⚡ Weekly Recap: WSUS Exploited, LockBit 5.0 Returns, Telegram Backdoor, F5 Breach WidensThe Hacker News·Oct 27, 14:16 UTC · Oct 27, 2025Ransomware in the wildCVE-2025-59287CVE-2025-54957CVE-2025-6950+21 CVEs60
Microsoft warns of a 32% surge in identity hacks, mainly driven by stolen passwordsThe Record·Oct 16, 16:37 UTC · Oct 16, 2025RansomwareCVE-2024-5062360
⚡ Weekly Recap: WhatsApp Worm, Critical CVEs, Oracle 0The Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Ransomware in the wildCVE-2025-61882CVE-2025-61884CVE-2025-10035+12 CVEs160
Microsoft Links Storm-1175 to GoAnywhere Exploit Deploying Medusa RansomwareThe Hacker News·Oct 10, 11:26 UTC · Oct 10, 2025Ransomware in the wildCVE-2025-1003560
Microsoft pins GoAnywhere zero-day attacks to ransomware affiliate StormCyberScoop·Oct 7, 20:44 UTC · Oct 7, 2025Ransomware in the wildCVE-2025-1003560
GoAnywhere MFT zero-day used by StormSecurity Affairs·Oct 7, 19:23 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-1003560
Microsoft: Critical GoAnywhere Bug Exploited in Medusa Ransomware CampInfosecurity Magazine·Oct 7, 09:45 UTC · Oct 7, 2025Ransomware in the wildCVE-2025-10035CVE-2024-1709CVE-2023-4878860
Medusa ransomware used during exploitation of GoAnywhere file transfer bug, Microsoft saysThe Record·Oct 6, 20:42 UTC · Oct 6, 2025RansomwareCVE-2025-1003560
Fortra GoAnywhere CVSS 10 Flaw Exploited as 0The Hacker News·Sep 30, 14:51 UTC · Sep 30, 2025Vulnerability in the wildCVE-2025-1003560
⚡ Weekly Recap: Chrome 0-Day, AI Hacking Tools, DDR5 BitThe Hacker News·Sep 22, 15:16 UTC · Sep 22, 2025Ransomware in the wildCVE-2025-10585CVE-2025-55241CVE-2025-10035+14 CVEs160
Automation and Vulnerability Exploitation Drive Mass Ransomware BreachInfosecurity Magazine·Jul 3, 13:00 UTC · Jul 3, 2025Ransomware in the wildCVE-2024-55591CVE-2024-21762CVE-2024-40766+8 CVEs60
Security Affairs newsletter Round 526 by Pierluigi PaganiniSecurity Affairs·Jun 8, 11:24 UTC · Jun 8, 2025Data breachCVE-2025-5054CVE-2025-4598CVE-2025-442860
Play ransomware group hit 900 organizations since 2022Security Affairs·Jun 6, 07:22 UTC · Jun 6, 2025RansomwareCVE-2024-5772760
Week in review: NIST proposes new vulnerabilities metric, flaws in NASA’s open source softwareHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2025Vulnerability55
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [10 February]The Hacker News·May 6, 07:05 UTC · May 6, 2025Ransomware in the wildCVE-2024-57726CVE-2024-57727CVE-2024-57728+18 CVEs60
Iranian Hackers Deploy New BugSleep Backdoor in Middle East Cyber AttacksThe Hacker News·Apr 17, 11:00 UTC · Apr 17, 2025Malware42
Medusa Ransomware Hits 40+ Victims in 2025, Demands $100KThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025RansomwareCVE-2024-1709CVE-2023-4878860
Medusa Ransomware Claims 40+ Victims in 2025Infosecurity Magazine·Mar 7, 09:15 UTC · Mar 7, 2025Ransomware57
Medusa Ransomware targeted over 40 organizations in 2025Security Affairs·Mar 7, 08:42 UTC · Mar 7, 2025Ransomware57
China-based Silver Fox spoofs healthcare app to deliver malwareHelp Net Security·Feb 25, 00:00 UTC · Feb 25, 2025Malware42
PostgreSQL Vulnerability Exploited Alongside BeyondTrust ZeroThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025Vulnerability in the wildCVE-2025-1094CVE-2024-12356CVE-2024-5772760
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [20 January]The Hacker News·Jan 20, 12:04 UTC · Jan 20, 2025RansomwareCVE-2025-21333CVE-2025-21334CVE-2025-21335+36 CVEs60
Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical FlawThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Exploit / PoC in the wildCVE-2024-6670CVE-2024-6671CVE-2024-4885+1 CVEs60
Iranian MuddyWater Upgrades Arsenal With New Custom BackdoorInfosecurity Magazine·Jul 16, 15:00 UTC · Jul 16, 2024Malware42
Iran-Linked MuddyWater Deploys Atera for Surveillance in Phishing AttacksThe Hacker News·Mar 26, 03:55 UTC · Mar 26, 2024Phishing & fraud42
Critical Flaws Found in ConnectWise ScreenConnect SoftwareThe Hacker News·Feb 28, 12:55 UTC · Feb 28, 2024Ransomware in the wildCVE-2024-1708CVE-2024-170960
ScreenConnect flaws exploited to deliver all kinds of malware (CVE-2024-1709, CVE-2024-1708)Help Net Security·Feb 26, 00:00 UTC · Feb 26, 2024Vulnerability in the wildCVE-2024-1709CVE-2024-170860
Attackers exploiting ConnectWise ScreenConnect flaws, fixes available for all users (CVE-2024-1709, CVE-2024-1708)Help Net Security·Feb 22, 00:00 UTC · Feb 22, 2024Vulnerability in the wildCVE-2024-1709CVE-2024-170860
Israeli Entities Under Attack By MuddyWater’s Advanced TacticsInfosecurity Magazine·Nov 2, 17:00 UTC · Nov 2, 2023Threat actor60
APT Groups Expand Reach to New Industries and GeographiesInfosecurity Magazine·Apr 27, 16:30 UTC · Apr 27, 2023Threat actor60