CosmicSting attack threatens 75% of Adobe Commerce storesSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Vulnerability in the wildCVE-2024-34102CVE-2024-2961CVE-2026-7565060
Security Affairs newsletter Round 553 by Pierluigi PaganiniSecurity Affairs·Dec 7, 18:12 UTC · Dec 7, 2025Data breach in the wildCVE-2025-55182CVE-2025-6651660
CISA Flags Adobe AEM Flaw with Perfect 10.0 Score — Already Under Active AttackThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-54253CVE-2025-54254CVE-2016-783660
Zoom and Xerox Release Critical Security Updates Fixing Privilege Escalation and RCE FlawsThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025VulnerabilityCVE-2025-49457CVE-2025-8355CVE-2025-835660
SafeLine WAF: Open Source Web Application Firewall with ZeroThe Hacker News·May 23, 10:30 UTC · May 23, 2025Exploit / PoC60
U.S. CISA adds ProjectSend, North Grid Proself, and Zyxel firewalls bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 4, 07:56 UTC · Dec 4, 2024Exploit / PoC in the wildCVE-2023-45727CVE-2024-11680CVE-2024-1166760
SafeLine: Open-source web application firewall (WAF)Help Net Security·Dec 4, 00:00 UTC · Dec 4, 2024Vulnerability30
Thousands of Adobe Commerce e-stores hacked by exploiting CosmicSting bugSecurity Affairs·Oct 3, 14:36 UTC · Oct 3, 2024Exploit / PoC in the wildCVE-2024-34102CVE-2024-296160
Alert: Adobe Commerce and Magento Stores Under Attack from CosmicSting ExploitThe Hacker News·Oct 2, 12:13 UTC · Oct 2, 2024Data breach in the wildCVE-2024-34102CVE-2024-296160
Ivanti fixes critical vulnerabilities in Endpoint Management (CVE-2024-29847)Help Net Security·Sep 16, 14:44 UTC · Sep 16, 2024Vulnerability in the wildCVE-2024-29847CVE-2024-819060
Ivanti fixed a maximum severity flaw in its EPM softwareSecurity Affairs·Sep 11, 09:20 UTC · Sep 11, 2024VulnerabilityCVE-2024-29847CVE-2024-32840CVE-2024-32842+13 CVEs160
Cisco Warns of Critical Flaw Affecting OnThe Hacker News·Jul 18, 13:13 UTC · Jul 18, 2024Exploit / PoC in the wildCVE-2024-20419CVE-2024-20401CVE-2024-34102+2 CVEs60
May 2024 Patch Tuesday: Microsoft fixes exploited zero-days (CVE-2024-30051, CVE-2024-30040)Help Net Security·May 31, 08:23 UTC · May 31, 2024Exploit / PoC in the wildCVE-2024-30051CVE-2024-30040CVE-2023-36033+2 CVEs160
Five Eyes Agencies Warn of Active Exploitation of Ivanti Gateway VulnerabilitiesThe Hacker News·Mar 2, 04:02 UTC · Mar 2, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+2 CVEs60
Five Eyes alliance warns of attacks exploiting known Ivanti Gateway flawsSecurity Affairs·Mar 1, 14:01 UTC · Mar 1, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-21893+2 CVEs60
Ivanti warns of a new auth bypass flaw in its Connect Secure, Policy Secure, and ZTA gateway devicesSecurity Affairs·Feb 9, 08:17 UTC · Feb 9, 2024Exploit / PoC in the wildCVE-2024-22024CVE-2023-46805CVE-2024-21887+2 CVEs60
Google, Microsoft increase bug bountiesHelp Net Security·Dec 14, 13:34 UTC · Dec 14, 2023Vulnerability55
Why cybersecurity products always defy traditional user reviewsHelp Net Security·Dec 13, 14:02 UTC · Dec 13, 2023Malware30
Attacks on web applications spike in third quarter, new Talos IR data showsCisco Talos·Oct 24, 12:00 UTC · Oct 24, 2023Ransomware60
Easily exploitable flaw in Oracle Opera could spell trouble for hotel chains (CVE-2023-21932)Help Net Security·May 2, 00:00 UTC · May 2, 2023VulnerabilityCVE-2023-2193260
Threat Source newsletter (April 6, 2023) — Another friendly reminder about supply chain attacksCisco Talos·Apr 6, 18:00 UTC · Apr 6, 2023Ransomware57
VMware NSX Manager bugs actively exploited in the wildSecurity Affairs·Mar 8, 07:37 UTC · Mar 8, 2023Exploit / PoC in the wildCVE-2021-39144CVE-2022-3167860
VMware Patches Critical Vulnerability in Carbon Black App Control ProductThe Hacker News·Feb 22, 07:59 UTC · Feb 22, 2023VulnerabilityCVE-2023-20858CVE-2022-22951CVE-2022-22952+1 CVEs60
VMware patches critical injection flaw in Carbon Black App Control (CVE-2023-20858)Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2023Vulnerability in the wildCVE-2023-20858CVE-2023-2085560
API Vulnerabilities Discovered in LEGO MarketplaceInfosecurity Magazine·Dec 19, 09:30 UTC · Dec 19, 2022Vulnerability30
VMware Releases Patch for Critical RCE Flaw in Cloud Foundation PlatformThe Hacker News·Oct 26, 07:42 UTC · Oct 26, 2022VulnerabilityCVE-2021-39144CVE-2022-3167860
VMware fixes critical RCE in VMware Cloud FoundationSecurity Affairs·Oct 26, 07:36 UTC · Oct 26, 2022VulnerabilityCVE-2021-39144CVE-2022-3167860
Adobe addresses over 60 vulnerabilities in multiple productsSecurity Affairs·Dec 14, 22:33 UTC · Dec 14, 2021Vulnerability in the wildCVE-2021-43018CVE-2021-43020CVE-2021-44184+8 CVEs60
Zero day malware reached an all-time high of 74% in Q1 2021Help Net Security·Jun 29, 00:00 UTC · Jun 29, 2021Malware42
Threat Advisory: NSA SVR Advisory CoverageCisco Talos·Apr 15, 15:45 UTC · Apr 15, 2021AdvisoryCVE-2018-13379CVE-2019-9670CVE-2019-11510+2 CVEs147
Watch Out! Mission Critical SAP Applications Are Under Active AttackThe Hacker News·Apr 7, 04:31 UTC · Apr 7, 2021Ransomware in the wildCVE-2020-6287CVE-2010-5326CVE-2016-3976+3 CVEs60
Factors driving API growth in industryHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2020Vulnerability42
Palo Alto Networks addresses tens of serious issues in PANSecurity Affairs·May 15, 10:22 UTC · May 15, 2020VulnerabilityCVE-2020-2018CVE-2020-2012CVE-2020-201147
Vulnerability Spotlight: Multiple bugs in several Jenkins pluginsCisco Talos·May 6, 14:20 UTC · May 6, 2019Vulnerability in the wildCVE-2019-10323CVE-2019-5022CVE-2019-5025+2 CVEs60
SAP security fixes address Critical flaw in SAP HANA XSASecurity Affairs·Feb 14, 15:26 UTC · Feb 14, 2019Vulnerability55
HackerOne expands Hacker101 web training platform with HackEDU partnershipHelp Net Security·Dec 7, 00:00 UTC · Dec 7, 2018Vulnerability42
High risk vulnerability discovered in Sauter CASE Suite building automation softwareHelp Net Security·Nov 6, 00:00 UTC · Nov 6, 2018Vulnerability30
September 2018 Security Notes address 14 flaws in SAP productsSecurity Affairs·Sep 12, 14:28 UTC · Sep 12, 2018VulnerabilityCVE-2018-2458CVE-2018-2462CVE-2018-246560
New PHP Code Execution Attack Puts WordPress Sites at RiskThe Hacker News·Aug 22, 16:51 UTC · Aug 22, 2018Vulnerability55
Black Hat 2018 - Expert demonstrated a new PHP code execution attackSecurity Affairs·Aug 17, 16:33 UTC · Aug 17, 2018Vulnerability155