Taking over Milesight UR32L routers behind a VPN: 22 vulnerabilities and a full chainCisco Talos·Jul 6, 15:38 UTC · Jul 6, 2023VulnerabilityCVE-2023-22319CVE-2023-2390247
DragonOK Updates Toolset and Targets Multiple Geographic RegionsPalo Alto Unit 42·Nov 1, 10:42 UTC · Nov 1, 2018VulnerabilityCVE-2015-164147
New activity of the Blue Termite APTKaspersky Securelist·Aug 20, 10:55 UTC · Aug 20, 2015VulnerabilityCVE-2015-511947
Analysis of CVE-2018-8174 VBScript 0day and APT actor related to Office targeted attackSecurity Affairs·May 10, 05:31 UTC · May 10, 2018VulnerabilityCVE-2018-8174CVE-2017-019947
‘DealersChoice’ is Sofacy’s Flash Player Exploit PlatformPalo Alto Unit 42·Nov 1, 10:25 UTC · Nov 1, 2018Vulnerability42
A Cross-platform JavaKaspersky Securelist·Jan 28, 20:18 UTC · Jan 28, 2014VulnerabilityCVE-2013-2465147
PurpleBravo’s Targeting of the IT Software Supply ChainRecorded Future·Jul 22, 00:00 UTC · Jul 22, 2026Vulnerability42
Mysterious Elephant APT: TTPs and toolsKaspersky Securelist·Oct 15, 10:00 UTC · Oct 15, 2025VulnerabilityCVE-2017-1188247
Quantum risk is real now: How to navigate the evolving data harvesting threatHelp Net Security·Oct 13, 00:00 UTC · Oct 13, 2023Vulnerability42
ToddyCat: Unveiling an unknown APT actor attacking highKaspersky Securelist·Jun 21, 10:00 UTC · Jun 21, 2022Vulnerability42
CVE-2013-3906 : Another 0Kaspersky Securelist·Nov 11, 18:14 UTC · Nov 11, 2013VulnerabilityCVE-2013-390647
A new version of Triada spreads embedded in the firmware of Android devicesKaspersky Securelist·Apr 25, 10:00 UTC · Apr 25, 2025Vulnerability42
The BlueNoroff cryptocurrency hunt is still onKaspersky Securelist·Jan 13, 09:00 UTC · Jan 13, 2022VulnerabilityCVE-2017-019947
APT group ToddyCat exploits a vulnerability in ESET for DLL proxyingKaspersky Securelist·Apr 7, 10:01 UTC · Apr 7, 2025VulnerabilityCVE-2024-11859CVE-2021-3627647
Darktrace ActiveAI Security Platform helps organizations shift focus to proactive cyber resilienceHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2024Vulnerability42
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
Vulnerability Spotlight: How an attacker could chain several vulnerabilities in an industrial wireless router to gain root accessCisco Talos·May 12, 12:00 UTC · May 12, 2022Vulnerability in the wild57
GhostEmperor: From ProxyLogon to kernel modeKaspersky Securelist·Sep 30, 10:00 UTC · Sep 30, 2021Vulnerability42
Chinese cyberspies used a new PlugX variant, dubbed THOR, in attacks against MS Exchange ServersSecurity Affairs·Jul 28, 16:18 UTC · Jul 28, 2021Vulnerability42
New KRACK Attack Against Wi-Fi EncryptionSchneier on Security·Aug 20, 12:45 UTC · Aug 20, 2020Vulnerability42
Cloud Atlas: RedOctober APT is back in styleKaspersky Securelist·Dec 10, 10:03 UTC · Dec 10, 2014VulnerabilityCVE-2012-015847
Red OctoberKaspersky Securelist·Jan 16, 15:51 UTC · Jan 16, 2013VulnerabilityCVE-2009-3129CVE-2010-3333CVE-2012-0158+1 CVEs47
Palo Alto Warns of Exploitation of VPN Bypass Exploits (CVE-2026-0257) in PANSecurity Affairs·Jun 15, 11:11 UTC · Jun 15, 2026Vulnerability in the wildCVE-2026-025760
CVE-2026-0257: Rapid7 Caught Attackers Abusing Forged VPN Cookies Against Multiple CustomersSecurity Affairs·May 31, 17:53 UTC · May 31, 2026Vulnerability in the wildCVE-2026-025760
ToddyCat’s New Hacking Tools Steal Outlook Emails and Microsoft 365 Access TokensThe Hacker News·Nov 25, 16:23 UTC · Nov 25, 2025VulnerabilityCVE-2024-11859147
Microsoft Revamps Controversial AI-Powered Recall Feature Amid Privacy ConcernsThe Hacker News·Jun 8, 06:54 UTC · Jun 8, 2024Vulnerability42
LilacSquid APT targeted orgs in the U.S., Europe, and AsiaSecurity Affairs·May 31, 11:19 UTC · May 31, 2024Vulnerability42
QNAP Working on Patches for OpenSSL Flaws Affecting its NAS DevicesThe Hacker News·Sep 2, 11:56 UTC · Sep 2, 2021VulnerabilityCVE-2021-3711CVE-2021-371247
Kr00k Wi-Fi Encryption flaw affects more than a Billion devicesSecurity Affairs·Feb 26, 20:07 UTC · Feb 26, 2020VulnerabilityCVE-2019-1512647
New Wi-Fi Encryption Vulnerability Affects Over A Billion DevicesThe Hacker News·Feb 26, 18:15 UTC · Feb 26, 2020VulnerabilityCVE-2019-1512647
Operation ShadowHammer: A High Profile Supply Chain AttackKaspersky Securelist·Apr 23, 10:00 UTC · Apr 23, 2019Vulnerability42
Week in review: Highest paying IT certifications, emergency iOS patch, and how attackers exploit whitelistsHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2017Vulnerability42
Cybercriminals targeting obsolete Japanese blogging toolKaspersky Securelist·Jun 12, 17:40 UTC · Jun 12, 2014Vulnerability42
A Gift for Dalai Lama’s BirthdayKaspersky Securelist·Jul 4, 16:49 UTC · Jul 4, 2012VulnerabilityCVE-2012-015847
China-Linked Webworm APT Evolves Tactics, Expands to European TargetsInfosecurity Magazine·May 20, 11:30 UTC · May 20, 2026Vulnerability42
n8n Supply Chain Attack Abuses Community Nodes to Steal OAuth TokensThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Vulnerability42