Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
Crimeware: A new round of confrontation begins…Kaspersky Securelist·Apr 29, 14:13 UTC · Apr 29, 2010Vulnerability in the wild57
H1 2025 Malware and Vulnerability TrendsRecorded Future·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wild60
New malicious web shell from the Tropic Trooper group is found in the Middle EastKaspersky Securelist·Sep 5, 08:02 UTC · Sep 5, 2024Vulnerability in the wildCVE-2021-34473CVE-2021-34523CVE-2021-31207+1 CVEs60
At Mythos Speed: A Defender's Playbook for the AI Vulnerability Surge in 2026Recorded Future·May 21, 00:00 UTC · May 21, 2026Vulnerability in the wildCVE-2025-5518260
The Future of Serverless Security in 2025: From Logs to Runtime ProtectionThe Hacker News·Nov 28, 11:30 UTC · Nov 28, 2024Vulnerability in the wild60
Researchers Uncover New Exploit for PaperCut Vulnerability That Can Bypass DetectionThe Hacker News·May 5, 07:04 UTC · May 5, 2023Vulnerability in the wildCVE-2023-27350160
Log4j Vulnerability AftermathSecurity Affairs·Dec 21, 08:04 UTC · Dec 21, 2021Vulnerability in the wildCVE-2021-44228160
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
Google Project Zero Detects a Record Number of ZeroThe Hacker News·Apr 21, 02:34 UTC · Apr 21, 2022Vulnerability in the wild57
What is cybersecurity mesh architecture (CSMA)?Help Net Security·May 11, 05:15 UTC · May 11, 2024Vulnerability in the wild57
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
Hackers deploy DripDropper via Apache ActiveMQ flaw, patch systems to evade detectionSecurity Affairs·Aug 21, 16:30 UTC · Aug 21, 2025Vulnerability in the wildCVE-2023-4660460
Realtek SDK vulnerability exploitation attempts detected (CVE-2021-35395)Help Net Security·Dec 12, 13:09 UTC · Dec 12, 2023Vulnerability in the wildCVE-2021-35395CVE-2021-35392CVE-2021-35393+1 CVEs60
Detecting and Preventing Critical ZeroLogon Windows Server VulnerabilityThe Hacker News·Sep 23, 18:09 UTC · Sep 23, 2020Vulnerability in the wildCVE-2020-147260
As iOS vulnerabilities emerge, a new app promises to detect hacked iPhonesCyberScoop·Nov 14, 17:49 UTC · Nov 14, 2019Vulnerability in the wild60
Why patch directives only go so farCyberScoop·Jun 25, 09:00 UTC · Jun 25, 2026Vulnerability in the wildCVE-2026-5075160
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
From LFI to RCE: Active Exploitation Detected in Gladinet and TrioFox VulnerabilityThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability in the wildCVE-2025-11371CVE-2025-3040660
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs160
Five Eyes Warn of Ivanti Vulnerabilities ExploitationInfosecurity Magazine·Mar 1, 12:00 UTC · Mar 1, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-2189360
What the continued escalation of tensions in the Middle East means for securityCisco Talos·Jan 8, 22:32 UTC · Jan 8, 2020Vulnerability in the wildCVE-2018-2025060
Cisco Talos Honeypot Analysis Reveals Rise in Attacks on Elasticsearch ClustersCisco Talos·Feb 26, 18:56 UTC · Feb 26, 2019Vulnerability in the wildCVE-2014-3120CVE-2015-1427CVE-2018-7600+2 CVEs160
Kaspersky Lab report: Evaluating the threat level of software vulnerabilitiesKaspersky Securelist·Feb 1, 14:30 UTC · Feb 1, 2013Vulnerability in the wild160
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Fortinet Patches CVE-2026-24858 After Active FortiOS SSO Exploitation DetectedThe Hacker News·Jan 29, 06:05 UTC · Jan 29, 2026Vulnerability in the wildCVE-2026-2485860
Patch it up: Old vulnerabilities are everyone’s problemsCisco Talos·Mar 13, 18:04 UTC · Mar 13, 2025Vulnerability in the wildCVE-2025-22224CVE-2024-457760
Patch Alert: Critical Apache Struts Flaw Found, Exploitation Attempts DetectedThe Hacker News·Dec 21, 08:59 UTC · Dec 21, 2024Vulnerability in the wildCVE-2024-53677CVE-2023-5016460
November Patch Tuesday release contains three critical remote code execution vulnerabilitiesCisco Talos·Nov 12, 23:11 UTC · Nov 12, 2024Vulnerability in the wildCVE-2024-43639CVE-2024-43625CVE-2024-43602+10 CVEs160
Quick look at CVE-2021-1675 & CVE-2021Kaspersky Securelist·Jul 8, 04:53 UTC · Jul 8, 2021Vulnerability in the wildCVE-2021-1675CVE-2021-3452760
Threat Source newsletter for Oct. 1, 2020Cisco Talos·Oct 1, 18:00 UTC · Oct 1, 2020Vulnerability in the wildCVE-2020-1472CVE-2020-3421CVE-2020-348060
US CISA warns of attacks exploiting CVE-2020-5902 flaw in F5 BIGSecurity Affairs·Jul 25, 11:35 UTC · Jul 25, 2020Vulnerability in the wildCVE-2020-590260
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
Digital skimmer hits global supermarket chainSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Vulnerability in the wild57
Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
Patch, track, repeat: The 2025 CVE retrospectiveCisco Talos·Mar 5, 19:00 UTC · Mar 5, 2026Vulnerability in the wildCVE-2026-2138560