Kernel shellcode persistence technique in APT attacks and SAS CTF challengeKaspersky Securelist·Oct 17, 14:20 UTC · Oct 17, 2024Vulnerability in the wildCVE-2010-4398160
Container Escape to Shadow Admin: GKE Autopilot VulnerabilitiesPalo Alto Unit 42·Jun 5, 23:26 UTC · Jun 5, 2024VulnerabilityCVE-2020-855447
Multi-vector DDoS attacks on the rise, attackers indiscriminate and persistentHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2022Vulnerability30
Attracting flies with Honey(gain): Adversarial abuse of proxywareCisco Talos·Aug 31, 11:52 UTC · Aug 31, 2021Vulnerability30
CymaticONE + VADR's new features allow customers to protect their web properties from persistent attacksHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2020Vulnerability30
Vulnerability Spotlight: Multiple Vulnerabilities in CUJO Smart Firewall, Das UCisco Talos·Mar 19, 15:00 UTC · Mar 19, 2019VulnerabilityCVE-2018-3963CVE-2018-396847
How A Bug Hunter Forced Apple to Completely Remove A Newly Launched FeatureThe Hacker News·Jan 20, 18:36 UTC · Jan 20, 2017Vulnerability30
Automating web security reviews with NetsparkerTroy Hunt·Sep 2, 23:00 UTC · Sep 2, 2014Vulnerability130
Agentic AI memory attacks spread across sessions and users, and most organizations aren't readyHelp Net Security·Jun 19, 12:14 UTC · Jun 19, 2026Vulnerability30
PolyShell: unrestricted file upload in Magento and Adobe CommerceSansec (Magento / e-commerce security)·May 12, 10:55 UTC · May 12, 2026Vulnerability in the wild60
US, UK agencies warn hackers were hiding on Cisco firewalls long after patches were appliedCyberScoop·Apr 23, 20:25 UTC · Apr 23, 2026Vulnerability in the wildCVE-2025-20333CVE-2025-2036260
iPhone forensics expose Signal messages after app removal in U.S. caseSecurity Affairs·Apr 13, 11:33 UTC · Apr 13, 2026Vulnerability30
SolarWinds Web Help Desk Exploited for RCE in MultiThe Hacker News·Mar 7, 07:03 UTC · Mar 7, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40536CVE-2025-26399+1 CVEs60
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
eScan AV users targeted with malicious updatesHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2026Vulnerability42
Fully patched FortiGate firewalls are getting compromised via CVE-2025-59718?Help Net Security·Jan 27, 23:23 UTC · Jan 27, 2026Vulnerability in the wildCVE-2025-59718CVE-2025-5971960
ThreatsDay Bulletin: Pixel Zero-Click, Redis RCE, China C2s, RAT Ads, Crypto Scams & 15+ StoriesThe Hacker News·Jan 24, 08:04 UTC · Jan 24, 2026Vulnerability55
China-linked APT UAT-9686 abused now patched maximum severity AsyncOS bugSecurity Affairs·Jan 16, 10:17 UTC · Jan 16, 2026Vulnerability in the wildCVE-2025-2039360
Taiwan Web Infrastructure targeted by APT UATSecurity Affairs·Aug 16, 07:07 UTC · Aug 16, 2025Vulnerability42
UAT-7237 targets Taiwanese web hosting infrastructureCisco Talos·Aug 15, 10:00 UTC · Aug 15, 2025Vulnerability42
China-linked group Fire Ant exploits VMware and F5 flaws since early 2025Security Affairs·Jul 28, 08:28 UTC · Jul 28, 2025VulnerabilityCVE-2023-34048CVE-2023-20867CVE-2022-138860
Leveraging Credentials As Unique Identifiers: A Pragmatic Approach To NHI InventoriesThe Hacker News·Jun 30, 11:00 UTC · Jun 30, 2025Vulnerability30
Shell No! Adversary Web Shell Trends and Mitigations (Part 1)Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability42
The Secret Defense Strategy of Four Critical Industries Combating Advanced Cyber ThreatsThe Hacker News·Jun 2, 10:55 UTC · Jun 2, 2025Vulnerability55
Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session PersistenceThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025Vulnerability in the wildCVE-2025-24859CVE-2025-30065CVE-2025-2481360
Russian Seashell Blizzard Enlists Specialist Initial Access Subgroup tInfosecurity Magazine·Feb 13, 12:00 UTC · Feb 13, 2025Vulnerability55
Critical vulnerabilities persist in high-risk sectorsHelp Net Security·Nov 15, 00:00 UTC · Nov 15, 2024Vulnerability55
New Research Reveals Spectre Vulnerability Persists in Latest AMD and Intel ProcessorsThe Hacker News·Oct 29, 05:53 UTC · Oct 29, 2024VulnerabilityCVE-2017-5715CVE-2023-38575CVE-2022-2382460
CISA Urges Encryption of Cookies in F5 BIGInfosecurity Magazine·Oct 14, 16:30 UTC · Oct 14, 2024Vulnerability30
OpenWrt dominates, but vulnerabilities persist in OT/IoT router firmwareHelp Net Security·Aug 7, 00:00 UTC · Aug 7, 2024Vulnerability55
Five Eyes Warn of Ivanti Vulnerabilities ExploitationInfosecurity Magazine·Mar 1, 12:00 UTC · Mar 1, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Chinese Hackers Operate Undetected in U.S. Critical Infrastructure for Half a DecadeThe Hacker News·Feb 9, 16:01 UTC · Feb 9, 2024Vulnerability55
Emerging Attacker Exploit: Microsoft CrossThe Hacker News·Aug 10, 11:18 UTC · Aug 10, 2023Vulnerability42
BlackLotus UEFI bootkit disables Windows security mechanismsHelp Net Security·Apr 17, 10:14 UTC · Apr 17, 2023Vulnerability in the wildCVE-2022-2189460
Server-side attacks, C&C in public clouds and other MDR cases we observedKaspersky Securelist·Nov 2, 08:00 UTC · Nov 2, 2022Vulnerability30
Researchers Discover UEFI Bootkit Targeting Windows Computers Since 2012The Hacker News·Oct 6, 06:33 UTC · Oct 6, 2021Vulnerability142
Flaws in Acer and ASUS pre-installed software could lead to arbitrary code executionSecurity Affairs·Dec 18, 15:12 UTC · Dec 18, 2019VulnerabilityCVE-2019-18670CVE-2019-1923535
Watchbog and the Importance of PatchingCisco Talos·Sep 11, 16:10 UTC · Sep 11, 2019VulnerabilityCVE-2018-100086135
CrowdStrike Falcon provides continuous monitoring for firmware attacksHelp Net Security·May 3, 00:00 UTC · May 3, 2019Vulnerability42
Malicious ads trigger drive-by download of persistent Android adwareHelp Net Security·Jun 26, 21:22 UTC · Jun 26, 2018Vulnerability55