Nation-state actors exploit Fortinet FortiOS SSL-VPN and Zoho ManageEngine ServiceDesk Plus, CISA warnsSecurity Affairs·Sep 8, 12:06 UTC · Sep 8, 2023Threat actor in the wildCVE-2022-47966CVE-2022-42475CVE-2021-4422860
Nation-state actors exploit Palo Alto PAN-OS zeroSecurity Affairs·May 7, 20:46 UTC · May 7, 2026Threat actor in the wildCVE-2026-030060
⚡ Weekly Recap: AI Automation Exploits, Telecom Espionage, Prompt Poaching & MoreThe Hacker News·Jan 12, 16:26 UTC · Jan 12, 2026Threat actorCVE-2026-21858CVE-2025-22224CVE-2025-22225+1 CVEs60
Threat actors attempt to exploit a flaw in FourSecurity Affairs·Dec 30, 09:04 UTC · Dec 30, 2024Threat actor in the wildCVE-2024-12856CVE-2019-1216860
Threat actors actively exploit F5 BIG-IP flaws CVE-2023Security Affairs·Nov 1, 17:16 UTC · Nov 1, 2023Threat actor in the wildCVE-2023-46747CVE-2023-46748160
Prolonged Chinese Cyber Espionage Campaign Targets VMware AppliancesInfosecurity Magazine·Jul 25, 12:20 UTC · Jul 25, 2025Threat actorCVE-2023-34048CVE-2022-138860
Nation-state actor exploited three Ivanti CSA zeroSecurity Affairs·Oct 14, 16:58 UTC · Oct 14, 2024Threat actorCVE-2024-9380CVE-2024-8190CVE-2024-8963160
Hacking campaign targets sites using WordPress WooCommerce Payments PluginSecurity Affairs·Jul 18, 10:48 UTC · Jul 18, 2023Threat actorCVE-2023-2812160
Threat actors are offering access to corporate networks via unauthorized Fortinet VPN accessSecurity Affairs·Nov 29, 22:22 UTC · Nov 29, 2022Threat actor in the wildCVE-2022-4068460
Crooks target Kubernetes installs via Argo Workflows to deploy minersSecurity Affairs·Jul 25, 15:23 UTC · Jul 25, 2021Threat actor60
Hacking campaign targets sites running Duplicator WordPress pluginSecurity Affairs·Feb 25, 09:13 UTC · Feb 25, 2020Threat actor in the wild60
Australian Cyber Agency Warns of Global CMS Exploitation CampaignInfosecurity Magazine·Jul 13, 08:30 UTC · Jul 13, 2026Threat actor60
Threat Actors Probe Gitea Docker Flaw CVE-2026The Hacker News·Jul 9, 06:04 UTC · Jul 9, 2026Threat actor in the wildCVE-2026-20896160
Oracle EBS 2025 campaign impacts Madison Square Garden, sensitive data leakedSecurity Affairs·Mar 3, 15:43 UTC · Mar 3, 2026Threat actorCVE-2025-6188260
Chinese APT Group Exploits Dell ZeroInfosecurity Magazine·Feb 18, 10:10 UTC · Feb 18, 2026Threat actorCVE-2026-2276960
Russian Espionage Group Static Tundra Targets Legacy Cisco FlawInfosecurity Magazine·Aug 21, 15:20 UTC · Aug 21, 2025Threat actorCVE-2018-017160
FBI: Russia-linked group Static Tundra exploit old Cisco flaw for espionageSecurity Affairs·Aug 21, 07:51 UTC · Aug 21, 2025Threat actorCVE-2018-017160
Compromised SAP NetWeaver instances are ushering in opportunistic threat actorsHelp Net Security·May 15, 11:51 UTC · May 15, 2025Threat actor in the wildCVE-2025-31324CVE-2025-42999160
Confusion Reigns as Threat Actors Exploit Samsung MagicInfo FlawInfosecurity Magazine·May 8, 10:29 UTC · May 8, 2025Threat actor in the wildCVE-2024-739960
A large-scale phishing campaign targets WordPress WooCommerce usersSecurity Affairs·Apr 28, 11:43 UTC · Apr 28, 2025Threat actorCVE-2023-4512460
Nation-State Attackers Exploiting Ivanti CSA Flaws for Network InfiltrationThe Hacker News·Jan 23, 05:18 UTC · Jan 23, 2025Threat actor in the wildCVE-2024-8190CVE-2024-8963CVE-2024-9380+1 CVEs60
Week in review: MUT-1244 targets both security workers and threat actors, Kali Linux 2024.4 releasedHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2024Threat actorCVE-2024-1235660
Hackers Hijack Unsecured Jupyter Notebooks to Stream Illegal Sports BroadcastsThe Hacker News·Nov 20, 04:14 UTC · Nov 20, 2024Threat actor60
Fortinet warns of active campaign exploiting bug in FortiManager productsCyberScoop·Oct 24, 21:22 UTC · Oct 24, 2024Threat actor in the wildCVE-2024-4757560
North Korea-linked APT37 exploited IE zeroSecurity Affairs·Oct 19, 14:07 UTC · Oct 19, 2024Threat actor in the wildCVE-2024-38178CVE-2022-4112860
Threat actors exploit Atlassian Confluence bug in cryptomining campaignsSecurity Affairs·Aug 30, 08:12 UTC · Aug 30, 2024Threat actor in the wildCVE-2023-2252760
APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-33617260
Threat actors exploited Palo Alto PanSecurity Affairs·Apr 15, 11:34 UTC · Apr 15, 2024Threat actorCVE-2024-3400160
Recent DarkGate campaign exploited Microsoft Windows zeroSecurity Affairs·Mar 14, 20:57 UTC · Mar 14, 2024Threat actor in the wildCVE-2024-2141260
Russian SVR-Linked APT29 Targets JetBrains TeamCity Servers in Ongoing AttacksThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2023Threat actor in the wildCVE-2023-4279360
Russia-linked APT29 spotted targeting JetBrains TeamCity serversSecurity Affairs·Dec 14, 15:12 UTC · Dec 14, 2023Threat actorCVE-2023-4279360
Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023Security Affairs·Oct 9, 22:02 UTC · Oct 9, 2023Threat actor in the wildCVE-2023-351960
Threat actors exploit discontinues Boa web servers to target critical infrastructureSecurity Affairs·Nov 24, 08:47 UTC · Nov 24, 2022Threat actorCVE-2017-9833CVE-2021-3355860
Threat actors are actively exploiting a zeroSecurity Affairs·Sep 14, 05:21 UTC · Sep 14, 2022Threat actor in the wildCVE-2022-318060
Threat actors sell access to tens of vulnerable networks compromised by exploiting Atlassian 0daySecurity Affairs·Jun 26, 18:27 UTC · Jun 26, 2022Threat actor in the wildCVE-2022-2613460
Threat actors exploit recently disclosed Atlassian Confluence flaw in cryptomining campaignSecurity Affairs·Jun 10, 20:51 UTC · Jun 10, 2022Threat actor in the wildCVE-2022-2613460
Threat actors use CVE-2021Security Affairs·Sep 30, 09:17 UTC · Sep 30, 2021Threat actorCVE-2021-26084160
Threat actors are attempting to exploit VMware vCenter CVE-2021Security Affairs·Sep 25, 12:09 UTC · Sep 25, 2021Threat actor in the wildCVE-2021-2200560
UNC1945, a threat actor used Oracle Solaris ZeroSecurity Affairs·Nov 4, 00:32 UTC · Nov 4, 2020Threat actorCVE-2020-1487160
Threat actors target WordPress sites using vulnerable File Manager installsSecurity Affairs·Sep 11, 21:01 UTC · Sep 11, 2020Threat actor60