H1 2025 Malware and Vulnerability TrendsRecorded Future·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wild60
The impact of the Log4j vulnerability on OT networksHelp Net Security·Dec 16, 00:00 UTC · Dec 16, 2021Vulnerability in the wildCVE-2021-4422860
Vulnerability Exploitation on the Rise as Attackers Ditch PhishingInfosecurity Magazine·Apr 23, 13:01 UTC · Apr 23, 2024Vulnerability in the wildCVE-2023-34362CVE-2022-21587CVE-2023-286860
Log4j Vulnerability AftermathSecurity Affairs·Dec 21, 08:04 UTC · Dec 21, 2021Vulnerability in the wildCVE-2021-44228160
Patch management complexity increased by remote work is putting organizations at riskHelp Net Security·Oct 8, 00:00 UTC · Oct 8, 2021Vulnerability in the wild60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
Week in review: ProxyShell and Realtek SDK vulnerabilities exploitation, automated pentestingHelp Net Security·Aug 29, 00:00 UTC · Aug 29, 2021Vulnerability in the wildCVE-2021-35395160
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Week in review: Exploited Citrix Bleed vulnerability, Atlassian patches critical Confluence bugHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2023Vulnerability in the wildCVE-2023-4966CVE-2023-22518CVE-2023-46747+2 CVEs60
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0The Hacker News·Jul 21, 04:34 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-63030CVE-2026-60137CVE-2026-15409+26 CVEs160
Verizon DBIR: Vulnerability exploitation is the dominant initial access vectorHelp Net Security·May 20, 00:00 UTC · May 20, 2026Vulnerability in the wild60
Microsoft calls out apparent ESXi vulnerability that some researchers say is a ‘nothing burger’CyberScoop·Jul 30, 17:13 UTC · Jul 30, 2024Vulnerability in the wildCVE-2024-3708560
Week in review: Veeam fixes RCE flaw in backup management platform, Patch Tuesday forecastHelp Net Security·May 12, 00:00 UTC · May 12, 2024Vulnerability in the wildCVE-2024-29212CVE-2024-4671CVE-2024-21793+2 CVEs60
Week in review: Follina exploit delivers Qbot malware, Patch Tuesday forecast, RSAC 2022Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2022Vulnerability in the wildCVE-2022-30190CVE-2021-4232160
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Cleo File Transfer Vulnerability Under ExploitationThe Hacker News·Dec 18, 04:09 UTC · Dec 18, 2024Vulnerability in the wildCVE-2024-50623CVE-2024-5595660
Attackers hit vulnerabilities hard last year, making exploits the top entry point for breachesCyberScoop·May 19, 21:19 UTC · May 19, 2026Vulnerability in the wild60
32% Of Top-Exploited Vulnerabilities Are Over A Decade OldHelp Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Vulnerability in the wild157
Week in review: Cisco fixes critical UCCX flaws, November 2025 Patch Tuesday forecastHelp Net Security·Nov 9, 00:00 UTC · Nov 9, 2025Vulnerability in the wildCVE-2025-48703CVE-2025-11371CVE-2025-20358+1 CVEs60
Cleo urges customers to ‘immediately’ apply new patch as researchers discover new malwareThe Record·Dec 13, 01:48 UTC · Dec 13, 2024Vulnerability in the wildCVE-2024-5062360
80% of Manufacturing Firms Have Critical VulnerabilitiesInfosecurity Magazine·Oct 2, 14:00 UTC · Oct 2, 2024Vulnerability in the wild60
Vulnerability Exploits Triple as Initial Access Point for BreachesInfosecurity Magazine·May 1, 12:00 UTC · May 1, 2024Vulnerability in the wild60
Critical vulnerability in Atlassian Confluence server is under “mass exploitation”Ars Technica · Security·Nov 6, 23:40 UTC · Nov 6, 2023Vulnerability in the wildCVE-2023-2251860
Week in review: Critical RCE in Palo Alto Networks firewalls, how to select a DRaaS solutionHelp Net Security·Nov 14, 00:00 UTC · Nov 14, 2021Vulnerability in the wildCVE-2021-3064CVE-2021-42321CVE-2021-4229260
Why patch directives only go so farCyberScoop·Jun 25, 09:00 UTC · Jun 25, 2026Vulnerability in the wildCVE-2026-5075160
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Addressing the vulnerability prioritization challengeRecorded Future·Nov 26, 00:00 UTC · Nov 26, 2025Vulnerability in the wild60
SonicWall customers hit by fresh, ongoing attacks targeting fully patched SMA 100 devicesCyberScoop·Jul 16, 17:52 UTC · Jul 16, 2025Vulnerability in the wildCVE-2021-20038CVE-2024-38475CVE-2021-20035+2 CVEs60
NHS England Warns of Critical Veeam Vulnerability Under Active ExploitInfosecurity Magazine·Oct 11, 16:00 UTC · Oct 11, 2024Vulnerability in the wildCVE-2024-4071160
Week in review: Critical Zimbra RCE vulnerability exploited, Patch Tuesday forecastHelp Net Security·Oct 6, 00:00 UTC · Oct 6, 2024Vulnerability in the wildCVE-2024-45519CVE-2024-2982460
‘Citrix Bleed’ vulnerability targeted by nationThe Record·Nov 21, 19:18 UTC · Nov 21, 2023Vulnerability in the wildCVE-2023-4966CVE-2023-491160
CISA adds Microsoft, Apple bugs to exploited vulnerabilities catalogThe Record·Apr 11, 21:27 UTC · Apr 11, 2023Vulnerability in the wildCVE-2023-28205CVE-2023-28206CVE-2023-28252+1 CVEs160
Week in review: Western Digital network security incident, QNAP vulns, Patch Tuesday forecastHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2023Vulnerability in the wildCVE-2023-26360CVE-2023-26359160
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecastHelp Net Security·Feb 8, 00:00 UTC · Feb 8, 2026Vulnerability in the wildCVE-2026-21509CVE-2025-22225CVE-2026-2442360
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More StoriesThe Hacker News·Jan 8, 16:52 UTC · Jan 8, 2026Vulnerability in the wildCVE-2024-36401CVE-2007-0671CVE-2002-036760
Microsoft Targeted by 8 of 10 Top Vulnerabilities in 2018Recorded Future·Aug 11, 00:00 UTC · Aug 11, 2025Vulnerability in the wildCVE-2017-0199CVE-2016-0189CVE-2017-8750+8 CVEs60
SonicWall Urges Users to Patch Critical Firewall Flaw Amid Possible ExploitationThe Hacker News·Sep 10, 03:33 UTC · Sep 10, 2024Vulnerability in the wildCVE-2024-4076660