Ragnarok ransomware operation shuts down and releases free decrypterThe Record·Dec 15, 00:00 UTC · Dec 15, 2022Ransomware60
Week in review: MOVEit auth bypass flaws quitely fixed, open-source Rafel RAT targets AndroidsHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2024MalwareCVE-2024-5805CVE-2024-5806CVE-2024-527660
Inside ZionSiphon: politically driven malware aims at Israeli water systemsSecurity Affairs·Apr 17, 09:06 UTC · Apr 17, 2026Malware55
Power struggle: Government-funded researchers investigate vulnerabilities in EV charging stationsCyberScoop·Feb 25, 16:36 UTC · Feb 25, 2019Vulnerability in the wild60
Unveiling the Cyber Threats to Healthcare: Beyond the MythsThe Hacker News·Dec 12, 18:09 UTC · Dec 12, 2023RansomwareCVE-2023-2906460
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
Why federal IT leaders must act now to deliver NIST’s postCyberScoop·Sep 22, 09:30 UTC · Sep 22, 2025Data breach60
SAP fixed a maximum severity flaw in SQL Anywhere MonitorSecurity Affairs·Nov 11, 21:02 UTC · Nov 11, 2025Exploit / PoC in the wildCVE-2025-42890CVE-2025-42887CVE-2025-4294460
Schneider Electric's car charging stations get crucial patchesCyberScoop·Jan 14, 17:58 UTC · Jan 14, 2019Vulnerability55
January 2026 CVE Landscape: 23 Critical Vulnerabilities Mark 5% Increase, APT28 Exploits Microsoft Office ZeroRecorded Future·Feb 24, 00:00 UTC · Feb 24, 2026Vulnerability in the wildCVE-2026-21509CVE-2026-23760CVE-2026-1281+1 CVEs160
Mirai V3G4 botnet exploits 13 flaws to target IoT devicesSecurity Affairs·Feb 16, 21:32 UTC · Feb 16, 2023MalwareCVE-2012-4869CVE-2014-9727CVE-2017-5173+6 CVEs60
A Fanny Equation: “I am your father, Stuxnet”Kaspersky Securelist·Feb 17, 09:00 UTC · Feb 17, 2015Exploit / PoCCVE-2010-256860
The Persistence Problem: Why Exposed Credentials Remain Unfixed—and How to Change ThatThe Hacker News·May 12, 11:00 UTC · May 12, 2025Vulnerability55
70% Of Leaked Secrets Remain Active Two Years LaterHelp Net Security·Mar 20, 00:00 UTC · Mar 20, 2025Exploit / PoC60
New BYOVD loader behind DeadLock ransomware attackCisco Talos·Dec 9, 11:00 UTC · Dec 9, 2025RansomwareCVE-2024-5132460
November 2025 CVE Landscape: 10 Critical Vulnerabilities Show 69% Drop from OctoberRecorded Future·Dec 10, 00:00 UTC · Dec 10, 2025Vulnerability in the wildCVE-2025-64446CVE-2025-58034CVE-2025-21042+1 CVEs60
Experts published a detailed analysis of Cisco IOS XE WLC flaw CVE-2025Security Affairs·Jun 2, 06:58 UTC · Jun 2, 2025Exploit / PoC in the wildCVE-2025-2018860
How CTEM Boosts Visibility and Shrinks Attack Surfaces in Hybrid and Cloud EnvironmentsSecurity Affairs·Aug 7, 07:17 UTC · Aug 7, 2025Vulnerability55
miniOrange’s WordPress Social Login and Register plugin affected by a critical auth bypassSecurity Affairs·Jun 30, 04:03 UTC · Jun 30, 2023VulnerabilityCVE-2023-298260
Alchimist: A new attack framework in Chinese for Mac, Linux and WindowsCisco Talos·Oct 13, 12:00 UTC · Oct 13, 2022Exploit / PoC in the wildCVE-2021-4034160
What's worth automating in cyber hygiene, and what's notHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2025Data breach60
Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot ChatsThe Hacker News·Jun 26, 07:08 UTC · Jun 26, 2026Malware in the wild160
National Logistics Portal (NLP) data leak: seaports in India were left vulnerable to takeover by hackersSecurity Affairs·Oct 2, 13:28 UTC · Oct 2, 2023Ransomware60
Beyond human IAM: The rising tide of machine identitiesHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2024Data breach60
How Secrets Lurking in Source Code Lead to Major BreachesThe Hacker News·Feb 20, 17:07 UTC · Feb 20, 2023Data breach60
Spear Phishing Attacks Target Organizations in Ukraine, Payloads Include the Document Stealer OutSteel and the Downloader SaintBotPalo Alto Unit 42·Jun 5, 23:28 UTC · Jun 5, 2024MalwareCVE-2017-1188260
Researchers Discover Hidden Backdoor in 20 Router Models Allowing Remote Root AccessSecurity Affairs·Aug 7, 10:17 UTC · Aug 7, 2026Malware55
Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan TargetsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2022-1040CVE-2022-3019060
Still problems for Schneider Electric, Schneider Modicon TM221CE16R has a hardcoded passwordSecurity Affairs·Apr 5, 13:16 UTC · Apr 5, 2017Vulnerability55
Cisco warns of hard-coded credentials and default SSH key issues in some productsSecurity Affairs·Nov 4, 20:19 UTC · Nov 4, 2021VulnerabilityCVE-2021-34795CVE-2021-4011960
Do We Really Need The OWASP NHI Top 10?The Hacker News·Jan 27, 15:00 UTC · Jan 27, 2025Vulnerability55
Forcepoint Data Security Everywhere simplifies DLP managementHelp Net Security·Apr 26, 00:00 UTC · Apr 26, 2023Data breach60
Hackers Used AI to Develop First Known ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC160
The AI security crisis no one is preparing forHelp Net Security·Aug 20, 00:00 UTC · Aug 20, 2025Vulnerability55
Secrets sprawl: Protecting your critical secretsHelp Net Security·Mar 21, 00:00 UTC · Mar 21, 2024Data breach60
New Bootkit “Bootkitty” Targets Linux Systems via UEFIInfosecurity Magazine·Nov 27, 16:30 UTC · Nov 27, 2024Exploit / PoC60
CISO's Expert Guide To AI Supply Chain AttacksThe Hacker News·Nov 11, 11:58 UTC · Nov 11, 2025Ransomware60
DePriMon downloader uses a never seen installation techniqueSecurity Affairs·Nov 21, 19:17 UTC · Nov 21, 2019Malware55