ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Microsoft Patch TuesdayCisco Talos·Dec 12, 23:32 UTC · Dec 12, 2017Vulnerability in the wildCVE-2017-11886CVE-2017-11888CVE-2017-11889+31 CVEs60
Week in review: High-severity OpenSSL vulnerabilities fixed, Patch Tuesday forecastHelp Net Security·Nov 6, 00:00 UTC · Nov 6, 2022VulnerabilityCVE-2022-3602CVE-2022-378660
5 Major Concerns With Employees Using The BrowserThe Hacker News·Apr 22, 11:00 UTC · Apr 22, 2025Vulnerability55
Attacker “Patches” Vulnerability Post Exploitation to Lock Out CompetiInfosecurity Magazine·Aug 19, 14:00 UTC · Aug 19, 2025Vulnerability in the wildCVE-2023-4660460
ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ StoriesThe Hacker News·Feb 23, 10:23 UTC · Feb 23, 2026Vulnerability55
NTLM Hash Exploit Targets Poland and Romania Days After PatchInfosecurity Magazine·Apr 17, 16:45 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451CVE-2025-24071160
Dropbox paid more than $1 Million via its bug bounty programSecurity Affairs·Feb 5, 12:00 UTC · Feb 5, 2020Vulnerability55
Lakera raises $20 million to secure GenAI applicationsHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2024Vulnerability55
CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File DownloadThe Hacker News·Apr 19, 08:34 UTC · Apr 19, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451160
Critical 'Sign in with Apple' Bug Could Have Let Attackers Hijack Anyone's AccountThe Hacker News·May 30, 15:43 UTC · May 30, 2020Vulnerability55
ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesThe Hacker News·May 15, 00:00 UTC · May 15, 2026VulnerabilityCVE-2026-0300160
Critical Microsoft Azure RCE flaw impacted multiple servicesSecurity Affairs·Jan 19, 16:02 UTC · Jan 19, 2023Vulnerability55
New Microsoft Azure Vulnerability Uncovered — EmojiDeploy for RCE AttacksThe Hacker News·Jan 19, 16:17 UTC · Jan 19, 2023Vulnerability55
New "DoubleClickjacking" Exploit Bypasses Clickjacking Protections on Major WebsitesThe Hacker News·Jan 3, 04:53 UTC · Jan 3, 2025Vulnerability55
Tech manufacturers are leaving the door open for Chinese hacking, Easterly warnsThe Record·Mar 7, 19:24 UTC · Mar 7, 2023Vulnerability55
Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054)Help Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2025-24071CVE-2024-43451160
Vulnerability disclosed pwds of all Barracuda Network EmployeesSecurity Affairs·Jul 26, 23:06 UTC · Jul 26, 2013Vulnerability55
Expert earns $100,000 for ‘Sign in with Apple’ authentication bypass bugSecurity Affairs·Jun 1, 19:55 UTC · Jun 1, 2020Vulnerability55
Hackers earn nearly $2 million in bounties during HackerOne's live hacking eventHelp Net Security·Sep 4, 00:00 UTC · Sep 4, 2019Vulnerability55
OpenAI fixes zero-click ShadowLeak vulnerability affecting ChatGPT Deep Research agentThe Record·Sep 18, 20:43 UTC · Sep 18, 2025Vulnerability in the wild60