Week in review: CDK Global cyberattack, critical vCenter Server RCE fixedHelp Net Security·Jun 23, 00:00 UTC · Jun 23, 2024Vulnerability in the wildCVE-2024-0762CVE-2024-37079CVE-2024-3708060
Critical WP Maps Pro Flaw Actively Exploited to Create Admin AccountsThe Hacker News·Jun 1, 08:45 UTC · Jun 1, 2026Vulnerability in the wildCVE-2026-873260
CVE-2026-8732: The WP Maps Pro Flaw That Lets Anyone Create a WordPress Admin Without a PasswordSecurity Affairs·Jun 1, 11:36 UTC · Jun 1, 2026Vulnerability in the wildCVE-2026-873260
Qualcomm Urges OEMs to Patch Critical DSP and WLAN Flaws Amid Active ExploitsThe Hacker News·Oct 8, 05:32 UTC · Oct 8, 2024Vulnerability in the wildCVE-2024-43047CVE-2024-3306660
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Thousands of Citrix Servers Still Unpatched for Critical VulnerabilitiesThe Hacker News·Dec 30, 05:05 UTC · Dec 30, 2022Vulnerability in the wildCVE-2022-27510CVE-2022-2751860
Google fixed a critical vulnerability in Chrome browserSecurity Affairs·Oct 30, 12:05 UTC · Oct 30, 2024Vulnerability in the wildCVE-2024-10487CVE-2024-10488CVE-2024-796560
A cyber-espionage effort against Tibetan leaders leveraged known Android, iOS vulnerabilitiesCyberScoop·Sep 24, 13:57 UTC · Sep 24, 2019Vulnerability in the wild60
Arm and Qualcomm zero-days quietly patched in this month's Android security updatesThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability in the wildCVE-2021-1905CVE-2021-1906CVE-2021-28663+3 CVEs60
Android Issues Patches for 4 New ZeroThe Hacker News·May 20, 05:35 UTC · May 20, 2021Vulnerability in the wildCVE-2021-1905CVE-2021-1906CVE-2021-28663+3 CVEs60
Week in review: AWS SSM agents as RATs, Patch Tuesday forecastHelp Net Security·Aug 6, 00:00 UTC · Aug 6, 2023Vulnerability in the wildCVE-2023-35082CVE-2023-3508160
Over 400 IPs Exploiting Multiple SSRF Vulnerabilities in Coordinated Cyber AttackThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Vulnerability in the wildCVE-2017-0929CVE-2020-7796CVE-2021-21973+7 CVEs160
Patch Apache HTTP Servers Now to Avoid Zero Day ExploitInfosecurity Magazine·Oct 6, 09:16 UTC · Oct 6, 2021Vulnerability in the wildCVE-2021-41773CVE-2021-4152460
A patched Windows attack surface is still exploitableKaspersky Securelist·Mar 14, 10:00 UTC · Mar 14, 2024Vulnerability in the wildCVE-2022-22047CVE-2022-37989CVE-2022-29104+3 CVEs60
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Lightning AI Studio Vulnerability Could've Allowed RCE via Hidden URL ParameterThe Hacker News·Jan 31, 04:59 UTC · Jan 31, 2025Vulnerability in the wild60
Apache OFBiz Update Fixes High-Severity Flaw Leading to Remote Code ExecutionThe Hacker News·Sep 6, 05:22 UTC · Sep 6, 2024Vulnerability in the wildCVE-2024-45195CVE-2024-32113CVE-2024-36104+2 CVEs60
What can we expect of this March Patch Tuesday?Help Net Security·Mar 13, 09:58 UTC · Mar 13, 2019Vulnerability in the wildCVE-2019-578660
CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation VulnerabilityThe Hacker News·Jun 18, 14:06 UTC · Jun 18, 2025Vulnerability in the wildCVE-2023-0386CVE-2023-32629CVE-2023-264060
When exploit code precedes a patch, attackers gain a massive head startHelp Net Security·May 14, 00:00 UTC · May 14, 2021Vulnerability in the wild60
Apple Releases iOS and macOS Updates to Patch Actively Exploited ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Vulnerability in the wildCVE-2022-32917CVE-2022-22587CVE-2022-22594+5 CVEs60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
New Patch Released for Actively Exploited 0The Hacker News·Oct 11, 02:57 UTC · Oct 11, 2021Vulnerability in the wildCVE-2021-42013CVE-2021-4177360
Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers SayThe Hacker News·Jul 24, 07:18 UTC · Jul 24, 2026Vulnerability in the wildCVE-2026-25589CVE-2026-2524360
Hackers Exploited ColdFusion Vulnerability to Breach Federal Agency ServersThe Hacker News·Dec 9, 05:09 UTC · Dec 9, 2023Vulnerability in the wildCVE-2023-2636060
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
Operation Triangulation: The last (hardware) mysteryKaspersky Securelist·Dec 27, 14:00 UTC · Dec 27, 2023Vulnerability in the wildCVE-2023-41990CVE-2023-32434CVE-2023-38606+1 CVEs160
Latest Microsoft Windows Updates Patch Dozens of Security FlawsThe Hacker News·Feb 3, 03:59 UTC · Feb 3, 2026Vulnerability in the wildCVE-2021-31166CVE-2021-28476CVE-2021-26419+4 CVEs60
Microsoft Fixes 149 Flaws in Huge April Patch Release, ZeroThe Hacker News·Apr 11, 11:08 UTC · Apr 11, 2024Vulnerability in the wildCVE-2024-26234CVE-2024-29988CVE-2024-21412+2 CVEs60
How to Get Going with CTEM When You Don't Know Where to StartThe Hacker News·Nov 6, 12:32 UTC · Nov 6, 2024Vulnerability in the wild60
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code ExecutionThe Hacker News·Jul 28, 17:22 UTC · Jul 28, 2026Vulnerability in the wildCVE-2026-42533CVE-2026-42945CVE-2026-9256160
Week in review: Several companies affected by the Salesloft Drift breach, Sitecore 0-day vulnerabilityHelp Net Security·Sep 7, 00:00 UTC · Sep 7, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-24204CVE-2025-48543+2 CVEs60
Newly Patched Critical Microsoft WSUS Flaw Comes Under Active ExploitationThe Hacker News·Oct 31, 08:31 UTC · Oct 31, 2025Vulnerability in the wildCVE-2025-59287160
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableThe Hacker News·Jul 25, 12:54 UTC · Jul 25, 2026Vulnerability in the wildCVE-2026-1672360
Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026The Hacker News·Jun 4, 11:51 UTC · Jun 4, 2026Vulnerability in the wildCVE-2026-23479160
Power struggle: Government-funded researchers investigate vulnerabilities in EV charging stationsCyberScoop·Feb 25, 16:36 UTC · Feb 25, 2019Vulnerability in the wild60
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecastHelp Net Security·Apr 6, 00:00 UTC · Apr 6, 2025Vulnerability in the wildCVE-2025-22457CVE-2024-20439CVE-2025-2825+1 CVEs60
Apache Issues 3rd Patch to Fix New HighThe Hacker News·Dec 20, 05:02 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-45105CVE-2021-45046CVE-2021-4422860
December 2023 Patch Tuesday forecast: 'Tis the season for vigilanceHelp Net Security·Dec 12, 20:12 UTC · Dec 12, 2023Vulnerability in the wildCVE-2023-36025CVE-2021-377360