Attackers deliver ShadowPad via newly patched WSUS RCE bugSecurity Affairs·Nov 24, 12:35 UTC · Nov 24, 2025Vulnerability in the wildCVE-2025-5928760
RondoDox expands botnet by exploiting XWiki RCE bug left unpatched since February 2025Security Affairs·Nov 17, 08:04 UTC · Nov 17, 2025Vulnerability in the wildCVE-2025-2489360
Critical Control Web Panel vulnerability is actively exploited (CVE-2025-48703)Help Net Security·Nov 5, 00:00 UTC · Nov 5, 2025Vulnerability in the wildCVE-2025-48703CVE-2025-1137160
⚡ Weekly Recap: WhatsApp Worm, Critical CVEs, Oracle 0The Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Ransomware in the wildCVE-2025-61882CVE-2025-61884CVE-2025-10035+12 CVEs160
SonicWall adds rootkit removal capabilities to the SMA 100 seriesHelp Net Security·Oct 9, 13:10 UTC · Oct 9, 2025Malware in the wildCVE-2024-38475CVE-2025-4059960
CrowdStrike ties Oracle EBS RCE (CVE-2025Security Affairs·Oct 7, 08:42 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-6188260
Hackers deploy DripDropper via Apache ActiveMQ flaw, patch systems to evade detectionSecurity Affairs·Aug 21, 16:30 UTC · Aug 21, 2025Vulnerability in the wildCVE-2023-4660460
⚡ Weekly Recap: Chrome 0-Day, IngressNightmare, Solar Bugs, DNS Tactics, and MoreThe Hacker News·Aug 19, 13:08 UTC · Aug 19, 2025Ransomware in the wildCVE-2025-2783CVE-2025-2857CVE-2025-1974+11 CVEs60
Erlang/OTP SSH Vulnerability Sees Spike in Exploitation AttemptsInfosecurity Magazine·Aug 13, 16:45 UTC · Aug 13, 2025Vulnerability in the wildCVE-2025-3243360
Hard-Coded 'b' Password in Sitecore XP Sparks Major RCE Risk in Enterprise DeploymentsThe Hacker News·Jun 19, 03:14 UTC · Jun 19, 2025Vulnerability in the wildCVE-2025-34509CVE-2025-34510CVE-2025-34511+3 CVEs60
Critical Versa Concerto Flaws Let Attackers Escape Docker and Compromise HostsThe Hacker News·May 23, 04:44 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-34025CVE-2025-34026CVE-2024-45410+1 CVEs160
Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government NetworksThe Hacker News·May 23, 04:01 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-094460
⚡ Weekly Recap: Chrome 0-Day, IngressNightmare, Solar Bugs, DNS Tactics, and MoreThe Hacker News·May 17, 13:56 UTC · May 17, 2025Ransomware in the wildCVE-2025-2783CVE-2025-2857CVE-2025-1974+11 CVEs60
SAP cyberattack widens, drawing Salt Typhoon and Volt Typhoon comparisonsCyberScoop·May 15, 17:45 UTC · May 15, 2025Threat actor in the wild60
⚡ Weekly Recap: iOS Zero-Days, 4Chan Breach, NTLM Exploits, WhatsApp Spyware & MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Malware in the wildCVE-2025-24054CVE-2024-43451CVE-2025-31200+7 CVEs160
DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025The Hacker News·Apr 25, 08:43 UTC · Apr 25, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-2245760
PAN-OS Firewall Vulnerability Under Active ExploitationThe Hacker News·Nov 21, 03:53 UTC · Nov 21, 2024Vulnerability in the wildCVE-2024-5910CVE-2024-9463CVE-2024-9465+2 CVEs60
Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal FlawThe Hacker News·Oct 4, 06:25 UTC · Oct 4, 2024Exploit / PoC in the wildCVE-2024-4551960
Threat actors exploit Atlassian Confluence bug in cryptomining campaignsSecurity Affairs·Aug 30, 08:12 UTC · Aug 30, 2024Threat actor in the wildCVE-2023-2252760
Researchers released exploit code for actively exploited Palo Alto PANSecurity Affairs·Apr 17, 05:42 UTC · Apr 17, 2024Exploit / PoC in the wildCVE-2024-3400160
Chinese State-Sponsored RedJuliett Intensifies Taiwanese Cyber Espionage via Network Perimeter ExploitationRecorded Future·Apr 7, 00:00 UTC · Apr 7, 2024Threat actor in the wild60
Cybercriminals Weaponizing Open-Source SSHThe Hacker News·Feb 23, 03:18 UTC · Feb 23, 2024Vulnerability in the wild57
Ivanti Pulse Secure Found Using 11-YearThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21893+1 CVEs60
Warning: New Malware Emerges in Attacks Exploiting Ivanti VPN VulnerabilitiesThe Hacker News·Feb 2, 04:53 UTC · Feb 2, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
U.S. Cybersecurity Agency Warns of Actively Exploited Ivanti EPMM VulnerabilityThe Hacker News·Jan 20, 04:42 UTC · Jan 20, 2024Vulnerability in the wildCVE-2023-35082CVE-2023-35078CVE-2023-35081+2 CVEs60
New PoC Exploit for Apache OfBiz Vulnerability Poses Risk to ERP SystemsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2024Exploit / PoC in the wildCVE-2023-51467CVE-2023-49070CVE-2020-9496+2 CVEs60
Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023Security Affairs·Oct 9, 22:02 UTC · Oct 9, 2023Threat actor in the wildCVE-2023-351960
Hacking crew targeting states over transition bans claims cyberattack hitting global satellite systemsCyberScoop·Jul 3, 18:36 UTC · Jul 3, 2023Exploit / PoC in the wild60
MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being ExploitedThe Hacker News·Jun 7, 08:52 UTC · Jun 7, 2023Exploit / PoC in the wildCVE-2023-3436260
Multiple Hacker Groups Exploit 3-Year-Old Vulnerability to Breach U.S. Federal AgencyThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2023Vulnerability in the wildCVE-2019-18935CVE-2017-11317CVE-2017-1135760
Hackers go after SonicWall email appliances with three zeroThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoC in the wildCVE-2021-20021CVE-2021-20023CVE-2021-2002260
Log4Shell attacks began two weeks ago, Cisco and Cloudflare sayThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Ransomware in the wild60
Cacti Servers Under Attack as Majority Fail to Patch Critical VulnerabilityThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023Vulnerability in the wildCVE-2022-46169CVE-2023-2295260
Microsoft confirms Exchange zeroSecurity Affairs·Sep 30, 10:18 UTC · Sep 30, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Hackers Targeting Unpatched Atlassian Confluence Servers to Deploy Crypto MinersThe Hacker News·Sep 22, 06:17 UTC · Sep 22, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-403460
Hackers Targeting WebLogic Servers and Docker APIs for Mining CryptocurrenciesThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Vulnerability in the wildCVE-2022-26134CVE-2020-14882160
Watch Out! Cryptocurrency Miners Targeting Dockers, AWS and Alibaba CloudThe Hacker News·Apr 22, 09:30 UTC · Apr 22, 2022Vulnerability in the wildCVE-2022-2296560
NHS Warns of Hackers Targeting Log4j Flaws in VMware HorizonThe Hacker News·Jan 8, 07:04 UTC · Jan 8, 2022Ransomware in the wildCVE-2021-4422860
Threat actors continue to exploit Log4j flaws, Microsoft WarnsSecurity Affairs·Jan 5, 10:46 UTC · Jan 5, 2022Threat actor in the wildCVE-2021-45046CVE-2021-45105CVE-2021-4104+2 CVEs60
CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk VulnerabilityThe Hacker News·Dec 3, 13:34 UTC · Dec 3, 2021Vulnerability in the wildCVE-2021-44077CVE-2021-4053960