IT threat evolution Q2 2022Kaspersky Securelist·Aug 15, 09:54 UTC · Aug 15, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-26925CVE-2022-30190160
Researchers Find Bugs in Over A Dozen Widely Used URL Parser LibrariesThe Hacker News·Aug 2, 11:07 UTC · Aug 2, 2022VulnerabilityCVE-2021-33056CVE-2021-23414CVE-2021-37352+5 CVEs160
LockBit Ransomware Abuses Windows Defender to Deploy Cobalt Strike PayloadThe Hacker News·Aug 2, 08:07 UTC · Aug 2, 2022Ransomware60
Atlassian Confluence Flaw Being Used to Deploy Ransomware and Crypto MinersThe Hacker News·Jun 18, 04:11 UTC · Jun 18, 2022RansomwareCVE-2022-26134CVE-2021-2608460
Microsoft’s Final Patch Tuesday Fixes Follina BugInfosecurity Magazine·Jun 15, 09:00 UTC · Jun 15, 2022Vulnerability in the wildCVE-2022-30190CVE-2022-30136CVE-2022-30139+1 CVEs60
Ransomware attacks have increased by 80% year-over-yearHelp Net Security·Jun 9, 00:00 UTC · Jun 9, 2022Ransomware60
Arctic Wolf launches a new research-focused division to help customers stay ahead of threat actorsHelp Net Security·May 11, 00:00 UTC · May 11, 2022Threat actor60
How fast do cybercriminals capitalize on new security weaknesses?Help Net Security·Apr 21, 00:00 UTC · Apr 21, 2022Ransomware in the wild60
Hackers Exploiting Spring4Shell Vulnerability to Deploy Mirai Botnet MalwareThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022Vulnerability in the wildCVE-2022-2296560
Cybersecurity is getting harder: More threats, more complexity, fewer peopleHelp Net Security·Apr 13, 00:00 UTC · Apr 13, 2022Ransomware60
Threat Source newsletter (April 7, 2022) — More money for cybersecurity still doesn't solve the skills gap problemCisco Talos·Apr 7, 18:00 UTC · Apr 7, 2022Ransomware in the wildCVE-2022-2296560
Spring4Shell: No need to panic, but mitigations are advisedHelp Net Security·Apr 6, 12:06 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22963CVE-2010-1622CVE-2022-2296560
Almost a Fifth of Global Firms Targeted with Spring4ShellInfosecurity Magazine·Apr 6, 10:00 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-22963CVE-2022-2294760
Spring4Shell (CVE-2022Kaspersky Securelist·Apr 4, 16:42 UTC · Apr 4, 2022Vulnerability in the wildCVE-2022-22965CVE-2022-22963CVE-2010-162260
Muhstik Botnet Targeting Redis Servers Using Recently Disclosed VulnerabilityThe Hacker News·Mar 28, 06:59 UTC · Mar 28, 2022Vulnerability in the wildCVE-2022-0543CVE-2017-10271CVE-2018-7600+3 CVEs60
The not so scary truth about zero-day exploitsHelp Net Security·Mar 22, 00:00 UTC · Mar 22, 2022Exploit / PoC60
Week in review: PolKit vulnerability, fake tax apps pushing malware, EU's bug bounty for open sourceHelp Net Security·Feb 28, 14:42 UTC · Feb 28, 2022VulnerabilityCVE-2021-403460
Week in review: Kali Linux 2022.1 released, attackers leveraging Microsoft Teams to spread malwareHelp Net Security·Feb 20, 00:00 UTC · Feb 20, 2022MalwareCVE-2021-4422860
Iranian Hackers Targeting VMware Horizon Log4j Flaws to Deploy RansomwareThe Hacker News·Feb 18, 07:40 UTC · Feb 18, 2022RansomwareCVE-2018-1337960
Experts warn of a spike in APT35 activity and a link to Memento opSecurity Affairs·Feb 2, 11:56 UTC · Feb 2, 2022Threat actorCVE-2021-2197260
CVSS 9.9-Rated Samba Bug Requires Immediate PatchingInfosecurity Magazine·Feb 2, 10:10 UTC · Feb 2, 2022Vulnerability in the wildCVE-2021-4414260
Why vulnerability scanners aren't enough to prevent a ransomware attack on your businessHelp Net Security·Jan 31, 00:00 UTC · Jan 31, 2022Ransomware in the wild60
Experts Reveals 29% Surge in Bugs Used by Ransomware ActorsInfosecurity Magazine·Jan 26, 10:45 UTC · Jan 26, 2022RansomwareCVE-2021-30116CVE-2021-4422860
US Adds 17 Exploited Bugs to “Must Patch” ListInfosecurity Magazine·Jan 24, 10:13 UTC · Jan 24, 2022Vulnerability in the wildCVE-2021-32648CVE-2021-3524760
CISA warns of potential critical threats following attacks against UkraineSecurity Affairs·Jan 19, 15:46 UTC · Jan 19, 2022Advisory in the wildCVE-2021-3264860
White House hosts open-source software security summit in light of expansive Log4j flawCyberScoop·Jan 13, 14:08 UTC · Jan 13, 2022Exploit / PoC in the wild60
The worst cyber attacks of 2021Security Affairs·Jan 4, 21:18 UTC · Jan 4, 2022Ransomware in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+5 CVEs60
New Apache Log4j Update Released to Patch Newly Discovered VulnerabilityThe Hacker News·Dec 29, 05:00 UTC · Dec 29, 2021Vulnerability in the wildCVE-2021-44832CVE-2021-44228CVE-2021-45046+2 CVEs60
HackDHS program accepts reports of Log4jSecurity Affairs·Dec 23, 10:04 UTC · Dec 23, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-4504660
PYSA ransomware gang is the most active group in NovemberSecurity Affairs·Dec 22, 15:50 UTC · Dec 22, 2021Ransomware60
More than 35,000 Java packages impacted by Log4j flaw, Google warnsSecurity Affairs·Dec 21, 09:46 UTC · Dec 21, 2021VulnerabilityCVE-2021-4504660
Apache Issues 3rd Patch to Fix New HighThe Hacker News·Dec 20, 05:02 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-45105CVE-2021-45046CVE-2021-4422860
The Log4j JNDI attack and how to prevent itHelp Net Security·Dec 16, 08:41 UTC · Dec 16, 2021Data breachCVE-2021-4422860
Ransomware hits HR solutions provider Kronos, locking customers out of vital servicesHelp Net Security·Dec 14, 00:00 UTC · Dec 14, 2021Ransomware in the wild60
CVE-2021-44228 vulnerability in Apache Log4j libraryKaspersky Securelist·Dec 13, 14:10 UTC · Dec 13, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-4504660
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
0day exploit for Log4j Java library could have a tsunami impact on IT giantsSecurity Affairs·Dec 11, 09:40 UTC · Dec 11, 2021Data breachCVE-2021-4422860
Extremely Critical Log4J Vulnerability Leaves Much of the Internet at RiskThe Hacker News·Dec 11, 05:29 UTC · Dec 11, 2021Vulnerability in the wildCVE-2021-4422860