Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationThe Hacker News·May 15, 00:00 UTC · May 15, 2026Vulnerability42
China-Linked TA416 Targets European Governments with PlugX and OAuthThe Hacker News·Apr 3, 17:34 UTC · Apr 3, 2026VulnerabilityCVE-2025-31324CVE-2025-099460
Cycldek: Bridging the (air) gapKaspersky Securelist·Jun 3, 10:00 UTC · Jun 3, 2020VulnerabilityCVE-2012-0158CVE-2017-11882CVE-2018-0802135
GhostEmperor: From ProxyLogon to kernel modeKaspersky Securelist·Sep 30, 10:00 UTC · Sep 30, 2021Vulnerability42
New Cyberattack Targets Chinese-Speaking Businesses with Cobalt Strike PayloadsThe Hacker News·Aug 30, 06:17 UTC · Aug 30, 2024Vulnerability55
3CX compromise: More details about the breach, new PWA app releasedHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2023VulnerabilityCVE-2013-3900CVE-2021-45491147
Chinese-Linked Hackers Exploit Windows Flaw to Spy on EU DiplomatsInfosecurity Magazine·Oct 31, 12:10 UTC · Oct 31, 2025Vulnerability55
OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt AttackThe Hacker News·Jun 11, 09:45 UTC · Jun 11, 2026Vulnerability142
Chinese gov’t hackers using ‘diverse’ toolset to target Asian prime ministers, telecomsThe Record·Jan 10, 00:00 UTC · Jan 10, 2023VulnerabilityCVE-2020-147260
North Korean Hackers Uncovered as Mastermind in 3CX Supply Chain AttackThe Hacker News·Apr 17, 06:22 UTC · Apr 17, 2023VulnerabilityCVE-2023-2905947
PlugX Uses Legitimate Samsung Application for DLL SidePalo Alto Unit 42·Nov 1, 09:43 UTC · Nov 1, 2018VulnerabilityCVE-2012-015835
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-34621160
Unpatched Windows vulnerability continues to be exploited by APTs (CVE-2025-9491)Help Net Security·Dec 5, 09:00 UTC · Dec 5, 2025VulnerabilityCVE-2025-949160
ToddyCat: Keep calm and check logsKaspersky Securelist·Oct 12, 10:41 UTC · Oct 12, 2023Vulnerability42
⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160
⚡ Weekly Recap: Apple 0-Days, WinRAR Exploit, LastPass Fines, .NET RCE, OAuth Scams & MoreThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-14174CVE-2025-43529CVE-2025-6218+43 CVEs60
Researchers Warn of Chinese-Aligned Hackers Targeting South China Sea CountriesThe Hacker News·May 22, 16:44 UTC · May 22, 2024Vulnerability55
ShadowPad Malware Actively Exploits WSUS Vulnerability for Full System AccessThe Hacker News·Nov 30, 09:05 UTC · Nov 30, 2025VulnerabilityCVE-2025-59287160
Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli OrganizationsThe Hacker News·Jul 6, 18:34 UTC · Jul 6, 2026VulnerabilityCVE-2025-52691CVE-2025-68613CVE-2025-9316+2 CVEs47
3CX Supply Chain Attack — Here's What We Know So FarThe Hacker News·Apr 21, 08:05 UTC · Apr 21, 2023VulnerabilityCVE-2023-2905947
ThreatsDay Bulletin: Pixel Zero-Click, Redis RCE, China C2s, RAT Ads, Crypto Scams & 15+ StoriesThe Hacker News·Jan 24, 08:04 UTC · Jan 24, 2026Vulnerability55
Kaspersky report on APT trends in Q3 2024Kaspersky Securelist·Nov 28, 10:00 UTC · Nov 28, 2024Vulnerability42
SolarWinds Web Help Desk Exploited for RCE in MultiThe Hacker News·Mar 7, 07:03 UTC · Mar 7, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40536CVE-2025-26399+1 CVEs60
Chinese Hackers Use HTML Smuggling to Infiltrate European Ministries with PlugXThe Hacker News·Jul 4, 06:06 UTC · Jul 4, 2023Vulnerability42
China-linked Amaranth-Dragon hackers target Southeast Asian governments in 2025Security Affairs·Feb 5, 10:09 UTC · Feb 5, 2026VulnerabilityCVE-2025-808847
SmugX: Chinese APT uses HTML smuggling to target European Ministries and embassiesSecurity Affairs·Jul 3, 18:25 UTC · Jul 3, 2023Vulnerability42
China-Linked Hackers Exploit Windows Shortcut Flaw to Target European DiplomatsThe Hacker News·Nov 8, 05:26 UTC · Nov 8, 2025VulnerabilityCVE-2025-949135
UAC-0247 Targets Ukrainian Clinics and Government in DataThe Hacker News·Jun 27, 16:30 UTC · Jun 27, 2026Vulnerability30
China-Linked FishMonger Ports SprySOCKS to Windows With Kernel-Level Stealth and UEFI Bootkit HintsSecurity Affairs·Jun 17, 08:10 UTC · Jun 17, 2026VulnerabilityCVE-2023-2493247
China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsThe Hacker News·May 2, 06:30 UTC · May 2, 2026VulnerabilityCVE-2025-5518260
Attackers exploit FortiGate devices to access sensitive network infoSecurity Affairs·Mar 10, 19:02 UTC · Mar 10, 2026VulnerabilityCVE-2025-59718CVE-2025-59719CVE-2026-2485835
Web Server Exploits and Mimikatz Used in Attacks Targeting Asian Critical InfrastructureThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Vulnerability55
Notepad++ secures update channel in wake of supply chain compromiseHelp Net Security·Mar 6, 08:30 UTC · Mar 6, 2026Vulnerability42
Notepad++ patches flaw used to hijack update systemSecurity Affairs·Feb 18, 19:28 UTC · Feb 18, 2026VulnerabilityCVE-2026-25926160
Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July PatchThe Hacker News·Oct 22, 12:56 UTC · Oct 22, 2025VulnerabilityCVE-2025-53770CVE-2025-49704CVE-2025-49706+1 CVEs60
Chinese Threat Group 'Jewelbug' Quietly Infiltrated Russian IT Network for MonthsThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability242
China-Nexus TAG-112 Compromises Tibetan Websites to Distribute Cobalt StrikeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability42