⚡ Weekly Recap: Chrome 0-Day, IngressNightmare, Solar Bugs, DNS Tactics, and MoreThe Hacker News·Aug 19, 13:08 UTC · Aug 19, 2025Ransomware in the wildCVE-2025-2783CVE-2025-2857CVE-2025-1974+11 CVEs60
Announcing the winners of the 2025 CyberScoop 50 awardsCyberScoop·Aug 11, 14:58 UTC · Aug 11, 2025Exploit / PoC in the wild60
CyberScoop 50 reveals 2025 winners; honors Amit Yoran with lifetime awardCyberScoop·Aug 11, 14:36 UTC · Aug 11, 2025Exploit / PoC in the wild60
ToolShell: Details of CVEs affecting SharePoint serversCisco Talos·Jul 23, 15:32 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+1 CVEs160
Microsoft Patches 130 Vulnerabilities, Including Critical Flaws in SPNEGO and SQL ServerThe Hacker News·Jul 10, 07:02 UTC · Jul 10, 2025Vulnerability in the wildCVE-2025-49719CVE-2025-47981CVE-2025-49735+9 CVEs60
Microsoft Patches 67 Vulnerabilities Including WEBDAV ZeroThe Hacker News·Jun 12, 15:47 UTC · Jun 12, 2025Vulnerability in the wildCVE-2025-33053CVE-2025-47966CVE-2025-32713+3 CVEs160
⚡ Weekly Recap: Chrome 0-Day, IngressNightmare, Solar Bugs, DNS Tactics, and MoreThe Hacker News·May 17, 13:56 UTC · May 17, 2025Ransomware in the wildCVE-2025-2783CVE-2025-2857CVE-2025-1974+11 CVEs60
Microsoft Fixes 78 Flaws, 5 Zero-Days Exploited; CVSS 10 Bug Impacts Azure DevOps ServerThe Hacker News·May 15, 00:00 UTC · May 15, 2025Vulnerability in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+10 CVEs160
Microsoft Patches 125 Flaws Including Actively Exploited Windows CLFS VulnerabilityThe Hacker News·Apr 10, 06:48 UTC · Apr 10, 2025Vulnerability in the wildCVE-2025-29824CVE-2022-24521CVE-2022-37969+15 CVEs60
Week in review: Microsoft fixes two actively exploited 0-days, PAN-OS auth bypass hole pluggedHelp Net Security·Feb 16, 00:00 UTC · Feb 16, 2025Ransomware in the wildCVE-2025-21418CVE-2025-21391CVE-2025-0108+1 CVEs60
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
Microsoft Fixes 72 Flaws, Including Patch for Actively Exploited CLFS VulnerabilityThe Hacker News·Dec 11, 15:01 UTC · Dec 11, 2024Vulnerability in the wildCVE-2024-49138CVE-2022-24521CVE-2022-37969+6 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
Week in review: 87k+ Fortinet devices still open to attack, red teaming tool used for EDR evasionHelp Net Security·Oct 20, 00:00 UTC · Oct 20, 2024AI safety & security in the wildCVE-2024-2311350
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
THN Cybersecurity Recap: Top Threats and Trends (Sep 30The Hacker News·Oct 7, 12:34 UTC · Oct 7, 2024Ransomware in the wild60
AI, election security headline discussions at Black Hat and DEF CONCisco Talos·Aug 15, 18:00 UTC · Aug 15, 2024Ransomware in the wildCVE-2024-38184CVE-2024-38185CVE-2024-38186+3 CVEs160
Microsoft Issues Patches for 90 Flaws, Including 10 Critical ZeroThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2024Vulnerability in the wildCVE-2024-38189CVE-2024-38178CVE-2024-38193+13 CVEs160
Low-level cybercriminals are pouncing on CrowdStrikeCyberScoop·Jul 23, 22:05 UTC · Jul 23, 2024Exploit / PoC in the wild60
Microsoft's July Update Patches 143 Flaws, Including Two Actively ExploitedThe Hacker News·Jul 11, 09:02 UTC · Jul 11, 2024Vulnerability in the wildCVE-2024-38080CVE-2024-38112CVE-2024-37985+3 CVEs60
Week in review: Veeam fixes RCE flaw in backup management platform, Patch Tuesday forecastHelp Net Security·May 12, 00:00 UTC · May 12, 2024Vulnerability in the wildCVE-2024-29212CVE-2024-4671CVE-2024-21793+2 CVEs60
Microsoft Fixes 149 Flaws in Huge April Patch Release, ZeroThe Hacker News·Apr 11, 11:08 UTC · Apr 11, 2024Vulnerability in the wildCVE-2024-26234CVE-2024-29988CVE-2024-21412+2 CVEs60
“Pig butchering” is an evolution of a social engineering tactic we’ve seen for yearsCisco Talos·Mar 21, 18:00 UTC · Mar 21, 2024Phishing & fraud in the wild60
Week in review: AnyDesk phishing campaign targets employees, Microsoft fixes exploited zero-daysHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2024Exploit / PoC in the wildCVE-2024-21762CVE-2024-23313CVE-2023-43770+5 CVEs160
Microsoft's January 2024 Windows Update Patches 48 New VulnerabilitiesThe Hacker News·Jan 10, 10:14 UTC · Jan 10, 2024Vulnerability in the wildCVE-2023-7024CVE-2024-20674CVE-2024-20700+3 CVEs60
Week in review: Cybersecurity cheat sheets, widely exploited Cisco zero-day, KeePass-themed malvertisingHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2023Exploit / PoC in the wildCVE-2023-20198CVE-2023-4966CVE-2023-3883160
Microsoft Releases Patch for Two New Actively Exploited ZeroThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Vulnerability in the wildCVE-2023-4863CVE-2023-36761CVE-2023-36802+1 CVEs60
Microsoft Releases Patches for 74 New Vulnerabilities in August UpdateThe Hacker News·Aug 10, 03:31 UTC · Aug 10, 2023Vulnerability in the wildCVE-2023-20569CVE-2023-36884CVE-2023-35388+8 CVEs60
Microsoft Releases Updates to Patch Critical Flaws in Windows and Other SoftwareThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-3079CVE-2023-29357CVE-2023-29363+5 CVEs60
Week in review: Attackers exploiting VMware RCE, Microsoft fixes actively exploited zero-dayHelp Net Security·Apr 17, 00:00 UTC · Apr 17, 2022Exploit / PoC in the wildCVE-2022-24521CVE-2022-26904CVE-2022-26809+1 CVEs60
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Biden campaign hires ex-White House official Chris DeRusha as CISOCyberScoop·Jul 10, 18:36 UTC · Jul 10, 2020Threat actor in the wild60
Ordr SCE 7.2: Enabling orgs to monitor for risks and proactively strengthen infrastructureHelp Net Security·Jul 3, 00:00 UTC · Jul 3, 2020Vulnerability in the wild60
Recorded Future to Provide Free Access to Elite Intelligence Through New Browser ExtensionSecurity Affairs·May 5, 20:38 UTC · May 5, 2020Exploit / PoC in the wild60
Cyber deals continue with Proofpoint's $225 million acquisition of ObserveITCyberScoop·Nov 4, 20:24 UTC · Nov 4, 2019Exploit / PoC in the wild60
How identifying bogus checks at M&T Bank is a lot like hunting cybercriminalsCyberScoop·Jul 9, 15:33 UTC · Jul 9, 2019Exploit / PoC in the wild60
Cybersecurity startup empow raises $10 million in Series B funding roundCyberScoop·Apr 12, 13:30 UTC · Apr 12, 2018Exploit / PoC in the wild60
Go to HELL, PowersHELL : Powerdown the PowerShell AttacksSecurity Affairs·Nov 15, 07:20 UTC · Nov 15, 2017Malware in the wild157
CIA-backed Recorded Future gets new $25 million investmentCyberScoop·Oct 31, 17:51 UTC · Oct 31, 2017Exploit / PoC in the wild60
Review: Threat ForecastingHelp Net Security·Oct 17, 00:00 UTC · Oct 17, 2016Policy & legal in the wild57