RCE flaw in Cisco enterprise communications products probed by attackers (CVE-2026-20045)Help Net Security·Jan 21, 00:00 UTC · Jan 21, 2026Vulnerability in the wildCVE-2026-2004560
TETRA:BURST — 5 New Vulnerabilities Exposed in Widely Used Radio Communication SystemThe Hacker News·Jul 27, 06:34 UTC · Jul 27, 2023Vulnerability in the wildCVE-2022-24400CVE-2022-24401CVE-2022-24402+2 CVEs60
Cisco Unified CM flaw actively exploited to drop webshells (CVE-2026-20230)Help Net Security·Jun 26, 09:26 UTC · Jun 26, 2026Vulnerability in the wildCVE-2026-20230CVE-2026-2004560
Unnamed APT eyes vulnerabilities in Rockwell Automation industrial contollers (CVE-2023-3595 CVE-2023-3596)Help Net Security·Jan 9, 12:23 UTC · Jan 9, 2024Vulnerability in the wildCVE-2023-3595CVE-2023-359660
Addressing the vulnerability prioritization challengeRecorded Future·Nov 26, 00:00 UTC · Nov 26, 2025Vulnerability in the wild60
Vulnerability Spotlight: WiFi-connected security camera could be manipulated to spy on communications, among other malicious actionsCisco Talos·Jan 26, 21:09 UTC · Jan 26, 2022Vulnerability in the wildCVE-2021-44354CVE-2021-44419CVE-2021-40405+14 CVEs60
Oracle Releases January 2025 Patch to Address 318 Flaws Across Major ProductsThe Hacker News·Jan 22, 13:39 UTC · Jan 22, 2025Vulnerability in the wildCVE-2025-21556CVE-2024-21287CVE-2025-21524+10 CVEs60
How to Get Going with CTEM When You Don't Know Where to StartThe Hacker News·Nov 6, 12:32 UTC · Nov 6, 2024Vulnerability in the wild60
Vulnerability Spotlight: How misusing properly serialized data opened TCL LinkHub Mesh WiCisco Talos·Aug 1, 16:18 UTC · Aug 1, 2022Vulnerability in the wild57
How do I select an API security solution for my business?Help Net Security·Feb 17, 00:00 UTC · Feb 17, 2022Vulnerability in the wild60
Vulnerability Spotlight: Denial-of-service vulnerabilities in AllenCisco Talos·Oct 13, 13:10 UTC · Oct 13, 2020Vulnerability in the wildCVE-2020-6088CVE-2020-6084CVE-2020-6085+2 CVEs60
Using a WordPress flaw to leverage zerologon vulnerability and attack companies’ Domain ControllersSecurity Affairs·Oct 7, 06:03 UTC · Oct 7, 2020Vulnerability in the wildCVE-2020-25213CVE-2020-147260
How NIST fumbled management of the National Vulnerability DatabaseHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2026Vulnerability in the wild60
January 2026 CVE Landscape: 23 Critical Vulnerabilities Mark 5% Increase, APT28 Exploits Microsoft Office ZeroRecorded Future·Feb 24, 00:00 UTC · Feb 24, 2026Vulnerability in the wildCVE-2026-21509CVE-2026-23760CVE-2026-1281+1 CVEs160
iframe Security Exposed: The Blind Spot Fueling Payment Skimmer AttacksThe Hacker News·Sep 24, 11:03 UTC · Sep 24, 2025Vulnerability in the wild60
Alarm raised over 'high-severity' vulnerabilities in Matrix messaging protocolThe Record·Aug 13, 12:03 UTC · Aug 13, 2025Vulnerability in the wildCVE-2025-49090CVE-2025-5431560
Critical Cisco Vulnerability in Unified CM Grants Root Access via Static CredentialsThe Hacker News·Jul 3, 08:59 UTC · Jul 3, 2025Vulnerability in the wildCVE-2025-20309CVE-2025-20281CVE-2025-2028260
Multiple vulnerabilities found in ICONICS industrial SCADA softwareCyberScoop·Mar 10, 20:13 UTC · Mar 10, 2025Vulnerability in the wildCVE-2024-7587CVE-2024-118260
Week in review: Attackers use phishing emails to steal NTLM hashes, Patch Tuesday forecastHelp Net Security·Mar 10, 00:00 UTC · Mar 10, 2024Vulnerability in the wildCVE-2024-20337CVE-2024-23225CVE-2024-23296+6 CVEs60
CISA adds Owl Labs, Samsung, Realtek bugs to exploited vulnerability listThe Record·Sep 21, 13:46 UTC · Sep 21, 2023Vulnerability in the wildCVE-2022-31459CVE-2022-31461CVE-2022-31462+2 CVEs60
Hackers Exploiting Redis Vulnerability to Deploy New Redigo Malware on ServersThe Hacker News·Dec 2, 12:45 UTC · Dec 2, 2022Vulnerability in the wildCVE-2022-054360
Adobe Releases Security Patch Updates for 11 VulnerabilitiesThe Hacker News·Oct 9, 17:43 UTC · Oct 9, 2018Vulnerability in the wild60
'Eavesdropper' vulnerability strikes hundreds of mobile apps using TwilioCyberScoop·Nov 9, 15:17 UTC · Nov 9, 2017Vulnerability in the wild60
It finally happened: Criminals exploit SS7 vulnerabilities, prompting concerns about 2FACyberScoop·May 8, 18:32 UTC · May 8, 2017Vulnerability in the wild60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
Microsoft Issues Patches for SharePoint ZeroThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2023-20585CVE-2026-21637CVE-2026-25250+4 CVEs160
AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable Data Exfiltration and RCEThe Hacker News·Mar 17, 16:39 UTC · Mar 17, 2026Vulnerability in the wildCVE-2026-25750CVE-2026-3059CVE-2026-3060+1 CVEs60
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
Over 1,200 IceWarp servers still vulnerable to unauthenticated RCE flaw (CVE-2025-14500)Help Net Security·Mar 4, 00:00 UTC · Mar 4, 2026Vulnerability in the wildCVE-2025-14500160
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
A Crisis of Context: The State of Vulnerability Management (Part 1)Recorded Future·Jan 26, 00:00 UTC · Jan 26, 2026Vulnerability in the wild60
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More StoriesThe Hacker News·Jan 8, 16:52 UTC · Jan 8, 2026Vulnerability in the wildCVE-2024-36401CVE-2007-0671CVE-2002-036760
Integrating Threat Intelligence and Vulnerability Management: A Modern ApproachRecorded Future·Dec 17, 00:00 UTC · Dec 17, 2025Vulnerability in the wild60
Now-Patched Fortinet FortiWeb Flaw Exploited in Attacks to Create Admin AccountsThe Hacker News·Nov 17, 14:23 UTC · Nov 17, 2025Vulnerability in the wildCVE-2025-6444660
CISA and NSA Issue Urgent Guidance to Secure WSUS and Microsoft Exchange ServersThe Hacker News·Nov 1, 13:31 UTC · Nov 1, 2025Vulnerability in the wildCVE-2025-59287260
Hackers deploy DripDropper via Apache ActiveMQ flaw, patch systems to evade detectionSecurity Affairs·Aug 21, 16:30 UTC · Aug 21, 2025Vulnerability in the wildCVE-2023-4660460
Attacker “Patches” Vulnerability Post Exploitation to Lock Out CompetiInfosecurity Magazine·Aug 19, 14:00 UTC · Aug 19, 2025Vulnerability in the wildCVE-2023-4660460
Microsoft Patch Tuesday for August 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Aug 12, 19:39 UTC · Aug 12, 2025Vulnerability in the wildCVE-2025-50176CVE-2025-50177CVE-2025-53778+10 CVEs60
Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited ChromeHelp Net Security·Jul 6, 00:00 UTC · Jul 6, 2025Vulnerability in the wildCVE-2025-32462CVE-2025-32463CVE-2025-6554+4 CVEs60
Wide-ranging Apple security update addresses over 30 vulnerabilitiesCyberScoop·May 13, 15:15 UTC · May 13, 2025Vulnerability in the wildCVE-2025-3121460