Critical vulnerabilities in BIG-IP appliances leave big networks open to intrusionArs Technica · Security·May 8, 21:35 UTC · May 8, 2024Vulnerability in the wildCVE-2024-21793CVE-2024-2602660
Cisco fixed a critical command injection bug in IP Phone SeriesSecurity Affairs·Mar 2, 15:55 UTC · Mar 2, 2023Vulnerability in the wildCVE-2023-20078CVE-2023-2007960
Attackers are exploiting RCE vulnerability in BIG-IP APM systems (CVE-2025-53521)Help Net Security·Mar 30, 10:17 UTC · Mar 30, 2026Vulnerability in the wildCVE-2025-5352160
251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and ElasticsearchThe Hacker News·May 28, 09:23 UTC · May 28, 2025Vulnerability in the wildCVE-2018-15961CVE-2017-5638CVE-2022-26134+2 CVEs60
Attackers are attempting to exploit critical F5 BIG-IP RCEHelp Net Security·Feb 21, 17:27 UTC · Feb 21, 2023Vulnerability in the wildCVE-2022-138860
F5 Releases Critical Security Patch for BIG-IP and BIGThe Hacker News·Aug 27, 07:48 UTC · Aug 27, 2021Vulnerability in the wildCVE-2021-23031CVE-2021-23025CVE-2021-23026+10 CVEs60
Telegram Calling Feature Leaks Your IP Addresses—Patch ReleasedThe Hacker News·Oct 1, 12:06 UTC · Oct 1, 2018Vulnerability in the wildCVE-2018-17780CVE-2018-1761360
Attackers Exploit RCE Flaw as 14,000 F5 BIGSecurity Affairs·Apr 6, 13:08 UTC · Apr 6, 2026Vulnerability in the wildCVE-2025-5352160
Actor Exploits Microsoft Exchange Server Vulnerabilities, Cortex XDR Blocks Harvesting of CredentialsPalo Alto Unit 42·Jun 6, 13:23 UTC · Jun 6, 2024Vulnerability in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Threat Brief: CVE-2022Palo Alto Unit 42·Jun 5, 22:35 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-138860
Cisco Talos Honeypot Analysis Reveals Rise in Attacks on Elasticsearch ClustersCisco Talos·Feb 26, 18:56 UTC · Feb 26, 2019Vulnerability in the wildCVE-2014-3120CVE-2015-1427CVE-2018-7600+2 CVEs160
Critical BRIDGE:BREAK flaws impact Lantronix and Silex Technology convertersSecurity Affairs·Apr 22, 13:29 UTC · Apr 22, 2026Vulnerability in the wild60
F5 fixed a high-severity elevation of privilege vulnerability in BIGSecurity Affairs·Oct 20, 09:15 UTC · Oct 20, 2024Vulnerability in the wildCVE-2024-45844CVE-2024-4713960
F5 BIG-IP vulnerabilities leveraged by attackers: What to do?Help Net Security·Nov 2, 00:00 UTC · Nov 2, 2023Vulnerability in the wildCVE-2023-46747CVE-2023-4674860
Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerabilitiesCisco Talos·Oct 16, 15:05 UTC · Oct 16, 2023Vulnerability in the wildCVE-2023-20198CVE-2023-20273CVE-2021-1435160
Threat actors are attempting to exploit the CVE-2021-22986 flaw in F5 BIGSecurity Affairs·Mar 19, 21:47 UTC · Mar 19, 2021Vulnerability in the wildCVE-2021-22986CVE-2020-2818860
US CISA warns of attacks exploiting CVE-2020-5902 flaw in F5 BIGSecurity Affairs·Jul 25, 11:35 UTC · Jul 25, 2020Vulnerability in the wildCVE-2020-590260
Warning: Critical Tor Browser Vulnerability Leaks Users’ Real IP Address—Update NowThe Hacker News·Nov 4, 08:16 UTC · Nov 4, 2017Vulnerability in the wild60
Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
Critical Flaw in Cisco IP Phone Series Exposes Users to Command Injection AttackThe Hacker News·Mar 2, 04:17 UTC · Mar 2, 2023Vulnerability in the wildCVE-2023-20078CVE-2023-20079CVE-2023-22747+1 CVEs60
Tens of thousands of IPs vulnerable to Fortinet flaw dubbed 'must patch' by fedsCyberScoop·Oct 14, 16:22 UTC · Oct 14, 2024Vulnerability in the wild60
Week in review: MongoDB attacks, hackers hitting F5 BIG-IP, Citrix devices, Patch Tuesday forecastHelp Net Security·Jul 12, 00:00 UTC · Jul 12, 2020Vulnerability in the wildCVE-2020-590260
Attackers are bypassing F5 BIG-IP RCE mitigation - you might want to patch after allHelp Net Security·Jul 8, 00:00 UTC · Jul 8, 2020Vulnerability in the wildCVE-2020-590260
Vulnerability Spotlight: Foscam IP Video Camera Firmware Recovery Unsigned Image VulnerabilityCisco Talos·Apr 17, 14:59 UTC · Apr 17, 2018Vulnerability in the wildCVE-2017-287160
Critical React2Shell Vulnerability Under Active Exploitation by Chinese Threat ActorsRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Vulnerability in the wildCVE-2025-5518260
Attackers target Zyxel RCE vulnerability CVE-2023Security Affairs·Jun 17, 10:34 UTC · Jun 17, 2025Vulnerability in the wildCVE-2023-2877160
Over 400 IPs Exploiting Multiple SSRF Vulnerabilities in Coordinated Cyber AttackThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Vulnerability in the wildCVE-2017-0929CVE-2020-7796CVE-2021-21973+7 CVEs160
PAN-OS Firewall Vulnerability Under Active ExploitationThe Hacker News·Nov 21, 03:53 UTC · Nov 21, 2024Vulnerability in the wildCVE-2024-5910CVE-2024-9463CVE-2024-9465+2 CVEs60
Week in review: F5 BIG-IP RCE exploitation, URL spoofing flaws in Zoom, Google DocsHelp Net Security·May 15, 00:00 UTC · May 15, 2022Vulnerability in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+2 CVEs60
92% of worldwide Microsoft Exchange IPs are now patched or mitigatedSecurity Affairs·Mar 24, 07:57 UTC · Mar 24, 2021Vulnerability in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Edge systems take the brunt of internet-wide exploitation attemptsHelp Net Security·Feb 25, 00:00 UTC · Feb 25, 2026Vulnerability in the wildCVE-2020-2034CVE-2025-5518260
Over 20,000 Zyxel Firewalls Still Exposed to Critical BugInfosecurity Magazine·May 16, 09:30 UTC · May 16, 2022Vulnerability in the wildCVE-2022-3052560
Researchers Develop RCE Exploit for the Latest F5 BIGThe Hacker News·May 10, 05:05 UTC · May 10, 2022Vulnerability in the wildCVE-2022-138860
1.6 Million WordPress Sites Under Cyberattack From Over 16,000 IP AddressesThe Hacker News·Dec 11, 03:50 UTC · Dec 11, 2021Vulnerability in the wild57
Suspected Chinese Group Calypso APT Exploiting Vulnerable Microsoft Exchange ServersRecorded Future·Dec 13, 00:00 UTC · Dec 13, 2018Vulnerability in the wildCVE-2021-26855CVE-2021-27065CVE-2021-26857+1 CVEs60
Check Point patches actively exploited SmartConsole authentication bypass flawSecurity Affairs·Jul 23, 08:33 UTC · Jul 23, 2026Vulnerability in the wildCVE-2026-16232CVE-2026-62144CVE-2026-6214560
CISA adds F5 vulnerability to catalog of exploited bugsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability in the wildCVE-2022-138860
VMware Releases Patches for New Vulnerabilities Affecting Multiple ProductsThe Hacker News·May 19, 05:48 UTC · May 19, 2022Vulnerability in the wildCVE-2022-22972CVE-2022-22973CVE-2022-22954+3 CVEs60
Cyber Command backs 'urgent' patch for F5 security vulnerabilityCyberScoop·Jul 6, 17:12 UTC · Jul 6, 2020Vulnerability in the wildCVE-2020-590260
Massive hacking campaign on Joomla sites via recently patched flawsSecurity Affairs·Oct 31, 08:37 UTC · Oct 31, 2016Vulnerability in the wildCVE-2016-8870CVE-2016-886960