Week in review: Apple 0-day used to target iPhones, DeepSeek’s popularity exploited by scammersHelp Net Security·Feb 2, 00:00 UTC · Feb 2, 2025Phishing & fraudCVE-2025-24085CVE-2024-53704CVE-2024-4089160
Restoring U.S. cyber resilience: A blueprint for the new administrationCyberScoop·Jan 17, 15:01 UTC · Jan 17, 2025Ransomware60
Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecastHelp Net Security·Jan 12, 00:00 UTC · Jan 12, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2024-41713CVE-2024-55550+1 CVEs60
Major Oilfield Supplier Hit by Ransomware AttackInfosecurity Magazine·Nov 8, 12:00 UTC · Nov 8, 2024Ransomware60
Week in review: VMware ESXi zero-day exploited, SMS Stealer malware targeting Android usersHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2024Exploit / PoC in the wildCVE-2023-45249CVE-2024-3708560
Airlines are flying blind on third-party risksHelp Net Security·Aug 1, 00:00 UTC · Aug 1, 2024Ransomware60
Week in review: Atlassian Confluence RCE PoC, new Kali Linux, Patch Tuesday forecastHelp Net Security·Jun 9, 00:00 UTC · Jun 9, 2024Exploit / PoCCVE-2024-21683CVE-2024-28995CVE-2024-29972+4 CVEs60
Santander Customer Data Compromised Following ThirdInfosecurity Magazine·May 15, 12:00 UTC · May 15, 2024Data breach60
Week in review: Two Cisco ASA zero-days exploited, MITRE breach, GISEC Global 2024Help Net Security·Apr 28, 00:00 UTC · Apr 28, 2024Policy & legalCVE-2024-20353CVE-2024-20359CVE-2023-46805+4 CVEs60
Third-party risk management best practices and why they matterHelp Net Security·Feb 15, 11:52 UTC · Feb 15, 2024Ransomware in the wild60
Schneider Electric Confirms Data Accessed in Ransomware AttackInfosecurity Magazine·Jan 30, 17:45 UTC · Jan 30, 2024Ransomware60
Week in review: Microsoft fixes Follina, cybersecurity pros quitting, (IN)SECURE Magazine RSAC 2022Help Net Security·Jan 7, 10:33 UTC · Jan 7, 2024RansomwareCVE-2022-3019060
Week in review: Apache Struts vulnerability exploit attempt, EOL Sophos firewalls get hotfixHelp Net Security·Dec 17, 00:00 UTC · Dec 17, 2023Vulnerability in the wildCVE-2022-3236CVE-2023-50164CVE-2021-44228+1 CVEs60
Iran-linked hackers used fake Atlantic Council-affiliated persona to target human rights researchersCyberScoop·Mar 9, 13:20 UTC · Mar 9, 2023Exploit / PoC in the wild60
Week in review: Rail transport cybersecurity, “verified” OAuth apps used to infiltrate organizationsHelp Net Security·Feb 5, 00:00 UTC · Feb 5, 2023Data breachCVE-2022-27596CVE-2023-20076CVE-2023-22501160
CISA Warns of Active Exploitation of Critical Spring4Shell VulnerabilityThe Hacker News·Apr 6, 03:27 UTC · Apr 6, 2022Vulnerability in the wildCVE-2022-22965CVE-2022-22674CVE-2022-22675+1 CVEs60
HackNotice strengthens its leadership team with two appointmentsHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2021Data breach60
Iranian spies tried hacking US military personnel by posing as job recruiters on FacebookCyberScoop·Jul 16, 12:53 UTC · Jul 16, 2021Exploit / PoC in the wild60
Suspected Iranian hackers pose as ransomware operators to target Israeli organizationsCyberScoop·May 25, 20:17 UTC · May 25, 2021Ransomware in the wild60
Week in review: Zerologon PoCs released, five steps to recover from ransomware, CISOs' golden opportunityHelp Net Security·Sep 20, 00:00 UTC · Sep 20, 2020RansomwareCVE-2020-147260
Mastercard jumps into the risk-assessment race with RiskRecon acquisitionCyberScoop·Dec 26, 13:48 UTC · Dec 26, 2019Data breach in the wild60
KnowBe4 to acquire Norwegian assessment company CLTReCyberScoop·May 21, 13:16 UTC · May 21, 2019Exploit / PoC in the wild60
How companies – and the hackers themselvesCyberScoop·Apr 18, 23:56 UTC · Apr 18, 2019Ransomware in the wild60
Email scammers stole more than $150K from defense contractors and a university, FBI saysCyberScoop·Mar 18, 21:18 UTC · Mar 18, 2019Phishing & fraud in the wild60