Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploitedHelp Net Security·Jun 28, 00:00 UTC · Jun 28, 2026Threat actor in the wildCVE-2026-2023060
⚡ Weekly Recap: Instagram Account Hacks, Android ZeroThe Hacker News·Jun 9, 05:53 UTC · Jun 9, 2026Exploit / PoC in the wildCVE-2025-48595CVE-2026-28318CVE-2026-39210+43 CVEs60
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flawHelp Net Security·May 31, 00:00 UTC · May 31, 2026Malware in the wildCVE-2026-45659CVE-2026-34926CVE-2026-3561660
ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 MoreThe Hacker News·May 28, 13:33 UTC · May 28, 2026Phishing & fraud in the wildCVE-2026-8398160
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-34621260
⚡ Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & MoreThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2026Malware in the wildCVE-2026-3909CVE-2026-3910CVE-2026-3913+40 CVEs260
⚡ Weekly Recap: WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & MoreThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Malware in the wildCVE-2025-55177CVE-2025-43300CVE-2025-907460
Week in review: Microsoft SharePoint servers under attack, landing your first cybersecurity jobHelp Net Security·Jul 27, 00:00 UTC · Jul 27, 2025Ransomware in the wildCVE-2025-40599CVE-2025-5430960
Week in review: Google fixes exploited Chrome zero-day, Patch Tuesday forecastHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2025Exploit / PoC in the wildCVE-2025-541960
Actively exploited FreeType flaw fixed in Android (CVE-2025-27363)Help Net Security·May 7, 00:00 UTC · May 7, 2025Vulnerability in the wildCVE-2025-2736360
Week in review: Critical Zimbra RCE vulnerability exploited, Patch Tuesday forecastHelp Net Security·Oct 6, 00:00 UTC · Oct 6, 2024Vulnerability in the wildCVE-2024-45519CVE-2024-2982460
Week in review: Windows Server 2025 gets hotpatching option, PoC for SolarWinds WHD flaw releasedHelp Net Security·Sep 29, 00:00 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-759360
Week in review: Backdoor found in XZ utilities, weaponized iMessages, Exchange servers at riskHelp Net Security·Mar 31, 00:00 UTC · Mar 31, 2024Malware in the wildCVE-2024-3094CVE-2023-48022CVE-2023-2495560
Week in review: PoC for Splunk Enterprise RCE flaw released, scope of Okta breach widensHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2023Exploit / PoC in the wildCVE-2023-46214CVE-2023-49103CVE-2023-41998+5 CVEs260
Week in review: Exploited Citrix Bleed vulnerability, Atlassian patches critical Confluence bugHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2023Vulnerability in the wildCVE-2023-4966CVE-2023-22518CVE-2023-46747+2 CVEs60
Week in review: Cybersecurity cheat sheets, widely exploited Cisco zero-day, KeePass-themed malvertisingHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2023Exploit / PoC in the wildCVE-2023-20198CVE-2023-4966CVE-2023-3883160
Almost all VPNs are vulnerable to traffic-leaking TunnelCrack attacksHelp Net Security·Aug 14, 00:00 UTC · Aug 14, 2023Exploit / PoC in the wildCVE-2023-36672CVE-2023-35838CVE-2023-36673+1 CVEs60
Fortra Sheds Light on GoAnywhere MFT ZeroThe Hacker News·Apr 21, 04:57 UTC · Apr 21, 2023Ransomware in the wildCVE-2023-066960
Attacks on Exchange servers expand from nationThe Record·Nov 17, 06:58 UTC · Nov 17, 2022Ransomware in the wild60
Week in review: 7 cybersecurity audiobooks to read, Patch Tuesday forecastHelp Net Security·Oct 9, 00:00 UTC · Oct 9, 2022Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2022-3525660
Week in review: MS Exchange zero-days exploited, AD attack paths, developing secure APIsHelp Net Security·Oct 2, 00:00 UTC · Oct 2, 2022Ransomware in the wildCVE-2022-41040CVE-2022-41082CVE-2022-3236160
Hackers linked to the Chinese government increasingly target Russia, analysis suggestsCyberScoop·Jul 7, 11:00 UTC · Jul 7, 2022Exploit / PoC in the wild60
Privacy legislation might provide a powerful guard against online identity fraudCyberScoop·Jun 15, 15:16 UTC · Jun 15, 2022Phishing & fraud in the wild60
Chinese Hackers Begin Exploiting Latest Microsoft Office ZeroThe Hacker News·Jun 1, 10:00 UTC · Jun 1, 2022Exploit / PoC in the wildCVE-2022-30190160
Zero-day bug exploited by attackers via macro-less Office documents (CVE-2022-30190)Help Net Security·May 31, 00:00 UTC · May 31, 2022Exploit / PoC in the wildCVE-2022-30190CVE-2021-4044460
Week in review: Spring4Shell vulnerability, attackers exploiting patched RCE in Sophos FirewallHelp Net Security·Apr 3, 00:00 UTC · Apr 3, 2022Vulnerability in the wildCVE-2022-104060
US Sanctions Russia and Expels 10 Diplomats Over SolarWinds CyberattackThe Hacker News·Jun 4, 10:27 UTC · Jun 4, 2021Policy & legal in the wildCVE-2018-13379CVE-2019-9670CVE-2019-11510+2 CVEs60
IT threat evolution Q1 2021Kaspersky Securelist·May 31, 07:32 UTC · May 31, 2021Ransomware in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Law enforcement delivers final blow to EmotetCyberScoop·Apr 26, 13:52 UTC · Apr 26, 2021Ransomware in the wild60
Ex-government officials urge US to take action to avoid another SolarWindsCyberScoop·Feb 10, 23:23 UTC · Feb 10, 2021Exploit / PoC in the wild60
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
Bipartisan bill would help domestic abuse survivors bypass mobile surveillanceCyberScoop·Feb 1, 22:58 UTC · Feb 1, 2021Policy & legal in the wild60
DOD, FBI, DHS warn of active North Korean governmentCyberScoop·Oct 27, 17:00 UTC · Oct 27, 2020Exploit / PoC in the wild60
Anti-stalkerware group still working to protect domestic abuse victimsCyberScoop·Oct 19, 15:30 UTC · Oct 19, 2020Exploit / PoC in the wild60
Ransomware operators now threatening to publish stolen data in extortion demandsCyberScoop·Jun 24, 19:00 UTC · Jun 24, 2020Ransomware in the wild60
This was inevitable: 'Thanos' ransomware weaponizes research tool against Microsoft Windows usersCyberScoop·Jun 10, 14:48 UTC · Jun 10, 2020Ransomware in the wild60
Week in review: The future of DNS security, acquiring cyber talent in 2020, new issue of (IN)SECUREHelp Net Security·Feb 16, 00:00 UTC · Feb 16, 2020Ransomware in the wildCVE-2020-210060
Antivirus companies, anti-abuse nonprofits join forces to combat stalkerwareCyberScoop·Nov 19, 13:00 UTC · Nov 19, 2019Exploit / PoC in the wild60
Why did Cyber Command back off its recent plans to call out North Korean hacking?CyberScoop·Oct 22, 18:44 UTC · Oct 22, 2019Exploit / PoC in the wild60