Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Researchers Find ChatGPT Vulnerabilities That Let Attackers Trick AI Into Leaking DataThe Hacker News·Apr 16, 15:50 UTC · Apr 16, 2026VulnerabilityCVE-2025-59145160
Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026Help Net Security·Aug 9, 00:00 UTC · Aug 9, 2026VulnerabilityCVE-2026-66066CVE-2026-18577160
Week in review: Fully patched FortiGate firewalls are getting compromised, attackers probe Cisco RCE flawHelp Net Security·Jan 25, 00:00 UTC · Jan 25, 2026VulnerabilityCVE-2026-20045CVE-2025-5971860
House panel moves bill that adds AI systems to National Vulnerability DatabaseCyberScoop·Sep 25, 21:07 UTC · Sep 25, 2024Vulnerability in the wild60
Week in review: Veeam Service Provider Console flaws fixed, Patch Tuesday forecastHelp Net Security·Dec 8, 00:00 UTC · Dec 8, 2024VulnerabilityCVE-2024-42448CVE-2024-42449CVE-2024-41713+1 CVEs60
You’d be surprised to know what devices are still using Windows CECisco Talos·Nov 2, 18:00 UTC · Nov 2, 2023Vulnerability in the wildCVE-2023-496660
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
October 2024 Patch Tuesday forecast: Recall can be recalledHelp Net Security·Oct 8, 19:45 UTC · Oct 8, 2024Vulnerability in the wildCVE-2024-43573CVE-2024-4357260
RCE flaw in tool for building AI agents exploited by attackers (CVE-2025-3248)Help Net Security·May 6, 00:00 UTC · May 6, 2025Vulnerability in the wildCVE-2025-324860
Week in review: Microsoft patches actively exploited 0-days, Amazon and HSBC employee data leakedHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2024Vulnerability in the wildCVE-2024-43451CVE-2024-49039CVE-2024-9463+1 CVEs160
Protos AI delivers agent-driven threat intelligence without vendor lock-inHelp Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Vulnerability in the wild60
VulnCheck spotted 159 actively exploited vulnerabilities in first few months of 2025CyberScoop·Apr 24, 22:57 UTC · Apr 24, 2025Vulnerability in the wild60
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS AttacksThe Hacker News·Jun 21, 09:10 UTC · Jun 21, 2025Vulnerability in the wildCVE-2025-324860
Week in review: Weaponized OAuth redirection logic delivers malware, Patch Tuesday forecastHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2026VulnerabilityCVE-2025-14500CVE-2026-28289CVE-2026-20128+1 CVEs60
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
GCVE launches as a decentralized system for tracking software vulnerabilitiesCyberScoop·Jan 22, 20:45 UTC · Jan 22, 2026VulnerabilityCVE-2023-4022460
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0The Hacker News·Jul 21, 04:34 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-63030CVE-2026-60137CVE-2026-15409+26 CVEs160
The Justice Department wants to help you run a vulnerability disclosure programCyberScoop·Jul 31, 18:20 UTC · Jul 31, 2017Vulnerability in the wild60
Week in review: Microsoft patches 5 actively exploited 0-days, recently fixed Chrome vulnerability exploitedHelp Net Security·May 18, 00:00 UTC · May 18, 2025Vulnerability in the wildCVE-2025-4664CVE-2025-32756CVE-2025-4427+2 CVEs60
Week in review: Security Onion 2.4 released, WinRAR vulnerable to RCEHelp Net Security·Aug 27, 00:00 UTC · Aug 27, 2023VulnerabilityCVE-2022-47966CVE-2023-40477CVE-2023-36844+5 CVEs160
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Nation-state hackers attempted to use Equifax vulnerability against DoD, NSA official saysCyberScoop·Apr 17, 23:33 UTC · Apr 17, 2018Vulnerability in the wild60
Software vulnerability disclosures by NSA will continue under Trump, officials sayCyberScoop·Feb 21, 20:15 UTC · Feb 21, 2017Vulnerability in the wild60
It finally happened: Criminals exploit SS7 vulnerabilities, prompting concerns about 2FACyberScoop·May 8, 18:32 UTC · May 8, 2017Vulnerability in the wild60
US Cyber Command highlights Palo Alto Networks security patch, citing foreign espionageCyberScoop·Jun 30, 14:08 UTC · Jun 30, 2020Vulnerability in the wildCVE-2020-202160
⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & MoreThe Hacker News·Dec 27, 07:49 UTC · Dec 27, 2025VulnerabilityCVE-2025-20393CVE-2025-40602CVE-2025-23006+22 CVEs160
Week in review: Apache Struts vulnerability exploit attempt, EOL Sophos firewalls get hotfixHelp Net Security·Dec 17, 00:00 UTC · Dec 17, 2023Vulnerability in the wildCVE-2022-3236CVE-2023-50164CVE-2021-44228+1 CVEs60
Apache Struts vulnerability lets hackers execute malicious code on corporate serversCyberScoop·Sep 5, 18:45 UTC · Sep 5, 2017Vulnerability in the wild60
Google addresses 1 actively exploited vulnerability in May’s Android security updateCyberScoop·May 5, 21:54 UTC · May 5, 2025Vulnerability in the wildCVE-2025-2736360
Week in review: Veeam Backup & Replication RCE fixed, free file converter sites deliver malwareHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2025Vulnerability in the wildCVE-2025-23120CVE-2024-4824860
Week in review: Fortinet patches pre-auth RCE, Switzerland under cyberattackHelp Net Security·Jun 18, 00:00 UTC · Jun 18, 2023VulnerabilityCVE-2023-27997CVE-2023-34362CVE-2023-20887+2 CVEs60
Dangerous vulnerability in fleet management software seemingly ignored by vendorCyberScoop·Dec 6, 23:38 UTC · Dec 6, 2023VulnerabilityCVE-2023-624860
NIST Limits CVE Enrichment After 263% Surge in Vulnerability SubmissionsThe Hacker News·Apr 17, 13:10 UTC · Apr 17, 2026Vulnerability in the wild60
Russia-linked hacking group is exploiting Windows flaws, Microsoft will issue new patchCyberScoop·Nov 1, 21:38 UTC · Nov 1, 2016Vulnerability in the wild160
Dems want watchdog study of two troubled federally-funded vulnerability tracking initiativesCyberScoop·Jun 11, 17:18 UTC · Jun 11, 2025Vulnerability in the wild60
Senators take another swing at vulnerability disclosure policy bill for federal contractorsCyberScoop·May 23, 18:49 UTC · May 23, 2025Vulnerability in the wild60
Patch, track, repeat: The 2025 CVE retrospectiveCisco Talos·Mar 5, 19:00 UTC · Mar 5, 2026Vulnerability in the wildCVE-2026-2138560
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
This one matters, too: Carnegie Mellon issues guide to disclosing software vulnerabilities responsiblyCyberScoop·Aug 16, 20:06 UTC · Aug 16, 2017Vulnerability in the wild60