Fortinet warns of active campaign exploiting bug in FortiManager productsCyberScoop·Oct 24, 21:22 UTC · Oct 24, 2024Threat actor in the wildCVE-2024-4757560
Cisco routers come under attack, including a destructive hacktivist campaignThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Threat actor in the wildCVE-2020-3580CVE-2018-017160
Volt Typhoon and 4 other groups targeting US energy and defense sectors through Ivanti bugsThe Record·Apr 4, 16:40 UTC · Apr 4, 2024Threat actorCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Russian APT28 Exploits Outlook Bug to Access ExchangeInfosecurity Magazine·Dec 5, 10:40 UTC · Dec 5, 2023Threat actorCVE-2023-23397CVE-2023-38831CVE-2021-4044460
Threat actors actively exploit recently disclosed Sophos firewall bugSecurity Affairs·Mar 30, 06:42 UTC · Mar 30, 2022Threat actor in the wildCVE-2022-104060
Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentialsSecurity Affairs·Dec 22, 10:44 UTC · Dec 22, 2025Threat actorCVE-2021-4044460
CISA warns of ‘significant’ threat to federal networks after nation-state hackers stole F5 source code, undisclosed bug infoThe Record·Oct 15, 16:56 UTC · Oct 15, 2025Threat actor in the wildCVE-2023-4674760
Threat actors exploit Atlassian Confluence bug in cryptomining campaignsSecurity Affairs·Aug 30, 08:12 UTC · Aug 30, 2024Threat actor in the wildCVE-2023-2252760
State-sponsored APTs are leveraging WinRAR bugHelp Net Security·Oct 18, 00:00 UTC · Oct 18, 2023Threat actorCVE-2023-38831CVE-2023-4047760
Nation-state actors hacked Red Cross exploiting Zoho bugSecurity Affairs·Feb 17, 08:18 UTC · Feb 17, 2022Threat actorCVE-2021-4053960
Russian threat actors using old Cisco bug to target critical infrastructure orgsHelp Net Security·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2018-017160
Threat actors are exploiting Barracuda ESG bug since October 22Security Affairs·May 31, 13:36 UTC · May 31, 2023Threat actor in the wildCVE-2023-286860
Multiple threat actors exploited Progress Telerik bug to breach U.S. federal agencySecurity Affairs·Mar 16, 10:58 UTC · Mar 16, 2023Threat actorCVE-2019-1893560
Data from 5.4M Twitter users obtained from multiple threat actorsSecurity Affairs·Jan 5, 00:30 UTC · Jan 5, 2023Threat actor60
Multiple APT groups exploited WinRAR flaw CVE-2023Security Affairs·Oct 19, 07:14 UTC · Oct 19, 2023Threat actorCVE-2023-3883160
Multiple nation-state hackers targeted aerospace company, CISA saysThe Record·Sep 8, 12:12 UTC · Sep 8, 2023Threat actorCVE-2022-47966CVE-2022-4247560
Researchers warn Volt Typhoon still embedded in US utilities and some breaches may never be foundThe Record·Feb 19, 20:49 UTC · Feb 19, 2026Threat actor60
Confusion Reigns as Threat Actors Exploit Samsung MagicInfo FlawInfosecurity Magazine·May 8, 10:29 UTC · May 8, 2025Threat actor in the wildCVE-2024-739960
China’s Salt Typhoon hackers targeting Cisco devices used by telcos, universitiesThe Record·Feb 13, 17:59 UTC · Feb 13, 2025Threat actorCVE-2023-20198CVE-2023-2027360
Russian RomCom APT Group Leverages ZeroInfosecurity Magazine·Nov 27, 11:00 UTC · Nov 27, 2024Threat actor in the wildCVE-2024-9680CVE-2024-4903960
Lazarus APT steals cryptocurrency and user data via a decoy MOBA gameKaspersky Securelist·Oct 23, 11:00 UTC · Oct 23, 2024Threat actorCVE-2024-494760
Threat actors may have exploited a zeroSecurity Affairs·May 13, 21:26 UTC · May 13, 2024Threat actorCVE-2024-23296CVE-2024-2778960
Russia-aligned hackers target European and Iranian embassies in new espionage campaignThe Record·Feb 17, 01:36 UTC · Feb 17, 2024Threat actor in the wildCVE-2023-4377060
Google TAG Detects State-Backed Threat Actors Exploiting WinRAR FlawThe Hacker News·Oct 19, 06:38 UTC · Oct 19, 2023Threat actor in the wildCVE-2023-3883160
Multiple nation-state hackers infiltrate single aviation organizationCyberScoop·Sep 7, 17:07 UTC · Sep 7, 2023Threat actor in the wild60
Chinese APT41 Group Compromises Six US Government NetworksInfosecurity Magazine·Mar 9, 09:30 UTC · Mar 9, 2022Threat actor60
Sophisticated hacking campaign uses Windows and Android zeroSecurity Affairs·Jan 12, 23:32 UTC · Jan 12, 2021Threat actorCVE-2020-6418CVE-2020-0938CVE-2020-1020+1 CVEs60
Researchers link Macron hack to APT28 with 'moderate confidence'CyberScoop·May 11, 15:01 UTC · May 11, 2017Threat actor in the wild60
WordPress content injection flaw abused in defacement campaignsSecurity Affairs·Feb 7, 14:43 UTC · Feb 7, 2017Threat actor60
Adobe fixed multiple maximum-severity flaws in ColdFusion and Campaign ClassicSecurity Affairs·Jul 2, 09:28 UTC · Jul 2, 2026Threat actor in the wildCVE-2026-48276CVE-2026-48283CVE-2026-48277+7 CVEs60
Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploitedHelp Net Security·Jun 28, 00:00 UTC · Jun 28, 2026Threat actor in the wildCVE-2026-2023060
How nation-states exploit political instability to launch cyber operationsHelp Net Security·Apr 23, 13:52 UTC · Apr 23, 2026Threat actor60
European-Chinese geopolitical issues drive renewed cyberespionage campaignCyberScoop·Apr 1, 14:31 UTC · Apr 1, 2026Threat actor in the wild60
Chinese Hackers Murky, Genesis, and Glacial Panda Escalate Cloud and Telecom EspionageThe Hacker News·Feb 24, 14:01 UTC · Feb 24, 2026Threat actorCVE-2023-3519CVE-2025-3928CVE-2016-5195+1 CVEs60
Chinese APT Group Exploits Dell ZeroInfosecurity Magazine·Feb 18, 10:10 UTC · Feb 18, 2026Threat actorCVE-2026-2276960
Nation-state and criminal actors leverage WinRAR flaw in attacksSecurity Affairs·Jan 29, 10:53 UTC · Jan 29, 2026Threat actor in the wildCVE-2025-808860
⚡ Weekly Recap: AI Automation Exploits, Telecom Espionage, Prompt Poaching & MoreThe Hacker News·Jan 12, 16:26 UTC · Jan 12, 2026Threat actorCVE-2026-21858CVE-2025-22224CVE-2025-22225+1 CVEs60
MI6 chief warns 'front line is everywhere' and signals intent to pressure PutinThe Record·Dec 15, 19:14 UTC · Dec 15, 2025Threat actor60
Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of DisclosureThe Hacker News·Sep 10, 09:41 UTC · Sep 10, 2025Threat actor in the wild160
Threat Actors Abuse HexstrikeInfosecurity Magazine·Sep 4, 10:30 UTC · Sep 4, 2025Threat actor in the wildCVE-2025-777560