Microsoft Patch Tuesday addresses 66 vulnerabilities, including an actively exploited zeroCyberScoop·Jun 10, 21:58 UTC · Jun 10, 2025Vulnerability in the wildCVE-2025-33053CVE-2025-4796660
Microsoft Patches 67 Vulnerabilities Including WEBDAV ZeroThe Hacker News·Jun 12, 15:47 UTC · Jun 12, 2025Vulnerability in the wildCVE-2025-33053CVE-2025-47966CVE-2025-32713+3 CVEs160
Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054)Help Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2025-24071CVE-2024-43451160
RondoDox Botnet Targets HPE OneView Vulnerability in Exploitation WaveInfosecurity Magazine·Jan 16, 09:15 UTC · Jan 16, 2026Vulnerability in the wildCVE-2025-37164CVE-2025-5518260
Crooks turn HexStrike AI into a weapon for fresh vulnerabilitiesSecurity Affairs·Sep 3, 19:43 UTC · Sep 3, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
17-Year-Old Critical 'Wormable' RCE Vulnerability Impacts Windows DNS ServersThe Hacker News·Apr 13, 11:27 UTC · Apr 13, 2021Vulnerability in the wildCVE-2020-135060
NTLM Hash Exploit Targets Poland and Romania Days After PatchInfosecurity Magazine·Apr 17, 16:45 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451CVE-2025-24071160
Surge in Attacks on Surveillance Cameras Linked to Iranian HackersInfosecurity Magazine·Mar 4, 15:00 UTC · Mar 4, 2026Vulnerability in the wildCVE-2021-33044CVE-2017-7921160
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
Recently fixed HPE OneView flaw is being exploited (CVE-2025-37164)Help Net Security·Jan 16, 12:58 UTC · Jan 16, 2026Vulnerability in the wildCVE-2025-3716460
Week in review: KeePass vulnerability, Apple fixes exploited WebKit 0-daysHelp Net Security·May 21, 00:00 UTC · May 21, 2023Vulnerability in the wildCVE-2023-28204CVE-2023-32373CVE-2023-32409+1 CVEs60
CISA Warns of Active Exploitation of Critical Spring4Shell VulnerabilityThe Hacker News·Apr 6, 03:27 UTC · Apr 6, 2022Vulnerability in the wildCVE-2022-22965CVE-2022-22674CVE-2022-22675+1 CVEs60
CISA adds Spring4Shell to list of exploited vulnerabilitiesHelp Net Security·Jan 10, 14:38 UTC · Jan 10, 2025Vulnerability in the wildCVE-2022-22965CVE-2021-4422860
Microsoft confirms second 0-day exploited by Void Banshee APT (CVE-2024-43461)Help Net Security·Sep 18, 12:42 UTC · Sep 18, 2024Vulnerability in the wildCVE-2024-43461CVE-2024-3811260
Week in review: Western Digital network security incident, QNAP vulns, Patch Tuesday forecastHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2023Vulnerability in the wildCVE-2023-26360CVE-2023-26359160
Microsoft and Other Major Software Firms Release February 2022 Patch UpdatesThe Hacker News·Feb 9, 06:40 UTC · Feb 9, 2022Vulnerability in the wildCVE-2022-21989CVE-2022-21984CVE-2022-22005+12 CVEs60
Microsoft June 2021 Patch Tuesday addresses 6 0days actively exploitedSecurity Affairs·Jun 9, 07:48 UTC · Jun 9, 2021Vulnerability in the wildCVE-2021-33742CVE-2021-33739CVE-2021-31199+4 CVEs160
Coinhive stops digging, but cryptomining still dominatesHelp Net Security·Apr 10, 00:00 UTC · Apr 10, 2019Vulnerability in the wildCVE-2017-7269CVE-2014-0160CVE-2014-034660
Microsoft's July Update Patches 143 Flaws, Including Two Actively ExploitedThe Hacker News·Jul 11, 09:02 UTC · Jul 11, 2024Vulnerability in the wildCVE-2024-38080CVE-2024-38112CVE-2024-37985+3 CVEs60
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin AccessThe Hacker News·Jul 24, 09:25 UTC · Jul 24, 2026Vulnerability in the wildCVE-2026-16232CVE-2026-62144CVE-2026-6214560
WhatsApp and Telegram vulnerabilities allowed attackers to hijack accountsCyberScoop·Mar 15, 17:28 UTC · Mar 15, 2017Vulnerability in the wild60
Hackers Exploiting Drupal Vulnerability to Inject Cryptocurrency MinersThe Hacker News·Apr 18, 09:50 UTC · Apr 18, 2018Vulnerability in the wildCVE-2018-7600CVE-2017-1027160
Thousands of internet-facing devices vulnerable to Check Point VPN zeroThe Record·May 31, 21:08 UTC · May 31, 2024Vulnerability in the wildCVE-2024-2491960
Patched TikTok security flaw allowed oneThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability in the wildCVE-2022-2879960
Microsoft Releases Patches for 16 Critical Flaws, Including a ZeroThe Hacker News·Jan 11, 07:11 UTC · Jan 11, 2018Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2018-0819+2 CVEs60
Patching problems: The "return" of a Windows Themes spoofing vulnerabilityHelp Net Security·Dec 9, 13:30 UTC · Dec 9, 2024Vulnerability in the wildCVE-2024-21320CVE-2024-38030CVE-2023-2339760
Android chip vulnerability leaves millions of devices open to attackCyberScoop·Aug 6, 19:14 UTC · Aug 6, 2016Vulnerability in the wild60
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
At Mythos Speed: A Defender's Playbook for the AI Vulnerability Surge in 2026Recorded Future·May 21, 00:00 UTC · May 21, 2026Vulnerability in the wildCVE-2025-5518260
AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse ConcernsThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Vulnerability in the wild157
Critical SmarterMail Vulnerability Under Attack, No CVE YetSecurity Affairs·Jan 22, 15:14 UTC · Jan 22, 2026Vulnerability in the wild60
Apple Warns of Critical Security Risk in Safari For iPhones, iPads and MacsInfosecurity Magazine·Aug 19, 15:00 UTC · Aug 19, 2022Vulnerability in the wild60
Citrix Bleed: Mass exploitation in progress (CVE-2023-4966)Help Net Security·Nov 2, 14:31 UTC · Nov 2, 2023Vulnerability in the wildCVE-2023-496660
SonicWall released patch for actively exploited SMA 100 zeroSecurity Affairs·Feb 4, 13:57 UTC · Feb 4, 2021Vulnerability in the wildCVE-2021-2001660
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
What the AI patch gap means for enterprise securityHelp Net Security·Jul 2, 00:00 UTC · Jul 2, 2026Vulnerability in the wild160
Week in review: Critical RCE in Palo Alto Networks firewalls, how to select a DRaaS solutionHelp Net Security·Nov 14, 00:00 UTC · Nov 14, 2021Vulnerability in the wildCVE-2021-3064CVE-2021-42321CVE-2021-4229260
New Mac Malware Exploits GateKeeper Bypass Bug that Apple Left UnpatchedThe Hacker News·Aug 9, 07:22 UTC · Aug 9, 2019Vulnerability in the wild57
Apache Issues 3rd Patch to Fix New HighThe Hacker News·Dec 20, 05:02 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-45105CVE-2021-45046CVE-2021-4422860
Critical Security Flaws Uncovered in Honeywell Experion DCS and QuickBlox ServicesThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Vulnerability in the wildCVE-2023-31184CVE-2023-31185CVE-2023-36664+2 CVEs60