BlacksmithAI: Open-source AI-powered penetration testing frameworkHelp Net Security·Mar 2, 00:00 UTC · Mar 2, 2026Exploit / PoC145
ThreatsDay Bulletin: Kali Linux + Claude, Chrome Crash Traps, WinRAR Flaws, LockBit & 15+ StoriesThe Hacker News·Feb 27, 07:41 UTC · Feb 27, 2026RansomwareCVE-2023-4660460
Notepad++ patches flaw used to hijack update systemSecurity Affairs·Feb 18, 19:28 UTC · Feb 18, 2026VulnerabilityCVE-2026-25926160
Grandstream GXP1600 VoIP Phones Exposed to Unauthenticated Remote Code ExecutionThe Hacker News·Feb 18, 16:35 UTC · Feb 18, 2026VulnerabilityCVE-2026-232960
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
Cybersecurity jobs available right now: February 4, 2025Help Net Security·Jan 30, 10:48 UTC · Jan 30, 2026Exploit / PoC45
Cybersecurity jobs available right now: May 13, 2025Help Net Security·Jan 30, 10:25 UTC · Jan 30, 2026Exploit / PoC60
⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160
Analyzing the vulnerability landscape in Q3 2025Kaspersky Securelist·Dec 3, 10:00 UTC · Dec 3, 2025VulnerabilityCVE-2018-0802CVE-2017-11882CVE-2017-0199+6 CVEs60
Underground AI models promise to be hackers ‘cyber pentesting waifu’CyberScoop·Nov 26, 01:13 UTC · Nov 26, 2025Exploit / PoC in the wild60
Researchers question Anthropic claim that AIArs Technica · Security·Nov 15, 00:00 UTC · Nov 15, 2025Exploit / PoC60
Google uncovers malware using LLMs to operate and evade detectionHelp Net Security·Nov 5, 00:00 UTC · Nov 5, 2025Malware142
Mem3nt0 moriKaspersky Securelist·Oct 27, 03:00 UTC · Oct 27, 2025Exploit / PoC in the wildCVE-2025-278360
Flax Typhoon APT exploited ArcGIS server for over a year as a backdoorSecurity Affairs·Oct 15, 07:11 UTC · Oct 15, 2025Malware55
ShadowSilk Campaign Targets Central Asian GovernmentsInfosecurity Magazine·Aug 27, 16:00 UTC · Aug 27, 2025Threat actor45
Pirates of Brazil: Integrating the Strengths of Russian and Chinese Hacking Communities ReportRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability30
2024 Malicious Infrastructure Insights: Key Trends and ThreatsRecorded Future·Aug 20, 00:00 UTC · Aug 20, 2025Ransomware57
US Tops Hit List as 396 SharePoint Systems Compromised GloballyInfosecurity Magazine·Jul 30, 11:02 UTC · Jul 30, 2025RansomwareCVE-2025-5377060
MuddyWater deploys new DCHSpy variants amid IranSecurity Affairs·Jul 21, 18:39 UTC · Jul 21, 2025Exploit / PoC57
Iranian Hackers Deploy New Android Spyware VersionInfosecurity Magazine·Jul 21, 17:30 UTC · Jul 21, 2025Malware42
UNG0002 Group Hits China, Hong Kong, Pakistan Using LNK Files and RATs in Twin CampaignsThe Hacker News·Jul 21, 06:29 UTC · Jul 21, 2025Threat actor57
North Korea’s Ruling Elite Are Not IsolatedRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Threat actor45
TA829 and UNK_GreenSec Share Tactics and Infrastructure in Ongoing Malware CampaignsThe Hacker News·Jul 3, 09:00 UTC · Jul 3, 2025Malware55
Speed and Scale: How Threat Volume and Velocity Shape Cyber Risk Narratives for Governance BodiesRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC160
Analyzing the Patch Timeline for Zero-Day ExploitsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Cyber Criminals Exploit Open-Source Tools to Compromise Financial Institutions Across AfricaThe Hacker News·Jun 26, 08:08 UTC · Jun 26, 2025Ransomware57
Review: Learning Kali Linux, 2nd EditionHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2025Exploit / PoC45
Using an agent for the Mythic framework: pros and cons in pentestingKaspersky Securelist·May 13, 10:00 UTC · May 13, 2025Exploit / PoC60
MITRE Caldera RCE vulnerability with public PoC fixed, patch ASAP! (CVE-2025–27364)Help Net Security·Apr 2, 08:49 UTC · Apr 2, 2025Exploit / PoC60
Commix: Open-source OS command injection exploitation toolHelp Net Security·Apr 2, 08:47 UTC · Apr 2, 2025Exploit / PoC145
Critical Next.js auth bypass vulnerability opens web apps to compromise (CVE-2025-29927)Help Net Security·Apr 2, 08:44 UTC · Apr 2, 2025Vulnerability in the wildCVE-2025-2992760
Chinese Hackers Breach Asian Telecom, Remain Undetected for Over 4 YearsThe Hacker News·Mar 26, 04:30 UTC · Mar 26, 2025Data breach60
UAT-5918 targets critical infrastructure entities in TaiwanCisco Talos·Mar 20, 10:00 UTC · Mar 20, 2025Exploit / PoC60
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
New LightSpy spyware variant comes with enhanced data collection features targeting social media platformsSecurity Affairs·Feb 26, 09:49 UTC · Feb 26, 2025MalwareCVE-2018-4233CVE-2018-440435
Hackers Exploiting Critical Fortinet EMS Vulnerability to Deploy Remote Access ToolsThe Hacker News·Dec 20, 06:30 UTC · Dec 20, 2024VulnerabilityCVE-2023-4878860
Malicious Actors Exploit ProjectSend Critical VulnerabilityInfosecurity Magazine·Nov 28, 13:00 UTC · Nov 28, 2024VulnerabilityCVE-2024-1168060
New LightSpy spyware version targets iPhonesSecurity Affairs·Nov 1, 19:51 UTC · Nov 1, 2024MalwareCVE-2018-4233CVE-2018-4404CVE-2020-9802+1 CVEs35
CERT-UA Identifies Malicious RDP Files in Latest Attack on Ukrainian EntitiesThe Hacker News·Nov 1, 03:36 UTC · Nov 1, 2024Exploit / PoC60