Cisco fixes small business routers, kills eavesdropping vulnerability in conferencing devicesHelp Net Security·Nov 10, 10:47 UTC · Nov 10, 2019Vulnerability in the wild60
Researchers find hardcoded passwords in popular buildingCyberScoop·Jan 15, 16:39 UTC · Jan 15, 2019Exploit / PoCCVE-2019-390660
mHealth apps consistently expose PII and PHI through APIsHelp Net Security·Feb 12, 00:00 UTC · Feb 12, 2021Data breach60
Thousands of Algolia API Keys Could Expose Users' DataInfosecurity Magazine·Nov 21, 17:00 UTC · Nov 21, 2022Threat actor60
Sofacy APT hits high profile targets with updated toolsetKaspersky Securelist·Dec 4, 10:59 UTC · Dec 4, 2015Data breachCVE-2015-259060
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-orThe Hacker News·May 7, 17:59 UTC · May 7, 2026VulnerabilityCVE-2026-7411CVE-2026-7412CVE-2026-467060
Z-Wave Downgrade Attack Left Over 100 Million IoT Devices Open to HackersThe Hacker News·May 25, 09:16 UTC · May 25, 2018Vulnerability55
Wormable DarkRadiation Ransomware Targets Linux and Docker InstancesThe Hacker News·Jun 25, 03:05 UTC · Jun 25, 2021Ransomware60
Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE VulnerabilityThe Hacker News·Apr 21, 14:48 UTC · Apr 21, 2025Vulnerability in the wildCVE-2025-3040660
Attackers breached ConnectWise, compromised customer ScreenConnect instancesHelp Net Security·Jun 4, 08:00 UTC · Jun 4, 2025Data breach in the wildCVE-2025-3935CVE-2025-3040660
9 Popular Password Manager Apps Found Leaking Your SecretsThe Hacker News·Mar 1, 11:50 UTC · Mar 1, 2017Vulnerability55
Active Attacks Exploit Gladinet's Hard-Coded Keys for Unauthorized Access and Code ExecutionThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-30406CVE-2025-1461160
Lean Teams, Higher Stakes: Why CISOs Must Rethink Incident RemediationThe Hacker News·Sep 23, 11:30 UTC · Sep 23, 2025Ransomware60
The Epic Turla OperationKaspersky Securelist·Aug 7, 13:55 UTC · Aug 7, 2014Threat actorCVE-2013-5065CVE-2013-3346CVE-2012-172360
The Hidden Security Risks of Shadow AI in EnterprisesThe Hacker News·Apr 9, 11:31 UTC · Apr 9, 2026Policy & legal55
XM Cyber advances AI security with enhanced exposure and attack path visibilityHelp Net Security·Mar 25, 09:46 UTC · Mar 25, 2026Vulnerability55
CLOP targets Gladinet CentreStack servers in largeSecurity Affairs·Dec 19, 11:48 UTC · Dec 19, 2025Ransomware in the wildCVE-2025-11371CVE-2025-30406CVE-2025-61882+2 CVEs60
U.S. CISA adds Apple and Gladinet CentreStack and Triofox flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 15, 19:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-43529CVE-2025-14611CVE-2025-1417460
CVE-2025-11371: Unpatched zero-day in Gladinet CentreStack, Triofox under attackSecurity Affairs·Oct 11, 20:27 UTC · Oct 11, 2025Exploit / PoC in the wildCVE-2025-11371CVE-2025-3040660
Patch this critical Safeguard for Privileged Passwords auth bypass flaw (CVE-2024-45488)Help Net Security·Sep 19, 00:00 UTC · Sep 19, 2024VulnerabilityCVE-2024-4548860
Too many ICS assets are exposed to the public internetHelp Net Security·May 17, 00:00 UTC · May 17, 2024Exploit / PoC60
Flaws in FileWave MDM could have allowed hacking +1000 orgsSecurity Affairs·Jul 25, 18:03 UTC · Jul 25, 2022RansomwareCVE-2022-34907CVE-2022-3490660
Risky business: 3 timeless approaches to reduce security risk in 2021Help Net Security·Mar 8, 18:32 UTC · Mar 8, 2021Threat actor60
The Gentlemen RaaS: rapid growth and a new ransomware variantKaspersky Securelist·Jun 30, 10:06 UTC · Jun 30, 2026Ransomware160
CactusPete APT group’s updated Bisonal backdoorKaspersky Securelist·Aug 13, 10:00 UTC · Aug 13, 2020MalwareCVE-2018-817460
Threat Assessment: BlackByte RansomwarePalo Alto Unit 42·Jun 5, 22:40 UTC · Jun 5, 2024RansomwareCVE-2021-34473CVE-2021-34523CVE-2021-31207160
China-linked UNC6384 exploits Windows zeroSecurity Affairs·Nov 1, 14:11 UTC · Nov 1, 2025Exploit / PoC60
Humanoid robot found vulnerable to Bluetooth hack, data leaks to ChinaHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2025Vulnerability55
Juniper enterprise routers backdoored via "magic packet" malwareHelp Net Security·Jan 23, 00:00 UTC · Jan 23, 2025Malware55
Concentric AI unveils deep-learning driven detection capabilitiesHelp Net Security·May 18, 00:00 UTC · May 18, 2023Data breach60
Wild Neutron – Economic espionage threat actor returns with new tricksKaspersky Securelist·Jul 8, 13:04 UTC · Jul 8, 2015Threat actorCVE-2012-321360
AI learning mechanisms may lead to increase in codebase leaksHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2024Industry55
Next-gen OSDP was supposed to make it harder to break in to secure facilities. It failed.Ars Technica · Security·Aug 9, 14:30 UTC · Aug 9, 2023Vulnerability55
The Impact of Robotic Process Automation (RPA) on Identity and Access ManagementThe Hacker News·Dec 11, 11:30 UTC · Dec 11, 2025Vulnerability55
PayU Plugin Flaw Allows Account Takeover on 5000 WordPress SitesInfosecurity Magazine·Jun 9, 16:45 UTC · Jun 9, 2025VulnerabilityCVE-2025-3102260
Unlocking the power of cryptographic agility in a quantum worldHelp Net Security·Oct 11, 00:00 UTC · Oct 11, 2024Data breach60
Why AI code assistants need a security reality checkHelp Net Security·Jun 19, 00:00 UTC · Jun 19, 2025Vulnerability55
Critical Bugs and Backdoor Found in GeoVision's Fingerprint and Card ScannersThe Hacker News·Jun 25, 10:15 UTC · Jun 25, 2020MalwareCVE-2020-3928CVE-2020-3929CVE-2020-393060
THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG GroupPalo Alto Unit 42·Jun 6, 12:19 UTC · Jun 6, 2024VulnerabilityCVE-2021-26855CVE-2021-2706560
SamSam - The Evolution Continues Netting Over $325,000 in 4 WeeksCisco Talos·Jan 22, 17:29 UTC · Jan 22, 2018Ransomware60