Budding infosec pros and aspiring cyber crooks targeted with fake PoC exploitsHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2025Exploit / PoCCVE-2025-10294CVE-2025-59295CVE-2025-59230+7 CVEs60
Too salty to handle: Exposing cases of CSS abuse for hidden text saltingCisco Talos·Oct 7, 10:00 UTC · Oct 7, 2025Threat actor45
Sudo local privilege escalation vulnerabilities fixed (CVE-2025-32462, CVE-2025-32463)Help Net Security·Sep 30, 09:28 UTC · Sep 30, 2025Vulnerability in the wildCVE-2025-32462CVE-2025-3246360
Microsoft Patch Tuesday for September 2025 – Snort rules and prominent vulnerabilitiesCisco Talos·Sep 9, 19:15 UTC · Sep 9, 2025Vulnerability in the wildCVE-2025-54916CVE-2025-54910CVE-2025-54918+8 CVEs160
ReVault! When your SoC turns against you… deep dive editionCisco Talos·Aug 9, 13:00 UTC · Aug 9, 2025Vulnerability30
Microsoft vulnerabilities: What's improved, what's at riskHelp Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2024-49138160
Microsoft Patch Tuesday for March 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Mar 11, 21:55 UTC · Mar 11, 2025Vulnerability in the wildCVE-2025-26633CVE-2025-24984CVE-2025-24991+12 CVEs60
DOGE Employees Ordered to Stop Using Slack While Agency Transitions to a Records System Not Subject to FOIA404 Media·Feb 5, 16:49 UTC · Feb 5, 2025Industry55
Hidden Text Salting Disrupts Brand Name Detection SystemsInfosecurity Magazine·Jan 27, 16:30 UTC · Jan 27, 2025Malware30
Microsoft Fixes 71 CVEs Including Actively Exploited ZeroInfosecurity Magazine·Dec 11, 10:15 UTC · Dec 11, 2024Ransomware in the wildCVE-2024-49138CVE-2022-24521CVE-2023-23376+3 CVEs160
Samsung zeroSecurity Affairs·Oct 22, 15:42 UTC · Oct 22, 2024Exploit / PoC in the wildCVE-2024-4406860
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesHelp Net Security·Sep 12, 14:09 UTC · Sep 12, 2024Exploit / PoC in the wildCVE-2024-38217CVE-2024-38226CVE-2024-38014+6 CVEs160
Microsoft Fixes Four ZeroInfosecurity Magazine·Jul 10, 09:40 UTC · Jul 10, 2024Exploit / PoC in the wildCVE-2024-38080CVE-2024-38112CVE-2024-35264+6 CVEs60
Microsoft Patch Tuesday for July 2024 fixed 2 actively exploited zeroSecurity Affairs·Jul 10, 08:48 UTC · Jul 10, 2024Vulnerability in the wildCVE-2024-38080CVE-2024-38112CVE-2024-37985+1 CVEs60
Windows DOS-to-NT flaws exploited to achieve unprivileged rootkitSecurity Affairs·Apr 22, 10:45 UTC · Apr 22, 2024MalwareCVE-2023-36396CVE-2023-32054CVE-2023-4275747
A patched Windows attack surface is still exploitableKaspersky Securelist·Mar 14, 10:00 UTC · Mar 14, 2024Vulnerability in the wildCVE-2022-22047CVE-2022-37989CVE-2022-29104+3 CVEs60
Microsoft patches two zero-days exploited by attackers (CVE-2024-21412, CVE-2024-21351)Help Net Security·Mar 14, 09:10 UTC · Mar 14, 2024VulnerabilityCVE-2024-21412CVE-2024-21351CVE-2023-36025+3 CVEs160
Windows CLFS and five exploits used by ransomware operators (Exploit #1 – CVE-2022Kaspersky Securelist·Dec 21, 10:28 UTC · Dec 21, 2023Ransomware in the wildCVE-2022-24521CVE-2023-23376CVE-2023-28252+2 CVEs60
Windows CLFS and five exploits used by ransomware operatorsKaspersky Securelist·Dec 21, 09:53 UTC · Dec 21, 2023RansomwareCVE-2023-28252CVE-2022-24521CVE-2022-37969+1 CVEs60
Microsoft fixes exploited zero-day in Windows Support Diagnostic Tool (CVE-2022-34713)Help Net Security·Dec 12, 12:03 UTC · Dec 12, 2023Exploit / PoC in the wildCVE-2022-34713CVE-2022-30134CVE-2017-11882+4 CVEs160
Kaspersky malware report for Q3 2023Kaspersky Securelist·Dec 1, 16:01 UTC · Dec 1, 2023MalwareCVE-2023-23397CVE-2023-2932460
New Microsoft Teams Phishing Campaign Targets Corporate EmployeesInfosecurity Magazine·Sep 13, 16:20 UTC · Sep 13, 2023Threat actor57
Biden Announces National Cyber Workforce and Education StrategyInfosecurity Magazine·Jul 31, 17:20 UTC · Jul 31, 2023Industry30
Comprehensive analysis of initial attack samples exploiting CVE-2023Kaspersky Securelist·Jul 19, 12:00 UTC · Jul 19, 2023Exploit / PoCCVE-2023-23397CVE-2023-2932460
June 2023 Patch Tuesday: Critical patches for Microsoft Windows, SharePoint, ExchangeHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2023Vulnerability in the wildCVE-2023-3079CVE-2023-29357CVE-2023-29363+4 CVEs60
Easily bypassed patch makes zero-click Outlook flaw exploitable again (CVE-2023-29324)Help Net Security·May 10, 00:00 UTC · May 10, 2023VulnerabilityCVE-2023-29324CVE-2023-2339760
Microsoft patches zero-days used by state-sponsored and ransomware threat actors (CVE-2023-23397, CVE-2023-24880)Help Net Security·Mar 14, 00:00 UTC · Mar 14, 2023Ransomware in the wildCVE-2023-23397CVE-2023-24880CVE-2022-44698+3 CVEs60
Microsoft plugs actively exploited zero-day hole (CVE-2023-21674)Help Net Security·Jan 10, 00:00 UTC · Jan 10, 2023Exploit / PoC in the wildCVE-2023-21674CVE-2023-21549CVE-2023-21743+4 CVEs160
Microsoft patches six Windows zeroThe Record·Dec 8, 00:00 UTC · Dec 8, 2022Vulnerability in the wildCVE-2021-33742CVE-2021-31955CVE-2021-31956+4 CVEs60
USA's plan to build its cyber workforce, improve skills-based pathways to cyber jobsHelp Net Security·Oct 20, 09:46 UTC · Oct 20, 2022Vulnerability30
Microsoft fixes actively exploited zero-day reported by the NSA (CVE-2022-24521)Help Net Security·Apr 12, 00:00 UTC · Apr 12, 2022Exploit / PoC in the wildCVE-2022-24521CVE-2022-26904CVE-2022-26809+2 CVEs60
A "light" February 2022 Patch Tuesday that should not be ignoredHelp Net Security·Feb 8, 00:00 UTC · Feb 8, 2022Vulnerability in the wildCVE-2022-21989CVE-2022-21984CVE-2022-21995+4 CVEs60
Review: Group-IB Threat Intelligence & Attribution (TI&A)Help Net Security·Feb 1, 00:00 UTC · Feb 1, 2022Vulnerability142
Threat Brief: Understanding Kernel APC AttacksPalo Alto Unit 42·Jan 28, 22:06 UTC · Jan 28, 2022Ransomware57
The BlueNoroff cryptocurrency hunt is still onKaspersky Securelist·Jan 13, 09:00 UTC · Jan 13, 2022VulnerabilityCVE-2017-019947
Microsoft fixes wormable RCE in Windows Server and Windows (CVE-2022-21907)Help Net Security·Jan 11, 00:00 UTC · Jan 11, 2022VulnerabilityCVE-2022-21907CVE-2021-22947CVE-2021-36976+4 CVEs60
Week in review: HiveNightmare on Windows 10, Kaseya obtains REvil decryptorHelp Net Security·Jul 27, 06:54 UTC · Jul 27, 2021RansomwareCVE-2021-33909CVE-2021-36934CVE-2021-3258960
July 2021 Patch Tuesday: Microsoft fixes 4 actively exploited bugsHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2021Vulnerability in the wildCVE-2021-34527CVE-2021-34448CVE-2021-33771+6 CVEs60