Threat Source Newsletter (May 6, 2021)Cisco Talos·May 6, 18:00 UTC · May 6, 2021Data breach in the wildCVE-2020-28588CVE-2021-149360
CISA Adds Actively Exploited Linux Root Access Bug CVE-2026The Hacker News·May 3, 06:26 UTC · May 3, 2026Advisory in the wildCVE-2026-3143160
Bad Epoll Flaw Gives Attackers Root Access on Linux and AndroidSecurity Affairs·Jul 6, 08:24 UTC · Jul 6, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-4307460
Amnesty Finds Cellebrite’s Zero-Day Used to Unlock Serbian Activist’s Android PhoneThe Hacker News·Mar 4, 08:43 UTC · Mar 4, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-5030260
Unprivileged users could exploit AppArmor bugs to gain root accessSecurity Affairs·Mar 16, 08:05 UTC · Mar 16, 2026Exploit / PoC60
New Flaws in Qualcomm Chips Expose Millions of Android Devices to HackingThe Hacker News·Aug 6, 08:16 UTC · Aug 6, 2019Exploit / PoCCVE-2019-10539CVE-2019-10540CVE-2019-1053860
A critical Linux Wi-Fi bug could be exploited to fully compromise systemsSecurity Affairs·Oct 19, 13:45 UTC · Oct 19, 2019VulnerabilityCVE-2019-17666160
Serbian student’s Android phone compromised by exploit from CellebriteArs Technica · Security·Feb 28, 23:08 UTC · Feb 28, 2025Exploit / PoCCVE-2024-53104CVE-2024-53197CVE-2024-5030260
University of Minnesota researchers fail to understand consentHelp Net Security·May 19, 00:00 UTC · May 19, 2021Vulnerability55
Russia says it might build its own Linux community after removal of several kernel maintainersThe Record·Oct 29, 12:54 UTC · Oct 29, 2024Vulnerability55
'Copy Fail' is a real Linux security crisis wrapped in AI slopCyberScoop·May 4, 21:56 UTC · May 4, 2026Exploit / PoC in the wildCVE-2026-3143160
First Android Malware Found Exploiting Dirty COW Linux Flaw to Gain Root PrivilegesThe Hacker News·Sep 26, 13:57 UTC · Sep 26, 2017Malware in the wildCVE-2016-5195CVE-2015-180560
Januscape: 16-Year-Old Linux KVM Bug Enables Cloud VM Escape AttacksSecurity Affairs·Jul 7, 07:07 UTC · Jul 7, 2026Exploit / PoCCVE-2026-53359CVE-2026-46316CVE-2026-43284+1 CVEs60
Google addresses actively exploited Android flaw in the kernelSecurity Affairs·May 5, 19:47 UTC · May 5, 2022Exploit / PoC in the wildCVE-2021-2260060
Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container IsolationThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2026Exploit / PoC60
Notes on CVE-2022Kaspersky Securelist·Mar 14, 14:11 UTC · Mar 14, 2022Exploit / PoC in the wildCVE-2022-084760
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosThe Hacker News·May 26, 04:39 UTC · May 26, 2026Malware in the wildCVE-2026-46333CVE-2026-41091CVE-2026-45498+31 CVEs60
Google Patches 47 Android Security Flaws, Including Actively Exploited CVE-2024The Hacker News·Feb 6, 03:49 UTC · Feb 6, 2025Vulnerability in the wildCVE-2024-53104CVE-2024-4556960
Google fixed two actively exploited Android zeroSecurity Affairs·Apr 8, 07:29 UTC · Apr 8, 2025Exploit / PoC in the wildCVE-2024-53197CVE-2024-53150CVE-2024-53104+3 CVEs60
Huge Flaws Affect Nearly Every Modern Device; Patch Could Hit CPU PerformanceThe Hacker News·Jan 4, 07:01 UTC · Jan 4, 2018Vulnerability55
SSHStalker Botnet Uses IRC C2 to Control Linux Systems via Legacy Kernel ExploitsThe Hacker News·Feb 11, 09:58 UTC · Feb 11, 2026MalwareCVE-2009-2692CVE-2009-2698CVE-2010-3849+6 CVEs60
Wind River's enhancements deliver cybersecurity and anti-tamper protectionHelp Net Security·May 20, 00:00 UTC · May 20, 2021Industry55
Review of supply chain attacks in 2024 and potential disruption scenarios for 2025Kaspersky Securelist·Dec 9, 10:54 UTC · Dec 9, 2024Data breach in the wild60
Grinch Bug Could be worse than Shellshock, Says ExpertsSecurity Affairs·Nov 5, 23:20 UTC · Nov 5, 2018Exploit / PoC in the wild60
Analyzing the vulnerability landscape in Q3 2024Kaspersky Securelist·Dec 6, 10:15 UTC · Dec 6, 2024VulnerabilityCVE-2023-38831CVE-2023-23397CVE-2023-36874+12 CVEs60
Transitioning to memory-safe languages: Challenges and considerationsHelp Net Security·Mar 11, 00:00 UTC · Mar 11, 2024Vulnerability155
Billions of Bluetooth-enabled devices vulnerable to new airborne attacksHelp Net Security·Jan 8, 12:40 UTC · Jan 8, 2024Exploit / PoCCVE-2017-1000251CVE-2017-1000250CVE-2017-0785+5 CVEs60
PinTheft: Another Linux Privilege Escalation, Another Working Exploit, This Time Targeting ArchSecurity Affairs·May 20, 20:32 UTC · May 20, 2026Vulnerability in the wild60
CrackArmor Flaws Expose Linux Systems to Privilege EscalationInfosecurity Magazine·Mar 16, 14:00 UTC · Mar 16, 2026Vulnerability55
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
ThreatsDay Bulletin: New RCEs, Darknet Busts, Kernel Bugs & 25+ More StoriesThe Hacker News·Jan 30, 08:37 UTC · Jan 30, 2026Ransomware in the wildCVE-2025-59090CVE-2025-5910960
Week in review: HiveNightmare on Windows 10, Kaseya obtains REvil decryptorHelp Net Security·Jul 27, 06:54 UTC · Jul 27, 2021RansomwareCVE-2021-33909CVE-2021-36934CVE-2021-3258960
Home Routers Are All Broken, Finds Security StudyInfosecurity Magazine·Jul 6, 20:04 UTC · Jul 6, 2020Vulnerability55
CVE-2016-7461 code execution flaw affects VMware WorkstationSecurity Affairs·Aug 10, 17:49 UTC · Aug 10, 2017VulnerabilityCVE-2016-7461CVE-2016-519560
How do I select a container security solution for my business?Help Net Security·Sep 8, 00:00 UTC · Sep 8, 2021Exploit / PoC60
Google Releases Android Update to Patch Actively Exploited VulnerabilityThe Hacker News·May 9, 02:52 UTC · May 9, 2022Vulnerability in the wildCVE-2021-2260060