ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flawCyberScoop·Jun 12, 16:12 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-3527360
Oracle issued an emergency security update to fix new E-Business Suite flaw CVE-2025Security Affairs·Oct 14, 07:31 UTC · Oct 14, 2025VulnerabilityCVE-2025-61884CVE-2025-6188260
Hackers Target Unpatched Flaws in Oracle EInfosecurity Magazine·Oct 3, 12:00 UTC · Oct 3, 2025VulnerabilityCVE-2025-30743CVE-2025-30744CVE-2025-50105+6 CVEs60
Vulnerability Exploits Triple as Initial Access Point for BreachesInfosecurity Magazine·May 1, 12:00 UTC · May 1, 2024Vulnerability in the wild60
⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and MoreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+36 CVEs60
Finland’s Most-Wanted Hacker Nabbed in FranceKrebs on Security·Feb 5, 21:04 UTC · Feb 5, 2023Vulnerability30
Verizon DBIR: Vulnerability exploitation is the dominant initial access vectorHelp Net Security·May 20, 00:00 UTC · May 20, 2026Vulnerability in the wild60
Week in review: Fortinet patches pre-auth RCE, Switzerland under cyberattackHelp Net Security·Jun 18, 00:00 UTC · Jun 18, 2023VulnerabilityCVE-2023-27997CVE-2023-34362CVE-2023-20887+2 CVEs60
Oracle PeopleSoft RCE Flaw Used as ZeroSecurity Affairs·Jun 12, 10:49 UTC · Jun 12, 2026VulnerabilityCVE-2026-35273160
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
ThreatsDay Bulletin: AI Prompt RCE, Claude 0-Click, RenEngine Loader, Auto 0The Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026VulnerabilityCVE-2026-2084147
Another remotely exploitable Oracle EBS vulnerability requires your attention (CVE-2025-61884)Help Net Security·Oct 16, 17:00 UTC · Oct 16, 2025Vulnerability in the wildCVE-2025-61884CVE-2025-6188260
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260
UNC6148 Backdoors Fully-Patched SonicWall SMA 100 Series Devices with OVERSTEP RootkitThe Hacker News·Jul 26, 11:34 UTC · Jul 26, 2025VulnerabilityCVE-2021-20035CVE-2021-20038CVE-2021-20039+2 CVEs60
SonicWall customers hit by fresh, ongoing attacks targeting fully patched SMA 100 devicesCyberScoop·Jul 16, 17:52 UTC · Jul 16, 2025Vulnerability in the wildCVE-2021-20038CVE-2024-38475CVE-2021-20035+2 CVEs60
Man charged with stealing $65 million by exploting DeFI protocols vulnerabilitiesHelp Net Security·Feb 4, 00:00 UTC · Feb 4, 2025Vulnerability42
Microsoft calls out apparent ESXi vulnerability that some researchers say is a ‘nothing burger’CyberScoop·Jul 30, 17:13 UTC · Jul 30, 2024Vulnerability in the wildCVE-2024-3708560
It Costs How Much?!? The Financial Pitfalls of Cyberattacks on SMBsThe Hacker News·May 6, 11:00 UTC · May 6, 2024Vulnerability55
Hacking the Human Mind: Exploiting Vulnerabilities in the 'First Line of Cyber Defense'The Hacker News·Dec 7, 13:14 UTC · Dec 7, 2023Vulnerability30
Active exploitation of the MOVEit Transfer vulnerability — CVE-2023Cisco Talos·Jun 16, 18:17 UTC · Jun 16, 2023Vulnerability in the wildCVE-2023-34362CVE-2023-35036CVE-2023-3570860
Week in review: 9 free cybersecurity whitepapers, Patch Tuesday forecastHelp Net Security·Jun 11, 00:00 UTC · Jun 11, 2023VulnerabilityCVE-2023-307960
Ukraine war spotlights agriculture sector's vulnerability to cyber attackCisco Talos·Aug 18, 12:00 UTC · Aug 18, 2022Vulnerability55
#RSAC: Cyber-threat Landscape “the Worst It’s Ever Been” Due to NationInfosecurity Magazine·May 20, 19:47 UTC · May 20, 2021Vulnerability42
Poseidon Group: a Targeted Attack Boutique specializing in global cyberKaspersky Securelist·Feb 9, 10:27 UTC · Feb 9, 2016Vulnerability42
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More StoriesThe Hacker News·Aug 6, 15:24 UTC · Aug 6, 2026VulnerabilityCVE-2025-21079CVE-2025-58486147
JSP webshells being dropped on unpatched PTC Windchill instancesHelp Net Security·Jul 27, 12:30 UTC · Jul 27, 2026Vulnerability in the wildCVE-2026-12569CVE-2026-468160
Critical Veeam RCE flaw Lets LowSecurity Affairs·Jun 14, 11:48 UTC · Jun 14, 2026Vulnerability in the wildCVE-2026-44963CVE-2025-2312160
ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New StoriesThe Hacker News·Jun 12, 05:36 UTC · Jun 12, 2026Vulnerability142
Attackers actively exploiting flaw(s) in Cleo file transfer software (CVE-2024-50623)Help Net Security·Jun 8, 10:32 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5062360
Critical MOVEit Automation auth bypass vulnerability fixed (CVE-2026-4670)Help Net Security·Jun 8, 10:28 UTC · Jun 8, 2026VulnerabilityCVE-2026-4670CVE-2026-5174CVE-2023-3436260
Attackers hit vulnerabilities hard last year, making exploits the top entry point for breachesCyberScoop·May 19, 21:19 UTC · May 19, 2026Vulnerability in the wild60
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Educational company Instructure reports cyber incidentThe Record·May 5, 12:57 UTC · May 5, 2026Vulnerability30
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs60
Progress Software fixes sneaky WAF bypass vulnerability (CVE-2026-21876)Help Net Security·Apr 22, 00:00 UTC · Apr 22, 2026VulnerabilityCVE-2026-21876CVE-2026-3517CVE-2026-3518+2 CVEs60
April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-27681CVE-2026-34621CVE-2026-34619+7 CVEs60
Warning: fake Magento patch 9789 contains virusSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability55
Vulnerabilities grew like weeds in 2025, but only 1% were weaponized in attacksCyberScoop·Feb 25, 13:30 UTC · Feb 25, 2026Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49706+1 CVEs60
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060