China-linked hackers exploit patched ToolShell flaw to breach Middle East telecomSecurity Affairs·Oct 24, 08:37 UTC · Oct 24, 2025Vulnerability in the wildCVE-2025-53770CVE-2021-3694260
China-linked Salt Typhoon Exploits Critical Cisco Vulnerability to Target Canadian TelecomThe Hacker News·Jun 25, 16:57 UTC · Jun 25, 2025VulnerabilityCVE-2023-20198CVE-2023-2027360
Week in review: Microsoft patches actively exploited 0-days, Amazon and HSBC employee data leakedHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2024Vulnerability in the wildCVE-2024-43451CVE-2024-49039CVE-2024-9463+1 CVEs160
Suspected Chinese hackers took advantage of Microsoft Exchange vulnerability to steal call recordsCyberScoop·Aug 3, 04:01 UTC · Aug 3, 2021Vulnerability in the wild60
Notepad++ patches flaw used to hijack update systemSecurity Affairs·Feb 18, 19:28 UTC · Feb 18, 2026VulnerabilityCVE-2026-25926160
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More StoriesThe Hacker News·Jan 8, 16:52 UTC · Jan 8, 2026Vulnerability in the wildCVE-2024-36401CVE-2007-0671CVE-2002-036760
PHP Vulnerability Exploited to Spread Malware and Launch DDoS AttacksThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2024VulnerabilityCVE-2024-457760
U.S. Cybersecurity Agency Warns of Actively Exploited Ivanti EPMM VulnerabilityThe Hacker News·Jan 20, 04:42 UTC · Jan 20, 2024Vulnerability in the wildCVE-2023-35082CVE-2023-35078CVE-2023-35081+2 CVEs60
How the French fiber optic cable attacks accentuate critical infrastructure vulnerabilitiesCyberScoop·Apr 28, 14:00 UTC · Apr 28, 2022Vulnerability in the wild60
Researchers steal bitcoin by exploiting SS7 vulnerabilitiesCyberScoop·Sep 19, 17:50 UTC · Sep 19, 2017Vulnerability in the wild60
Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July PatchThe Hacker News·Oct 22, 12:56 UTC · Oct 22, 2025VulnerabilityCVE-2025-53770CVE-2025-49704CVE-2025-49706+1 CVEs160
Vulnerability found in dark web market AlphabayCyberScoop·Jan 23, 15:08 UTC · Jan 23, 2017Vulnerability in the wild60
UK weakens proposed telecoms defenses against Chinese hackers after industry pushbackThe Record·Jun 10, 06:46 UTC · Jun 10, 2026Vulnerability in the wild60
Information sharing law’s expiration could squander government vulnerability hunting efforts, senator saysCyberScoop·Nov 18, 21:50 UTC · Nov 18, 2025Vulnerability in the wild60
Android chip vulnerability leaves millions of devices open to attackCyberScoop·Aug 6, 19:14 UTC · Aug 6, 2016Vulnerability in the wild60
CISA chief frets about open-source vulnerabilities, delayed security improvementsCyberScoop·May 21, 17:05 UTC · May 21, 2026Vulnerability in the wild160
Apple addresses more than 100 vulnerabilities in security updates for iPhones, Macs and iPadsCyberScoop·Nov 4, 20:28 UTC · Nov 4, 2025Vulnerability in the wild60
Cisco uncovers new SNMP vulnerability used in attacks on IOS devicesCyberScoop·Sep 25, 14:57 UTC · Sep 25, 2025Vulnerability in the wildCVE-2025-20352CVE-2025-20240CVE-2025-2014960
Apple addresses dozens of vulnerabilities in latest software for iPhones, iPads and MacsCyberScoop·Sep 16, 18:54 UTC · Sep 16, 2025Vulnerability in the wildCVE-2025-43300CVE-2025-43298CVE-2025-4330460
Google patches two Android zero-days, 120 defects total in September security updateCyberScoop·Sep 3, 15:45 UTC · Sep 3, 2025Vulnerability in the wildCVE-2025-38352CVE-2025-48543CVE-2025-48539+3 CVEs60
CISA, Microsoft warn organizations of high-severity Microsoft Exchange vulnerabilityCyberScoop·Aug 7, 15:36 UTC · Aug 7, 2025Vulnerability in the wildCVE-2025-53786160
Google addresses six vulnerabilities in August’s Android security updateCyberScoop·Aug 4, 21:31 UTC · Aug 4, 2025Vulnerability in the wildCVE-2025-48530CVE-2025-22441CVE-2025-4853360
Microsoft security updates address CrowdStrike crash, kill ‘Blue Screen of Death’CyberScoop·Jun 27, 19:41 UTC · Jun 27, 2025Vulnerability in the wild60
Google addresses 34 high-severity vulnerabilities in June’s Android security updateCyberScoop·Jun 3, 19:35 UTC · Jun 3, 2025Vulnerability in the wildCVE-2025-26443CVE-2025-21479CVE-2025-21480+1 CVEs60
Multiple vulnerabilities found in ICONICS industrial SCADA softwareCyberScoop·Mar 10, 20:13 UTC · Mar 10, 2025Vulnerability in the wildCVE-2024-7587CVE-2024-118260
How CISA's list of 'must-patch' vulnerabilities has expanded both in size, and who's using itCyberScoop·Jun 10, 14:29 UTC · Jun 10, 2022Vulnerability in the wild60
CISA issues vulnerability advisory for select Dominion voting equipment, urges updatesCyberScoop·Jun 3, 21:23 UTC · Jun 3, 2022Vulnerability in the wild60
Apple patches against alleged NSO Group zeroCyberScoop·Sep 13, 20:17 UTC · Sep 13, 2021Vulnerability in the wild60
Hackers seize severe Microsoft Exchange vulnerabilities in echo of widespread March attacksCyberScoop·Aug 23, 16:41 UTC · Aug 23, 2021Vulnerability in the wild60
Cryptographers unearth vulnerabilities in Telegram's encryption protocolCyberScoop·Jul 16, 14:50 UTC · Jul 16, 2021Vulnerability in the wild60
After more than a decade, SentinelOne researchers weed out Dell vulnerabilitiesCyberScoop·May 4, 13:00 UTC · May 4, 2021Vulnerability in the wild60
Unpatched Microsoft Exchange Servers hit with cryptojackingCyberScoop·Apr 14, 15:47 UTC · Apr 14, 2021Vulnerability in the wild60
NSA says it found new critical vulnerabilities in Microsoft Exchange ServerCyberScoop·Apr 13, 19:37 UTC · Apr 13, 2021Vulnerability in the wild60
F5 releases patches for nearly two dozen vulnerabilities, some criticalCyberScoop·Mar 10, 19:34 UTC · Mar 10, 2021Vulnerability in the wild60
Amid widespread Exchange Server attacks, Microsoft issues patch for older versionsCyberScoop·Mar 9, 14:55 UTC · Mar 9, 2021Vulnerability in the wild60
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
SolarWinds breach has industrial firms checking their networks for vulnerabilitiesCyberScoop·Dec 16, 14:32 UTC · Dec 16, 2020Vulnerability in the wild60
'Smart' doorbells for sale on Amazon, eBay came stocked with security vulnerabilitiesCyberScoop·Nov 24, 14:41 UTC · Nov 24, 2020Vulnerability in the wild60
Ghost in the machine: Researchers find Webex vulnerabilities allow hidden visitorsCyberScoop·Nov 18, 18:00 UTC · Nov 18, 2020Vulnerability in the wild60