Oracle issued an emergency security update to fix new E-Business Suite flaw CVE-2025Security Affairs·Oct 14, 07:31 UTC · Oct 14, 2025VulnerabilityCVE-2025-61884CVE-2025-6188260
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260
CrowdStrike ties Oracle EBS RCE (CVE-2025Security Affairs·Oct 7, 08:42 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-6188260
Cleo File Transfer Vulnerability Under ExploitationThe Hacker News·Dec 18, 04:09 UTC · Dec 18, 2024Vulnerability in the wildCVE-2024-50623CVE-2024-5595660
It's time to patch your MOVEit Transfer solution again!Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2023Vulnerability in the wildCVE-2023-3436260
Critical vulnerability in WS_FTP Server exploited by attackers (CVE-2023-40044)Help Net Security·Jun 8, 10:34 UTC · Jun 8, 2026VulnerabilityCVE-2023-40044CVE-2023-42657CVE-2023-4004560
Week in review: Fortinet patches pre-auth RCE, Switzerland under cyberattackHelp Net Security·Jun 18, 00:00 UTC · Jun 18, 2023VulnerabilityCVE-2023-27997CVE-2023-34362CVE-2023-20887+2 CVEs60
New Critical MOVEit Transfer SQL Injection Vulnerabilities DiscoveredThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-3436260
Week in review: 9 free cybersecurity whitepapers, Patch Tuesday forecastHelp Net Security·Jun 11, 00:00 UTC · Jun 11, 2023VulnerabilityCVE-2023-307960
JSP webshells being dropped on unpatched PTC Windchill instancesHelp Net Security·Jul 27, 12:30 UTC · Jul 27, 2026Vulnerability in the wildCVE-2026-12569CVE-2026-468160
Progress quietly fixes MOVEit auth bypass flaws (CVE-2024-5805, CVE-2024-5806)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Critical MOVEit Automation auth bypass vulnerability fixed (CVE-2026-4670)Help Net Security·Jun 8, 10:28 UTC · Jun 8, 2026VulnerabilityCVE-2026-4670CVE-2026-5174CVE-2023-3436260
CISA: Patch actively exploited SolarWinds Serv-U DoS vulnerability (CVE-2026-28318)Help Net Security·Jun 8, 00:00 UTC · Jun 8, 2026Vulnerability in the wildCVE-2026-28318CVE-2021-35211CVE-2021-35247+1 CVEs60
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
Progress Software fixes sneaky WAF bypass vulnerability (CVE-2026-21876)Help Net Security·Apr 22, 00:00 UTC · Apr 22, 2026VulnerabilityCVE-2026-21876CVE-2026-3517CVE-2026-3518+2 CVEs60
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
CISA warns of Windows SMB flaw under active exploitation (CVE-2025-33073)Help Net Security·Oct 21, 00:00 UTC · Oct 21, 2025Vulnerability in the wildCVE-2025-33073CVE-2022-48503CVE-2025-61884+2 CVEs60
Another remotely exploitable Oracle EBS vulnerability requires your attention (CVE-2025-61884)Help Net Security·Oct 16, 17:00 UTC · Oct 16, 2025Vulnerability in the wildCVE-2025-61884CVE-2025-6188260
Unpatched Fortra GoAnywhere instances at risk of full takeover (CVE-2025-10035)Help Net Security·Sep 22, 00:00 UTC · Sep 22, 2025Vulnerability in the wildCVE-2025-10035CVE-2023-0669160
Cleo MFT Vulnerability CVE-2024Recorded Future·Aug 14, 00:00 UTC · Aug 14, 2025Vulnerability in the wildCVE-2024-50623CVE-2024-5595660
SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in OnThe Hacker News·Jul 23, 09:22 UTC · Jul 23, 2025VulnerabilityCVE-2025-2775CVE-2025-2776CVE-2025-2777+3 CVEs60
Week in review: Microsoft patches actively exploited 0-days, Amazon and HSBC employee data leakedHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2024Vulnerability in the wildCVE-2024-43451CVE-2024-49039CVE-2024-9463+1 CVEs160
Exploit Attempts Recorded Against New MOVEit Transfer VulnerabilityThe Hacker News·Jul 1, 05:51 UTC · Jul 1, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-5805CVE-2023-34362+3 CVEs60
Fortra Patches Critical RCE Vulnerability in FileCatalyst Transfer ToolThe Hacker News·Mar 18, 12:58 UTC · Mar 18, 2024VulnerabilityCVE-2024-25153CVE-2024-25154CVE-2024-2515560
Patch Your GoAnywhere MFT ImmediatelyThe Hacker News·Jan 25, 04:21 UTC · Jan 25, 2024Vulnerability in the wildCVE-2024-0204CVE-2023-0669160
Week in review: Sumo Logic breach, 7 free cyber threat maps, Patch Tuesday forecastHelp Net Security·Nov 12, 00:00 UTC · Nov 12, 2023VulnerabilityCVE-2023-22518CVE-2023-4911CVE-2023-47246160
Citrix ShareFile vulnerability actively exploited (CVE-2023-24489)Help Net Security·Aug 17, 00:00 UTC · Aug 17, 2023Vulnerability in the wildCVE-2023-2448960
Microsoft Warns of State-Sponsored Attacks Exploiting Critical PaperCut VulnerabilityThe Hacker News·May 9, 16:24 UTC · May 9, 2023VulnerabilityCVE-2023-2735060
Russian Hackers Suspected in Ongoing Exploitation of Unpatched PaperCut ServersThe Hacker News·Apr 25, 04:18 UTC · Apr 25, 2023Vulnerability in the wildCVE-2023-2735060