Following Log4j: Supporting the developer community to secure ITHelp Net Security·Nov 1, 00:00 UTC · Nov 1, 2022Vulnerability30
China could be reviewing security bugs before tech companies issue patches, DHS official saysCyberScoop·Aug 11, 00:07 UTC · Aug 11, 2022Vulnerability in the wild60
Researchers Find Bugs in Over A Dozen Widely Used URL Parser LibrariesThe Hacker News·Aug 2, 11:07 UTC · Aug 2, 2022VulnerabilityCVE-2021-33056CVE-2021-23414CVE-2021-37352+5 CVEs160
DHS Cyber Safety Review Board found no evidence China knew of Log4j before disclosureCyberScoop·Jul 14, 14:30 UTC · Jul 14, 2022Exploit / PoC in the wild60
VMware urges to patch VMware Horizon servers against Log4j attacksSecurity Affairs·Jan 26, 13:21 UTC · Jan 26, 2022VulnerabilityCVE-2021-44228CVE-2021-4504660
Hackers Exploit Log4j Vulnerability to Infect Computers with Khonsari RansomwareThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-4422860
CISA adds Log4Shell flaw to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 13, 13:44 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-44515CVE-2021-44168+10 CVEs60
Log4Shell update: Attack surface, attacks in the wild, mitigation and remediationHelp Net Security·Dec 13, 00:00 UTC · Dec 13, 2021Ransomware in the wildCVE-2021-44228160
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Recent Watering Hole Attacks Attributed to APT Group “th3bug” Using Poison IvyPalo Alto Unit 42·Nov 1, 09:36 UTC · Nov 1, 2018Threat actor60
Easily exploitable Apache Struts vulnerability opens businesses to attackHelp Net Security·Sep 6, 00:00 UTC · Sep 6, 2017VulnerabilityCVE-2017-980560
Google Researcher Reported 3 Flaws in Apache Web Server SoftwareThe Hacker News·Aug 25, 06:52 UTC · Aug 25, 2020Exploit / PoC in the wildCVE-2020-9490CVE-2020-11984CVE-2020-1199360
The open source library holding up your stack might have one maintainerHelp Net Security·Jul 10, 00:00 UTC · Jul 10, 2026Tools55
Chainguard's FIPS-compliant Cassandra addresses security demand of federal and regulated marketsCyberScoop·Mar 5, 17:00 UTC · Mar 5, 2025Exploit / PoC in the wild60
Google Project Zero expert found 3 flaws in Apache Web ServerSecurity Affairs·Aug 25, 08:09 UTC · Aug 25, 2020VulnerabilityCVE-2020-9490CVE-2020-11984CVE-2020-1199347
The new organization needed to digitally protect the U.S.CyberScoop·Jul 10, 11:00 UTC · Jul 10, 2017Exploit / PoC in the wild60
Randstorm Exploit: Bitcoin Wallets Created b/w 2011The Hacker News·Nov 20, 09:16 UTC · Nov 20, 2023Vulnerability42
Apache Struts vulnerability lets hackers execute malicious code on corporate serversCyberScoop·Sep 5, 18:45 UTC · Sep 5, 2017Vulnerability in the wild60
Cordyceps CI/CD Flaws Expose 300+ GitHub Repositories to SupplyThe Hacker News·Jun 24, 12:48 UTC · Jun 24, 2026Vulnerability55
Databricks Delta Sharing protocol secures real time data sharing between organizationsHelp Net Security·Apr 20, 09:39 UTC · Apr 20, 2026Policy & legal55
Week in review: How to retain best cybersecurity talent, securing Kubernetes, data decayHelp Net Security·Sep 26, 00:00 UTC · Sep 26, 2021Ransomware in the wildCVE-2021-30869CVE-2021-22005CVE-2021-3303560
A malicious document could lead to RCE in Apache OpenOffice (CVE-2021-33035)Help Net Security·Aug 14, 16:50 UTC · Aug 14, 2023VulnerabilityCVE-2021-3303547
Washington summit grapples with securing open source softwareCyberScoop·Sep 13, 13:30 UTC · Sep 13, 2023Exploit / PoC in the wild60
Modelplane: Open-source control plane for AI inferenceHelp Net Security·Jun 26, 00:00 UTC · Jun 26, 2026AI tools & infra30
CISA's KEV Catalog Updated with 3 New Flaws Threatening IT Management SystemsThe Hacker News·Mar 11, 06:26 UTC · Mar 11, 2023Exploit / PoC in the wildCVE-2022-35914CVE-2022-33891CVE-2022-28810+3 CVEs60
NATO and an AI startup can now name and track software vulnerabilitiesCyberScoop·Aug 10, 19:50 UTC · Aug 10, 2026Vulnerability in the wild60
Open Security Controller: Security service orchestration for multi-cloud environmentsHelp Net Security·Nov 8, 07:57 UTC · Nov 8, 2019Industry30
HPE Ezmeral software portfolio helps orgs unify access to data to fuel their DX initiativesHelp Net Security·Mar 18, 00:00 UTC · Mar 18, 2021Industry30
New Critical RCE Vulnerability Discovered in Apache Struts 2The Hacker News·Dec 18, 04:47 UTC · Dec 18, 2023Vulnerability in the wildCVE-2023-50164CVE-2017-563860
NVIDIA Forms 37-Member Open Secure AI Alliance and OpenThe Hacker News·Jul 27, 18:10 UTC · Jul 27, 2026Exploit / PoC60
Confluent enhances Apache Flink with new features for easier AI and broader stream processingHelp Net Security·May 2, 00:00 UTC · May 2, 2024Vulnerability55
DHS pushes Congress to formally establish Cyber Safety Review BoardThe Record·Apr 27, 16:39 UTC · Apr 27, 2023Policy & legal30
Talos Incident Response year-inCisco Talos·Jan 22, 13:30 UTC · Jan 22, 2022Ransomware in the wildCVE-2021-3120760
Mirai Botnet targeting OFBiz Servers Vulnerable to Directory TraversalThe Hacker News·Aug 2, 17:14 UTC · Aug 2, 2024Malware in the wildCVE-2024-3221360
Meet the new generation of white hatsHelp Net Security·Mar 18, 00:00 UTC · Mar 18, 2019Vulnerability30
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
How CVSS 4.0 changes (or doesn’t) the way we see vulnerability severityCisco Talos·Feb 21, 13:54 UTC · Feb 21, 2024VulnerabilityCVE-2021-4422860
Loft Labs launches vcluster, a working virtualization technology for KubernetesHelp Net Security·Apr 21, 00:00 UTC · Apr 21, 2021Industry30