Hackers target AI and crypto as software supply chain risks growHelp Net Security·Dec 3, 14:29 UTC · Dec 3, 2025Vulnerability in the wild60
Week in review: Veeam Backup & Replication RCE fixed, free file converter sites deliver malwareHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2025Vulnerability in the wildCVE-2025-23120CVE-2024-4824860
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Week in review: Follina exploit delivers Qbot malware, Patch Tuesday forecast, RSAC 2022Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2022Vulnerability in the wildCVE-2022-30190CVE-2021-4232160
Week in review: Cisco fixes critical UCCX flaws, November 2025 Patch Tuesday forecastHelp Net Security·Nov 9, 00:00 UTC · Nov 9, 2025Vulnerability in the wildCVE-2025-48703CVE-2025-11371CVE-2025-20358+1 CVEs60
Vulnerability Exploits Triple as Initial Access Point for BreachesInfosecurity Magazine·May 1, 12:00 UTC · May 1, 2024Vulnerability in the wild60
Week in review: Attackers use phishing emails to steal NTLM hashes, Patch Tuesday forecastHelp Net Security·Mar 10, 00:00 UTC · Mar 10, 2024Vulnerability in the wildCVE-2024-20337CVE-2024-23225CVE-2024-23296+6 CVEs60
Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of DisclosureThe Hacker News·Mar 26, 06:26 UTC · Mar 26, 2026Vulnerability in the wildCVE-2026-33017CVE-2025-3248160
Dozens of Vulnerable NuGet Packages Allow Attackers to Target .NET PlatformThe Hacker News·Jul 8, 07:40 UTC · Jul 8, 2021Vulnerability in the wildCVE-2021-3331CVE-2016-9840CVE-2016-9841+2 CVEs60
Notepad++ Update Hijacking Linked to Hosting Provider CompromiseInfosecurity Magazine·Feb 2, 15:15 UTC · Feb 2, 2026Vulnerability in the wild57
Lookout identifies exploitable vulnerabilities in mobile appsHelp Net Security·Jul 22, 00:00 UTC · Jul 22, 2026Vulnerability in the wild160
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecastHelp Net Security·Feb 8, 00:00 UTC · Feb 8, 2026Vulnerability in the wildCVE-2026-21509CVE-2025-22225CVE-2026-2442360
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Containers on fire: from container escapes to supply chain attacksKaspersky Securelist·Jun 1, 10:00 UTC · Jun 1, 2026Vulnerability in the wildCVE-2019-5736CVE-2022-0492CVE-2024-21626160
Google Launches New Cybersecurity Initiatives to Strengthen Vulnerability ManagementThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2023Vulnerability in the wild160
CISA sounds alarm on Langflow RCE, Trivy supply chain compromise after rapid exploitationHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2026Vulnerability in the wildCVE-2026-33017CVE-2026-33634160
Watch Out! Cryptocurrency Miners Targeting Dockers, AWS and Alibaba CloudThe Hacker News·Apr 22, 09:30 UTC · Apr 22, 2022Vulnerability in the wildCVE-2022-2296560
Ivanti Vulnerability Exploit Could Expose UK NHS DataInfosecurity Magazine·May 28, 16:15 UTC · May 28, 2025Vulnerability in the wildCVE-2025-4427CVE-2025-442860
OpenSSL Releases Patch for 2 New HighThe Hacker News·Nov 2, 04:59 UTC · Nov 2, 2022Vulnerability in the wildCVE-2022-3602CVE-2022-3786CVE-2016-6309+1 CVEs60
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
How do I select an API security solution for my business?Help Net Security·Feb 17, 00:00 UTC · Feb 17, 2022Vulnerability in the wild60
ArmorCode helps product manufacturers prepare for EU Cyber Resilience Act requirementsHelp Net Security·Jun 17, 00:00 UTC · Jun 17, 2026Vulnerability in the wild60
NVD Revamps Operations as Vulnerability Reporting SurgesInfosecurity Magazine·Apr 11, 16:05 UTC · Apr 11, 2025Vulnerability in the wild57
CISA Expands Vulnerabilities Catalog With Old, Exploited FlawsInfosecurity Magazine·Sep 17, 14:00 UTC · Sep 17, 2022Vulnerability in the wild60
Week in review: F5 BIG-IP RCE exploitation, URL spoofing flaws in Zoom, Google DocsHelp Net Security·May 15, 00:00 UTC · May 15, 2022Vulnerability in the wildCVE-2022-26925CVE-2022-29972CVE-2022-22713+2 CVEs60
CISA Urges Organizations to Patch Critical BlackBerry QNX BugInfosecurity Magazine·Aug 18, 09:32 UTC · Aug 18, 2021Vulnerability in the wildCVE-2021-2215660
Supply-chain vulnerabilities are a 'digital public health crisis,' says DHS's ManfraCyberScoop·Apr 17, 00:14 UTC · Apr 17, 2018Vulnerability in the wild60
Week in review: Kali Linux gets Purple, Microsoft zero-days get patchedHelp Net Security·Mar 19, 00:00 UTC · Mar 19, 2023Vulnerability in the wildCVE-2023-23397CVE-2023-24880160
Vulnerability in popular ‘libwebp’ code more widespread than expectedThe Record·Sep 27, 18:08 UTC · Sep 27, 2023Vulnerability in the wildCVE-2023-4863CVE-2023-5129CVE-2023-4106460
Progress Discloses Two New Vulnerabilities in MOVEit ProductsInfosecurity Magazine·Jun 26, 17:15 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-580560
Critical JetBrains TeamCity vulnerability could be exploited to launch supply chain attacks (CVE-2023-42793)Help Net Security·Feb 15, 12:03 UTC · Feb 15, 2024Vulnerability in the wildCVE-2023-4279360
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
Keysight SBOM Manager simplifies global cybersecurity compliance and software transparencyHelp Net Security·Mar 25, 09:58 UTC · Mar 25, 2026Vulnerability in the wild60
Microsoft Says Chinese Hackers Were Behind SolarWinds Serv-U SSH 0The Hacker News·Sep 6, 10:12 UTC · Sep 6, 2021Vulnerability in the wildCVE-2021-3521160
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
ASUS issues patch, downplays scope of APT hack of its supply chainCyberScoop·Mar 26, 18:27 UTC · Mar 26, 2019Vulnerability in the wild60
Review: Action1 – Simple and powerful patch managementHelp Net Security·Aug 2, 04:43 UTC · Aug 2, 2024Vulnerability in the wild60
⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160