How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersThe Hacker News·Apr 8, 10:59 UTC · Apr 8, 2026Vulnerability155
Researchers Reveal Six New OpenClaw VulnerabilitiesInfosecurity Magazine·Feb 19, 10:00 UTC · Feb 19, 2026VulnerabilityCVE-2026-26322CVE-2026-26319CVE-2026-2632960
Infy Hackers Resume Operations with New C2 Servers After Iran Internet Blackout EndsThe Hacker News·Feb 5, 15:18 UTC · Feb 5, 2026VulnerabilityCVE-2025-808847
Rublevka Team: Anatomy of a Russian Crypto Drainer OperationRecorded Future·Feb 4, 00:00 UTC · Feb 4, 2026Vulnerability30
Critical Appsmith Flaw Enables Account TakeoversInfosecurity Magazine·Jan 22, 16:00 UTC · Jan 22, 2026VulnerabilityCVE-2026-2279460
Identity Is Now the Top Source of Cloud RiskInfosecurity Magazine·Nov 4, 13:00 UTC · Nov 4, 2025Vulnerability55
Microsoft releases urgent fix for actively exploited WSUS vulnerability (CVE-2025-59287)Help Net Security·Nov 3, 09:36 UTC · Nov 3, 2025Vulnerability in the wildCVE-2025-5928760
ThreatsDay Bulletin: $15B Crypto Bust, Satellite Spying, BillionThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability55
How a machine-learning model in Kaspersky SIEM detected DLLKaspersky Securelist·Oct 6, 08:00 UTC · Oct 6, 2025VulnerabilityCVE-2021-2707635
Put together an IR playbook — for your personal mental health and wellbeingCisco Talos·Sep 18, 18:00 UTC · Sep 18, 2025Vulnerability42
Russia-Nexus UAC-0113 Emulating Telecommunication Providers in UkraineRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Vulnerability142
RubyGems, PyPI Hit by Malicious Packages Stealing Credentials, Crypto, Forcing Security ChangesThe Hacker News·Aug 9, 06:49 UTC · Aug 9, 2025Vulnerability42
Mitiga Helios AI accelerates alert triage and incident response for SecOps teamsHelp Net Security·Jun 25, 00:00 UTC · Jun 25, 2025Vulnerability55
Malicious PyPI, npm, and Ruby Packages Exposed in Ongoing OpenThe Hacker News·Jun 4, 10:11 UTC · Jun 4, 2025Vulnerability242
Data-stealing VS Code extensions removed from official MarketplaceHelp Net Security·May 21, 00:00 UTC · May 21, 2025Vulnerability42
Google Cloud: Top 5 Priorities for Cybersecurity Leaders TodayInfosecurity Magazine·Apr 11, 12:05 UTC · Apr 11, 2025Vulnerability30
Malicious npm Packages Deliver Sophisticated Reverse ShellsInfosecurity Magazine·Mar 26, 13:30 UTC · Mar 26, 2025Vulnerability42
SaaS Breaches Skyrocket 300% as Traditional Defenses Fall ShortInfosecurity Magazine·Jan 27, 14:00 UTC · Jan 27, 2025Vulnerability55
Attackers exploiting a FortiClient EMS vulnerability in the wildKaspersky Securelist·Dec 19, 12:00 UTC · Dec 19, 2024VulnerabilityCVE-2023-4878835
U.S. and Allies Warn of Iranian Cyberattacks on Critical Infrastructure in YearThe Hacker News·Oct 21, 12:12 UTC · Oct 21, 2024VulnerabilityCVE-2020-147260
Critical ServiceNow vulnerabilities being targeted by hackers, cyber agency warnsThe Record·Jul 30, 16:17 UTC · Jul 30, 2024Vulnerability in the wildCVE-2024-4879CVE-2024-5178CVE-2024-521760
Stolen GenAI Accounts Flood Dark Web With 400 Daily ListingsInfosecurity Magazine·Jul 30, 15:00 UTC · Jul 30, 2024Vulnerability55
Judge0 Sandbox Vulnerabilities Expose Systems to Takeover RiskInfosecurity Magazine·Apr 29, 16:30 UTC · Apr 29, 2024VulnerabilityCVE-2024-29021CVE-2024-28185CVE-2024-2818960
Over 225,000 Compromised ChatGPT Credentials Up for Sale on Dark Web MarketsThe Hacker News·Mar 8, 05:58 UTC · Mar 8, 2024Vulnerability42
ScreenConnect flaws exploited to deliver all kinds of malware (CVE-2024-1709, CVE-2024-1708)Help Net Security·Feb 26, 00:00 UTC · Feb 26, 2024Vulnerability in the wildCVE-2024-1709CVE-2024-170860
Attackers exploiting ConnectWise ScreenConnect flaws, fixes available for all users (CVE-2024-1709, CVE-2024-1708)Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2024Vulnerability in the wildCVE-2024-1709CVE-2024-170860
Russian hackers offered phony drone training to exploit WinRAR vulnerabilityCyberScoop·Oct 18, 15:40 UTC · Oct 18, 2023Vulnerability in the wild60
Fresh Wave of Malicious npm Packages Threaten Kubernetes Configs and SSH KeysThe Hacker News·Sep 21, 03:53 UTC · Sep 21, 2023Vulnerability142
Week in review: Security Onion 2.4 released, WinRAR vulnerable to RCEHelp Net Security·Aug 27, 00:00 UTC · Aug 27, 2023VulnerabilityCVE-2022-47966CVE-2023-40477CVE-2023-36844+5 CVEs160
Week in review: KeePass vulnerability, Apple fixes exploited WebKit 0-daysHelp Net Security·May 21, 00:00 UTC · May 21, 2023Vulnerability in the wildCVE-2023-28204CVE-2023-32373CVE-2023-32409+1 CVEs60
Russian hackers bypass 2FA by annoying victims with repeated push notificationsThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability42
The Mystery of Duqu: Part FiveKaspersky Securelist·Nov 15, 18:15 UTC · Nov 15, 2011VulnerabilityCVE-2011-340235