Fortinet, Ivanti, and SAP Issue Urgent Patches for Authentication and Code Execution FlawsThe Hacker News·Dec 10, 09:13 UTC · Dec 10, 2025VulnerabilityCVE-2025-59718CVE-2025-59719CVE-2025-10573+6 CVEs60
Google fixed the seventh Chrome zeroSecurity Affairs·Nov 18, 08:59 UTC · Nov 18, 2025Exploit / PoC in the wildCVE-2025-13223CVE-2025-13224CVE-2025-10585+5 CVEs60
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
When Browsers Become the Attack Surface: Rethinking Security for Scattered SpiderThe Hacker News·Sep 1, 11:55 UTC · Sep 1, 2025Ransomware60
Russian Espionage Operation Targets Organizations Tied to Ukraine WarInfosecurity Magazine·May 16, 11:15 UTC · May 16, 2025Threat actorCVE-2024-11182CVE-2023-4377060
Case Study: Are CSRF Tokens Sufficient in Preventing CSRF Attacks?The Hacker News·Apr 3, 10:49 UTC · Apr 3, 2025Data breach60
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
Apple chips can be hacked to leak secrets from Gmail, iCloud, and moreArs Technica · Security·Jan 28, 20:56 UTC · Jan 28, 2025Vulnerability55
AI Could Generate 10,000 Malware Variants, Evading Detection in 88% of CaseThe Hacker News·Dec 24, 05:50 UTC · Dec 24, 2024Malware in the wild160
U.S. CISA adds Cisco ASA and FTD, and RoundCube Webmail bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 25, 07:40 UTC · Oct 25, 2024Exploit / PoC in the wildCVE-2024-20481CVE-2024-3738360
Google fixes seventh actively exploited Chrome zeroSecurity Affairs·May 16, 13:13 UTC · May 16, 2024Exploit / PoC in the wildCVE-2024-4947CVE-2024-4671CVE-2024-4761+7 CVEs160
Cybercriminal adoption of browser fingerprintingHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2024Threat actor60
New iPhone Exploit Uses Four Zero-DaysSchneier on Security·Jan 4, 12:11 UTC · Jan 4, 2024Exploit / PoCCVE-2023-41990CVE-2023-32434CVE-2023-38606+1 CVEs60
4-year campaign backdoored iPhones using possibly the most advanced exploit everArs Technica · Security·Dec 27, 17:03 UTC · Dec 27, 2023MalwareCVE-2023-32434CVE-2023-32435CVE-2023-38606+1 CVEs160
Operation Triangulation: The last (hardware) mysteryKaspersky Securelist·Dec 27, 14:00 UTC · Dec 27, 2023Vulnerability in the wildCVE-2023-41990CVE-2023-32434CVE-2023-38606+1 CVEs160
Apple news: iLeakage attack, MAC address leakage bugHelp Net Security·Oct 27, 00:00 UTC · Oct 27, 2023Exploit / PoCCVE-2023-32434CVE-2023-4284660
Google fixed the ninth actively exploited Chrome zeroday this yearSecurity Affairs·Dec 3, 15:24 UTC · Dec 3, 2022Exploit / PoC in the wildCVE-2022-4262CVE-2022-4135CVE-2022-3723+6 CVEs60
F5 warns its customers of tens of flaws in its productsSecurity Affairs·May 5, 09:47 UTC · May 5, 2022VulnerabilityCVE-2022-1388CVE-2022-25946CVE-2022-27806+1 CVEs60
How Just Visiting A Site Could Have Hacked Your iPhone or MacBook CameraThe Hacker News·Jan 31, 05:24 UTC · Jan 31, 2022Exploit / PoCCVE-2020-3852CVE-2020-3864CVE-2020-3865+4 CVEs60
Moodle vulnerability exposed users to account takeoverSecurity Affairs·Apr 8, 20:22 UTC · Apr 8, 2021Vulnerability55
Tackling cross-site request forgery (CSRF) on company websitesHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2021Exploit / PoC in the wild60
Mozilla offers rewards for Bypassing Firefox Exploit MitigationsSecurity Affairs·Aug 21, 15:55 UTC · Aug 21, 2020Vulnerability55
100k+ WordPress sites exposed to hack due to a bug in RealSecurity Affairs·Apr 28, 09:03 UTC · Apr 28, 2020Exploit / PoC in the wild60
Crooks are attempting to take over tens of thousands of WordPress sitesSecurity Affairs·Feb 29, 16:15 UTC · Feb 29, 2020Exploit / PoC in the wild60
Experts observed Magecart 5 hacker group targeting L7 RoutersSecurity Affairs·Sep 27, 12:37 UTC · Sep 27, 2019Malware55
New infosec products of the week: August 2, 2019Help Net Security·Aug 2, 00:00 UTC · Aug 2, 2019Policy & legal55
Magecart hackers change tactic and target vulnerable Magento extensionsSecurity Affairs·Oct 24, 20:55 UTC · Oct 24, 2018Exploit / PoC60
Magecart strikes again, this time at electronics retailer NeweggCyberScoop·Sep 19, 15:35 UTC · Sep 19, 2018Exploit / PoC in the wild60
Arxan launches advanced protection for client-side web appsHelp Net Security·Sep 14, 00:00 UTC · Sep 14, 2018Data breach60
Firefox 0-day exploited in the wild to unmask Tor usersHelp Net Security·Jun 26, 21:24 UTC · Jun 26, 2018Exploit / PoC in the wild60
Crypto Me0wing attacks: Kitty cashes in on MoneroHelp Net Security·Jun 26, 21:20 UTC · Jun 26, 2018Exploit / PoCCVE-2018-760060
HITB Security Conference in Amsterdam to feature innovative research on attack and defense topicsHelp Net Security·Jan 18, 00:00 UTC · Jan 18, 2018Exploit / PoC60
Two Foxit Reader RCE zero-day vulnerabilities disclosedHelp Net Security·Aug 18, 00:00 UTC · Aug 18, 2017Exploit / PoCCVE-2017-10951CVE-2017-1095260
Microsoft Patch TuesdayCisco Talos·Aug 8, 18:30 UTC · Aug 8, 2017VulnerabilityCVE-2017-8653CVE-2017-8669CVE-2017-8661+38 CVEs60
Critical DOM XSS flaw on Wix.com put million websites at riskSecurity Affairs·Nov 3, 10:44 UTC · Nov 3, 2016Vulnerability55
Kaspersky Security Bulletin 2015. Overall statistics for 2015Kaspersky Securelist·Dec 15, 11:46 UTC · Dec 15, 2015AdvisoryCVE-2015-0310CVE-2015-0311CVE-2015-0313+12 CVEs60
Matt's Guide to Vendor ResponseCisco Talos·Dec 30, 17:56 UTC · Dec 30, 2009Exploit / PoC in the wild60
Max-severity Exchange server flaw under active exploitation by Kremlin hackersArs Technica · Security·Jul 30, 20:57 UTC · Jul 30, 2026Exploit / PoC in the wildCVE-2026-4289760