Researcher Drops a New VS Code Zero-Day After Losing Trust in Microsoft's Disclosure ProcessSecurity Affairs·Jun 4, 09:13 UTC · Jun 4, 2026Exploit / PoC in the wild160
Microsoft fixed Azure AD bug that led to Bing.com results manipulation and account takeoverSecurity Affairs·Apr 3, 11:32 UTC · Apr 3, 2023Exploit / PoC in the wild160
Chaotic Eclipse Unveils LegacyHive Exploit Affecting Fully Patched Windows SystemsSecurity Affairs·Jul 15, 16:57 UTC · Jul 15, 2026Vulnerability in the wildCVE-2026-33825CVE-2026-45498CVE-2026-4109160
Microsoft Patch Tuesday: 6 exploited zero-days fixed in February 2026Help Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-21513CVE-2026-21514CVE-2026-21510+3 CVEs160
Finding Azurescape – Cross-Account Container Takeover in Azure Container InstancesPalo Alto Unit 42·Jun 6, 01:32 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2019-5736CVE-2018-1002102160
Microsoft Azure Vulnerability Exposes PostgreSQL Databases to Other CustomersThe Hacker News·Apr 29, 12:04 UTC · Apr 29, 2022Vulnerability in the wild60
Linux worm spreading via Exim servers hit Azure customersSecurity Affairs·Jun 16, 16:28 UTC · Jun 16, 2019Vulnerability in the wildCVE-2019-1014960
Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated WindowsThe Hacker News·Jun 10, 17:30 UTC · Jun 10, 2026Exploit / PoC in the wildCVE-2026-33825CVE-2026-45498CVE-2026-41091160
Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege EscalationThe Hacker News·May 15, 00:00 UTC · May 15, 2026Vulnerability in the wildCVE-2026-33825CVE-2025-48804160
Microsoft on pace to break annual vulnerability record as AIThe Record·May 13, 12:59 UTC · May 13, 2026Vulnerability in the wildCVE-2026-41089CVE-2026-41096CVE-2026-4289860
Microsoft reveals actively exploited Office zero-day, provides emergency fix (CVE-2026-21509)Help Net Security·Feb 3, 18:36 UTC · Feb 3, 2026Exploit / PoC in the wildCVE-2026-2150960
Microsoft Releases Patch for Exploited Office Zero DayInfosecurity Magazine·Jan 27, 10:45 UTC · Jan 27, 2026Vulnerability in the wildCVE-2026-21509260
Microsoft Office Zero-Day (CVE-2026-21509) - Emergency Patch Issued for Active ExploitationThe Hacker News·Jan 27, 10:37 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-21509160
Microsoft Fixes 114 Windows Flaws in January 2026 Patch, One Actively ExploitedThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Vulnerability in the wildCVE-2025-65046CVE-2026-0628CVE-2026-20805+5 CVEs160
Integrating Threat Intelligence and Vulnerability Management: A Modern ApproachRecorded Future·Dec 17, 00:00 UTC · Dec 17, 2025Vulnerability in the wild60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs160
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
Patch Tuesday: Microsoft fixes actively exploited Windows kernel vulnerability (CVE-2025-62215)Help Net Security·Nov 12, 00:00 UTC · Nov 12, 2025Vulnerability in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62199+1 CVEs160
New Chrome zero-day actively exploited, patch quickly! (CVE-2024-7971)Help Net Security·Sep 19, 11:32 UTC · Sep 19, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-796560
Google addressed the ninth actively exploited Chrome zeroSecurity Affairs·Aug 26, 22:50 UTC · Aug 26, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-0519CVE-2024-2887+6 CVEs60
Google Fixes High-Severity Chrome Flaw Actively Exploited in the WildThe Hacker News·Aug 23, 10:01 UTC · Aug 23, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-4947CVE-2024-5274+6 CVEs160
Microsoft urges customers to fix Windows RCE in the TCP/IP stackSecurity Affairs·Aug 16, 07:10 UTC · Aug 16, 2024Vulnerability in the wildCVE-2024-38063CVE-2024-38189CVE-2024-38178+4 CVEs60
Azure Service Tags Vulnerability: Microsoft Warns of Potential Abuse by HackersThe Hacker News·Jun 10, 11:55 UTC · Jun 10, 2024Vulnerability in the wild60
October Patch Tuesday Addresses Three ZeroInfosecurity Magazine·Oct 11, 10:30 UTC · Oct 11, 2023Vulnerability in the wildCVE-2023-41763CVE-2023-36563CVE-2023-44487+8 CVEs160
State-Sponsored Hackers Likely Exploited MS Exchange 0The Hacker News·Oct 6, 12:45 UTC · Oct 6, 2022Threat actor in the wildCVE-2022-41040CVE-2022-4108260
Microsoft Releases Fix for Zero-Day Flaw in July 2022 Security Patch RolloutThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022Exploit / PoC in the wildCVE-2022-22047CVE-2022-22026CVE-2022-22049+14 CVEs60
A flaw in Microsoft Azure App Service exposes customer source codeSecurity Affairs·Dec 23, 05:36 UTC · Dec 23, 2021Exploit / PoC in the wild160
February 2021 Patch Tuesday: Microsoft and Adobe fix exploited zero-daysHelp Net Security·Jun 8, 18:29 UTC · Jun 8, 2021Exploit / PoC in the wildCVE-2021-21017CVE-2021-1732CVE-2021-24074+6 CVEs60
Linux servers under attack via latest Exim flawHelp Net Security·Jun 16, 14:39 UTC · Jun 16, 2019Vulnerability in the wildCVE-2019-1014960
Microsoft Updates Internet Explorer against Highly Targeted 0day Distributing PirpiKaspersky Securelist·May 1, 00:43 UTC · May 1, 2014Vulnerability in the wildCVE-2014-177660