From LFI to RCE: Active Exploitation Detected in Gladinet and TrioFox VulnerabilityThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability in the wildCVE-2025-11371CVE-2025-3040660
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026The Hacker News·May 31, 12:13 UTC · May 31, 2026Vulnerability in the wildCVE-2026-3998760
Active exploitation of the MOVEit Transfer vulnerability — CVE-2023Cisco Talos·Jun 16, 18:17 UTC · Jun 16, 2023Vulnerability in the wildCVE-2023-34362CVE-2023-35036CVE-2023-3570860
SimpleHelp vulnerability exploited to deliver mighty Djinn Stealer (CVE-2026-48558)Help Net Security·Jun 30, 00:00 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-48558160
Attackers are exploiting Gladinet CentreStack, Triofox vulnerability with no patch (CVE-2025-11371)Help Net Security·Oct 17, 08:06 UTC · Oct 17, 2025Vulnerability in the wildCVE-2025-11371CVE-2025-3040660
Cleo File Transfer Vulnerability Under ExploitationThe Hacker News·Dec 18, 04:09 UTC · Dec 18, 2024Vulnerability in the wildCVE-2024-50623CVE-2024-5595660
Critical Unpatched Ray AI Platform Vulnerability Exploited for Cryptocurrency MiningThe Hacker News·Mar 28, 04:46 UTC · Mar 28, 2024Vulnerability in the wildCVE-2023-4802260
Fortinet Warns of Severe SQLi Vulnerability in FortiClientEMS SoftwareThe Hacker News·Mar 22, 03:02 UTC · Mar 22, 2024Vulnerability in the wildCVE-2023-48788CVE-2023-42789CVE-2023-42790160
Week in review: KeePass vulnerability, Apple fixes exploited WebKit 0-daysHelp Net Security·May 21, 00:00 UTC · May 21, 2023Vulnerability in the wildCVE-2023-28204CVE-2023-32373CVE-2023-32409+1 CVEs60
US CISA warns of a Samsung vulnerability under active exploitationSecurity Affairs·May 20, 09:59 UTC · May 20, 2023Vulnerability in the wildCVE-2023-21492CVE-2004-1464CVE-2016-641560
Simjacker vulnerability actively exploited to track, spy on mobile phone ownersHelp Net Security·Sep 12, 00:00 UTC · Sep 12, 2019Vulnerability in the wild60
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0The Hacker News·Jul 21, 04:34 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-63030CVE-2026-60137CVE-2026-15409+26 CVEs160
Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn StealerThe Hacker News·Jun 30, 11:18 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-48558260
Palo Alto Warns of Exploitation of VPN Bypass Exploits (CVE-2026-0257) in PANSecurity Affairs·Jun 15, 11:11 UTC · Jun 15, 2026Vulnerability in the wildCVE-2026-025760
CVE-2026-0257: Rapid7 Caught Attackers Abusing Forged VPN Cookies Against Multiple CustomersSecurity Affairs·May 31, 17:53 UTC · May 31, 2026Vulnerability in the wildCVE-2026-025760
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Weaver E-cology RCE Flaw CVE-2026The Hacker News·May 6, 01:14 UTC · May 6, 2026Vulnerability in the wildCVE-2026-2267960
SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
Unpatched SolarWinds WHD instances under active attackHelp Net Security·Mar 9, 17:22 UTC · Mar 9, 2026Vulnerability in the wildCVE-2025-26399160
Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
January 2026 CVE Landscape: 23 Critical Vulnerabilities Mark 5% Increase, APT28 Exploits Microsoft Office ZeroRecorded Future·Feb 24, 00:00 UTC · Feb 24, 2026Vulnerability in the wildCVE-2026-21509CVE-2026-23760CVE-2026-1281+1 CVEs160
Malicious NGINX Configurations Enable LargeThe Hacker News·Feb 6, 11:32 UTC · Feb 6, 2026Vulnerability in the wildCVE-2025-55182160
SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 ScoreThe Hacker News·Feb 6, 09:36 UTC · Feb 6, 2026Vulnerability in the wildCVE-2026-24423CVE-2026-23760CVE-2026-2506760
Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm PackageThe Hacker News·Feb 6, 09:36 UTC · Feb 6, 2026Vulnerability in the wildCVE-2025-11953160
SQL Injection Flaw Affects 40,000 WordPress SitesInfosecurity Magazine·Feb 3, 16:15 UTC · Feb 3, 2026Vulnerability in the wildCVE-2025-6798760
React2Shell Vulnerability Actively Exploited to Deploy Linux BackdoorsThe Hacker News·Dec 17, 07:26 UTC · Dec 17, 2025Vulnerability in the wildCVE-2025-55182CVE-2025-29927CVE-2025-6647860
⚡ Weekly Recap: Apple 0-Days, WinRAR Exploit, LastPass Fines, .NET RCE, OAuth Scams & MoreThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-14174CVE-2025-43529CVE-2025-6218+43 CVEs60
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260
Microsoft Patches Critical Entra ID Flaw Enabling Global Admin Impersonation Across TenantsThe Hacker News·Sep 24, 10:50 UTC · Sep 24, 2025Vulnerability in the wildCVE-2025-55241CVE-2025-53786160
What to know about ToolShell, the SharePoint threat under mass exploitationArs Technica · Security·Jul 23, 20:14 UTC · Jul 23, 2025Vulnerability in the wildCVE-2025-49706CVE-2025-4970460
Over 600 Laravel Apps Exposed to Remote Code Execution Due to Leaked APP_KEYs on GitHubThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Vulnerability in the wildCVE-2018-15133CVE-2024-5555660
Microsoft Patches 130 Vulnerabilities, Including Critical Flaws in SPNEGO and SQL ServerThe Hacker News·Jul 10, 07:02 UTC · Jul 10, 2025Vulnerability in the wildCVE-2025-49719CVE-2025-47981CVE-2025-49735+9 CVEs60
Microsoft Patch Tuesday addresses 130 vulnerabilities, none actively exploitedCyberScoop·Jul 9, 16:02 UTC · Jul 9, 2025Vulnerability in the wildCVE-2025-49719CVE-2025-4798160
Critical Cisco Vulnerability in Unified CM Grants Root Access via Static CredentialsThe Hacker News·Jul 3, 08:59 UTC · Jul 3, 2025Vulnerability in the wildCVE-2025-20309CVE-2025-20281CVE-2025-2028260
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS AttacksThe Hacker News·Jun 21, 09:10 UTC · Jun 21, 2025Vulnerability in the wildCVE-2025-324860
Wide-ranging Apple security update addresses over 30 vulnerabilitiesCyberScoop·May 13, 15:15 UTC · May 13, 2025Vulnerability in the wildCVE-2025-3121460
RCE flaw in tool for building AI agents exploited by attackers (CVE-2025-3248)Help Net Security·May 6, 00:00 UTC · May 6, 2025Vulnerability in the wildCVE-2025-324860
CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File DownloadThe Hacker News·Apr 19, 08:34 UTC · Apr 19, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451160
Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054)Help Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2025-24071CVE-2024-43451160