Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
HybridPetya ransomware bypasses UEFI Secure Boot echoing Petya/NotPetyaSecurity Affairs·Sep 13, 12:06 UTC · Sep 13, 2025Ransomware57
ReVault! When your SoC turns against you… deep dive editionCisco Talos·Aug 9, 13:00 UTC · Aug 9, 2025Vulnerability30
Friday Squid Blogging: A Case of Squid Fossil MisidentificationSchneier on Security·Aug 1, 21:01 UTC · Aug 1, 2025Malware42
UK Considers New Enterprise IoT Security LawInfosecurity Magazine·May 13, 10:00 UTC · May 13, 2025Vulnerability55
CERT-UA warns of cyber espionage against the Ukrainian defense industry using Dark Crystal RATSecurity Affairs·Mar 20, 10:06 UTC · Mar 20, 2025Malware30
ESET detailed a flaw that could allow a bypass of the Secure Boot in UEFI systemsSecurity Affairs·Jan 17, 11:15 UTC · Jan 17, 2025Exploit / PoCCVE-2024-7344CVE-2022-3430250
New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)Help Net Security·Jan 16, 00:00 UTC · Jan 16, 2025VulnerabilityCVE-2024-734435
Microsoft patches Windows to eliminate Secure Boot bypass threatArs Technica · Security·Jan 15, 00:00 UTC · Jan 15, 2025VulnerabilityCVE-2024-7344135
Researchers Discover "Bootkitty" – First UEFI Bootkit Targeting Linux KernelsThe Hacker News·Dec 2, 16:30 UTC · Dec 2, 2024RansomwareCVE-2023-4023860
Found on VirusTotal: The world’s first UEFI bootkit for LinuxArs Technica · Security·Nov 27, 19:21 UTC · Nov 27, 2024Exploit / PoC145
New Bootkit “Bootkitty” Targets Linux Systems via UEFIInfosecurity Magazine·Nov 27, 16:30 UTC · Nov 27, 2024Exploit / PoC60
Google Patches New Android Kernel Vulnerability Exploited in the WildThe Hacker News·Aug 10, 07:15 UTC · Aug 10, 2024Exploit / PoC in the wildCVE-2024-36971CVE-2024-32896CVE-2024-29745+2 CVEs60
Google fixed an actively exploited zeroSecurity Affairs·Jun 13, 13:38 UTC · Jun 13, 2024Exploit / PoC in the wildCVE-2024-32896CVE-2024-32891CVE-2024-32892+5 CVEs60
Google Warns: Android Zero-Day Flaws in Pixel Phones Exploited by Forensic CompaniesThe Hacker News·Apr 5, 03:49 UTC · Apr 5, 2024Exploit / PoC in the wildCVE-2024-29745CVE-2024-2974860
Google fixed two actively exploited Pixel vulnerabilitiesSecurity Affairs·Apr 3, 13:16 UTC · Apr 3, 2024Vulnerability in the wildCVE-2024-29745CVE-2024-2974860
The 3 most common post-compromise tactics on network infrastructureCisco Talos·Mar 7, 15:00 UTC · Mar 7, 2024Ransomware60
China's BlackTech Hacking Group Exploited Routers to Target U.S. and Japanese CompaniesThe Hacker News·Sep 28, 16:58 UTC · Sep 28, 2023Malware in the wild57
NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows SystemsThe Hacker News·Jun 24, 15:03 UTC · Jun 24, 2023VulnerabilityCVE-2022-21894CVE-2023-2493235
Microsoft's May Patch Tuesday Fixes 38 Flaws, Including 2 Exploited ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2023Vulnerability in the wildCVE-2023-29336CVE-2023-29325CVE-2023-24932+1 CVEs60
Cyber-Criminals Exploit Hardware Wallet to Steal Almost $30,000Infosecurity Magazine·May 10, 17:00 UTC · May 10, 2023Malware30
Urgent: Microsoft Issues Patches for 97 Flaws, Including Active Ransomware ExploitThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2023Ransomware in the wildCVE-2023-28252CVE-2022-24521CVE-2022-37969+6 CVEs60
Over 100 Siemens PLC Models Found Vulnerable to Firmware TakeoverThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023VulnerabilityCVE-2022-3877360
New Moses Staff group targets Israeli organizations in destructive attacksThe Record·Dec 19, 00:00 UTC · Dec 19, 2022Ransomware57
Friday Squid Blogging: Legend of the Indiana Oil-Pit SquidSchneier on Security·Dec 2, 22:12 UTC · Dec 2, 2022Ransomware57
Threat Source newsletter (Nov. 10, 2022): Vulnerability research, movies in class, and Emotet once againCisco Talos·Nov 10, 21:31 UTC · Nov 10, 2022Vulnerability42
New Lenovo Notebook Models Affected By UEFI Firmware VulnerabilitiesInfosecurity Magazine·Nov 10, 17:00 UTC · Nov 10, 2022VulnerabilityCVE-2022-3430CVE-2022-3431CVE-2022-343235
Lenovo warns of flaws that can be used to bypass security featuresSecurity Affairs·Nov 10, 07:26 UTC · Nov 10, 2022VulnerabilityCVE-2022-3430CVE-2022-3431CVE-2022-343247
CISA Warns of Critical Flaws Affecting Industrial Appliances from Advantech and HitachiThe Hacker News·Oct 20, 04:23 UTC · Oct 20, 2022AdvisoryCVE-2022-3385CVE-2022-3386CVE-2022-338760
Samsung discloses a second data breach this yearSecurity Affairs·Sep 2, 22:38 UTC · Sep 2, 2022Data breach57
Researchers Uncover UEFI Secure Boot Bypass in 3 Microsoft Signed Boot LoadersThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2022MalwareCVE-2022-34301CVE-2022-3430247
Ukrainian telecommunications operators hit by DarkCrystal RAT malwareSecurity Affairs·Jun 27, 10:23 UTC · Jun 27, 2022Malware30
Samsung data breach: Lapsus$ gang stole Galaxy devices' source codeSecurity Affairs·Mar 9, 07:50 UTC · Mar 9, 2022Data breach57
Samsung Confirms Data Breach After Hackers Leak Galaxy Source CodeThe Hacker News·Mar 8, 17:51 UTC · Mar 8, 2022Data breach57
Lapsus$ gang leaks data allegedly stolen from Samsung ElectronicsSecurity Affairs·Mar 5, 22:11 UTC · Mar 5, 2022Ransomware57
Hacker Group 'Moses Staff' Using New StrifeWater RAT in Ransomware AttacksThe Hacker News·Feb 4, 11:33 UTC · Feb 4, 2022Ransomware57
New 'Moses Staff' Hacker Group Targets Israeli Companies With Destructive AttacksThe Hacker News·Nov 17, 04:13 UTC · Nov 17, 2021Data breach45