Chinese Groups Deploy New TTPs to Exploit Ivanti VulnerabilitiesInfosecurity Magazine·Apr 5, 15:00 UTC · Apr 5, 2024VulnerabilityCVE-2023-46805CVE-2024-21887CVE-2024-2189347
Hackers hosted tools on a Stanford University website for monthsHelp Net Security·Jun 26, 21:22 UTC · Jun 26, 2018Malware30
Five Eyes Intelligence agencies warn of popular hacking toolsSecurity Affairs·Oct 12, 12:54 UTC · Oct 12, 2018Malware55
BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress AdminsThe Hacker News·Aug 11, 05:48 UTC · Aug 11, 2026VulnerabilityCVE-2026-18072CVE-2026-6463847
Researchers Identify Multiple China Hacker Groups Exploiting Ivanti Security FlawsThe Hacker News·Apr 6, 09:12 UTC · Apr 6, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Nation-State Actors Weaponize Ivanti VPN ZeroThe Hacker News·Jan 17, 01:56 UTC · Jan 17, 2024Threat actor in the wildCVE-2023-46805CVE-2024-21887160
UK NHS: Threat actor targets VMware Horizon servers using Log4Shell exploitsThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Threat actor57
Hackers deploy DripDropper via Apache ActiveMQ flaw, patch systems to evade detectionSecurity Affairs·Aug 21, 16:30 UTC · Aug 21, 2025Vulnerability in the wildCVE-2023-4660460
Chinese Hackers Exploit Ivanti CSA Zero-Days in Attacks on French Government, TelecomsThe Hacker News·Jul 3, 09:25 UTC · Jul 3, 2025Exploit / PoC in the wildCVE-2024-8963CVE-2024-9380CVE-2024-819060
Chinese-Speaking Hacker Group Targets Human Rights Studies in Middle EastThe Hacker News·Sep 5, 16:19 UTC · Sep 5, 2024VulnerabilityCVE-2023-26360CVE-2021-34473CVE-2021-34523+1 CVEs60
Defending Microsoft Exchange from encrypted attacks with Cisco Secure IPSCisco Talos·Mar 23, 20:50 UTC · Mar 23, 2021VulnerabilityCVE-2021-26855CVE-2021-2706560
CISA Issues Emergency Directive on In-theThe Hacker News·Mar 5, 06:35 UTC · Mar 5, 2021Data breach in the wildCVE-2021-2685560
Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023Security Affairs·Oct 9, 22:02 UTC · Oct 9, 2023Threat actor in the wildCVE-2023-351960
China's Volt Typhoon botnet has reSecurity Affairs·Nov 13, 19:16 UTC · Nov 13, 2024MalwareCVE-2024-3971760
Hackers exploited Centreon monitoring software to compromise IT providersHelp Net Security·Feb 16, 00:00 UTC · Feb 16, 2021Vulnerability42
CISA reveals new malware variant used on compromised Ivanti Connect Secure devicesHelp Net Security·Apr 2, 08:43 UTC · Apr 2, 2025Malware in the wildCVE-2025-028260
No, I Did Not Hack Your MS Exchange ServerKrebs on Security·Mar 28, 18:16 UTC · Mar 28, 2021Exploit / PoC in the wild60
Malicious IIS Extensions Gaining Popularity Among Cyber Criminals for Persistent AccessThe Hacker News·Jul 27, 07:17 UTC · Jul 27, 2022Vulnerability55
Hackers Targeting VoIP Servers By Exploiting Digium Phone SoftwareThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022VulnerabilityCVE-2021-4546147
Dutch NCSC Confirms Active Exploitation of Citrix NetScaler CVE-2025The Hacker News·Aug 12, 08:36 UTC · Aug 12, 2025Exploit / PoC in the wildCVE-2025-6543CVE-2025-577760
3 0Day in SonicWall Enterprise Email Security products actively exploitedSecurity Affairs·Apr 21, 10:25 UTC · Apr 21, 2021Exploit / PoC in the wildCVE-2021-20021CVE-2021-20022CVE-2021-20023+1 CVEs60
Alert: 'Effluence' Backdoor Persists Despite Patching Atlassian Confluence ServersThe Hacker News·Nov 10, 08:58 UTC · Nov 10, 2023MalwareCVE-2023-22515CVE-2023-2251860
Hackers go after SonicWall email appliances with three zeroThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Exploit / PoC in the wildCVE-2021-20021CVE-2021-20023CVE-2021-2002260
Hezbollah Hacker Group Targeted Telecoms, Hosting, ISPs WorldwideThe Hacker News·Jan 29, 10:08 UTC · Jan 29, 2021VulnerabilityCVE-2019-3396CVE-2019-11581CVE-2012-315235
China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsThe Hacker News·May 2, 06:30 UTC · May 2, 2026VulnerabilityCVE-2025-5518260
NHS Warns of Hackers Targeting Log4j Flaws in VMware HorizonThe Hacker News·Jan 8, 07:04 UTC · Jan 8, 2022Ransomware in the wildCVE-2021-4422860
Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal FlawThe Hacker News·Oct 4, 06:25 UTC · Oct 4, 2024Exploit / PoC in the wildCVE-2024-4551960
Experts Detail Malicious Code Dropped Using ManageEngine ADSelfService ExploitThe Hacker News·Nov 9, 03:15 UTC · Nov 9, 2021Exploit / PoC in the wildCVE-2021-40539160
Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure EntitiesThe Hacker News·Feb 7, 11:03 UTC · Feb 7, 2026Exploit / PoC60
Microsoft confirms Exchange zeroSecurity Affairs·Sep 30, 10:18 UTC · Sep 30, 2022Exploit / PoC in the wildCVE-2022-41040CVE-2022-4108260
Google, Mandiant expose malware and zeroSecurity Affairs·Oct 13, 08:35 UTC · Oct 13, 2025Malware in the wildCVE-2025-6188260
CrowdStrike ties Oracle EBS RCE (CVE-2025Security Affairs·Oct 7, 08:42 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-6188260
Cacti Servers Under Attack as Majority Fail to Patch Critical VulnerabilityThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2023Vulnerability in the wildCVE-2022-46169CVE-2023-2295260
Microsoft shares one-click ProxyLogon mitigation tool for Exchange serversThe Record·Jan 24, 00:00 UTC · Jan 24, 2023RansomwareCVE-2021-2685560
Hard-Coded 'b' Password in Sitecore XP Sparks Major RCE Risk in Enterprise DeploymentsThe Hacker News·Jun 19, 03:14 UTC · Jun 19, 2025Vulnerability in the wildCVE-2025-34509CVE-2025-34510CVE-2025-34511+3 CVEs60
Quarterly Report: Incident Response trends from Winter 2020Cisco Talos·Mar 24, 12:26 UTC · Mar 24, 2021RansomwareCVE-2021-26855CVE-2020-5902CVE-2019-1893560
Hackers Exploiting Unpatched Critical Atlassian Confluence ZeroThe Hacker News·Jun 3, 09:27 UTC · Jun 3, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-2608460
Threat actors are hijacking the infamous Emotet botnetSecurity Affairs·Jul 25, 08:25 UTC · Jul 25, 2020Malware42
Server-side attacks, C&C in public clouds and other MDR cases we observedKaspersky Securelist·Nov 2, 08:00 UTC · Nov 2, 2022Vulnerability30
Hacktivist Group Twelve Targets Russian Entities with Destructive Cyber AttacksThe Hacker News·Oct 19, 07:30 UTC · Oct 19, 2024RansomwareCVE-2021-21972CVE-2021-2200560