GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionThe Hacker News·May 28, 05:34 UTC · May 28, 2026Data breach in the wildCVE-2026-45321CVE-2026-4802760
⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreThe Hacker News·May 19, 04:33 UTC · May 19, 2026Ransomware in the wildCVE-2026-42897CVE-2026-20182CVE-2026-2012760
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
Week in review: Acrobat Reader flaw exploited, Claude Mythos offensive capabilities and limitsHelp Net Security·Apr 19, 00:00 UTC · Apr 19, 2026Data breach in the wildCVE-2026-34621CVE-2026-39813CVE-2026-3980860
Attack on axios software developer tool threatens widespread compromisesCyberScoop·Mar 31, 18:24 UTC · Mar 31, 2026Data breach in the wild160
⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & VibeThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Data breach in the wildCVE-2026-21385CVE-2026-2796CVE-2026-2256+13 CVEs60
Google says 90 zero-days exploited in 2025 as commercial vendor activity growsThe Record·Mar 5, 15:01 UTC · Mar 5, 2026Ransomware in the wildCVE-2025-21590CVE-2025-0282CVE-2025-61882+2 CVEs60
Chinese-speaking hackers exploited ESXi zeroSecurity Affairs·Jan 9, 00:06 UTC · Jan 9, 2026Ransomware in the wildCVE-2025-22226CVE-2025-22224CVE-2025-2222560
North Korea’s Lazarus group attacked three companies involved in drone developmentCyberScoop·Oct 23, 21:50 UTC · Oct 23, 2025Threat actor in the wild60
⚡ Weekly Recap: WhatsApp Worm, Critical CVEs, Oracle 0The Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Ransomware in the wildCVE-2025-61882CVE-2025-61884CVE-2025-10035+12 CVEs160
⚡ Weekly Recap: Bootkit Malware, AI-Powered Attacks, Supply Chain Breaches, ZeroThe Hacker News·Oct 14, 10:56 UTC · Oct 14, 2025Malware in the wildCVE-2025-2104360
Someone Created the First AI-Powered Ransomware Using OpenAI's gptThe Hacker News·Sep 5, 12:39 UTC · Sep 5, 2025Ransomware in the wild60
North Korean hackers target open-source repositories in new espionage campaignThe Record·Jul 31, 14:39 UTC · Jul 31, 2025Threat actor in the wild60
Microsoft IDs developers behind alleged generative AI hacking-forCyberScoop·Feb 27, 18:30 UTC · Feb 27, 2025Exploit / PoC in the wild160
Projecting the next decade of software supply chain securityCyberScoop·Feb 10, 15:44 UTC · Feb 10, 2025Exploit / PoC in the wild60
February 2025 Patch Tuesday forecast: New directions for AI developmentHelp Net Security·Feb 10, 00:00 UTC · Feb 10, 2025Vulnerability in the wildCVE-2025-21418CVE-2025-21391CVE-2025-2408560
Open-source security spat leads companies to join forces for new toolCyberScoop·Jan 27, 15:29 UTC · Jan 27, 2025Exploit / PoC in the wild60
Industry leaders on CISA’s secure-by-design pledge: A great program with some issuesCyberScoop·Dec 5, 21:54 UTC · Dec 5, 2024Exploit / PoC in the wild60
THN Recap: Top Cybersecurity Threats, Tools, and Practices (Nov 11The Hacker News·Nov 18, 11:36 UTC · Nov 18, 2024Ransomware in the wildCVE-2024-5910CVE-2024-9463CVE-2024-9465+29 CVEs60
NSO Group used WhatsApp exploits after the messaging app sued the spyware developer, court filing saysCyberScoop·Nov 15, 20:24 UTC · Nov 15, 2024Malware in the wild60
US charges Russian national for developing RedLine infostealerCyberScoop·Oct 29, 18:53 UTC · Oct 29, 2024Malware in the wild60
White House releases report on securing openCyberScoop·Jan 30, 21:09 UTC · Jan 30, 2024Exploit / PoC in the wild60
Russian national accused of developing, selling malware appears in U.S. courtCyberScoop·Feb 23, 18:35 UTC · Feb 23, 2023Malware in the wild60
IT threat evolution Q2 2022Kaspersky Securelist·Aug 15, 09:54 UTC · Aug 15, 2022Exploit / PoC in the wildCVE-2022-22965CVE-2022-26925CVE-2022-30190160
JFrog to acquire Vdoo to expand its end-to-end DevOps platform offeringHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2021Exploit / PoC in the wild60
Looking for sophisticated malware in IoT devicesKaspersky Securelist·Sep 23, 10:00 UTC · Sep 23, 2020Malware in the wild57
Magnitude exploit kitKaspersky Securelist·Jun 24, 10:00 UTC · Jun 24, 2020Ransomware in the wildCVE-2018-8174CVE-2018-8653CVE-2019-1367+3 CVEs60
Facebook sues to curb data scraping, fake Instagram likes from outside developersCyberScoop·Jun 18, 19:28 UTC · Jun 18, 2020Exploit / PoC in the wild60
An advertising network for Android apps is directing users to malicious websites, Wandera researchers sayCyberScoop·Apr 30, 13:56 UTC · Apr 30, 2020Exploit / PoC in the wild60
TrickBot developers have spun up a new backdoor for highCyberScoop·Jan 9, 20:14 UTC · Jan 9, 2020Malware in the wild60
Capital One is a cautionary tale for companies rushing to embrace new techCyberScoop·Jul 31, 15:44 UTC · Jul 31, 2019Data breach in the wild60
Tor launches official anonymous Android browserCyberScoop·Sep 7, 18:05 UTC · Sep 7, 2018Exploit / PoC in the wild60
Bill would call on White House to develop its own list of APT groupsCyberScoop·Jun 29, 22:14 UTC · Jun 29, 2018Threat actor in the wild60
VirusTotal launches Monitor tool to fight false positivesCyberScoop·Jun 19, 21:03 UTC · Jun 19, 2018Exploit / PoC in the wild60
Marcus Hutchins faces new charges of developing malware and lying to FBICyberScoop·Jun 6, 21:19 UTC · Jun 6, 2018Malware in the wild60
NIST engineering guide update provides advice for securing legacy IT systemsCyberScoop·Mar 21, 16:15 UTC · Mar 21, 2018Exploit / PoC in the wild60
'Eavesdropper' vulnerability strikes hundreds of mobile apps using TwilioCyberScoop·Nov 9, 15:17 UTC · Nov 9, 2017Vulnerability in the wild60
Wikileaks Unveils Project Protego: CIA's Secret Missile Control SystemThe Hacker News·Sep 7, 11:20 UTC · Sep 7, 2017Data breach in the wild60