ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Hackers deploy DripDropper via Apache ActiveMQ flaw, patch systems to evade detectionSecurity Affairs·Aug 21, 16:30 UTC · Aug 21, 2025Vulnerability in the wildCVE-2023-4660460
Attacker “Patches” Vulnerability Post Exploitation to Lock Out CompetiInfosecurity Magazine·Aug 19, 14:00 UTC · Aug 19, 2025Vulnerability in the wildCVE-2023-4660460
OpenAI fixes zero-click ShadowLeak vulnerability affecting ChatGPT Deep Research agentThe Record·Sep 18, 20:43 UTC · Sep 18, 2025Vulnerability in the wild60
CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File DownloadThe Hacker News·Apr 19, 08:34 UTC · Apr 19, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451160
NTLM Hash Exploit Targets Poland and Romania Days After PatchInfosecurity Magazine·Apr 17, 16:45 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451CVE-2025-24071160
Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054)Help Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2025-24071CVE-2024-43451160
Microsoft Patch TuesdayCisco Talos·Dec 12, 23:32 UTC · Dec 12, 2017Vulnerability in the wildCVE-2017-11886CVE-2017-11888CVE-2017-11889+31 CVEs60