Experts found 14 new flaws in BusyBoxSecurity Affairs·Nov 10, 11:38 UTC · Nov 10, 2021VulnerabilityCVE-2021-42373CVE-2021-42374CVE-2021-42375+11 CVEs60
Why Patch Management Isn’t Enough: SharePoint, Webshells & the Modern Threat LandscapeRecorded Future·Aug 11, 00:00 UTC · Aug 11, 2025VulnerabilityCVE-2023-4724660
Cisco’s latest vulnerability spree has a more troubling pattern underneathCyberScoop·Mar 18, 21:31 UTC · Mar 18, 2026Vulnerability in the wildCVE-2026-20127CVE-2022-20775CVE-2026-20122+6 CVEs60
Three hacking groups, two vulnerabilities and all eyes on ChinaThe Record·Dec 8, 15:09 UTC · Dec 8, 2025VulnerabilityCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
Apache releases the third patch to address a new Log4j flawSecurity Affairs·Dec 18, 15:20 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-44228CVE-2021-45105160
Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI MemoryThe Hacker News·Jul 29, 15:39 UTC · Jul 29, 2026VulnerabilityCVE-2026-59726160
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
Two critical flaws discovered in Git systemSecurity Affairs·Jan 18, 20:03 UTC · Jan 18, 2023VulnerabilityCVE-2022-23521CVE-2022-41903160
Week in review: SimpleHelp vulnerability exploited, Oracle EBS Payments flaw under attackHelp Net Security·Jul 5, 00:00 UTC · Jul 5, 2026Vulnerability in the wildCVE-2026-12569CVE-2026-48558CVE-2026-4681760
CVE-2026-9082: Drupal's Highly Critical SQL Injection Flaw Is Already Under Active AttackSecurity Affairs·May 23, 16:17 UTC · May 23, 2026Vulnerability in the wildCVE-2026-908260
At Mythos Speed: A Defender's Playbook for the AI Vulnerability Surge in 2026Recorded Future·May 21, 00:00 UTC · May 21, 2026Vulnerability in the wildCVE-2025-5518260
PolyShell: unrestricted file upload in Magento and Adobe CommerceSansec (Magento / e-commerce security)·May 12, 10:55 UTC · May 12, 2026Vulnerability in the wild60
Mythos can find the vulnerability. It can't tell you what to do about it.CyberScoop·Apr 21, 10:00 UTC · Apr 21, 2026Vulnerability in the wild160
CVE-2023-33538 under attack for a year, but exploitation still unsuccessfulSecurity Affairs·Apr 20, 13:44 UTC · Apr 20, 2026Vulnerability in the wildCVE-2023-3353860
Week in review: Weaponized OAuth redirection logic delivers malware, Patch Tuesday forecastHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2026VulnerabilityCVE-2025-14500CVE-2026-28289CVE-2026-20128+1 CVEs60
iframe Security Exposed: The Blind Spot Fueling Payment Skimmer AttacksThe Hacker News·Sep 24, 11:03 UTC · Sep 24, 2025Vulnerability in the wild60
Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
Poor Rowhammer Fixes On DDR4 DRAM Chips ReThe Hacker News·Mar 10, 21:35 UTC · Mar 10, 2020VulnerabilityCVE-2020-1025560
Security researchers Crack 1024Security Affairs·Jul 4, 14:01 UTC · Jul 4, 2017VulnerabilityCVE-2017-752660
Attackers actively exploiting flaw(s) in Cleo file transfer software (CVE-2024-50623)Help Net Security·Jun 8, 10:32 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5062360
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026The Hacker News·May 31, 12:13 UTC · May 31, 2026Vulnerability in the wildCVE-2026-3998760
Attackers are exploiting critical NGINX vulnerability (CVE-2026-42945)Help Net Security·May 18, 00:00 UTC · May 18, 2026VulnerabilityCVE-2026-4294560
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of DisclosureThe Hacker News·Apr 27, 04:26 UTC · Apr 27, 2026Vulnerability in the wildCVE-2026-33626CVE-2026-0740CVE-2026-384460
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-34621160
Exposed training apps are showing up in active cloud attacksHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2026Vulnerability in the wild60
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
5 Threats That Reshaped Web Security This Year [2025]The Hacker News·Dec 4, 11:30 UTC · Dec 4, 2025VulnerabilityCVE-2025-54135CVE-2025-53109CVE-2025-5528460
H1 2025 Malware and Vulnerability TrendsRecorded Future·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wild60
China's Influence on National Network Vulnerability PublicationsRecorded Future·Oct 21, 00:00 UTC · Oct 21, 2025VulnerabilityCVE-2017-0199160
ThreatsDay Bulletin: Rootkit Patch, Federal Breach, OnePlus SMS Leak, TikTok Scandal & MoreThe Hacker News·Oct 2, 12:19 UTC · Oct 2, 2025VulnerabilityCVE-2025-10184CVE-2024-36401160
Hackers Exploit Critical CrushFTP Flaw to Gain Admin Access on Unpatched ServersThe Hacker News·Sep 2, 04:43 UTC · Sep 2, 2025Vulnerability in the wildCVE-2025-54309CVE-2025-31161CVE-2024-404060
Microsoft Office Tops the Exploit ChartsRecorded Future·Aug 12, 00:00 UTC · Aug 12, 2025VulnerabilityCVE-2017-0199CVE-2017-018960
New malicious web shell from the Tropic Trooper group is found in the Middle EastKaspersky Securelist·Sep 5, 08:02 UTC · Sep 5, 2024Vulnerability in the wildCVE-2021-34473CVE-2021-34523CVE-2021-31207+1 CVEs60
Analyzing the vulnerability landscape in Q1 2024Kaspersky Securelist·May 7, 10:00 UTC · May 7, 2024VulnerabilityCVE-2023-38831CVE-2023-40477CVE-2023-2825260
Microsoft Issues Improved Mitigations for Unpatched Exchange Server VulnerabilitiesThe Hacker News·Oct 10, 03:51 UTC · Oct 10, 2022Vulnerability in the wildCVE-2022-41040CVE-2022-41082160
Week in review: PolKit vulnerability, fake tax apps pushing malware, EU's bug bounty for open sourceHelp Net Security·Feb 28, 14:42 UTC · Feb 28, 2022VulnerabilityCVE-2021-403460
Ordr SCE 7.2: Enabling orgs to monitor for risks and proactively strengthen infrastructureHelp Net Security·Jul 3, 00:00 UTC · Jul 3, 2020Vulnerability in the wild60