Pulse Secure extends capabilities for Microsoft AzureHelp Net Security·Jun 21, 22:31 UTC · Jun 21, 2018Industry30
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518)Help Net Security·Apr 24, 13:36 UTC · Apr 24, 2023Vulnerability in the wildCVE-2022-2751860
Iran-linked hackers use VPN exploits in farCyberScoop·Feb 18, 18:12 UTC · Feb 18, 2020Exploit / PoC in the wild60
Albany County Airport authority hit by a ransomware attackSecurity Affairs·Jan 10, 21:30 UTC · Jan 10, 2020Ransomware57
Remote Threats to Remote Employees: How Working From Home Increases the Attack SurfaceRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025RansomwareCVE-2019-1579CVE-2019-11510CVE-2018-13379+1 CVEs60
Threat actor shared a list of 49,577 IPs vulnerable Fortinet VPNsSecurity Affairs·Nov 22, 21:35 UTC · Nov 22, 2020Threat actorCVE-2018-13379CVE-2019-11510CVE-2020-147260
Absolute ensures remote workers have secure access to critical business apps and informationHelp Net Security·Mar 12, 00:00 UTC · Mar 12, 2020Industry55
Nearly 800,000 SonicWall VPNs Need Critical Flaw PatchingInfosecurity Magazine·Oct 16, 10:20 UTC · Oct 16, 2020Ransomware60
Absolute's customers can now self-heal critical apps to secure their distributed workforcesHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2021Industry55
Pulse Zero Trust Access simplifies management and mitigates cyber risksHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2020Data breach60
Enterprise VPN apps store authentication and session cookies insecurelyHelp Net Security·Apr 12, 00:00 UTC · Apr 12, 2019VulnerabilityCVE-2019-157335
Absolute enables customers to self-heal even more of their mission-critical security controlsHelp Net Security·May 6, 00:00 UTC · May 6, 2020Data breach60
NSA, CISA publish guide for securing VPN serversThe Record·Dec 14, 00:00 UTC · Dec 14, 2022Ransomware57
SonicWall Probes Attack Using ZeroInfosecurity Magazine·Jan 25, 09:50 UTC · Jan 25, 2021RansomwareCVE-2018-13379CVE-2020-15505CVE-2020-1631+3 CVEs60
Threat Source newsletter (Sept. 5, 2019)Cisco Talos·Sep 5, 18:00 UTC · Sep 5, 2019RansomwareCVE-2019-1965CVE-2019-1964CVE-2019-196260
NSA, CISA release Guidance on hardening remote access via VPN solutionsSecurity Affairs·Sep 29, 11:50 UTC · Sep 29, 2021Ransomware57
Microsoft seizes domains used by Chinese cyberThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability in the wild57
Attackers Chaining Zerologon with VPN ExploitsInfosecurity Magazine·Oct 12, 12:02 UTC · Oct 12, 2020VulnerabilityCVE-2018-13379CVE-2020-15505CVE-2020-1472+4 CVEs60
Ivanti VPN customers targeted via unrecognized RCE vulnerability (CVE-2025-22457)Help Net Security·Apr 11, 10:14 UTC · Apr 11, 2025Vulnerability in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+2 CVEs60
Ivanti CEO pledges to “fundamentally transform” its hardArs Technica · Security·Apr 5, 17:05 UTC · Apr 5, 2024Ransomware60
FBI Issues Flash Alert on Actively Exploited FatPipe VPN ZeroThe Hacker News·Nov 19, 09:27 UTC · Nov 19, 2021Exploit / PoC in the wild60
Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecastHelp Net Security·Apr 6, 00:00 UTC · Apr 6, 2025Vulnerability in the wildCVE-2025-22457CVE-2024-20439CVE-2025-2825+1 CVEs60
China-linked APT Silk Typhoon targets IT Supply ChainSecurity Affairs·Mar 5, 21:02 UTC · Mar 5, 2025Exploit / PoCCVE-2025-028260
Citrix expands its Citrix Ready Workspace Security Program to include zero trust solutionsHelp Net Security·Oct 28, 00:00 UTC · Oct 28, 2020Industry55
Researchers warn of hackers widely exploiting bug in Zyxel hardwareThe Record·Jun 1, 12:30 UTC · Jun 1, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-33009CVE-2023-3301060
Ivanti Connect Secure zero-days exploited by attackers (CVE-2023-46805, CVE-2024-21887)Help Net Security·Jan 16, 16:05 UTC · Jan 16, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-2188760
APT groups are exploiting outdated VPNs to spy on international targets, U.K. and U.S. warnCyberScoop·Oct 7, 19:18 UTC · Oct 7, 2019Threat actor in the wild60
US, UK, and Australian agencies warn of top routinely exploited issuesSecurity Affairs·Jul 28, 20:29 UTC · Jul 28, 2021VulnerabilityCVE-2021-26855CVE-2021-26857CVE-2021-26858+13 CVEs135
A Closer Look at the LAPSUS$ Data Extortion GroupKrebs on Security·Mar 23, 22:24 UTC · Mar 23, 2022Ransomware57
Security Affairs newsletter Round 471 by Pierluigi PaganiniSecurity Affairs·May 19, 12:28 UTC · May 19, 2024RansomwareCVE-2023-49606CVE-2024-366160
Zyxel says a threat actor is targeting its enterprise firewall and VPN devicesThe Record·Dec 17, 00:00 UTC · Dec 17, 2022Threat actorCVE-2021-3502960
Silk Typhoon shifted to specifically targeting IT management companiesCyberScoop·Mar 6, 14:54 UTC · Mar 6, 2025Exploit / PoC in the wildCVE-2025-028260
Threat Advisory: NSA SVR Advisory CoverageCisco Talos·Apr 15, 15:45 UTC · Apr 15, 2021AdvisoryCVE-2018-13379CVE-2019-9670CVE-2019-11510+2 CVEs147
U.S. Cybersecurity Agency Lists 2021's Top 15 Most Exploited Software VulnerabilitiesThe Hacker News·May 9, 02:55 UTC · May 9, 2022VulnerabilityCVE-2020-0688CVE-2019-11510CVE-2018-1337947
Threat Source newsletter (Aug. 22)Cisco Talos·Aug 29, 18:00 UTC · Aug 29, 2019RansomwareCVE-2019-1912CVE-2019-191360
Citrix introduces two workspace security solutions to secure access and protect apps anywhereHelp Net Security·Oct 30, 00:00 UTC · Oct 30, 2020Industry55
Two Ivanti ZeroInfosecurity Magazine·Jan 11, 09:30 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2023-35078+1 CVEs60
CISA published 2021 Top 15 most exploited software vulnerabilitiesSecurity Affairs·Apr 28, 13:49 UTC · Apr 28, 2022VulnerabilityCVE-2021-21972CVE-2021-26084CVE-2021-40539+2 CVEs35
Silk Typhoon Shifts Tactics to Exploit Common IT SolutionsInfosecurity Magazine·Mar 5, 16:30 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2025-028260