AI Agent Exploits Langflow RCE to Automate Database Ransomware AttackThe Hacker News·Jul 2, 09:13 UTC · Jul 2, 2026Ransomware in the wildCVE-2025-3248CVE-2021-29441160
Accellion FTA attacks, extortion attempts might be the work of FIN11Help Net Security·Jun 8, 10:42 UTC · Jun 8, 2026Ransomware60
MOVEit Transfer zero-day attacks: The latest infoHelp Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC60
Critical Fortra FileCatalyst Workflow vulnerability patched (CVE-2024-6633)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026VulnerabilityCVE-2024-6633CVE-2024-6632CVE-2024-527660
CVE-2026-9082: Drupal's Highly Critical SQL Injection Flaw Is Already Under Active AttackSecurity Affairs·May 23, 16:17 UTC · May 23, 2026Vulnerability in the wildCVE-2026-908260
Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE AttacksThe Hacker News·May 22, 05:30 UTC · May 22, 2026VulnerabilityCVE-2026-908260
LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of DisclosureThe Hacker News·Apr 27, 04:26 UTC · Apr 27, 2026Vulnerability in the wildCVE-2026-33626CVE-2026-0740CVE-2026-384460
MariaDB updates MariaDB SkySQL cloud database, expands support for AWSHelp Net Security·Apr 20, 08:52 UTC · Apr 20, 2026Policy & legal55
SolarWinds Database Mapper and Task Factory enable data professionals to accelerate cloud migrationsHelp Net Security·Apr 17, 12:39 UTC · Apr 17, 2026Advisory55
Claude finds 353 zeroSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Data breach60
Over 200 PrestaShop stores expose installer, allowing full takeoverSansec (Magento / e-commerce security)·Apr 14, 13:40 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
The Zero-Day Scramble is Avoidable: A Guide to Attack Surface ReductionThe Hacker News·Mar 10, 16:16 UTC · Mar 10, 2026Exploit / PoC in the wild60
New "LeakyLooker" Flaws in Google Looker Studio Could Enable CrossThe Hacker News·Mar 10, 14:13 UTC · Mar 10, 2026Exploit / PoC in the wild60
Roundcube RCE: Dark web activity signals imminent attacks (CVE-2025-49113)Help Net Security·Feb 23, 10:54 UTC · Feb 23, 2026Vulnerability in the wildCVE-2025-49113CVE-2024-42009CVE-2025-6846160
GoBruteforcer Botnet Targets Linux ServersInfosecurity Magazine·Jan 8, 17:30 UTC · Jan 8, 2026Malware55
New BYOVD loader behind DeadLock ransomware attackCisco Talos·Dec 9, 11:00 UTC · Dec 9, 2025RansomwareCVE-2024-5132460
September 2025 CVE LandscapeRecorded Future·Oct 17, 00:00 UTC · Oct 17, 2025Exploit / PoC in the wildCVE-2025-53690CVE-2021-21311CVE-2025-20333+6 CVEs60
Microsoft, Adobe, SAP deliver critical fixes for September 2025 Patch TuesdayHelp Net Security·Sep 10, 00:00 UTC · Sep 10, 2025Vulnerability in the wildCVE-2025-54918CVE-2025-54916CVE-2025-55232+8 CVEs60
⚡ Weekly Recap: Chrome 0-Day, Ivanti Exploits, MacOS Stealers, Crypto Heists and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2025-32462CVE-2025-32463CVE-2025-20309+23 CVEs60
Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025The Hacker News·Jul 12, 06:33 UTC · Jul 12, 2025VulnerabilityCVE-2025-25257CVE-2025-20286CVE-2025-20281+1 CVEs60
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
New Linux Vulnerabilities Surge 967% in a YearInfosecurity Magazine·May 15, 14:00 UTC · May 15, 2025Vulnerability in the wild60
Week in review: The impact of a CVE-free future on cyber defense, Patch Tuesday forecastHelp Net Security·May 11, 00:00 UTC · May 11, 2025Vulnerability in the wildCVE-2025-32819CVE-2025-27363CVE-2025-3248+1 CVEs60
The LockBit ransomware site was breached, database dump was leaked onlineSecurity Affairs·May 8, 18:37 UTC · May 8, 2025Ransomware60
More bugs in Palo Alto Expedition see active exploitation, CISA warnsCyberScoop·Nov 15, 16:31 UTC · Nov 15, 2024Advisory in the wildCVE-2024-9463CVE-2024-9465CVE-2024-5910+2 CVEs60
U.S. CISA adds Palo Alto Networks Expedition bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 15, 09:36 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-9463CVE-2024-9465CVE-2024-9464+3 CVEs60
Palo Alto fixed critical flaws in PAN-OS firewalls that allow for full compromise of the devicesSecurity Affairs·Oct 10, 05:24 UTC · Oct 10, 2024Exploit / PoCCVE-2024-9463CVE-2024-9464CVE-2024-9465+3 CVEs60
Company listed on Shanghai stock exchange accused of aiding Chinese cyberattacksThe Record·Sep 18, 17:14 UTC · Sep 18, 2024Vulnerability55
LockBit is back and threatens to target more government organizationsSecurity Affairs·Feb 27, 07:44 UTC · Feb 27, 2024RansomwareCVE-2023-382460
July 2020 Patch Tuesday: Microsoft plugs wormable Windows DNS Server RCE flawHelp Net Security·Nov 14, 09:19 UTC · Nov 14, 2023Vulnerability in the wildCVE-2020-1350CVE-2020-1147CVE-2020-1349+2 CVEs60
Sony sent data breach notifications to about 6,800 individualsSecurity Affairs·Oct 5, 06:24 UTC · Oct 5, 2023Data breachCVE-2023-3436260
National Student Clearinghouse data breach impacted approximately 900 US schoolsSecurity Affairs·Sep 24, 09:19 UTC · Sep 24, 2023Data breachCVE-2023-3436260
Barracuda thought it drove 0-day hackers out of customers’ networks. It was wrong.Ars Technica · Security·Aug 30, 17:31 UTC · Aug 30, 2023VulnerabilityCVE-2023-286860
Open Raven automates attack prevention and remediation with DDR capabilitiesHelp Net Security·Aug 8, 00:00 UTC · Aug 8, 2023Policy & legal55
Owncast, EaseProbe security vulnerabilities revealedHelp Net Security·Jul 11, 00:00 UTC · Jul 11, 2023VulnerabilityCVE-2023-3188CVE-2023-3396760
Experts released PoC exploit for MOVEit Transfer CVE-2023Security Affairs·Jun 13, 05:29 UTC · Jun 13, 2023Exploit / PoCCVE-2023-3436260
Clop ransomware gang claims the hack of hundreds of victimsSecurity Affairs·Jun 7, 18:20 UTC · Jun 7, 2023RansomwareCVE-2023-34362CVE-2023-066960