Critical Patch Out for Critical Pulse Secure VPN 0The Hacker News·May 4, 08:21 UTC · May 4, 2021Vulnerability in the wildCVE-2021-2289360
CISA Warns Patched Pulse Secure VPNs Could Still Expose Organizations to HackersThe Hacker News·Apr 17, 11:20 UTC · Apr 17, 2020VulnerabilityCVE-2019-1151047
WARNING: Hackers Exploit Unpatched Pulse Secure 0The Hacker News·Apr 21, 17:42 UTC · Apr 21, 2021Vulnerability in the wildCVE-2021-22893CVE-2019-11510CVE-2020-8260+1 CVEs60
Ivanti fixes high severity flaw in Pulse Connect Secure VPNSecurity Affairs·May 25, 21:00 UTC · May 25, 2021VulnerabilityCVE-2021-22908160
New High-Severity Vulnerability Reported in Pulse Connect Secure VPNThe Hacker News·May 25, 07:37 UTC · May 25, 2021Vulnerability in the wildCVE-2021-22908CVE-2021-22893CVE-2021-22894+2 CVEs160
Ivanti fixed a critical code execution issue in Pulse Connect Secure VPNSecurity Affairs·Aug 6, 16:26 UTC · Aug 6, 2021VulnerabilityCVE-2021-22937CVE-2020-8260CVE-2020-22900+1 CVEs60
Critical infrastructure implications of the Pulse Secure multi-factor authentication bypassHelp Net Security·Apr 22, 00:00 UTC · Apr 22, 2021Vulnerability55
Multiple APT groups are exploiting VPN vulnerabilities, NSA warnsSecurity Affairs·Oct 9, 20:37 UTC · Oct 9, 2019VulnerabilityCVE-2019-11510CVE-2019-11539CVE-2018-13379+3 CVEs60
UK NCSC agency warns of APTs exploiting Enterprise VPN vulnerabilitiesSecurity Affairs·Oct 6, 10:17 UTC · Oct 6, 2019VulnerabilityCVE-2019-11510CVE-2019-11539CVE-2018-13379+3 CVEs60
CISA: Chinese Hackers Exploiting Unpatched Devices to Target U.S. AgenciesThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2020VulnerabilityCVE-2020-5902CVE-2019-19781CVE-2019-11510+1 CVEs47
Ivanti Adds VPN and MDM Technolgies in Double AcquisitionInfosecurity Magazine·Sep 28, 14:00 UTC · Sep 28, 2020VulnerabilityCVE-2019-1151060
US CISA report shares details on web shells used by Iranian hackersSecurity Affairs·Sep 16, 12:42 UTC · Sep 16, 2020Vulnerability42
CISA Issues Chinese Hacking Groups WarningInfosecurity Magazine·Sep 15, 17:37 UTC · Sep 15, 2020Vulnerability55
Have you patched these top 10 routinely exploited vulnerabilities?Help Net Security·May 13, 00:00 UTC · May 13, 2020VulnerabilityCVE-2017-11882CVE-2017-0199CVE-2017-5638+9 CVEs60
Patch bypass flaw in Pulse Secure VPNs can lead to total compromise (CVE-2021-22937)Help Net Security·Aug 6, 00:00 UTC · Aug 6, 2021Vulnerability in the wildCVE-2021-22937CVE-2020-826060
US Issues Russian SVR WarningInfosecurity Magazine·Apr 16, 17:57 UTC · Apr 16, 2021VulnerabilityCVE-2018-13379CVE-2019-9670CVE-2019-11510+2 CVEs47
Sophos fixed a critical vulnerability in Cyberoam firewallsSecurity Affairs·Oct 11, 06:14 UTC · Oct 11, 2019VulnerabilityCVE-2019-1705960
Major Retailer at Risk of Attack Due to VPN VulnerabilitiesInfosecurity Magazine·Aug 7, 15:00 UTC · Aug 7, 2020Vulnerability55
US, UK, Australia issue joint advisory on today's top exploited vulnerabilitiesThe Record·Dec 12, 00:00 UTC · Dec 12, 2022VulnerabilityCVE-2019-19781CVE-2019-11510CVE-2018-13379+26 CVEs147
Pulse Secure Patches Critical ZeroInfosecurity Magazine·May 4, 11:38 UTC · May 4, 2021VulnerabilityCVE-2021-2289360
Old vulnerabilities are still a big problemHelp Net Security·Sep 6, 00:00 UTC · Sep 6, 2023VulnerabilityCVE-2017-11882CVE-2018-0802CVE-2017-0199+20 CVEs147
Week in review: Clever Office 365 phishing, 2021 CWE Top 25, Patch Tuesday forecastHelp Net Security·Aug 8, 00:00 UTC · Aug 8, 2021VulnerabilityCVE-2021-22937CVE-2020-8260CVE-2021-3452760
Cyber Command’s bug bounty program uncovers more than 30 vulnerabilitiesCyberScoop·Oct 15, 02:13 UTC · Oct 15, 2019Vulnerability in the wild60
FBI and CISA are warning of APT actors targeting Fortinet FortiOS serversSecurity Affairs·Apr 2, 21:19 UTC · Apr 2, 2021VulnerabilityCVE-2018-13379CVE-2020-12812CVE-2019-5591+1 CVEs60
US says APTs are using Fortinet bugs to gain initial access for future attacksThe Record·Jan 26, 00:00 UTC · Jan 26, 2023VulnerabilityCVE-2020-12812CVE-2019-559160
North Korea Exploited VPN Flaw to Hack South's Nuclear Research InstituteThe Hacker News·Jun 21, 06:35 UTC · Jun 21, 2021Vulnerability42
US Federal Agency Compromised by CyberInfosecurity Magazine·Sep 25, 19:54 UTC · Sep 25, 2020VulnerabilityCVE-2019-1151060
Pulse Secure VPNs Get New Urgent Update for Poorly Patched Critical FlawThe Hacker News·Aug 10, 07:48 UTC · Aug 10, 2021Vulnerability in the wildCVE-2020-8260CVE-2021-22937CVE-2021-229360
At least 4,460 vulnerable Pulse Connect Secure hosts are exposed to the InternetSecurity Affairs·Dec 10, 16:30 UTC · Dec 10, 2022VulnerabilityCVE-2021-22937CVE-2021-22933CVE-2021-22934+4 CVEs60
Shimo VPN service contains six unpatched vulnerabilities, Talos discoversCyberScoop·Apr 15, 16:21 UTC · Apr 15, 2019Vulnerability in the wildCVE-2018-4004CVE-2018-400760
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518)Help Net Security·Apr 24, 13:36 UTC · Apr 24, 2023Vulnerability in the wildCVE-2022-2751860
Enterprise VPN apps store authentication and session cookies insecurelyHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2019VulnerabilityCVE-2019-157335
Microsoft seizes domains used by Chinese cyberThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability in the wild57
Attackers Chaining Zerologon with VPN ExploitsInfosecurity Magazine·Oct 12, 12:02 UTC · Oct 12, 2020VulnerabilityCVE-2018-13379CVE-2020-15505CVE-2020-1472+4 CVEs60
Ivanti VPN customers targeted via unrecognized RCE vulnerability (CVE-2025-22457)Help Net Security·Apr 11, 10:14 UTC · Apr 11, 2025Vulnerability in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+2 CVEs60
Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecastHelp Net Security·Apr 6, 00:00 UTC · Apr 6, 2025Vulnerability in the wildCVE-2025-22457CVE-2024-20439CVE-2025-2825+1 CVEs60
Ivanti Connect Secure zero-days exploited by attackers (CVE-2023-46805, CVE-2024-21887)Help Net Security·Jan 16, 16:05 UTC · Jan 16, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-2188760
US, UK, and Australian agencies warn of top routinely exploited issuesSecurity Affairs·Jul 28, 20:29 UTC · Jul 28, 2021VulnerabilityCVE-2021-26855CVE-2021-26857CVE-2021-26858+13 CVEs135
U.S. Cybersecurity Agency Lists 2021's Top 15 Most Exploited Software VulnerabilitiesThe Hacker News·May 9, 02:55 UTC · May 9, 2022VulnerabilityCVE-2020-0688CVE-2019-11510CVE-2018-1337947
CISA published 2021 Top 15 most exploited software vulnerabilitiesSecurity Affairs·Apr 28, 13:49 UTC · Apr 28, 2022VulnerabilityCVE-2021-21972CVE-2021-26084CVE-2021-40539+2 CVEs35