⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Data breachCVE-2025-22457CVE-2025-24061CVE-2025-2407+15 CVEs60
What open source means for cybersecurityHelp Net Security·Apr 15, 11:46 UTC · Apr 15, 2025Vulnerability55
Product Walkthrough: A Look Inside Wing Security's Layered SaaS Identity DefenseThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025Vulnerability55
Trump Admin Deletes Video Explaining Grammatical Concept of Pronouns in War Against DEI404 Media·Jan 30, 15:32 UTC · Jan 30, 2025Industry55
BreachLock Attack Surface Analytics strengthens enterprise CTEM capabilitiesHelp Net Security·Oct 8, 00:00 UTC · Oct 8, 2024Vulnerability in the wild60
36% of code generated by GitHub CoPilot contains security flawsHelp Net Security·Feb 20, 00:00 UTC · Feb 20, 2024Industry155
Over Half of Security Leaders Lack Confidence in Protecting App Secrets, Study RevealsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability55
Critical RCE vulnerabilities found in git (CVE-2022-41903, CVE-2022-23251)Help Net Security·Jan 19, 00:00 UTC · Jan 19, 2023VulnerabilityCVE-2022-41903CVE-2022-23251CVE-2022-4195360
Hackers earn nearly $2 million in bounties during HackerOne's live hacking eventHelp Net Security·Sep 4, 00:00 UTC · Sep 4, 2019Vulnerability55
Attackers breached Docker Hub, grabbed keys and tokensHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2019Data breach160
ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More StoriesThe Hacker News·Jul 30, 15:25 UTC · Jul 30, 2026RansomwareCVE-2026-33017CVE-2026-21858CVE-2025-68613+5 CVEs60
1Password targets standing privileges with new access management capabilitiesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Policy & legal55
Cloud-audit: Fast, open-source AWS security scannerHelp Net Security·Apr 20, 06:36 UTC · Apr 20, 2026Tools55
ThreatsDay Bulletin: Pixel Zero-Click, Redis RCE, China C2s, RAT Ads, Crypto Scams & 15+ StoriesThe Hacker News·Jan 24, 08:04 UTC · Jan 24, 2026Vulnerability55
Hackers turn open-source AI framework into global cryptojacking operationCyberScoop·Nov 19, 15:29 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2023-48022160
AI Copilot: Launching Innovation Rockets, But Beware of the Darkness AheadThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2024Vulnerability155
Secrets sprawl: Protecting your critical secretsHelp Net Security·Mar 21, 00:00 UTC · Mar 21, 2024Data breach60
Mercedes-Benz accidentally exposed sensitive data, including source codeSecurity Affairs·Jan 29, 20:16 UTC · Jan 29, 2024Data breach60
Why High Tech Companies Struggle with SaaS SecurityThe Hacker News·May 15, 00:00 UTC · May 15, 2023Data breach60
Pro-Russian Hacktivist Group Targets Czech Presidential ElectionInfosecurity Magazine·Jan 13, 18:00 UTC · Jan 13, 2023Threat actor60
Pro-Russia group NoName057(16) targets Ukraine and NATO countriesSecurity Affairs·Jan 13, 14:50 UTC · Jan 13, 2023Malware55
Veza Open Authorization API boosts security across enterprise data systemsHelp Net Security·Dec 3, 00:00 UTC · Dec 3, 2022Ransomware60
Rocke: The Champion of Monero MinersCisco Talos·Aug 30, 15:26 UTC · Aug 30, 2018VulnerabilityCVE-2017-10271CVE-2017-306660
Open-source maintainers still work underfunded as sponsorship crosses $100 millionHelp Net Security·Jul 21, 00:00 UTC · Jul 21, 2026Vulnerability55
The serpent’s tongue: Luring the Python out of its denCisco Talos·Jul 14, 10:00 UTC · Jul 14, 2026Malware155
1Password Credential Broker reduces secret sprawl through identity-based credential deliveryHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2026Industry155
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
Researcher Drops a New VS Code Zero-Day After Losing Trust in Microsoft's Disclosure ProcessSecurity Affairs·Jun 4, 09:13 UTC · Jun 4, 2026Exploit / PoC in the wild160
Less panic patching, more precisionCisco Talos·May 28, 18:00 UTC · May 28, 2026Exploit / PoC in the wild60
CISA credential leak raises alarms, and Capitol Hill demands answersCyberScoop·May 20, 14:43 UTC · May 20, 2026Exploit / PoC in the wild60
Mini Shai-Hulud returns, compromising hundreds of npm packagesCyberScoop·May 19, 21:21 UTC · May 19, 2026Data breach in the wild60
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
IR Trends Q1 2026: Phishing reemerges as top initial access vector, as attacks targeting public administration persistCisco Talos·Apr 22, 10:00 UTC · Apr 22, 2026Phishing & fraud55
Week in review: Acrobat Reader flaw exploited, Claude Mythos offensive capabilities and limitsHelp Net Security·Apr 19, 00:00 UTC · Apr 19, 2026Data breach in the wildCVE-2026-34621CVE-2026-39813CVE-2026-3980860
ThreatsDay Bulletin: FortiGate RaaS, Citrix Exploits, MCP Abuse, LiveChat Phish & MoreThe Hacker News·Mar 19, 14:25 UTC · Mar 19, 2026Ransomware in the wildCVE-2024-55591CVE-2025-71257CVE-2025-71258+4 CVEs60
Your dependencies are 278 days out of date and your pipelines aren't protectedHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2026Vulnerability55
ThreatsDay Bulletin: Kali Linux + Claude, Chrome Crash Traps, WinRAR Flaws, LockBit & 15+ StoriesThe Hacker News·Feb 27, 07:41 UTC · Feb 27, 2026RansomwareCVE-2023-4660460
Microsoft Patch Tuesday for February 2026 — Snort rules and prominent vulnerabilitiesCisco Talos·Feb 10, 23:54 UTC · Feb 10, 2026Vulnerability in the wildCVE-2026-21522CVE-2026-23655CVE-2026-21525+12 CVEs160
Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecastHelp Net Security·Feb 8, 00:00 UTC · Feb 8, 2026Vulnerability in the wildCVE-2026-21509CVE-2025-22225CVE-2026-2442360