Unpatched Security Flaws Disclosed in Multiple Document Management SystemsThe Hacker News·Mar 16, 12:27 UTC · Mar 16, 2023VulnerabilityCVE-2022-47412CVE-2022-47413CVE-2022-47414+5 CVEs35
New Flaws in TPM 2.0 Library Pose Threat to Billions of IoT and Enterprise DevicesThe Hacker News·Mar 3, 11:14 UTC · Mar 3, 2023VulnerabilityCVE-2023-1017CVE-2023-101847
Week in review: Critical git vulnerabilities, increasingly malicious Google Search adsHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2023VulnerabilityCVE-2022-46169CVE-2022-47966CVE-2022-4873+3 CVEs60
A couple of bugs can be chained to hack Netcomm routersSecurity Affairs·Jan 18, 15:18 UTC · Jan 18, 2023Exploit / PoCCVE-2022-4873CVE-2022-487460
The impact of lay-offs on your organization's cyber resilienceHelp Net Security·Nov 30, 00:00 UTC · Nov 30, 2022Threat actor45
Microsoft mitigations for recently disclosed Exchange zeroSecurity Affairs·Oct 4, 06:40 UTC · Oct 4, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
DFSCoerce NTLM relay attack allows taking control over Win domainsSecurity Affairs·Jun 21, 12:01 UTC · Jun 21, 2022Exploit / PoC145
When Your Smart ID Card Reader Comes With MalwareKrebs on Security·May 20, 13:44 UTC · May 20, 2022Malware42
A DNS flaw impacts a library used by millions of IoT devicesSecurity Affairs·May 3, 14:47 UTC · May 3, 2022Vulnerability55
Unpatched Java Spring Framework 0-Day RCE Bug Threatens Enterprise Web Apps SecurityThe Hacker News·Mar 31, 15:27 UTC · Mar 31, 2022Vulnerability in the wildCVE-2010-1622CVE-2022-22950CVE-2022-2296360
Mysterious disclosure of a zero-day RCE flaw Spring4Shell in SpringSecurity Affairs·Mar 31, 08:59 UTC · Mar 31, 2022Exploit / PoCCVE-2010-162260
New 16 High-Severity UEFI Firmware Flaws Discovered in Millions of HP DevicesThe Hacker News·Mar 9, 11:34 UTC · Mar 9, 2022Vulnerability42
Experts found 23 flaws in UEFI firmware potentially impact millions of devicesSecurity Affairs·Feb 2, 07:54 UTC · Feb 2, 2022Vulnerability in the wild57
New Samba Bug Allows Remote Attackers to Execute Arbitrary Code as RootThe Hacker News·Feb 2, 03:56 UTC · Feb 2, 2022VulnerabilityCVE-2021-44142CVE-2021-44141CVE-2022-033635
Samba bug may allow code execution as root on Linux machines, NAS devices (CVE-2021-44142)Help Net Security·Feb 2, 00:00 UTC · Feb 2, 2022VulnerabilityCVE-2021-44142CVE-2017-749460
Expert releases PoC for CVE-2022-21882 Windows local privilege elevation issueSecurity Affairs·Jan 30, 18:27 UTC · Jan 30, 2022Exploit / PoCCVE-2022-21882CVE-2021-173260
12-Year-Old Polkit Flaw Lets Unprivileged Linux Users Gain Root AccessThe Hacker News·Jan 27, 04:34 UTC · Jan 27, 2022Exploit / PoCCVE-2021-4034CVE-2021-3560CVE-2022-018550
CISA, FBI and NSA Publish Joint Advisory and Scanner for Log4j VulnerabilitiesThe Hacker News·Dec 29, 03:34 UTC · Dec 29, 2021VulnerabilityCVE-2021-45046CVE-2021-45105CVE-2021-44228+2 CVEs47
Apache Warns of Zero-Day Exploit in the Wild — Patch Your Web Servers Now!The Hacker News·Oct 7, 05:31 UTC · Oct 7, 2021Exploit / PoC in the wildCVE-2021-41773CVE-2021-4152460
Microsoft confirms another Windows Print Spooler bug, offers workaround (CVE-2021-36958)Help Net Security·Aug 13, 00:00 UTC · Aug 13, 2021VulnerabilityCVE-2021-3695847
Researcher Uncovers Yet Another Unpatched Windows Printer Spooler VulnerabilityThe Hacker News·Jul 22, 03:40 UTC · Jul 22, 2021VulnerabilityCVE-2021-3448160
There are new unpatched bugs in Windows Print SpoolerHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2021VulnerabilityCVE-2021-34481CVE-2021-1675CVE-2021-3452735
Experts bypassed Microsoft's emergency patch for the PrintNightmareSecurity Affairs·Jul 8, 07:35 UTC · Jul 8, 2021Vulnerability42
Microsoft rolled out emergency update for Windows PrintNightmareSecurity Affairs·Jul 7, 07:47 UTC · Jul 7, 2021Exploit / PoC in the wildCVE-2021-34527CVE-2021-167560
Microsoft Issues Emergency Patch for Critical Windows PrintNightmare VulnerabilityThe Hacker News·Jul 7, 03:38 UTC · Jul 7, 2021Vulnerability in the wildCVE-2021-34527160
Researchers Leak PoC Exploit for a Critical Windows RCE VulnerabilityThe Hacker News·Jul 2, 04:15 UTC · Jul 2, 2021Exploit / PoCCVE-2021-1675CVE-2020-1048CVE-2020-1300+1 CVEs60
French intel found flaws in Bluetooth Core and Mesh specsSecurity Affairs·May 24, 21:55 UTC · May 24, 2021VulnerabilityCVE-2020-26559CVE-2020-26556CVE-2020-26557+3 CVEs35
Expert released PoC exploit for Microsoft Exchange flawSecurity Affairs·May 3, 21:08 UTC · May 3, 2021Exploit / PoCCVE-2021-28482CVE-2021-28480CVE-2021-28481+1 CVEs160
ProxyLogon Microsoft Exchange exploit is completely out of the bagSecurity Affairs·Mar 15, 12:56 UTC · Mar 15, 2021Ransomware in the wildCVE-2021-2685560
Zero-day flaws in widespread TCP/IP library open millions of IoT devices to remote attackHelp Net Security·Feb 11, 12:31 UTC · Feb 11, 2021Exploit / PoCCVE-2020-11896CVE-2020-1191460
Vulnerable TCP/IP stacks open millions of IoT and OT devices to attackHelp Net Security·Feb 11, 12:30 UTC · Feb 11, 2021Vulnerability55
Sudo vulnerability allows attackers to gain root privileges on Linux systems (CVE-2021-3156)Help Net Security·Feb 10, 09:09 UTC · Feb 10, 2021VulnerabilityCVE-2021-315647
CISA orders federal agencies to implement Zerologon fix by MondayHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2020Exploit / PoC in the wildCVE-2020-147260
ATM vendors Diebold and NCR fixed deposit forgery bugsSecurity Affairs·Aug 22, 15:53 UTC · Aug 22, 2020VulnerabilityCVE-2020-9062CVE-2020-1012435
APTs will exploit Palo Alto Networks's PANSecurity Affairs·Jun 30, 19:17 UTC · Jun 30, 2020VulnerabilityCVE-2020-202160
Researcher Discloses 4 Zero-Day Bugs in IBM's Enterprise Security SoftwareThe Hacker News·Jun 10, 14:41 UTC · Jun 10, 2020Exploit / PoC60
WPA2 weakness allows attackers to extract sensitive info from Wi-Fi trafficHelp Net Security·May 28, 10:21 UTC · May 28, 2020Ransomware57
Widely used DNS forwarder and DHCP server Dnsmasq riddled with flawsHelp Net Security·May 28, 10:05 UTC · May 28, 2020Exploit / PoC57
PPP Daemon flaw opens Linux distros, networking devices to takeover attacksHelp Net Security·Mar 10, 00:00 UTC · Mar 10, 2020Exploit / PoCCVE-2020-859750