Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Security threat prompts Progress to disable ShareFile accounts, tell customers to shut down serversHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2026VulnerabilityCVE-2026-2699CVE-2026-270160
Progress quietly fixes MOVEit auth bypass flaws (CVE-2024-5805, CVE-2024-5806)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Critical NetScaler ADC, Gateway flaw may soon be exploited (CVE-2026-3055)Help Net Security·Mar 31, 08:50 UTC · Mar 31, 2026Vulnerability in the wildCVE-2026-3055CVE-2026-4368CVE-2025-577760
Information sharing law’s expiration could squander government vulnerability hunting efforts, senator saysCyberScoop·Nov 18, 21:50 UTC · Nov 18, 2025Vulnerability in the wild60
Oracle issued an emergency security update to fix new E-Business Suite flaw CVE-2025Security Affairs·Oct 14, 07:31 UTC · Oct 14, 2025VulnerabilityCVE-2025-61884CVE-2025-6188260
CrowdStrike ties Oracle EBS RCE (CVE-2025Security Affairs·Oct 7, 08:42 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-6188260
Unpatched Fortra GoAnywhere instances at risk of full takeover (CVE-2025-10035)Help Net Security·Sep 22, 00:00 UTC · Sep 22, 2025Vulnerability in the wildCVE-2025-10035CVE-2023-0669160
DARPA’s AI Cyber Challenge reveals winning models for automated vulnerability discovery and patchingCyberScoop·Aug 8, 21:53 UTC · Aug 8, 2025Vulnerability in the wild60
iOS zero-click attacks used to deliver Graphite spyware (CVE-2025-43200)Help Net Security·Jun 16, 19:19 UTC · Jun 16, 2025Vulnerability in the wildCVE-2025-43200CVE-2025-2420060
SonicWall customers confront resurgence of actively exploited vulnerabilitiesCyberScoop·May 9, 21:33 UTC · May 9, 2025Vulnerability in the wildCVE-2023-44221CVE-2021-20035CVE-2025-23006+7 CVEs60
Critical Firefox, Tor Browser sandbox escape flaw fixed (CVE-2025-2857)Help Net Security·Apr 2, 08:44 UTC · Apr 2, 2025Vulnerability in the wildCVE-2025-2857CVE-2025-278360
Critical Palo Alto Networks Expedition bug exploited (CVE-2024-5910)Help Net Security·Nov 12, 16:18 UTC · Nov 12, 2024Vulnerability in the wildCVE-2024-5910CVE-2024-9464CVE-2024-9465+1 CVEs60
Ivanti patches critical Avalanche flaw exploitable via a simple message (CVE-2024-29204)Help Net Security·Apr 18, 00:00 UTC · Apr 18, 2024VulnerabilityCVE-2024-29204CVE-2024-2499660
Researchers find critical RCE vulnerabilities in industrial VPN solutionsHelp Net Security·Nov 14, 09:17 UTC · Nov 14, 2023VulnerabilityCVE-2020-14500CVE-2020-14508CVE-2020-14510+3 CVEs60
The three stages of security risk reprioritizationHelp Net Security·Nov 14, 08:39 UTC · Nov 14, 2023VulnerabilityCVE-2019-1151060
Easily exploitable flaw in Oracle Opera could spell trouble for hotel chains (CVE-2023-21932)Help Net Security·May 2, 00:00 UTC · May 2, 2023VulnerabilityCVE-2023-2193260
Microsoft and Other Major Software Firms Release February 2022 Patch UpdatesThe Hacker News·Feb 9, 06:40 UTC · Feb 9, 2022Vulnerability in the wildCVE-2022-21989CVE-2022-21984CVE-2022-22005+12 CVEs60
Vulnerabilities allow attackers to remotely deactivate home security system (CVE-2021-39276, CVE-2021-39277)Help Net Security·Sep 2, 00:00 UTC · Sep 2, 2021VulnerabilityCVE-2021-39276CVE-2021-3927760
Week in review: How to improve your AD security posture, Patch Tuesday forecastHelp Net Security·Jul 11, 00:00 UTC · Jul 11, 2021VulnerabilityCVE-2021-3452760
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
Chrome 86 delivers more security features for mobile usersHelp Net Security·Oct 7, 00:00 UTC · Oct 7, 2020VulnerabilityCVE-2020-1596760
Google discovers websites exploiting iPhones, pushing spying implants en masseHelp Net Security·Sep 10, 07:39 UTC · Sep 10, 2019Vulnerability in the wildCVE-2019-7287CVE-2019-728660
Intel chips riddled with deadly flawsHelp Net Security·Nov 21, 00:00 UTC · Nov 21, 2017VulnerabilityCVE-2017-571260
October Patch Tuesday: Changes, urgent updates and what's coming nextHelp Net Security·Oct 12, 00:00 UTC · Oct 12, 2016Vulnerability in the wildCVE-2016-3298CVE-2016-7189CVE-2016-3393+2 CVEs60
BENIGNCERTAIN-like flaw affects various Cisco networking devicesHelp Net Security·Sep 19, 00:00 UTC · Sep 19, 2016Vulnerability in the wildCVE-2016-641560