China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom AttacksThe Hacker News·Mar 6, 08:22 UTC · Mar 6, 2026Malware55
U.S. CISA adds Dell RecoverPoint and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 19, 15:16 UTC · Feb 19, 2026Exploit / PoC in the wildCVE-2021-22175CVE-2026-22769CVE-2020-779660
China-linked APT weaponized Dell RecoverPoint zeroSecurity Affairs·Feb 18, 12:15 UTC · Feb 18, 2026Exploit / PoC in the wildCVE-2026-2276960
Chinese hackers exploited a Dell zeroCyberScoop·Feb 18, 00:32 UTC · Feb 18, 2026Exploit / PoC in the wildCVE-2026-2276960
Hewlett Packard Enterprise (HPE) fixed maximum severity OneView flawSecurity Affairs·Dec 18, 21:11 UTC · Dec 18, 2025Exploit / PoCCVE-2025-37164CVE-2025-3709360
HPE OneView Flaw Rated CVSS 10.0 Allows Unauthenticated Remote Code ExecutionThe Hacker News·Dec 18, 14:39 UTC · Dec 18, 2025Vulnerability in the wildCVE-2025-37164160
Fortinet, Ivanti, and SAP Issue Urgent Patches for Authentication and Code Execution FlawsThe Hacker News·Dec 10, 09:13 UTC · Dec 10, 2025VulnerabilityCVE-2025-59718CVE-2025-59719CVE-2025-10573+6 CVEs60
New BYOVD loader behind DeadLock ransomware attackCisco Talos·Dec 9, 11:00 UTC · Dec 9, 2025RansomwareCVE-2024-5132460
Amazon pins Cisco, Citrix zeroCyberScoop·Nov 12, 18:27 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2025-2033760
⚡ Weekly Recap: Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & MoreThe Hacker News·Nov 3, 17:59 UTC · Nov 3, 2025Threat actorCVE-2025-61932CVE-2025-55315CVE-2025-10680+18 CVEs160
UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology SectorsThe Hacker News·Sep 25, 15:04 UTC · Sep 25, 2025MalwareCVE-2023-46805CVE-2024-2188760
How threat actors breached U.S. federal civilian agency by exploiting a GeoServer flawSecurity Affairs·Sep 24, 10:16 UTC · Sep 24, 2025Data breach in the wildCVE-2024-3640160
CISA warns of malware deployed through Ivanti EPMM flawsSecurity Affairs·Sep 20, 14:07 UTC · Sep 20, 2025Malware in the wildCVE-2025-4427CVE-2025-4428160
CISA Warns of Two Malware Strains Exploiting Ivanti EPMM CVE-2025-4427 and CVE-2025The Hacker News·Sep 19, 06:35 UTC · Sep 19, 2025VulnerabilityCVE-2025-4427CVE-2025-442860
New HTTP/2 'MadeYouReset' Vulnerability Enables LargeThe Hacker News·Aug 22, 16:45 UTC · Aug 22, 2025VulnerabilityCVE-2025-8671CVE-2025-48989CVE-2025-54500+4 CVEs60
Active Campaign Exploits Cloud Flaws for CryptominingInfosecurity Magazine·Jul 24, 09:00 UTC · Jul 24, 2025Threat actor57
⚡ Weekly Recap: Scattered Spider Arrests, Car Exploits, macOS Malware, Fortinet RCE and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025RansomwareCVE-2025-25257CVE-2025-25251CVE-2025-31365+36 CVEs160
Alert: Exposed JDWP Interfaces Lead to Crypto Mining, Hpingbot Targets SSH for DDoSThe Hacker News·Jul 6, 07:18 UTC · Jul 6, 2025Vulnerability42
HPE Issues Security Patch for StoreOnce Bug Allowing Remote Authentication BypassThe Hacker News·Jun 4, 05:23 UTC · Jun 4, 2025Vulnerability in the wildCVE-2025-37093CVE-2025-37089CVE-2025-37090+8 CVEs60
⚡ Weekly Recap: APT Intrusions, AI Malware, ZeroThe Hacker News·Jun 3, 04:04 UTC · Jun 3, 2025Malware in the wildCVE-2025-3935CVE-2025-47577CVE-2025-2760+14 CVEs60
251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and ElasticsearchThe Hacker News·May 28, 09:23 UTC · May 28, 2025Vulnerability in the wildCVE-2018-15961CVE-2017-5638CVE-2022-26134+2 CVEs60
China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems WorldwideThe Hacker News·May 15, 00:00 UTC · May 15, 2025Vulnerability in the wildCVE-2025-31324CVE-2025-4299960
Confusion Reigns as Threat Actors Exploit Samsung MagicInfo FlawInfosecurity Magazine·May 8, 10:29 UTC · May 8, 2025Threat actor in the wildCVE-2024-739960
⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025RansomwareCVE-2025-21590CVE-2025-24983CVE-2025-24984+27 CVEs160
⚡ Weekly Recap: Nation-State Hacks, Spyware Alerts, Deepfake Malware, Supply Chain BackdoorsThe Hacker News·May 6, 05:03 UTC · May 6, 2025MalwareCVE-2025-3928CVE-2025-1976CVE-2025-46271+33 CVEs60
Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session PersistenceThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025Vulnerability in the wildCVE-2025-24859CVE-2025-30065CVE-2025-2481360
U.S. CISA adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 7, 19:39 UTC · Apr 7, 2025Exploit / PoC in the wildCVE-2025-22457160
Oracle Releases January 2025 Patch to Address 318 Flaws Across Major ProductsThe Hacker News·Jan 22, 13:39 UTC · Jan 22, 2025Vulnerability in the wildCVE-2025-21556CVE-2024-21287CVE-2025-21524+10 CVEs60
CISA adds Spring4Shell to list of exploited vulnerabilitiesHelp Net Security·Jan 10, 14:38 UTC · Jan 10, 2025Vulnerability in the wildCVE-2022-22965CVE-2021-4422860
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [30 Dec]The Hacker News·Jan 8, 11:22 UTC · Jan 8, 2025Exploit / PoCCVE-2024-3393CVE-2019-3568CVE-2024-56337+7 CVEs160
Apache MINA CVE-2024-52046: CVSS 10.0 Flaw Enables RCE via Unsafe SerializationThe Hacker News·Dec 27, 06:46 UTC · Dec 27, 2024Vulnerability in the wildCVE-2024-52046CVE-2024-56337CVE-2024-45387+2 CVEs160
Critical SQL Injection Vulnerability in Apache Traffic Control Rated 9.9 CVSS — Patch NowThe Hacker News·Dec 25, 13:30 UTC · Dec 25, 2024VulnerabilityCVE-2024-45387CVE-2024-43441CVE-2024-56337160
⚡ THN Recap: Top Cybersecurity Threats, Tools and Tips (Dec 2The Hacker News·Dec 15, 00:00 UTC · Dec 15, 2024VulnerabilityCVE-2024-41713CVE-2024-51378CVE-2023-45727+15 CVEs247
Critical SQLi Vulnerability Found in Fortra FileCatalyst Workflow ApplicationThe Hacker News·Jun 27, 06:45 UTC · Jun 27, 2024VulnerabilityCVE-2024-527660
Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud EnvironmentsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Malware155
Network Security Trends: Recent Exploits Observed in the Wild Include Remote Code Execution, CrossPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-22954CVE-2022-22963CVE-2022-22965+20 CVEs60
Hackers Created Rogue VMs to Evade Detection in Recent MITRE Cyber AttackThe Hacker News·May 27, 05:55 UTC · May 27, 2024Data breachCVE-2023-46805CVE-2024-2188760
MITRE December 2023 attack: threat actors created rogue VMs to evade detectionSecurity Affairs·May 25, 09:51 UTC · May 25, 2024Threat actor60
Kinsing Hacker Group Exploits More Flaws to Expand Botnet for CryptojackingThe Hacker News·May 22, 03:20 UTC · May 22, 2024Malware30
New HTTP/2 Vulnerability Exposes Web Servers to DoS AttacksThe Hacker News·Apr 5, 03:55 UTC · Apr 5, 2024VulnerabilityCVE-2024-2653CVE-2024-27316CVE-2024-24549+7 CVEs35