China suspends deal with Alibaba for not sharing Log4j 0The Hacker News·Dec 23, 15:13 UTC · Dec 23, 2021Vulnerability in the wildCVE-2021-4422860
CISA releases a scanner to identify web services affected by Apache Log4j flawsSecurity Affairs·Dec 22, 22:10 UTC · Dec 22, 2021AdvisoryCVE-2021-44228CVE-2021-45046CVE-2021-4510560
New Local Attack Vector Expands the Attack Surface of Log4j VulnerabilityThe Hacker News·Dec 20, 05:03 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-45105CVE-2021-45046CVE-2021-44228+1 CVEs60
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
Attacks pinned to critical React2Shell defect surge, surpass 50 confirmed victimsCyberScoop·Dec 11, 17:17 UTC · Dec 11, 2025Ransomware in the wildCVE-2025-5518260
2021 Vulnerability LandscapeRecorded Future·Jul 28, 00:00 UTC · Jul 28, 2025Vulnerability in the wildCVE-2021-4422860
5 Ways to Take Your Vulnerability Management Program to the Next LevelRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability in the wildCVE-2022-0847CVE-2022-138860
Find out which cyber threats you should be concerned aboutHelp Net Security·Apr 18, 08:58 UTC · Apr 18, 2025RansomwareCVE-2021-4422860
Java security: If you ain’t cheatin,’ you ain’t tryin’CyberScoop·Feb 19, 11:00 UTC · Feb 19, 2025Exploit / PoC in the wildCVE-2021-4422860
CISA adds Spring4Shell to list of exploited vulnerabilitiesHelp Net Security·Jan 10, 14:38 UTC · Jan 10, 2025Vulnerability in the wildCVE-2022-22965CVE-2021-4422860
Zero-Day Exploit Detection Using Machine LearningPalo Alto Unit 42·Jun 5, 17:53 UTC · Jun 5, 2024Exploit / PoCCVE-2022-26134CVE-2022-31446160
Week in review: CISA releases RedEye, Apache Commons Text flaw, Medibank data breachHelp Net Security·Apr 12, 11:03 UTC · Apr 12, 2024Data breachCVE-2022-4288960
How new and old security threats keep persistingHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2024Ransomware in the wild60
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
Week in review: Apache Struts vulnerability exploit attempt, EOL Sophos firewalls get hotfixHelp Net Security·Dec 17, 00:00 UTC · Dec 17, 2023Vulnerability in the wildCVE-2022-3236CVE-2023-50164CVE-2021-44228+1 CVEs60
Operation Blacksmith: Lazarus targets organizations worldwide using novel TelegramCisco Talos·Dec 11, 13:50 UTC · Dec 11, 2023Threat actorCVE-2021-4422860
Cloud Tech Debt Puts Millions of Apps at Risk, Says New ReportInfosecurity Magazine·Aug 1, 16:00 UTC · Aug 1, 2023Data breach60
Congress looks to expand CISA's role, adding responsibilities for satellites and open source softwareCyberScoop·May 17, 21:21 UTC · May 17, 2023Policy & legal in the wild60
Hackers Started Exploiting Critical "Text4Shell" Apache Commons Text VulnerabilityThe Hacker News·Oct 24, 05:48 UTC · Oct 24, 2022Vulnerability in the wildCVE-2022-42889CVE-2022-3398060
Threat Source newsletter (July 21, 2022) — No topic is safe from being targeted by fake news and disinformationCisco Talos·Jul 21, 18:00 UTC · Jul 21, 2022Ransomware in the wildCVE-2022-2204760
Avos ransomware group expands with new attack arsenalCisco Talos·Jun 21, 11:58 UTC · Jun 21, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs60
Metasploit 6.2.0 comes with 138 new modules, 148 enhancements and featuresHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2022Exploit / PoC in the wildCVE-2021-44228CVE-2022-1388CVE-2022-22954+3 CVEs60
AvosLocker Ransomware Variant Using New Trick to Disable Antivirus ProtectionThe Hacker News·May 3, 05:50 UTC · May 3, 2022RansomwareCVE-2021-40539CVE-2021-4422860
Five Eyes Agencies List Top 15 Most Exploited Bugs of 2021Infosecurity Magazine·Apr 29, 09:00 UTC · Apr 29, 2022RansomwareCVE-2020-0688CVE-2021-26084CVE-2021-21972+2 CVEs60
Amazon's Hotpatch for Log4j Flaw Found Vulnerable to Privilege Escalation BugThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2022Vulnerability in the wildCVE-2021-3100CVE-2021-3101CVE-2022-0070+1 CVEs60
Week in review: Disrupted Cyclops Blink botnet, public software apps at risk, Patch Tuesday forecastHelp Net Security·Apr 10, 00:00 UTC · Apr 10, 2022RansomwareCVE-2022-22965CVE-2021-44228160
'Spring4Shell' bug in framework for Java programming draws widespread warningsCyberScoop·Apr 1, 18:45 UTC · Apr 1, 2022Exploit / PoC in the wild60
Chinese APT41 Hackers Broke into at Least 6 U.S. State Governments: MandiantThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2022Threat actorCVE-2021-44207CVE-2021-4422860
Chinese APT41 Group Compromises Six US Government NetworksInfosecurity Magazine·Mar 9, 09:30 UTC · Mar 9, 2022Threat actor60
In studying tech supply chain, feds cite open source products, device firmwareCyberScoop·Feb 25, 15:08 UTC · Feb 25, 2022Ransomware in the wild60
Week in review: Malware targeting Linux-based OSes, Log4j exploitation riskHelp Net Security·Feb 13, 00:00 UTC · Feb 13, 2022Malware in the wildCVE-2021-44228CVE-2022-2262060
Log4j exploitation risk is not as high as first thought, cyber MGA saysHelp Net Security·Feb 11, 00:00 UTC · Feb 11, 2022RansomwareCVE-2021-4422860
Kaspersky Q4 2021 DDoS attack reportKaspersky Securelist·Feb 10, 10:00 UTC · Feb 10, 2022RansomwareCVE-2017-6079CVE-2021-22205CVE-2021-3626060
Hackers Attempt to Exploit New SolarWinds ServThe Hacker News·Jan 23, 06:42 UTC · Jan 23, 2022RansomwareCVE-2021-35247CVE-2021-3521160
Threat Source Newsletter (Jan. 20, 2022)Cisco Talos·Jan 20, 19:00 UTC · Jan 20, 2022RansomwareCVE-2021-4239260
Iranian Hackers Exploit Log4j Vulnerability to Deploy PowerShell BackdoorThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022VulnerabilityCVE-2021-4422860
First Patch Tuesday of 2022 Brings Fix for a Critical 'Wormable' Windows VulnerabilityThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022VulnerabilityCVE-2022-21907CVE-2021-22947CVE-2021-36976+10 CVEs60
Threat Source Newsletter (Jan. 13, 2022)Cisco Talos·Jan 13, 19:00 UTC · Jan 13, 2022Ransomware in the wildCVE-2022-21840CVE-2022-21841CVE-2022-21837+1 CVEs60