Log4Shell: How It’s Exploited and Mitigating DamageRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2021-4422860
Canary Exploit tool allows to find servers affected by Apache Parquet flawSecurity Affairs·May 7, 14:08 UTC · May 7, 2025RansomwareCVE-2025-3006560
U.S. CISA adds Edimax IC-7100 IP Camera, NAKIVO, and SAP NetWeaver AS Java flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 20, 12:18 UTC · Mar 20, 2025Exploit / PoC in the wildCVE-2025-1316CVE-2024-48248CVE-2017-1263760
Critical Apache Avro SDK Flaw Allows Remote Code Execution in Java ApplicationsThe Hacker News·Oct 11, 04:52 UTC · Oct 11, 2024VulnerabilityCVE-2024-4756160
China-linked APT Volt Typhoon exploited a zeroSecurity Affairs·Aug 27, 19:56 UTC · Aug 27, 2024Threat actor in the wildCVE-2024-39717160
APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-3361760
CISA adds Ruckus bug and another six flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 16, 19:39 UTC · May 16, 2023Exploit / PoC in the wildCVE-2023-25717CVE-2021-3560CVE-2014-0196+4 CVEs160
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Most attackers lose interest in Log4ShellThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC in the wildCVE-2021-4422860
Researchers Disclose Critical RCE Vulnerability Affecting Quarkus Java FrameworkThe Hacker News·Dec 1, 11:45 UTC · Dec 1, 2022VulnerabilityCVE-2022-411660
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
IT Threat Evolution: Q1 2012Kaspersky Securelist·May 21, 14:00 UTC · May 21, 2012Exploit / PoCCVE-2011-354460
Oracle Critical Patch Update October 2011Kaspersky Securelist·Oct 20, 01:02 UTC · Oct 20, 2011VulnerabilityCVE-2011-3389CVE-2011-353860
Experts uncover critical flaws in Kigen eSIM affecting billionsSecurity Affairs·Jul 14, 11:09 UTC · Jul 14, 2025Exploit / PoC60
Microsoft Fixes 78 Flaws, 5 Zero-Days Exploited; CVSS 10 Bug Impacts Azure DevOps ServerThe Hacker News·May 15, 00:00 UTC · May 15, 2025Vulnerability in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+10 CVEs160
Apache Tomcat Vulnerability CVE-2024The Hacker News·Dec 24, 06:06 UTC · Dec 24, 2024VulnerabilityCVE-2024-56337CVE-2024-50379CVE-2024-1282860
CISA Issues Warning on Active Exploitation of ZK Java Web Framework VulnerabilityThe Hacker News·Feb 28, 13:28 UTC · Feb 28, 2023Vulnerability in the wildCVE-2022-3653760
Amazon's Hotpatch for Log4j Flaw Found Vulnerable to Privilege Escalation BugThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2022Vulnerability in the wildCVE-2021-3100CVE-2021-3101CVE-2022-0070+1 CVEs60
Spring4Shell: No need to panic, but mitigations are advisedHelp Net Security·Apr 6, 12:06 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22963CVE-2010-1622CVE-2022-2296560
'Spring4Shell' bug in framework for Java programming draws widespread warningsCyberScoop·Apr 1, 18:45 UTC · Apr 1, 2022Exploit / PoC in the wild60
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
Threat Advisory: Critical Apache Log4j vulnerability being exploited in the wildCisco Talos·Dec 10, 19:37 UTC · Dec 10, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60
SWEED: Exposing years of Agent Tesla campaignsCisco Talos·Jul 15, 15:04 UTC · Jul 15, 2019Threat actorCVE-2017-8759CVE-2017-11882160
Apache Software Foundation fixes important flaws in Apache TomcatSecurity Affairs·Jul 25, 06:35 UTC · Jul 25, 2018Exploit / PoC in the wildCVE-2018-8037CVE-2018-1336CVE-2018-8034160
A unique ‘bodiless’ bot attacks news site visitorsKaspersky Securelist·Mar 16, 19:12 UTC · Mar 16, 2012VulnerabilityCVE-2011-354460
Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data ExposureThe Hacker News·Jun 27, 10:45 UTC · Jun 27, 2025Ransomware in the wildCVE-2025-0055CVE-2025-0056CVE-2025-0059+2 CVEs60
Endpoint breach prevention by reducing attack surfacesHelp Net Security·Jan 17, 09:30 UTC · Jan 17, 2023Ransomware60
CISA adds Spring4Shell flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Apr 5, 14:15 UTC · Apr 5, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-22675CVE-2022-22674+1 CVEs160
Researchers Warn of New Log4ShellInfosecurity Magazine·Jan 7, 09:26 UTC · Jan 7, 2022VulnerabilityCVE-2021-4239260
Log4Shell update: Attack surface, attacks in the wild, mitigation and remediationHelp Net Security·Dec 13, 00:00 UTC · Dec 13, 2021Ransomware in the wildCVE-2021-44228160
Apache Tomcat Patches Important Remote Code Execution FlawThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2019VulnerabilityCVE-2019-023260
Oracle warns of CVE-2018-3110 Critical flaw in Database product, patch it nowSecurity Affairs·Aug 13, 07:35 UTC · Aug 13, 2018VulnerabilityCVE-2018-311060
April Patch Tuesday forecast: Expect updates for Adobe Flash, othersHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2018VulnerabilityCVE-2018-103860
Apache Tomcat Patches Important Remote Code Execution FlawThe Hacker News·Oct 5, 11:16 UTC · Oct 5, 2017VulnerabilityCVE-2017-12617CVE-2017-12615260
NetTraveler Is Back: The ‘Red Star’ APT Returns With New TricksKaspersky Securelist·Sep 3, 20:59 UTC · Sep 3, 2013Data breachCVE-2013-2465CVE-2012-015860
Kaspersky Security Bulletin 2012. Malware EvolutionKaspersky Securelist·Dec 5, 15:00 UTC · Dec 5, 2012MalwareCVE-2012-050760
Monthly Malware Statistics, January 2011Kaspersky Securelist·Feb 3, 16:00 UTC · Feb 3, 2011MalwareCVE-2010-080660
CISA Orders US Government to Patch Maximum Severity Cisco FlawInfosecurity Magazine·Mar 23, 10:30 UTC · Mar 23, 2026Vulnerability in the wildCVE-2026-2013160
Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026The Hacker News·Mar 21, 07:03 UTC · Mar 21, 2026Ransomware in the wildCVE-2026-2013160
Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)Help Net Security·Mar 20, 00:00 UTC · Mar 20, 2026VulnerabilityCVE-2026-20131CVE-2026-20127CVE-2026-20045+1 CVEs60