Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerabilitiesCisco Talos·Oct 16, 15:05 UTC · Oct 16, 2023Vulnerability in the wildCVE-2023-20198CVE-2023-20273CVE-2021-143560
The SaaS-to-SaaS supply chain is a wild, wild messHelp Net Security·Sep 16, 08:08 UTC · Sep 16, 2024Threat actor60
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Mercenary mayhem: A technical analysis of Intellexa's PREDATOR spywareCisco Talos·May 25, 12:02 UTC · May 25, 2023MalwareCVE-2021-37973CVE-2021-37976CVE-2021-38000+2 CVEs60
Week in review: Firmware-level Android backdoor found on tablets, Dell zero-day exploited since 2024Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2026Exploit / PoC in the wildCVE-2026-2441CVE-2026-22769CVE-2026-2329+1 CVEs60
Trust dimensions in zero trust securityHelp Net Security·Jul 11, 08:29 UTC · Jul 11, 2019Vulnerability55
Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecastHelp Net Security·Feb 8, 00:00 UTC · Feb 8, 2026Vulnerability in the wildCVE-2026-21509CVE-2025-22225CVE-2026-2442360
Google warns companies about keeping hackers out of cloud infrastructureCyberScoop·Aug 3, 16:00 UTC · Aug 3, 2023Ransomware60
Bad Epoll Flaw Gives Attackers Root Access on Linux and AndroidSecurity Affairs·Jul 6, 08:24 UTC · Jul 6, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-4307460
Decrement by one to rule them all: AsIO3.sys driver exploitationCisco Talos·Jun 26, 10:00 UTC · Jun 26, 2025Exploit / PoCCVE-2025-1533CVE-2025-346460
Critical Flaws in WGS-804HPT Switches Enable RCE and Network ExploitationThe Hacker News·Jan 17, 14:08 UTC · Jan 17, 2025VulnerabilityCVE-2024-52558CVE-2024-52320CVE-2024-4887160
Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theftSecurity Affairs·Jul 22, 21:20 UTC · Jul 22, 2026Exploit / PoCCVE-2026-4829460
Hackers Exploit macOS Zero-Day to Hack Hong Kong Users with new ImplantThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2021Exploit / PoC in the wildCVE-2021-30869CVE-2021-1789CVE-2019-850660
⚡ Weekly Recap: Bootkit Malware, AI-Powered Attacks, Supply Chain Breaches, ZeroThe Hacker News·Oct 14, 10:56 UTC · Oct 14, 2025Malware in the wildCVE-2025-2104360
Infosec products of the month: September 2021Help Net Security·Dec 13, 08:52 UTC · Dec 13, 2021Policy & legal55
The most severe Linux threat to surface in years catches the world flatArs Technica · Security·Apr 30, 20:20 UTC · Apr 30, 2026VulnerabilityCVE-2026-3143160
Patch Tuesday for August 2022 fixed actively exploited zeroSecurity Affairs·Aug 9, 21:25 UTC · Aug 9, 2022Vulnerability in the wildCVE-2022-34713CVE-2022-30133CVE-2022-35744+46 CVEs160
CISA directs federal agencies to track software and vulnerabilitiesThe Record·Jan 10, 00:00 UTC · Jan 10, 2023Vulnerability55
A new wave of 'vishing' attacks is breaking into SSO accounts in real timeCyberScoop·Jan 26, 23:51 UTC · Jan 26, 2026Phishing & fraud in the wild60
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News·Jun 4, 14:00 UTC · Jun 4, 2026Malware in the wildCVE-2026-20230160
Threat Source newsletter (July 15, 2021)Cisco Talos·Jul 15, 18:00 UTC · Jul 15, 2021Ransomware in the wildCVE-2021-3444860
Qilin Ransomware Ranked Highest in April 2025 with 72 Data Leak DisclosuresThe Hacker News·May 9, 03:56 UTC · May 9, 2025Ransomware60
Beyond Identity unveils The Passkey Journey to aid enterprise passkey deployment decisionsHelp Net Security·Aug 16, 00:00 UTC · Aug 16, 2023Policy & legal55
Emerging Android threat ‘Albiriox’ enables full On‑Device FraudSecurity Affairs·Dec 1, 10:38 UTC · Dec 1, 2025Phishing & fraud55
The Company You Keep – Preparing for supply chain attacks with Talos IRCisco Talos·Nov 8, 14:33 UTC · Nov 8, 2022Malware55
Nation-state actors exploit Fortinet FortiOS SSL-VPN and Zoho ManageEngine ServiceDesk Plus, CISA warnsSecurity Affairs·Sep 8, 12:06 UTC · Sep 8, 2023Threat actor in the wildCVE-2022-47966CVE-2022-42475CVE-2021-4422860
Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flawHelp Net Security·Feb 1, 00:00 UTC · Feb 1, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-24858CVE-2025-8088+1 CVEs60
Week in review: AnyDesk phishing campaign targets employees, Microsoft fixes exploited zero-daysHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2024Exploit / PoC in the wildCVE-2024-21762CVE-2024-23313CVE-2023-43770+5 CVEs160
High-Severity Flaw Reported in Critical System Used by Oil and Gas CompaniesThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2022RansomwareCVE-2022-090260
Google Pixel 9 supports new security features to mitigate baseband attacksSecurity Affairs·Oct 6, 08:44 UTC · Oct 6, 2024Exploit / PoC60
Overcoming the roadblocks to passwordless authenticationHelp Net Security·Aug 16, 00:00 UTC · Aug 16, 2022Data breach60
Businesses aren't telling anyone when they've been hit with ransomwareCyberScoop·Nov 18, 14:20 UTC · Nov 18, 2016Ransomware in the wild60
APIs in the insurance industry: Accessing a growing world of dataHelp Net Security·Apr 30, 00:00 UTC · Apr 30, 2021Policy & legal55
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Dutch NCSC Confirms Active Exploitation of Citrix NetScaler CVE-2025The Hacker News·Aug 12, 08:36 UTC · Aug 12, 2025Exploit / PoC in the wildCVE-2025-6543CVE-2025-577760
Security Affairs newsletter Round 420 by Pierluigi PaganiniSecurity Affairs·May 21, 13:07 UTC · May 21, 2023Ransomware in the wildCVE-2023-3278460
Comprehensive Guide to Building a Strong Browser Security ProgramThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Vulnerability55
Infosec products of the month: December 2021Help Net Security·Jan 3, 00:00 UTC · Jan 3, 2022Policy & legal55
New infosec products of the week: December 10, 2021Help Net Security·Dec 10, 00:00 UTC · Dec 10, 2021Policy & legal55