Coruna iOS Exploit Kit Uses 23 Exploits Across Five Chains Targeting iOS 13The Hacker News·Mar 26, 10:55 UTC · Mar 26, 2026Exploit / PoC in the wildCVE-2024-23222CVE-2022-48503CVE-2023-43000+9 CVEs60
⚡ Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & MoreThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2026Malware in the wildCVE-2026-3909CVE-2026-3910CVE-2026-3913+40 CVEs260
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & MoreThe Hacker News·Mar 12, 15:00 UTC · Mar 12, 2026Phishing & fraud in the wild60
All gas, no brakes: Time to come to AI churchCisco Talos·Feb 5, 19:00 UTC · Feb 5, 2026Ransomware in the wild60
CISA confirms exploitation of VMware ESXi flaw by ransomware attackersHelp Net Security·Feb 5, 00:00 UTC · Feb 5, 2026Ransomware in the wildCVE-2025-22225CVE-2025-22224CVE-2025-2222660
CVE-2025-22225 in VMware ESXi now used in active ransomware attacksSecurity Affairs·Feb 4, 22:02 UTC · Feb 4, 2026Ransomware in the wildCVE-2025-22225CVE-2025-22226CVE-2025-2222460
Chinese-speaking hackers exploited ESXi zeroSecurity Affairs·Jan 9, 00:06 UTC · Jan 9, 2026Ransomware in the wildCVE-2025-22226CVE-2025-22224CVE-2025-2222560
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent SpywareThe Hacker News·Nov 3, 17:57 UTC · Nov 3, 2025Exploit / PoC in the wildCVE-2025-2783160
Chrome Zero-Day Actively Exploited in Attacks by Mem3nt0 moriInfosecurity Magazine·Oct 28, 16:00 UTC · Oct 28, 2025Exploit / PoC in the wildCVE-2025-2783CVE-2025-285760
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER MalwareThe Hacker News·Sep 27, 12:13 UTC · Sep 27, 2025Exploit / PoC in the wildCVE-2025-20362CVE-2025-20333CVE-2025-2036360
FileFix Campaign Using Steganography and Multistage PayloadsInfosecurity Magazine·Sep 17, 16:45 UTC · Sep 17, 2025Threat actor in the wild60
SonicWall SSL VPN Flaw and Misconfigurations Actively Exploited by Akira Ransomware HackersThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Ransomware in the wildCVE-2024-4076660
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
New WinRAR ZeroInfosecurity Magazine·Aug 11, 16:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-36884CVE-2024-968060
Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched SystemsThe Hacker News·Jul 28, 15:57 UTC · Jul 28, 2025Ransomware in the wildCVE-2025-49706CVE-2025-4970460
Russian RomCom APT Group Leverages ZeroInfosecurity Magazine·Nov 27, 11:00 UTC · Nov 27, 2024Threat actor in the wildCVE-2024-9680CVE-2024-4903960
SECURITY AFFAIRS MALWARE NEWSLETTERSecurity Affairs·Nov 17, 14:49 UTC · Nov 17, 2024Malware in the wildCVE-2024-43451160
Researchers Uncover Flaws in Windows Smart App Control and SmartScreenThe Hacker News·Aug 6, 04:00 UTC · Aug 6, 2024Vulnerability in the wild157
Void Banshee exploits CVE-2024-38112 zeroSecurity Affairs·Jul 17, 14:16 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-38112CVE-2021-4044460
State-Sponsored Hackers Exploit Two Cisco ZeroThe Hacker News·Apr 25, 16:11 UTC · Apr 25, 2024Threat actor in the wildCVE-2024-20353CVE-2024-20359CVE-2024-2035860
Threat actors exploit Apache ActiveMQ flaw to deliver the Godzilla Web ShellSecurity Affairs·Jan 22, 11:19 UTC · Jan 22, 2024Threat actor in the wildCVE-2023-4660460
Phemedrone Stealer Targets Windows Defender Flaw Despite PatchInfosecurity Magazine·Jan 16, 17:15 UTC · Jan 16, 2024Vulnerability in the wildCVE-2023-3602560
Nearly 12,000 Juniper Firewalls Found Vulnerable to Recently Disclosed RCE VulnerabilityThe Hacker News·Sep 19, 10:29 UTC · Sep 19, 2023Vulnerability in the wildCVE-2023-36845CVE-2023-36844CVE-2023-36846+1 CVEs60
Alert: Juniper Firewalls, Openfire, and Apache RocketMQ Under Attack from New ExploitsThe Hacker News·Sep 6, 07:46 UTC · Sep 6, 2023Ransomware in the wildCVE-2023-36844CVE-2023-36845CVE-2023-36846+3 CVEs60
Urgent: Microsoft Issues Patches for 97 Flaws, Including Active Ransomware ExploitThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2023Ransomware in the wildCVE-2023-28252CVE-2022-24521CVE-2022-37969+6 CVEs60
More evidence links 3CX supply-chain attack to North Korean hacking groupThe Record·Mar 31, 12:21 UTC · Mar 31, 2023Data breach in the wild60
Google Warns of Internet Explorer Zero-Day Vulnerability Exploited by ScarCruft HackersThe Hacker News·Dec 9, 17:03 UTC · Dec 9, 2022Exploit / PoC in the wildCVE-2020-1380CVE-2021-26411CVE-2022-4112860
NK-linked InkySquid APT leverages IE exploits in recent attacksSecurity Affairs·Aug 19, 06:51 UTC · Aug 19, 2021Exploit / PoC in the wildCVE-2020-1380CVE-2021-2641160
NK Hackers Deploy Browser Exploits on South Korean Sites to Spread MalwareThe Hacker News·Aug 18, 14:51 UTC · Aug 18, 2021Malware in the wildCVE-2020-1380CVE-2021-2641160
IT threat evolution Q1 2021Kaspersky Securelist·May 31, 07:32 UTC · May 31, 2021Ransomware in the wildCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs60
Google Hacker Details Zero-Click 'Wormable' WiThe Hacker News·Dec 2, 13:22 UTC · Dec 2, 2020Exploit / PoC in the wildCVE-2020-3843CVE-2020-2795060
Chinese hackers hit Citrix, Cisco vulnerabilities in sweeping campaignCyberScoop·Mar 25, 15:16 UTC · Mar 25, 2020Vulnerability in the wildCVE-2019-1978160
After 2 years under the radar, Ratsnif emerges in OceanLotus operationsSecurity Affairs·Jul 2, 06:20 UTC · Jul 2, 2019Malware in the wild57
Chinese-linked APT10 has been active in the Philippines, researchers sayCyberScoop·May 24, 14:22 UTC · May 24, 2019Threat actor in the wild60
ATMitch: New Evidence Spotted In The WildSecurity Affairs·May 7, 14:11 UTC · May 7, 2019Malware in the wild157
Vietnam’s premier hacking group ramps up targeting of global car companiesCyberScoop·Mar 22, 01:23 UTC · Mar 22, 2019Exploit / PoC in the wild60
FlawedAmmyy Leveraging Undetected XLM Macros as an Infection VehicleSecurity Affairs·Mar 2, 18:46 UTC · Mar 2, 2019Malware in the wild157
Cylance: Spy campaign targeting Pakistani officials installs malware, then surrendersCyberScoop·Nov 12, 23:17 UTC · Nov 12, 2018Malware in the wild60
May 2018 Patch Tuesday: Microsoft fixes 2 zero-day flaws reportedly exploited by APT groupSecurity Affairs·May 9, 08:09 UTC · May 9, 2018Exploit / PoC in the wildCVE-2018-8174CVE-2018-8120CVE-2018-8170+1 CVEs60