Authorities takedown global proxy network SocksEscortCyberScoop·Mar 12, 16:40 UTC · Mar 12, 2026Exploit / PoC in the wild60
CISA Flags Actively Exploited n8n RCE Bug as 24,700 Instances Remain ExposedThe Hacker News·Mar 12, 05:18 UTC · Mar 12, 2026Vulnerability in the wildCVE-2025-68613CVE-2026-2757760
Week in review: Weaponized OAuth redirection logic delivers malware, Patch Tuesday forecastHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2026VulnerabilityCVE-2025-14500CVE-2026-28289CVE-2026-20128+1 CVEs60
Global Takedown Neutralizes Tycoon2FA Phishing ServiceInfosecurity Magazine·Mar 4, 16:00 UTC · Mar 4, 2026Phishing & fraud42
CVE-2025-64328 exploitation impacts 900 Sangoma FreePBX instancesSecurity Affairs·Mar 1, 10:01 UTC · Mar 1, 2026Vulnerability in the wildCVE-2025-6432860
Roundcube RCE: Dark web activity signals imminent attacks (CVE-2025-49113)Help Net Security·Feb 23, 10:54 UTC · Feb 23, 2026Vulnerability in the wildCVE-2025-49113CVE-2024-42009CVE-2025-6846160
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
Ivanti EPMM exploitation: Researchers warn of "sleeper" webshellsHelp Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Data breach in the wildCVE-2026-1281CVE-2026-1340160
Ivanti provides temporary patches for actively exploited EPMM zero-day (CVE-2026-1281)Help Net Security·Feb 2, 10:44 UTC · Feb 2, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Two High-Severity n8n Flaws Allow Authenticated Remote Code ExecutionThe Hacker News·Jan 29, 16:54 UTC · Jan 29, 2026VulnerabilityCVE-2026-1470CVE-2026-0863CVE-2026-2185847
Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy DThe Hacker News·Jan 7, 09:23 UTC · Jan 7, 2026Vulnerability in the wildCVE-2026-062560
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
Fortinet Warns of Active Exploitation of FortiOS SSL VPN 2FA Bypass VulnerabilityThe Hacker News·Jan 3, 08:24 UTC · Jan 3, 2026Vulnerability in the wildCVE-2020-1281260
RondoDox Botnet Exploits Critical React2Shell Flaw to Hijack IoT Devices and Web ServersThe Hacker News·Jan 1, 09:19 UTC · Jan 1, 2026MalwareCVE-2025-55182CVE-2023-1389CVE-2025-2489360
US, Australia say ‘MongoBleed’ bug being exploitedThe Record·Dec 29, 22:07 UTC · Dec 29, 2025Data breachCVE-2025-1484760
Hundreds of Arrests as Operation Sentinel Recovers $3mInfosecurity Magazine·Dec 23, 09:30 UTC · Dec 23, 2025Ransomware60
WatchGuard Warns of Active Exploitation of Critical Fireware OS VPN VulnerabilityThe Hacker News·Dec 23, 04:10 UTC · Dec 23, 2025Vulnerability in the wildCVE-2025-14733CVE-2025-59718CVE-2025-59719+1 CVEs60
574 arrests, $3 million recovered in Africa-wide cybercrime crackdownHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2025Ransomware60
React2Shell Vulnerability Actively Exploited to Deploy Linux BackdoorsThe Hacker News·Dec 17, 07:26 UTC · Dec 17, 2025Vulnerability in the wildCVE-2025-55182CVE-2025-29927CVE-2025-6647860
React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency MitigationThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Exploit / PoC in the wildCVE-2025-55182CVE-2021-4422860
React2Shell Exploitation Delivers Crypto Miners and New Malware Across Multiple SectorsThe Hacker News·Dec 11, 04:19 UTC · Dec 11, 2025MalwareCVE-2025-5518260
Critical React2Shell Flaw Added to CISA KEV After Confirmed Active ExploitationThe Hacker News·Dec 9, 06:18 UTC · Dec 9, 2025Exploit / PoC in the wildCVE-2025-5518260
⚡ Weekly Recap: USB Malware, React2Shell, WhatsApp Worms, AI IDE Bugs & MoreThe Hacker News·Dec 9, 04:05 UTC · Dec 9, 2025MalwareCVE-2025-55182CVE-2025-6389CVE-2025-66516+19 CVEs60
React2Shell Under Active Exploitation by ChinaInfosecurity Magazine·Dec 8, 11:40 UTC · Dec 8, 2025Exploit / PoC in the wildCVE-2025-5518260
August 2025 CVE LandscapeRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Ransomware in the wildCVE-2025-8088CVE-2025-7775CVE-2025-57819+5 CVEs60
Operation Endgame Dismantles Rhadamanthys, Venom RAT, and Elysium Botnet in Global CrackdownThe Hacker News·Nov 17, 14:23 UTC · Nov 17, 2025Malware42
CISA Flags Critical WatchGuard Fireware Flaw Exposing 54,000 Fireboxes to NoThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Exploit / PoC in the wildCVE-2025-9242CVE-2025-62215CVE-2025-1248060
Too many Cisco ASA firewalls still unsecure despite zero-day attack alertsHelp Net Security·Nov 13, 12:09 UTC · Nov 13, 2025Exploit / PoCCVE-2025-20333CVE-2025-20362CVE-2025-2035260
"Patched" but still exposed: US federal agencies must remediate Cisco flaws (again)Help Net Security·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wildCVE-2025-20333CVE-2025-20362CVE-2025-12480+2 CVEs60
Researchers Uncover WatchGuard VPN Bug That Could Let Attackers Take Over DevicesThe Hacker News·Oct 22, 04:20 UTC · Oct 22, 2025RansomwareCVE-2025-9242CVE-2025-3600CVE-2025-3660460
Critical WatchGuard Fireware OS Flaw Enables Remote Code ExecutionInfosecurity Magazine·Oct 21, 11:42 UTC · Oct 21, 2025VulnerabilityCVE-2025-924260
Criminal SIM Card Supply Network Busted by EuropolInfosecurity Magazine·Oct 20, 12:15 UTC · Oct 20, 2025Ransomware45
SIMCARTEL operation: Europol takes down SIMSecurity Affairs·Oct 18, 09:42 UTC · Oct 18, 2025Ransomware57
Scanning Activity on Palo Alto Networks Portals Jump 500% in One DayThe Hacker News·Oct 10, 14:03 UTC · Oct 10, 2025VulnerabilityCVE-2025-20333CVE-2025-2036260
Microsoft: Critical GoAnywhere Bug Exploited in Medusa Ransomware CampInfosecurity Magazine·Oct 7, 09:45 UTC · Oct 7, 2025Ransomware in the wildCVE-2025-10035CVE-2024-1709CVE-2023-4878860
Detour Dog Caught Running DNS-Powered Malware Factory for Strela StealerThe Hacker News·Oct 4, 14:36 UTC · Oct 4, 2025Malware42
Netscaler vulnerability was exploited as zero-day for nearly two months (CVE-2025-6543)Help Net Security·Aug 29, 09:22 UTC · Aug 29, 2025Exploit / PoC in the wildCVE-2025-6543CVE-2025-577760
Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in lossesCyberScoop·Aug 22, 16:03 UTC · Aug 22, 2025Ransomware60
Interpol-Led African Cybercrime Crackdown Leads to 1209 ArrestsInfosecurity Magazine·Aug 22, 13:20 UTC · Aug 22, 2025Ransomware60