CISA: Multiple government hacking groups had ‘longThe Record·Jan 10, 00:00 UTC · Jan 10, 2023VulnerabilityCVE-2021-26855CVE-2021-26857CVE-2021-26868+1 CVEs60
Energetic Bear/Crouching Yeti: attacks on serversKaspersky Securelist·Apr 23, 10:00 UTC · Apr 23, 2018Vulnerability42
China-Linked Hackers Infiltrate East Asian Firm for 3 Years Using F5 DevicesThe Hacker News·Jun 18, 09:27 UTC · Jun 18, 2024Vulnerability in the wild60
Iran-linked Mint Sandstorm APT targeted US critical infrastructureSecurity Affairs·Apr 19, 09:52 UTC · Apr 19, 2023Vulnerability55
FamousSparrow targets Azerbaijani energy sector in multiSecurity Affairs·May 14, 08:17 UTC · May 14, 2026Vulnerability55
ThreatsDay Bulletin: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks and 25 More StoriesThe Hacker News·May 1, 07:21 UTC · May 1, 2026VulnerabilityCVE-2019-0708147
Researchers Observe In-the-Wild Exploitation of BeyondTrust CVSS 9.9 VulnerabilityThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2026-20700CVE-2025-15556+4 CVEs60
Russian Hackers Exploit Email and VPN Vulnerabilities to Spy on Ukraine Aid LogisticsThe Hacker News·May 22, 07:30 UTC · May 22, 2025VulnerabilityCVE-2023-23397CVE-2020-12641CVE-2020-35730+2 CVEs35
Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE VulnerabilityThe Hacker News·Apr 21, 14:48 UTC · Apr 21, 2025Vulnerability in the wildCVE-2025-3040660
Don't let these open-source cybersecurity tools slip under your radarHelp Net Security·Jan 27, 00:00 UTC · Jan 27, 2025Vulnerability30
CISA Warns of Active Exploitation of Microsoft SharePoint Vulnerability (CVE-2024The Hacker News·Nov 3, 05:44 UTC · Nov 3, 2024Vulnerability in the wildCVE-2024-38094CVE-2024-4406860
TA577 Exploits NTLM Authentication VulnerabilityInfosecurity Magazine·Mar 4, 16:30 UTC · Mar 4, 2024Vulnerability55
Warning: New Malware Emerges in Attacks Exploiting Ivanti VPN VulnerabilitiesThe Hacker News·Feb 2, 04:53 UTC · Feb 2, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
New Report Uncovers 3 Distinct Clusters of China-Nexus Attacks on Southeast Asian GovernmentThe Hacker News·Sep 25, 10:12 UTC · Sep 25, 2023Vulnerability55
Lazarus Group exploited ManageEngine vulnerability to target critical infrastructureHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2023Vulnerability in the wildCVE-2022-4796660
Uncovering weaknesses in Apple macOS and VMWare vCenter: 12 vulnerabilities in RPC implementationCisco Talos·Jul 13, 16:00 UTC · Jul 13, 2023Vulnerability55
Chinese hackers linked to months-long attack on Taiwanese financial sectorThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Vulnerability30
Kaspersky's analysis of servers compromised by Energetic Bear shows the APT operates on behalf of othersSecurity Affairs·Apr 15, 08:53 UTC · Apr 15, 2020Vulnerability55