Russian state-sponsored espionage group Static Tundra compromises unpatched end-ofCisco Talos·Aug 20, 13:00 UTC · Aug 20, 2025VulnerabilityCVE-2018-017160
State-Sponsored Espionage Campaign Exploits Cisco VulnerabilitiesInfosecurity Magazine·Apr 25, 14:00 UTC · Apr 25, 2024VulnerabilityCVE-2024-20353CVE-2024-2035960
Espionage group targeted hotels, governments, seized on Microsoft Exchange vulnerabilityCyberScoop·Sep 23, 09:30 UTC · Sep 23, 2021Vulnerability in the wild60
PAN-OS RCE Exploit Under Active Use Enabling Root Access and EspionageThe Hacker News·May 7, 17:58 UTC · May 7, 2026Vulnerability in the wildCVE-2026-030060
FBI Warns FSB-Linked Hackers Exploiting Unpatched Cisco Devices for Cyber EspionageThe Hacker News·Aug 21, 16:11 UTC · Aug 21, 2025VulnerabilityCVE-2018-017160
A cyber-espionage effort against Tibetan leaders leveraged known Android, iOS vulnerabilitiesCyberScoop·Sep 24, 13:57 UTC · Sep 24, 2019Vulnerability in the wild60
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
⚡ Weekly Recap: Apple 0-Days, WinRAR Exploit, LastPass Fines, .NET RCE, OAuth Scams & MoreThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-14174CVE-2025-43529CVE-2025-6218+43 CVEs60
Windows Shortcut Flaw Exploited by 11 StateInfosecurity Magazine·Mar 19, 16:30 UTC · Mar 19, 2025Vulnerability in the wild60
Barracuda thought it drove 0-day hackers out of customers’ networks. It was wrong.Ars Technica · Security·Aug 30, 17:31 UTC · Aug 30, 2023VulnerabilityCVE-2023-286860
US Cyber Command highlights Palo Alto Networks security patch, citing foreign espionageCyberScoop·Jun 30, 14:08 UTC · Jun 30, 2020Vulnerability in the wildCVE-2020-202160
Russia-Aligned TAG-110 Targets Asia and Europe with HATVIBE and CHERRYSPYRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2024-2369260
CISA issues emergency directive for federal agencies to patch Ivanti VPN vulnerabilitiesCyberScoop·Jan 19, 22:13 UTC · Jan 19, 2024Vulnerability in the wild60
Microsoft Issues Patches for Another Four ZeroThe Hacker News·May 10, 10:37 UTC · May 10, 2017Vulnerability in the wildCVE-2017-0290CVE-2017-0261CVE-2017-0001+7 CVEs60
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
New Hacking Campaign Exploits Microsoft Windows WinRAR VulnerabilityInfosecurity Magazine·Feb 5, 11:50 UTC · Feb 5, 2026VulnerabilityCVE-2025-808860
China-Linked Operation “WrtHug” Hijacks Thousands of ASUS RoutersInfosecurity Magazine·Nov 19, 10:20 UTC · Nov 19, 2025VulnerabilityCVE-2023-41345CVE-2023-41346CVE-2023-41347+4 CVEs60
Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July PatchThe Hacker News·Oct 22, 12:56 UTC · Oct 22, 2025VulnerabilityCVE-2025-53770CVE-2025-49704CVE-2025-49706+1 CVEs160
Russian cyber group exploits seven-year-old network vulnerabilities for longCyberScoop·Aug 20, 15:33 UTC · Aug 20, 2025VulnerabilityCVE-2018-017160
Microsoft Patch Tuesday addresses 66 vulnerabilities, including an actively exploited zeroCyberScoop·Jun 10, 21:58 UTC · Jun 10, 2025Vulnerability in the wildCVE-2025-33053CVE-2025-4796660
SentinelOne Warns Cybersecurity Vendors of Chinese AttacksInfosecurity Magazine·Jun 10, 10:30 UTC · Jun 10, 2025VulnerabilityCVE-2024-8963CVE-2024-819060
China-Linked Hackers Infiltrate East Asian Firm for 3 Years Using F5 DevicesThe Hacker News·Jun 18, 09:27 UTC · Jun 18, 2024Vulnerability in the wild60
CISA: Cisco and CrushFTP vulnerabilities are being actively exploitedThe Record·Apr 24, 19:07 UTC · Apr 24, 2024Vulnerability in the wildCVE-2024-20353CVE-2024-20359CVE-2024-404060
Dutch intelligence finds Chinese hackers spying on secret Defence Ministry networkThe Record·Feb 6, 16:02 UTC · Feb 6, 2024VulnerabilityCVE-2022-42475CVE-2023-2799760
UNC215, an alleged ChinaSecurity Affairs·Aug 11, 17:28 UTC · Aug 11, 2021VulnerabilityCVE-2019-060460
Experts Believe Chinese Hackers Are Behind Several Attacks Targeting IsraelThe Hacker News·Aug 11, 03:39 UTC · Aug 11, 2021VulnerabilityCVE-2019-060460
Chinese hackers hit Citrix, Cisco vulnerabilities in sweeping campaignCyberScoop·Mar 25, 15:16 UTC · Mar 25, 2020Vulnerability in the wildCVE-2019-1978160
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security PatchesThe Hacker News·Apr 25, 08:20 UTC · Apr 25, 2026VulnerabilityCVE-2025-20333CVE-2025-2036260
US, UK agencies warn hackers were hiding on Cisco firewalls long after patches were appliedCyberScoop·Apr 23, 20:25 UTC · Apr 23, 2026Vulnerability in the wildCVE-2025-20333CVE-2025-2036260
Fortinet Releases Emergency Patch After FortiClient EMS Bug Is ExploitInfosecurity Magazine·Apr 7, 09:26 UTC · Apr 7, 2026Vulnerability in the wildCVE-2026-35616CVE-2026-2164360
Russian hackers exploit Zimbra flaw to breach Ukrainian maritime agencyThe Record·Mar 19, 12:41 UTC · Mar 19, 2026VulnerabilityCVE-2025-6637660
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat ActivityRecorded Future·Jan 13, 00:00 UTC · Jan 13, 2026Vulnerability in the wildCVE-2025-55182CVE-2025-20393CVE-2025-8110+1 CVEs60
Warning: WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat GroupsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-6218CVE-2025-808860
Three hacking groups, two vulnerabilities and all eyes on ChinaThe Record·Dec 8, 15:09 UTC · Dec 8, 2025VulnerabilityCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
Microsoft Silently Patches Windows LNK Flaw After Years of Active ExploitationThe Hacker News·Dec 4, 04:31 UTC · Dec 4, 2025Vulnerability in the wildCVE-2025-9491160
Week in review: Cisco fixes critical UCCX flaws, November 2025 Patch Tuesday forecastHelp Net Security·Nov 9, 00:00 UTC · Nov 9, 2025Vulnerability in the wildCVE-2025-48703CVE-2025-11371CVE-2025-20358+1 CVEs60
China-linked hackers exploit patched ToolShell flaw to breach Middle East telecomSecurity Affairs·Oct 24, 08:37 UTC · Oct 24, 2025Vulnerability in the wildCVE-2025-53770CVE-2021-3694260
Public Exploit for Chained SAP Flaws Exposes Unpatched Systems to Remote Code ExecutionThe Hacker News·Aug 19, 17:30 UTC · Aug 19, 2025VulnerabilityCVE-2025-31324CVE-2025-42999CVE-2025-30012+4 CVEs60