“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AICisco Talos·Aug 4, 10:00 UTC · Aug 4, 2026Vulnerability55
Contrast CVE Shield aims to protect applications while security teams deploy patchesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability in the wildCVE-2021-44228160
ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More StoriesThe Hacker News·Jul 9, 15:09 UTC · Jul 9, 2026Phishing & fraudCVE-2026-918160
Security Affairs newsletter Round 583 by Pierluigi Paganini – INTERNATIONAL EDITIONSecurity Affairs·Jul 4, 23:02 UTC · Jul 4, 2026RansomwareCVE-2026-47729CVE-2026-20971CVE-2026-20245+1 CVEs60
Aikido Security acquires Root to expand backported fixes for open source vulnerabilitiesHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2026Vulnerability in the wild60
⚡ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and MoreThe Hacker News·Jun 23, 03:40 UTC · Jun 23, 2026Malware in the wildCVE-2026-24858CVE-2025-59718CVE-2025-59719+1 CVEs60
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and MoreThe Hacker News·Jun 10, 04:47 UTC · Jun 10, 2026Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+36 CVEs60
Mythos Outperforms GPT5.5 on Google Chrome Vulnerability ExploitsInfosecurity Magazine·Jun 4, 13:00 UTC · Jun 4, 2026Vulnerability55
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesThe Hacker News·May 27, 09:52 UTC · May 27, 2026Threat actor60
Mini Shai-Hulud returns, compromising hundreds of npm packagesCyberScoop·May 19, 21:21 UTC · May 19, 2026Data breach in the wild60
Microsoft Issues Patches for SharePoint ZeroThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2023-20585CVE-2026-21637CVE-2026-25250+4 CVEs160
April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-27681CVE-2026-34621CVE-2026-34619+7 CVEs60
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-YearThe Hacker News·Apr 9, 16:23 UTC · Apr 9, 2026MalwareCVE-2024-32114CVE-2026-34197CVE-2022-41678160
Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances ExposedThe Hacker News·Apr 7, 05:56 UTC · Apr 7, 2026Vulnerability in the wildCVE-2025-59528CVE-2025-8943CVE-2025-2631960
Kaspersky Global Report by Kaspersky Security Services 2026Kaspersky Securelist·Mar 25, 10:35 UTC · Mar 25, 2026Exploit / PoC in the wild60
⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & VibeThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Data breach in the wildCVE-2026-21385CVE-2026-2796CVE-2026-2256+13 CVEs60
Veracode’s platform enhancements help prevent software supply chain attacksHelp Net Security·Jan 28, 00:00 UTC · Jan 28, 2026Data breach60
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
Microsoft Fixes 114 Windows Flaws in January 2026 Patch, One Actively ExploitedThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Vulnerability in the wildCVE-2025-65046CVE-2026-0628CVE-2026-20805+5 CVEs160
December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat ActivityRecorded Future·Jan 13, 00:00 UTC · Jan 13, 2026Vulnerability in the wildCVE-2025-55182CVE-2025-20393CVE-2025-8110+1 CVEs60
Critical n8n Vulnerability (CVSS 10.0) Allows Unauthenticated Attackers to Take Full ControlThe Hacker News·Jan 8, 09:26 UTC · Jan 8, 2026VulnerabilityCVE-2026-21858CVE-2025-68613CVE-2025-68668+1 CVEs60
React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency MitigationThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-55182CVE-2021-4422860
The Bug That Won't Die: 10 Years of the Same MistakeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Exploit / PoCCVE-2025-55182CVE-2025-66478CVE-2015-485260
Critical RSC Bugs in React and Next.js Allow Unauthenticated Remote Code ExecutionThe Hacker News·Dec 4, 15:38 UTC · Dec 4, 2025VulnerabilityCVE-2025-55182CVE-2025-6647860
Shai-Hulud worm returns stronger and more automated than ever beforeCyberScoop·Nov 24, 22:45 UTC · Nov 24, 2025Data breach in the wild60
U.S. CISA adds a Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Nov 19, 21:12 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-1322360
Google fixed the seventh Chrome zeroSecurity Affairs·Nov 18, 08:59 UTC · Nov 18, 2025Exploit / PoC in the wildCVE-2025-13223CVE-2025-13224CVE-2025-10585+5 CVEs60
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at riskHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2025Exploit / PoCCVE-2025-10035CVE-2025-59689CVE-2025-26399+1 CVEs60
The npm incident frightened everyone, but ended up being nothing to fret aboutCyberScoop·Sep 10, 14:35 UTC · Sep 10, 2025Exploit / PoC in the wild60
Analyzing the TTPs of hacktivists and APTs targeting Russian organizationsKaspersky Securelist·Sep 10, 14:00 UTC · Sep 10, 2025Data breach60
Why app modernization can leave you less secureHelp Net Security·May 27, 00:00 UTC · May 27, 2025Vulnerability55
Over 70 Malicious npm and VS Code Packages Found Stealing Data and CryptoThe Hacker News·May 26, 15:12 UTC · May 26, 2025Vulnerability55
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
Security Affairs newsletter Round 520 by Pierluigi PaganiniSecurity Affairs·Apr 20, 16:14 UTC · Apr 20, 2025Exploit / PoC in the wildCVE-2025-30406CVE-2025-24054CVE-2021-2003560
Surge in Malicious Software Packages Exploits System FlawsInfosecurity Magazine·Mar 10, 14:00 UTC · Mar 10, 2025Vulnerability55
Kaspersky Managed Detection and Response report 2024Kaspersky Securelist·Feb 20, 11:21 UTC · Feb 20, 2025Malware55
North Korea Targets Crypto Devs Through NPM PackagesInfosecurity Magazine·Feb 13, 10:15 UTC · Feb 13, 2025Malware55