Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZSecurity Affairs·Jul 20, 10:58 UTC · Jul 20, 2026Vulnerability in the wildCVE-2025-1100160
The best defense against AI attacks turns out to be a skeptical humanHelp Net Security·Jul 14, 00:00 UTC · Jul 14, 2026Vulnerability42
Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 ServersThe Hacker News·Jul 10, 11:47 UTC · Jul 10, 2026Vulnerability in the wildCVE-2026-4253060
CyberProof Agentic MXDR Service brings AI agents to managed detection and responseHelp Net Security·Jul 7, 00:00 UTC · Jul 7, 2026Exploit / PoC60
RustDuck: The Botnet That's Still Small but Engineering Like It Plans to GrowSecurity Affairs·Jul 1, 10:25 UTC · Jul 1, 2026Malware in the wildCVE-2025-29635CVE-2017-17215CVE-2024-1781+1 CVEs160
Chinese APT CL-STA-1062 Expands Attacks on Southeast Asian Critical Infrastructure With Custom MalwareSecurity Affairs·Jun 26, 17:16 UTC · Jun 26, 2026Malware55
Attackers are handing off access in 22 seconds, Mandiant findsHelp Net Security·Jun 19, 12:06 UTC · Jun 19, 2026RansomwareCVE-2025-31324CVE-2025-61882CVE-2025-53770+1 CVEs60
Critical Start expands MDR capabilities with multi-agent AI systemHelp Net Security·Jun 3, 00:00 UTC · Jun 3, 2026AI research30
AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It.The Hacker News·Jun 2, 11:58 UTC · Jun 2, 2026Vulnerability in the wild60
Cogent targets exploit-to-remediation gap with new AI-powered security capabilitiesHelp Net Security·May 27, 00:00 UTC · May 27, 2026Exploit / PoC60
Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsThe Hacker News·May 18, 08:39 UTC · May 18, 2026Malware42
Hackers Used AI to Develop First Known ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2026Exploit / PoC160
AI is separating the companies built to scale from the ones built to sellCyberScoop·May 12, 10:00 UTC · May 12, 2026Exploit / PoC in the wild60
Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomThe Hacker News·May 11, 11:51 UTC · May 11, 2026Exploit / PoC45
After Mythos: New Playbooks For a ZeroThe Hacker News·Apr 28, 10:30 UTC · Apr 28, 2026Vulnerability55
China-Linked GopherWhisper Infects 12 Mongolian Government Systems with Go BackdoorsThe Hacker News·Apr 23, 15:54 UTC · Apr 23, 2026Malware42
STX RAT Targets Finance Sector With Advanced Stealth TacticsInfosecurity Magazine·Apr 9, 15:00 UTC · Apr 9, 2026Malware30
Microsoft warns of ClickFix campaign exploiting Windows Terminal for Lumma StealerSecurity Affairs·Mar 6, 12:40 UTC · Mar 6, 2026Malware30
Microsoft Reveals ClickFix Campaign Using Windows Terminal to Deploy Lumma StealerThe Hacker News·Mar 6, 06:44 UTC · Mar 6, 2026Malware30
Cybersecurity Tech Predictions for 2026: Operating in a World of Permanent InstabilityThe Hacker News·Feb 18, 11:58 UTC · Feb 18, 2026Vulnerability55
Fragmentation Defined 2025's Threat Landscape. Here's What It Means for 2026Recorded Future·Feb 12, 00:00 UTC · Feb 12, 2026Ransomware60
Duplicati: Free, open-source backup clientHelp Net Security·Dec 31, 00:00 UTC · Dec 31, 2025AI safety & security30
New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized MemoryThe Hacker News·Dec 29, 07:14 UTC · Dec 29, 2025VulnerabilityCVE-2025-1484747
The Bug That Won't Die: 10 Years of the Same MistakeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Exploit / PoCCVE-2025-55182CVE-2025-66478CVE-2015-485260
Hunting Unpacked: Unleashing External Threat Intelligence in Network HuntingRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Malware30
GNU Coreutils 9.9 brings fixes and updates across essential toolsHelp Net Security·Nov 11, 00:00 UTC · Nov 11, 2025Industry30
2 Billion Email Addresses Were Exposed, and We Indexed Them All in Have I Been PwnedTroy Hunt·Nov 5, 06:41 UTC · Nov 5, 2025Data breach60
SesameOp: New backdoor exploits OpenAI API for covert C2Security Affairs·Nov 4, 17:06 UTC · Nov 4, 2025Malware42
OpenAI Assistants API Exploited in 'SesameOp' BackdoorInfosecurity Magazine·Nov 4, 15:00 UTC · Nov 4, 2025Malware42
Wireshark 4.6.0 brings major updates for packet analysis and decryptionHelp Net Security·Oct 23, 00:00 UTC · Oct 23, 2025Policy & legal30
Maverick: a new banking trojan abusing WhatsApp in a massive scale distributionKaspersky Securelist·Oct 15, 13:03 UTC · Oct 15, 2025Malware30
U.S. CISA adds Adminer, Cisco IOS, Fortra GoAnywhere MFT, Libraesva ESG, and Sudo flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 30, 09:07 UTC · Sep 30, 2025Exploit / PoC in the wildCVE-2021-21311CVE-2025-20352CVE-2025-10035+3 CVEs60
Libraesva ESG zero-day vulnerability exploited by attackers (CVE-2025-59689)Help Net Security·Sep 24, 00:00 UTC · Sep 24, 2025Exploit / PoCCVE-2025-5968960
How RainyDay, Turian and a new PlugX variant abuse DLL search order hijackingCisco Talos·Sep 23, 18:00 UTC · Sep 23, 2025Malware42
Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan TargetsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2022-1040CVE-2022-3019060
Malvertising Campaign Deploys Modular PowerShell Malware PS1BotInfosecurity Magazine·Aug 14, 16:00 UTC · Aug 14, 2025Malware30
Malicious Code in XZ Utils for Linux Systems Enables Remote Code ExecutionThe Hacker News·Aug 13, 10:32 UTC · Aug 13, 2025VulnerabilityCVE-2024-309447