Detections in the Sky: Sigma Rules to Enhance Cloud Security for the Big ThreeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actor60
Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoorsHelp Net Security·Oct 26, 00:00 UTC · Oct 26, 2025Malware in the wildCVE-2025-59287CVE-2025-61932CVE-2025-54236+2 CVEs60
Week in review: Zero-click flaw in Synology NAS devices, Google fixes exploited Android vulnerabilityHelp Net Security·Nov 10, 00:00 UTC · Nov 10, 2024Vulnerability in the wildCVE-2024-10443CVE-2024-43093CVE-2024-43047+2 CVEs60
Week in review: PoC for Windows Print Spooler flaw leaked, conquering synthetic identity fraudHelp Net Security·Jul 4, 00:00 UTC · Jul 4, 2021Exploit / PoCCVE-2021-34527CVE-2021-1675CVE-2020-358060
Week in review: OpenSSL critical fix, Medibank data breach, Apple fixes zero-day vulnerabilityHelp Net Security·Oct 30, 00:00 UTC · Oct 30, 2022Data breachCVE-2022-4282760
New Mirai Variant Targets WebSVN Command Injection Vulnerability (CVE-2021Palo Alto Unit 42·Jun 6, 12:14 UTC · Jun 6, 2024VulnerabilityCVE-2021-3230560
Cisco fixed critical RCE bug in ClamAV OpenSecurity Affairs·Feb 17, 09:42 UTC · Feb 17, 2023VulnerabilityCVE-2023-20032CVE-2023-2005260
NSA to establish new Cybersecurity Directorate to boost defenseCyberScoop·Jul 24, 17:49 UTC · Jul 24, 2019Exploit / PoC60
JenX botnet leverages Grand Theft Auto videogame community to infect devicesSecurity Affairs·Feb 3, 11:59 UTC · Feb 3, 2018MalwareCVE-2017-17215CVE-2014-836160
Engineer took U.S. locomotive manufacturer’s source code to China, prosecutors sayCyberScoop·Jul 11, 16:59 UTC · Jul 11, 2019Data breach in the wild60
Week in review: JetBrains GitHub plugin vulnerability, 20k FortiGate appliances compromisedHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2024VulnerabilityCVE-2024-37051CVE-2024-4577CVE-2024-30080+1 CVEs160
Week in review: CDK Global cyberattack, critical vCenter Server RCE fixedHelp Net Security·Jun 23, 00:00 UTC · Jun 23, 2024Vulnerability in the wildCVE-2024-0762CVE-2024-37079CVE-2024-3708060
Week in review: Exploitable flaws in corporate VPN clients, malware loader created with gaming engineHelp Net Security·Dec 1, 00:00 UTC · Dec 1, 2024MalwareCVE-2024-5921CVE-2024-29014CVE-2024-9680+1 CVEs60
Google engineers keep pushing on email encryption as E2EMail goes open sourceCyberScoop·Feb 27, 18:15 UTC · Feb 27, 2017Exploit / PoC in the wild60
Apple fixed a zero-day exploited in attacks against Google Chrome usersSecurity Affairs·Jul 30, 18:09 UTC · Jul 30, 2025Exploit / PoC in the wildCVE-2025-655860
Week in review: Free security tools, TeamViewer flaw, Patch Tuesday forecastHelp Net Security·Aug 9, 00:00 UTC · Aug 9, 2020VulnerabilityCVE-2020-1048CVE-2020-1369960
Google Employees Help Thousands Of Open Source Projects Patch Critical ‘Mad Gadget Bug’The Hacker News·Mar 3, 14:53 UTC · Mar 3, 2017VulnerabilityCVE-2015-642060
The Intelligence No One Else Has: Inside Recorded Future’s Proprietary Collection EngineRecorded Future·Jun 22, 00:00 UTC · Jun 22, 2026Ransomware60
Chinese Threat Actor TEMP.Periscope Targets UK-Based Engineering Company Using Russian APT TechniquesRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Threat actor60
Lazarus APT steals cryptocurrency and user data via a decoy MOBA gameKaspersky Securelist·Oct 23, 11:00 UTC · Oct 23, 2024Threat actorCVE-2024-494760
NSA’s reverse engineering tool Ghidra impacted by a bug — but there's no need to panicCyberScoop·Oct 1, 21:13 UTC · Oct 1, 2019Exploit / PoC in the wildCVE-2019-1694160
Google’s AI Tool Big Sleep Finds Zero-Day Vulnerability in SQLite Database EngineThe Hacker News·Nov 4, 10:04 UTC · Nov 4, 2024Exploit / PoC60
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
How an NSA researcher plans to allow everyone to guard against firmware attacksCyberScoop·Aug 23, 21:17 UTC · Aug 23, 2019Exploit / PoC in the wild60
Google's AI-Powered OSS-Fuzz Tool Finds 26 Vulnerabilities in OpenThe Hacker News·Nov 21, 10:03 UTC · Nov 21, 2024VulnerabilityCVE-2024-914360
⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and MoreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+36 CVEs60
ScamClub malvertising gang abused WebKit zero-day to redirect to online gift card scamsSecurity Affairs·Feb 17, 18:24 UTC · Feb 17, 2021Exploit / PoC60
Google says ‘Big Sleep’ AI tool found bug hackers planned to useThe Record·Jul 15, 18:25 UTC · Jul 15, 2025Exploit / PoCCVE-2025-696560
Zero-day market, the governments are the main buyersSecurity Affairs·Oct 17, 09:08 UTC · Oct 17, 2017Exploit / PoC60
North Korea–linked APT Kimsuky behind quishing attacks, FBI warnsSecurity Affairs·Jan 10, 15:34 UTC · Jan 10, 2026Threat actorCVE-2019-0708CVE-2017-1188260
Hackers Exploit Critical CrushFTP Flaw to Gain Admin Access on Unpatched ServersThe Hacker News·Sep 2, 04:43 UTC · Sep 2, 2025Vulnerability in the wildCVE-2025-54309CVE-2025-31161CVE-2024-404060
Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers ActThe Hacker News·Jul 20, 15:49 UTC · Jul 20, 2025Vulnerability in the wildCVE-2025-696560
Cisco warns of a ClamAV bug with PoC exploitSecurity Affairs·Jan 26, 06:58 UTC · Jan 26, 2025Exploit / PoCCVE-2025-20128CVE-2023-2003260
Google uses large language model to discover realThe Record·Nov 4, 01:37 UTC · Nov 4, 2024Vulnerability in the wild60
Pindrop Pulse Inspect analyzes and verifies whether media files contain synthetic speechHelp Net Security·Aug 16, 00:00 UTC · Aug 16, 2024Threat actor60
North Korea-linked threat actors target cybersecurity experts with a zeroSecurity Affairs·Sep 8, 19:51 UTC · Sep 8, 2023Threat actor in the wild60
Critical RCE Vulnerability Discovered in ClamAV Open Source Antivirus SoftwareThe Hacker News·Feb 17, 08:59 UTC · Feb 17, 2023VulnerabilityCVE-2023-20032CVE-2023-20052CVE-2023-20014+2 CVEs60
Microsoft Patch Tuesday, February 2023 EditionKrebs on Security·Feb 15, 00:00 UTC · Feb 15, 2023VulnerabilityCVE-2023-23376CVE-2023-21715CVE-2023-21823+4 CVEs60
Google fixes two actively exploited Chrome zero-days (CVE-2020-16009, CVE-2020-16010)Help Net Security·Nov 4, 00:00 UTC · Nov 4, 2020Exploit / PoC in the wildCVE-2020-16009CVE-2020-16010CVE-2020-15999+1 CVEs60
Google fixes Chrome zeroSecurity Affairs·Feb 25, 13:53 UTC · Feb 25, 2020Exploit / PoC in the wildCVE-2020-6418CVE-2019-5786CVE-2019-1372060