⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreThe Hacker News·Jul 28, 05:26 UTC · Jul 28, 2026Exploit / PoC in the wildCVE-2026-16232CVE-2025-66376CVE-2026-54121+52 CVEs60
Attackers Exploit Critical ServiceNow RCE Flaw CVE-2026Security Affairs·Jul 21, 06:08 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-687560
⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and MoreThe Hacker News·Jun 29, 14:42 UTC · Jun 29, 2026Malware in the wildCVE-2026-43503CVE-2026-12569CVE-2026-47729+19 CVEs60
Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress SitesThe Hacker News·Jun 19, 17:13 UTC · Jun 19, 2026Ransomware60
14,971 WordPress Sites Cleaned in Global SocGholish TakedownSecurity Affairs·Jun 19, 13:41 UTC · Jun 19, 2026Ransomware60
EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesThe Hacker News·Jun 7, 15:47 UTC · Jun 7, 2026Malware155
⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreThe Hacker News·May 11, 12:36 UTC · May 11, 2026Malware in the wildCVE-2026-6973CVE-2026-030060
CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco ZeroThe Hacker News·Mar 20, 04:36 UTC · Mar 20, 2026Advisory in the wildCVE-2025-66376CVE-2026-20963CVE-2026-20131+5 CVEs60
Russian APT targets Ukraine via Zimbra XSS flaw CVE-2025Security Affairs·Mar 19, 14:48 UTC · Mar 19, 2026Vulnerability in the wildCVE-2025-6637660
Transparent COM instrumentation for malware analysisCisco Talos·Mar 18, 10:00 UTC · Mar 18, 2026Malware55
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
Critical Flaws Found in Four VS Code Extensions with Over 125 Million InstallsThe Hacker News·Feb 18, 13:16 UTC · Feb 18, 2026VulnerabilityCVE-2025-65717CVE-2025-65716CVE-2025-65715160
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Dissecting UAT-8099: New persistence mechanisms and regional focusCisco Talos·Jan 29, 11:00 UTC · Jan 29, 2026Malware55
Critical and High Severity n8n Sandbox Flaws Allow RCEInfosecurity Magazine·Jan 28, 16:00 UTC · Jan 28, 2026VulnerabilityCVE-2026-1470CVE-2026-086360
PackageGate bugs let attackers bypass protections in NPM, PNPM, VLT, and BunSecurity Affairs·Jan 28, 08:43 UTC · Jan 28, 2026Exploit / PoC160
GootLoader uses malformed ZIP files to bypass security controlsSecurity Affairs·Jan 18, 18:22 UTC · Jan 18, 2026Malware55
ThreatsDay Bulletin: Stealth Loaders, AI Chatbot Flaws AI Exploits, Docker Hack, and 15 More StoriesThe Hacker News·Jan 10, 14:25 UTC · Jan 10, 2026MalwareCVE-2025-59295CVE-2025-10294CVE-2025-5923060
27 Malicious npm Packages Used as Phishing Infrastructure to Steal Login CredentialsThe Hacker News·Dec 29, 09:44 UTC · Dec 29, 2025Phishing & fraud55
RomCom Uses SocGholish Fake Update Attacks to Deliver Mythic Agent MalwareThe Hacker News·Nov 26, 08:28 UTC · Nov 26, 2025Malware55
⚡ Weekly Recap: Fortinet Exploit, Chrome 0-Day, BadIIS Malware, Record DDoS, SaaS Breach & MoreThe Hacker News·Nov 24, 12:32 UTC · Nov 24, 2025Malware in the wildCVE-2025-58034CVE-2025-64446CVE-2025-13223+12 CVEs60
Chinese Threat Actor TEMP.Periscope Targets UK-Based Engineering Company Using Russian APT TechniquesRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Threat actor60
CVE-2025-10585 is the sixth actively exploited Chrome zeroSecurity Affairs·Nov 18, 08:52 UTC · Nov 18, 2025Vulnerability in the wildCVE-2025-10585CVE-2025-5419CVE-2025-4664+3 CVEs60
⚡ Weekly Recap: iPhone Spyware, Microsoft 0-Day, TokenBreak Hack, AI Data Leaks and MoreThe Hacker News·Oct 28, 08:29 UTC · Oct 28, 2025Malware in the wildCVE-2025-43200CVE-2025-32711CVE-2025-33053+24 CVEs260
⚡ Weekly Recap: F5 Breached, Linux Rootkits, Pixnapping Attack, EtherHiding & MoreThe Hacker News·Oct 20, 19:00 UTC · Oct 20, 2025Data breachCVE-2025-20352CVE-2025-48561CVE-2025-24990+18 CVEs60
ThreatsDay Bulletin: $15B Crypto Bust, Satellite Spying, BillionThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Vulnerability55
Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS FilesThe Hacker News·Oct 10, 06:52 UTC · Oct 10, 2025Exploit / PoC in the wildCVE-2025-2791560
U.S. CISA adds Synacor Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 21:39 UTC · Oct 7, 2025Exploit / PoC in the wildCVE-2025-2791560
Zimbra users targeted in zeroSecurity Affairs·Oct 7, 21:32 UTC · Oct 7, 2025Exploit / PoCCVE-2025-2791560
iframe Security Exposed: The Blind Spot Fueling Payment Skimmer AttacksThe Hacker News·Sep 24, 11:03 UTC · Sep 24, 2025Vulnerability in the wild60
CountLoader Broadens Russian Ransomware Operations With MultiThe Hacker News·Sep 19, 03:44 UTC · Sep 19, 2025Ransomware60
BlueDelta Exploits Ukrainian Government Roundcube Mail Servers to Support Espionage ActivitiesRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2020-35730CVE-2023-23397CVE-2020-12641+1 CVEs60
⚡ Weekly Recap: BadCam Attack, WinRAR 0-Day, EDR Killer, NVIDIA Flaws, Ransomware Attacks & MoreThe Hacker News·Aug 12, 04:40 UTC · Aug 12, 2025Ransomware in the wildCVE-2025-54948CVE-2025-54987CVE-2025-8088+30 CVEs60
Russia-Linked APT28 Exploited MDaemon ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2025Threat actor in the wildCVE-2020-12641CVE-2020-35730CVE-2021-44026+3 CVEs60
⚡ Weekly Recap: Critical SAP Exploit, AI-Powered Phishing, Major Breaches, New CVEs & MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Phishing & fraudCVE-2025-31324CVE-2024-58136CVE-2025-32432+16 CVEs60
Package hallucination: LLMs may deliver malicious code to careless devsHelp Net Security·Apr 14, 00:00 UTC · Apr 14, 2025Data breach160
Sophisticated Phishing Campaign Targets Ukraine’s Largest BankInfosecurity Magazine·Feb 5, 16:30 UTC · Feb 5, 2025Threat actor60
Vulnerability in popular AI developer could ‘shut down essentially everything you own’CyberScoop·Jan 29, 15:37 UTC · Jan 29, 2025Vulnerability in the wild60
F5 fixed a high-severity elevation of privilege vulnerability in BIGSecurity Affairs·Oct 20, 09:15 UTC · Oct 20, 2024Vulnerability in the wildCVE-2024-45844CVE-2024-4713960
Alert: Adobe Commerce and Magento Stores Under Attack from CosmicSting ExploitThe Hacker News·Oct 2, 12:13 UTC · Oct 2, 2024Data breach in the wildCVE-2024-34102CVE-2024-296160