SideWinder APT’s postKaspersky Securelist·Oct 15, 10:00 UTC · Oct 15, 2024VulnerabilityCVE-2017-1188247
Necro Python bot adds new exploits and Tezos mining to its bag of tricksCisco Talos·Jun 3, 12:00 UTC · Jun 3, 2021VulnerabilityCVE-2021-3129CVE-2020-14882CVE-2017-014447
UAT-8099: Chinese-speaking cybercrime group targets highCisco Talos·Oct 2, 10:00 UTC · Oct 2, 2025Vulnerability42
North Korea-Linked Hackers Target Developers via Malicious VS Code ProjectsThe Hacker News·Feb 26, 10:15 UTC · Feb 26, 2026Vulnerability42
Sonatype Reports 156% Increase in OSS Malicious PackagesInfosecurity Magazine·Oct 11, 11:00 UTC · Oct 11, 2024Vulnerability55
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
Two more malicious Python packages in the PyPIKaspersky Securelist·Aug 16, 12:13 UTC · Aug 16, 2022Vulnerability130
Week in review: Spring4Shell vulnerability, attackers exploiting patched RCE in Sophos FirewallHelp Net Security·Apr 3, 00:00 UTC · Apr 3, 2022Vulnerability in the wildCVE-2022-104060
CISA adds recently disclosed Zimbra bug to its Exploited Vulnerabilities CatalogThe Hacker News·Mar 1, 04:37 UTC · Mar 1, 2022Vulnerability in the wildCVE-2022-24682CVE-2017-8570CVE-2017-0222+1 CVEs60
SideWinder APT attacks in H2 2024Kaspersky Securelist·Mar 10, 10:01 UTC · Mar 10, 2025VulnerabilityCVE-2017-1188247
SideWinder APT Strikes Middle East and Africa With Stealthy MultiThe Hacker News·Oct 28, 03:55 UTC · Oct 28, 2025VulnerabilityCVE-2017-1188247
Cybercriminals increasingly focusing on credential theftHelp Net Security·Jun 26, 21:21 UTC · Jun 26, 2018Vulnerability30
How to Exploit Belkin WEMO gear to hack Android devicesSecurity Affairs·Nov 6, 14:38 UTC · Nov 6, 2016Vulnerability30
China-Nexus TAG-112 Compromises Tibetan Websites to Distribute Cobalt StrikeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability42
SmugX: Chinese APT uses HTML smuggling to target European Ministries and embassiesSecurity Affairs·Jul 3, 18:25 UTC · Jul 3, 2023Vulnerability42
Avast disables the JavaScript engine component due to a severe issueSecurity Affairs·Mar 11, 23:26 UTC · Mar 11, 2020Vulnerability55
Information Security Threats in the First Quarter of 2010Kaspersky Securelist·Jun 1, 14:45 UTC · Jun 1, 2010VulnerabilityCVE-2010-024935
Roundcube XSS flaw exploited to steal credentials, email (CVE-2024-37383)Help Net Security·Oct 22, 00:00 UTC · Oct 22, 2024VulnerabilityCVE-2024-3738360
Software Supply Chain Attacks Surge 650% in a YearInfosecurity Magazine·Sep 15, 14:00 UTC · Sep 15, 2021Vulnerability55
5 Threats That Reshaped Web Security This Year [2025]The Hacker News·Dec 4, 11:30 UTC · Dec 4, 2025VulnerabilityCVE-2025-54135CVE-2025-53109CVE-2025-5528460
20+ Hijacked Government Websites Became an Attack ChannelThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Vulnerability42
Fear, uncertainty and the padding oracle exploit in ASP.NETTroy Hunt·Sep 18, 23:00 UTC · Sep 18, 2010Vulnerability55
Unpatched CCTV Cameras Exploited to Spread Mirai VariantInfosecurity Magazine·Aug 29, 15:00 UTC · Aug 29, 2024Vulnerability in the wildCVE-2024-7029CVE-2014-8361CVE-2017-1721560
A gift from ZeuS for passengers of US AirwaysKaspersky Securelist·Apr 3, 16:58 UTC · Apr 3, 2012VulnerabilityCVE-2011-354435
China-Linked Hackers Have Used the PeckBirdy JavaScript C2 Framework Since 2023The Hacker News·Jan 30, 06:48 UTC · Jan 30, 2026VulnerabilityCVE-2020-1604047
Rocke: The Champion of Monero MinersCisco Talos·Aug 30, 15:26 UTC · Aug 30, 2018VulnerabilityCVE-2017-10271CVE-2017-306660
North Korea-linked Supply Chain Attack Targets Developers with 35 Malicious npm PackagesThe Hacker News·Jun 25, 09:20 UTC · Jun 25, 2025Vulnerability42
Supply-chain attack on NPM Package UAParser, which has millions of daily downloadsSecurity Affairs·Oct 23, 13:04 UTC · Oct 23, 2021Vulnerability42
Necro Python bot now enhanced with new VMWare, server exploitsSecurity Affairs·Jun 4, 18:17 UTC · Jun 4, 2021VulnerabilityCVE-2017-0144CVE-2017-014735
What has happened to DNS Security?Kaspersky Securelist·Jul 19, 14:07 UTC · Jul 19, 2011Vulnerability30
Russia-linked APT targets Ukraine by exploiting the Follina RCESecurity Affairs·Jun 13, 18:31 UTC · Jun 13, 2022VulnerabilityCVE-2022-3019047
When transparency is also obscurity: The conundrum that is open-source securityHelp Net Security·Oct 4, 00:00 UTC · Oct 4, 2022Vulnerability55
Vulnerability in Tencent WeChat custom browser could lead to remote code executionCisco Talos·Sep 6, 13:14 UTC · Sep 6, 2024VulnerabilityCVE-2023-342047
Russian APT Hackers Used COVIDThe Hacker News·Feb 10, 03:04 UTC · Feb 10, 2022VulnerabilityCVE-2021-3693447
Attacking Diffie-Hellman protocol implementation in the Angler Exploit KitKaspersky Securelist·Sep 8, 11:21 UTC · Sep 8, 2015VulnerabilityCVE-2015-2419CVE-2015-556035