·Aug 12, 00:13 UTC · Aug 12, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2025-621860
Two groups exploit WinRAR flaws in separate cyberThe Record·Aug 11, 16:23 UTC · Aug 11, 2025Exploit / PoCCVE-2025-8088CVE-2025-621860
WinRAR zero-day exploited by RomCom hackers in targeted attacksHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-808860
500 million WinRAR users open to compromise via a 19-year-old flawHelp Net Security·Dec 14, 14:20 UTC · Dec 14, 2023Exploit / PoC60
U.S. CISA adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 10, 09:42 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-6218CVE-2025-62221160
U.S. CISA adds Microsoft Internet Explorer, Microsoft Office Excel, and WinRAR flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 14, 00:12 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2013-3893CVE-2007-0671CVE-2025-808860
Fake WinRAR PoC spread VenomRAT malwareHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2023Exploit / PoCCVE-2023-4047CVE-2023-25157CVE-2023-4047760
WinRAR 0-day that uses poisoned JPG and TXT files under exploit since AprilArs Technica · Security·Aug 23, 19:34 UTC · Aug 23, 2023Exploit / PoC in the wildCVE-2023-38831CVE-2018-2025060
New WinRAR ZeroInfosecurity Magazine·Aug 11, 16:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-36884CVE-2024-968060
Attackers exploited WinRAR zero-day for months to steal money from brokers (CVE-2023-38831)Help Net Security·Oct 18, 08:32 UTC · Oct 18, 2023Exploit / PoCCVE-2023-38831CVE-2023-4047760
Experts Uncover DarkCasino: New Emerging APT Threat Exploiting WinRAR FlawThe Hacker News·Nov 17, 05:08 UTC · Nov 17, 2023Exploit / PoCCVE-2023-3883160
WinRAR Security Flaw Exploited in ZeroThe Hacker News·Aug 24, 11:12 UTC · Aug 24, 2023Exploit / PoCCVE-2023-38831CVE-2023-4047760
Elfin Hacking Group Targets Multiple U.S. and Saudi Arabian FirmsThe Hacker News·Mar 28, 08:18 UTC · Mar 28, 2019Exploit / PoC in the wildCVE-2018-2025060
IT threat evolution Q1 2019Kaspersky Securelist·May 23, 10:00 UTC · May 23, 2019Exploit / PoCCVE-2019-0797CVE-2018-858960
FSB Group Gamaredon Hides Worm in Windows Data StreamsInfosecurity Magazine·Jun 1, 11:00 UTC · Jun 1, 2026Exploit / PoCCVE-2025-808860
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Week in review: Cybersecurity cheat sheets, widely exploited Cisco zero-day, KeePass-themed malvertisingHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2023Exploit / PoC in the wildCVE-2023-20198CVE-2023-4966CVE-2023-3883160
StrongPity APT - Waterhole attacks against Italian and Belgian usersSecurity Affairs·Jul 18, 13:42 UTC · Jul 18, 2019Exploit / PoCCVE-2011-061160
Google Reports State-Backed Hackers Using Gemini AI for Recon and Attack SupportThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoCCVE-2025-808850
Budding infosec pros and aspiring cyber crooks targeted with fake PoC exploitsHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2025Exploit / PoCCVE-2025-10294CVE-2025-59295CVE-2025-59230+7 CVEs60
U.S. CISA adds Google Chromium and Sierra Wireless AirLink ALEOS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 15, 18:56 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-14174CVE-2018-4063160
How NTLM is being abused in 2025 cyberattacksKaspersky Securelist·Nov 26, 15:53 UTC · Nov 26, 2025Exploit / PoC in the wild60
U.S. CISA adds N-able N-Central flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 14, 08:03 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-8875CVE-2025-887660
Multi-national warning issued over Russia’s targeting of logistics, tech firmsCyberScoop·May 21, 18:41 UTC · May 21, 2025Exploit / PoC in the wildCVE-2023-23397CVE-2023-3883160
Microsoft Credits EncryptHub, Hacker Behind 618+ Breaches, for Disclosing Windows FlawsThe Hacker News·Apr 6, 09:08 UTC · Apr 6, 2025Exploit / PoCCVE-2025-24061CVE-2025-24071CVE-2025-2663360
Hackers Use Corrupted ZIPs and Office Docs to Evade Antivirus and Email DefensesThe Hacker News·Dec 4, 04:48 UTC · Dec 4, 2024Exploit / PoC60
Critical Exchange Server Flaw (CVE-2024The Hacker News·Feb 17, 07:27 UTC · Feb 17, 2024Exploit / PoC in the wildCVE-2024-21410CVE-2024-21351CVE-2024-21412+1 CVEs160
CISA added 9 new flaws to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Feb 16, 10:05 UTC · Feb 16, 2022Exploit / PoC in the wildCVE-2022-24086CVE-2022-0609CVE-2019-0752+9 CVEs60
IT threat evolution Q3 2021Kaspersky Securelist·Nov 26, 12:00 UTC · Nov 26, 2021Exploit / PoCCVE-2021-4044460
‘StrongPity’ hacking group does just enough to get around defensesCyberScoop·Jul 18, 14:20 UTC · Jul 18, 2019Exploit / PoC in the wild60