Over 600 Laravel Apps Exposed to Remote Code Execution Due to Leaked APP_KEYs on GitHubThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Vulnerability in the wildCVE-2018-15133CVE-2024-5555660
U.S. CISA adds Apple, Laravel Livewire and Craft CMS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 22, 14:40 UTC · Mar 22, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-32432CVE-2025-43510+3 CVEs60
AndroxGh0st Malware Targets Laravel Apps to Steal Cloud CredentialsThe Hacker News·Mar 21, 12:48 UTC · Mar 21, 2024MalwareCVE-2021-41773CVE-2017-9841CVE-2018-15133160
CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026The Hacker News·Mar 21, 08:25 UTC · Mar 21, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-43510CVE-2025-43520+2 CVEs160
March 2026 CVE Landscape: 31 High-Impact Vulnerabilities Identified, Interlock Ransomware Group Exploits Cisco FMC ZeroRecorded Future·Jun 3, 00:00 UTC · Jun 3, 2026Ransomware in the wildCVE-2017-7921CVE-2026-27483CVE-2026-27944+10 CVEs260
Androxgh0st malware hackers creating large botnet, CISA and FBI warnThe Record·Jan 16, 22:19 UTC · Jan 16, 2024Malware in the wildCVE-2018-1513360
⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and MoreThe Hacker News·Jul 6, 13:02 UTC · Jul 6, 2026RansomwareCVE-2026-48276CVE-2026-48283CVE-2026-48277+69 CVEs160
AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud ServicesThe Hacker News·Dec 18, 10:49 UTC · Dec 18, 2024MalwareCVE-2021-41773CVE-2018-15133CVE-2017-9841+12 CVEs60
Key aerospace player Safran Group leaks sensitive dataSecurity Affairs·Mar 15, 08:40 UTC · Mar 15, 2023Ransomware60
New Lucifer DDoS botnet targets Windows systems with multiple exploitsSecurity Affairs·Jun 26, 06:42 UTC · Jun 26, 2020MalwareCVE-2019-9081CVE-2014-6287CVE-2018-1000861+7 CVEs60
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosThe Hacker News·May 26, 04:39 UTC · May 26, 2026Malware in the wildCVE-2026-46333CVE-2026-41091CVE-2026-45498+31 CVEs60
PHP Composer flaws enable remote command execution via Perforce VCSSecurity Affairs·Apr 15, 08:47 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-40261CVE-2026-40176160
U.S. CISA adds Adobe, Fortinet, Microsoft Windows, Microsoft Exchange Server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 14, 07:38 UTC · Apr 14, 2026Exploit / PoC in the wildCVE-2026-34621CVE-2012-1854CVE-2020-9715+4 CVEs260
⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & VibeThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Data breach in the wildCVE-2026-21385CVE-2026-2796CVE-2026-2256+13 CVEs60
Zero-Click FreeScout Bug Enables Remote Code ExecutionInfosecurity Magazine·Mar 5, 11:00 UTC · Mar 5, 2026VulnerabilityCVE-2026-2763660
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin AccessThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Exploit / PoC in the wildCVE-2026-2355060
⚡ Weekly Recap: MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & MoreThe Hacker News·Dec 31, 05:07 UTC · Dec 31, 2025Malware in the wildCVE-2025-14847CVE-2020-12812CVE-2025-68664+7 CVEs260
Experts Reports Sharp Increase in Automated Botnet Attacks Targeting PHP Servers and IoT DevicesThe Hacker News·Oct 29, 15:38 UTC · Oct 29, 2025Malware in the wildCVE-2017-9841CVE-2021-3129CVE-2022-47945+2 CVEs160
⚡ Weekly Recap — SharePoint Breach, Spyware, IoT Hijacks, DPRK Fraud, Crypto Drains and MoreThe Hacker News·Jul 28, 15:57 UTC · Jul 28, 2025Malware in the wildCVE-2025-49706CVE-2025-49704CVE-2025-20281+27 CVEs60
PHP package Voyager flaws expose to oneSecurity Affairs·Jan 30, 12:21 UTC · Jan 30, 2025Exploit / PoCCVE-2024-55417CVE-2024-55416CVE-2024-55415160
PHP backdoor looks to be work of ChineseCyberScoop·Dec 16, 19:15 UTC · Dec 16, 2024Malware in the wild60
Crimeware and financial predictions for 2025Kaspersky Securelist·Nov 14, 09:01 UTC · Nov 14, 2024Ransomware60
Infostealers increasingly impact global securityHelp Net Security·Nov 13, 00:00 UTC · Nov 13, 2024MalwareCVE-2010-4598CVE-2011-2474CVE-2014-0130+15 CVEs160
US Government Urges Action to Mitigate Androxgh0st Malware ThreatInfosecurity Magazine·Jan 17, 11:05 UTC · Jan 17, 2024Malware in the wildCVE-2017-9841CVE-2018-15133CVE-2021-4177360
Trend Micro Releases Urgent Fix for Actively Exploited Critical Security VulnerabilityThe Hacker News·Oct 9, 06:46 UTC · Oct 9, 2023Vulnerability in the wildCVE-2023-41179CVE-2014-8361CVE-2017-6884+9 CVEs60
CISA adds Owl Labs, Samsung, Realtek bugs to exploited vulnerability listThe Record·Sep 21, 13:46 UTC · Sep 21, 2023Vulnerability in the wildCVE-2022-31459CVE-2022-31461CVE-2022-31462+2 CVEs60
Massive Cyber Attack Knocks Down Ukrainian Government WebsitesThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022VulnerabilityCVE-2021-3264860
The Insecurity of WordPress and Apache StrutsSchneier on Security·Mar 18, 07:45 UTC · Mar 18, 2020Exploit / PoC in the wild60
Critical Updates — RCE Flaws Found in SwiftMailer, PhpMailer and ZendMailThe Hacker News·Jan 5, 07:21 UTC · Jan 5, 2017VulnerabilityCVE-2016-10033CVE-2016-10045CVE-2016-10074+1 CVEs160
Critical RCE vulnerabilities affect SwiftMailer, PhpMailer and ZendMailSecurity Affairs·Jan 3, 13:26 UTC · Jan 3, 2017VulnerabilityCVE-2016-10033CVE-2016-10045CVE-2016-10074+1 CVEs160