⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreThe Hacker News·May 11, 12:36 UTC · May 11, 2026Malware in the wildCVE-2026-6973CVE-2026-030060
New Patch Released for Actively Exploited 0The Hacker News·Oct 11, 02:57 UTC · Oct 11, 2021Vulnerability in the wildCVE-2021-42013CVE-2021-4177360
PlushDaemon APT Targets South Korean VPN Provider in Supply Chain AttackThe Hacker News·Jan 24, 05:24 UTC · Jan 24, 2025Vulnerability42
Oracle Out of Cycle Apache Patch – CVE-2011Kaspersky Securelist·Sep 16, 22:32 UTC · Sep 16, 2011Vulnerability in the wildCVE-2011-3192CVE-2007-008660
Ebury Botnet Malware Compromises 400,000 Linux Servers Over Past 14 YearsThe Hacker News·May 15, 00:00 UTC · May 15, 2024MalwareCVE-2021-4546747
Zerobot Botnet Emerges as a Growing Threat with New Exploits and CapabilitiesThe Hacker News·Jul 26, 17:38 UTC · Jul 26, 2023MalwareCVE-2021-42013CVE-2022-33891CVE-2017-17105+4 CVEs60
New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & CloudflareThe Hacker News·Jun 10, 14:36 UTC · Jun 10, 2026VulnerabilityCVE-2016-6581CVE-2025-53020CVE-2016-8740+3 CVEs35
Bug or Feature? Hidden Web Application Vulnerabilities UncoveredThe Hacker News·Feb 5, 12:12 UTC · Feb 5, 2024VulnerabilityCVE-2019-021160
ZDI offers hefty bounties for zero-days in popular web servers, CMSesHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2018Exploit / PoC60
Feds Warn of AndroxGh0st Botnet Targeting AWS, Azure, and Office 365 CredentialsThe Hacker News·Jan 18, 08:54 UTC · Jan 18, 2024MalwareCVE-2017-9841CVE-2021-41773CVE-2018-1513335
Biotech platforms keep missing the mark on security fundamentalsHelp Net Security·Oct 2, 00:00 UTC · Oct 2, 2025Vulnerability42
AndroxGh0st Malware Targets Laravel Apps to Steal Cloud CredentialsThe Hacker News·Mar 21, 12:48 UTC · Mar 21, 2024MalwareCVE-2021-41773CVE-2017-9841CVE-2018-15133160
Threat Source newsletter (Oct. 28, 2021)Cisco Talos·Oct 28, 18:00 UTC · Oct 28, 2021Ransomware in the wildCVE-2021-41733CVE-2021-4201360
Hewlett Packard Enterprise (HPE) fixed maximum severity OneView flawSecurity Affairs·Dec 18, 21:11 UTC · Dec 18, 2025Exploit / PoCCVE-2025-37164CVE-2025-3709360
HPE Issues Security Patch for StoreOnce Bug Allowing Remote Authentication BypassThe Hacker News·Jun 4, 05:23 UTC · Jun 4, 2025Vulnerability in the wildCVE-2025-37093CVE-2025-37089CVE-2025-37090+8 CVEs60
Hackers Exploit PHP Vulnerability to Deploy Stealthy Msupedge BackdoorThe Hacker News·Aug 21, 03:50 UTC · Aug 21, 2024VulnerabilityCVE-2024-457760
Roughly 200,000 Devices still affected by the Heartbleed vulnerabilitySecurity Affairs·Sep 20, 12:01 UTC · Sep 20, 2017VulnerabilityCVE-2014-016035
QNAP Advises to Mitigate Remote Hacking Flaws Until Patches are AvailableThe Hacker News·Apr 29, 05:04 UTC · Apr 29, 2022VulnerabilityCVE-2021-31439CVE-2022-23121CVE-2022-23122+4 CVEs47
Enemybot, a new DDoS botnet appears in the threat landscapeSecurity Affairs·Apr 17, 17:53 UTC · Apr 17, 2022MalwareCVE-2020-17456CVE-2018-10823CVE-2022-27226+9 CVEs35
Hurry up, disable AFP on your QNAP NAS until the vendor fixes 8 bugsSecurity Affairs·May 1, 14:13 UTC · May 1, 2022VulnerabilityCVE-2021-31439CVE-2022-23121CVE-2022-23123+4 CVEs60
EnemyBot malware adds new exploits to target CMS servers and Android devicesSecurity Affairs·May 30, 07:09 UTC · May 30, 2022MalwareCVE-2020-17456CVE-2018-10823CVE-2022-27226+19 CVEs60
CISA, FBI and NSA Publish Joint Advisory and Scanner for Log4j VulnerabilitiesThe Hacker News·Dec 29, 03:34 UTC · Dec 29, 2021VulnerabilityCVE-2021-45046CVE-2021-45105CVE-2021-44228+2 CVEs47
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangsCisco Talos·Apr 23, 10:00 UTC · Apr 23, 2025Ransomware60
Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risksHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2026Exploit / PoCCVE-2025-64155CVE-2025-20393160
Debian 13.3 is now available with targeted corrections, updatesHelp Net Security·Jan 12, 00:00 UTC · Jan 12, 2026Vulnerability30
HPE OneView Flaw Rated CVSS 10.0 Allows Unauthenticated Remote Code ExecutionThe Hacker News·Dec 18, 14:39 UTC · Dec 18, 2025Vulnerability in the wildCVE-2025-37164160
Google finds custom backdoor being installed on SonicWall network devicesArs Technica · Security·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2021-20038CVE-2024-38475CVE-2021-20035+2 CVEs60
Two SonicWall SMA100 flaws actively exploited in the wildSecurity Affairs·May 1, 08:31 UTC · May 1, 2025Exploit / PoC in the wildCVE-2023-44221CVE-2024-3847560
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [27 January]The Hacker News·Jan 27, 12:39 UTC · Jan 27, 2025VulnerabilityCVE-2025-23006CVE-2025-20156CVE-2025-21556+7 CVEs60
AlmaLinux 9.5 released: Security updates, new packages, and more!Help Net Security·Nov 19, 00:00 UTC · Nov 19, 2024Vulnerability130
Chinese hackers compromised an ISP to deliver malicious software updatesHelp Net Security·Aug 5, 00:00 UTC · Aug 5, 2024Vulnerability42
Chinese Hackers Target Taiwan and U.S. NGO with MgBot and MACMA MalwareThe Hacker News·Jul 24, 05:16 UTC · Jul 24, 2024Malware30
Top CVEs to Patch: Insights from the 2022 Unit 42 Network Threat Trends Research ReportPalo Alto Unit 42·Jun 5, 20:14 UTC · Jun 5, 2024VulnerabilityCVE-2017-5638CVE-2017-9841CVE-2018-19986+26 CVEs160
FBI, CISA warn of AndroxGh0st botnet for victim identification and exploitationSecurity Affairs·Jan 17, 12:10 UTC · Jan 17, 2024MalwareCVE-2017-9841CVE-2021-41773CVE-2018-1513347
Why Everyone Needs to Take the Latest CISA Directive SeriouslyThe Hacker News·Dec 3, 09:23 UTC · Dec 3, 2021Exploit / PoC in the wildCVE-2019-021160
Week in review: Password-less security, WPA3 design flaws, new Windows 10 update controlsHelp Net Security·May 13, 13:23 UTC · May 13, 2020Ransomware in the wildCVE-2019-1573CVE-2019-021160
Tirreno: Open-source fraud prevention platformHelp Net Security·Apr 14, 00:00 UTC · Apr 14, 2025Phishing & fraud30
Another sophisticated Apache backdoor serving Blackhole exploit kitSecurity Affairs·Apr 29, 21:06 UTC · Apr 29, 2013Malware42
AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache ZeroThe Hacker News·Aug 7, 11:25 UTC · Aug 7, 2026Exploit / PoCCVE-2026-6307860
Prometei botnet improves modules and exhibits new capabilities in recent updatesCisco Talos·Mar 9, 13:02 UTC · Mar 9, 2023MalwareCVE-2019-0708147