Case Study: The Cookie Privacy Monster in Big Global RetailThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2024Data breach60
A Data Exfiltration Attack Scenario: The Porsche ExperienceThe Hacker News·Jul 28, 11:48 UTC · Jul 28, 2023Exploit / PoC60
DTLS Vulnerabilities in CVE-2014Palo Alto Unit 42·Nov 1, 09:38 UTC · Nov 1, 2018VulnerabilityCVE-2014-632160
600+ installs of WordPress Cookie Consent Plugin vulnerable. Fix it now!Security Affairs·Feb 13, 11:01 UTC · Feb 13, 2020VulnerabilityCVE-2020-841760
SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
Chinese Hackers Use CloudScout Toolset to Steal Session Cookies from Cloud ServicesThe Hacker News·Oct 28, 17:26 UTC · Oct 28, 2024Malware55
Google Abandons Plan to Phase Out ThirdThe Hacker News·Jul 24, 09:36 UTC · Jul 24, 2024Policy & legal55
Threat Brief: CVE-2022-3786 and CVE-2022Palo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024VulnerabilityCVE-2022-3786CVE-2022-3602160
Malware exploits undocumented Google OAuth endpoint to regenerate Google cookiesSecurity Affairs·Jan 1, 17:58 UTC · Jan 1, 2024Malware55
2016: Why Yahoo's breaches leave billions users susceptible to spyingCyberScoop·Dec 28, 05:00 UTC · Dec 28, 2016Data breach in the wild60
Slack bugs allowed take over victims' accounts .... ....Security Affairs·Mar 14, 17:50 UTC · Mar 14, 2020Data breach60
Hackers Target ICTBroadcast Servers via Cookie Exploit to Gain Remote Shell AccessThe Hacker News·Nov 7, 06:24 UTC · Nov 7, 2025Exploit / PoC in the wildCVE-2025-261160
Google Postpones Third-Party Cookie Deprecation Amid U.K. Regulatory ScrutinyThe Hacker News·Apr 25, 16:11 UTC · Apr 25, 2024Policy & legal55
U.S. CISA adds Mirasvit Full Page Cache Warmer flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 4, 17:10 UTC · Jun 4, 2026Exploit / PoC in the wildCVE-2026-4524760
Google’s Heather Adkins on infostealers, two-factor authentication and fixing the security ‘mess’ for future generationsThe Record·Oct 15, 14:39 UTC · Oct 15, 2024Malware in the wild60
CyberArk Secure Browser helps prevent breaches resulting from cookie theftHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2024Threat actor60
56,000+ Cloud-Based Apps At Risk Of Malware ExfiltrationHelp Net Security·May 10, 00:00 UTC · May 10, 2023Malware55
French privacy regulator slaps Facebook, Google with fines totaling nearly $240MCyberScoop·Jan 7, 13:50 UTC · Jan 7, 2022Policy & legal in the wild60
Exclusive: Deputy AG Monaco on ‘Operation Cookie Monster’ and why it represents a changeThe Record·May 9, 12:30 UTC · May 9, 2023Ransomware60
Old "Misfortune Cookie" flaw opens medical gateway and devices to attackHelp Net Security·Aug 29, 00:00 UTC · Aug 29, 2018Exploit / PoC in the wildCVE-2014-922260
From Box to Backdoor: Discovering Just How Insecure an ICS Device is in Only 2 WeeksCisco Talos·Apr 10, 16:11 UTC · Apr 10, 2017MalwareCVE-2016-8712CVE-2016-8721CVE-2016-8718+1 CVEs60
Critical vulnerability in Mirasvit Cache Warmer for MagentoSansec (Magento / e-commerce security)·May 26, 14:39 UTC · May 26, 2026Vulnerability in the wildCVE-2026-4524760
⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160
Critical flaw in Zyxel's secure routers allows OS command execution via cookie (CVE-2024-7261)Help Net Security·Sep 3, 00:00 UTC · Sep 3, 2024VulnerabilityCVE-2024-7261CVE-2024-6343CVE-2024-7203+6 CVEs60
Russian Hackers Exploit Safari and Chrome Flaws in HighThe Hacker News·Aug 31, 15:13 UTC · Aug 31, 2024Exploit / PoC in the wildCVE-2023-41993CVE-2024-4671CVE-2024-5274+2 CVEs60
Stealing cookies: Researchers describe how to bypass modern authenticationCyberScoop·May 6, 10:00 UTC · May 6, 2024Data breach in the wild60
Tackling cross-site request forgery (CSRF) on company websitesHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2021Exploit / PoC in the wild60
CISA Adds Exploited Magento RCE Flaw CVE-2026The Hacker News·Jun 4, 11:53 UTC · Jun 4, 2026Vulnerability in the wildCVE-2026-4524760
Palo Alto Warns HighInfosecurity Magazine·Jun 1, 08:30 UTC · Jun 1, 2026Exploit / PoC in the wildCVE-2026-025760
PolyShell: unrestricted file upload in Magento and Adobe CommerceSansec (Magento / e-commerce security)·May 12, 10:55 UTC · May 12, 2026Vulnerability in the wild60
Week in review: Windows zero-day exploit leaked, Patch Tuesday forecastHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2026Exploit / PoC in the wildCVE-2026-34197260
A flaw in WordPress LiteSpeed Cache Plugin allows account takeoverSecurity Affairs·Sep 7, 11:13 UTC · Sep 7, 2024VulnerabilityCVE-2024-4400060
Okta’s security chief on the company’s own cyberattack and how the ‘battleground’ has shiftedThe Record·May 10, 17:47 UTC · May 10, 2024Malware55
Malware Using Google MultiLogin Exploit to Maintain Access Despite Password ResetThe Hacker News·Jan 3, 14:12 UTC · Jan 3, 2024Malware55
SYS01 stealer targets critical government infrastructureSecurity Affairs·Mar 7, 22:38 UTC · Mar 7, 2023Malware55
Manjusaka: A Chinese sibling of Sliver and Cobalt StrikeCisco Talos·Aug 2, 12:00 UTC · Aug 2, 2022Malware55
Microsoft Exchange ProxyToken flaw can allow attackers to read your emailsSecurity Affairs·Aug 31, 10:16 UTC · Aug 31, 2021Exploit / PoCCVE-2021-3376660
How NSA tries to compromise Tor anonymity. Tor Stinks documentSecurity Affairs·Sep 19, 14:49 UTC · Sep 19, 2017Exploit / PoC60
Serious flaws in Western Digital My Cloud NAS devices allow attackers to fully control themSecurity Affairs·Mar 8, 07:54 UTC · Mar 8, 2017VulnerabilityCVE-2016-10107CVE-2016-1010860