Europol Arrests Five SmokeLoader Clients Linked by Seized Database EvidenceThe Hacker News·Apr 10, 09:55 UTC · Apr 10, 2025Malware42
Multi-Layered TDS Infrastructure Linked to Major Cyber ThreatsRecorded Future·Sep 5, 00:00 UTC · Sep 5, 2024Ransomware57
Google addressed the ninth actively exploited Chrome zeroSecurity Affairs·Aug 26, 22:50 UTC · Aug 26, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-0519CVE-2024-2887+6 CVEs60
Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain AttackThe Hacker News·Jun 28, 04:05 UTC · Jun 28, 2024VulnerabilityCVE-2024-34102CVE-2024-296160
Spear Phishing Attacks Target Organizations in Ukraine, Payloads Include the Document Stealer OutSteel and the Downloader SaintBotPalo Alto Unit 42·Jun 5, 23:28 UTC · Jun 5, 2024MalwareCVE-2017-1188260
Sign1 malware campaign already infected 39,000 WordPress sitesSecurity Affairs·Mar 23, 13:00 UTC · Mar 23, 2024Malware30
Massive Sign1 Campaign Infects 39,000+ WordPress Sites with Scam RedirectsThe Hacker News·Mar 22, 11:27 UTC · Mar 22, 2024Threat actor45
Akamai introduces new capabilities to simplify PCI DSS 4.0 compliance for organizationsHelp Net Security·Oct 3, 00:00 UTC · Oct 3, 2023Vulnerability42
Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID MalwareThe Hacker News·Jun 23, 10:47 UTC · Jun 23, 2023Malware42
Critical Flaws in vm2 JavaScript Library Can Lead to Remote Code ExecutionThe Hacker News·Apr 20, 04:45 UTC · Apr 20, 2023VulnerabilityCVE-2023-29199CVE-2023-30547CVE-2023-29017+1 CVEs60
Researchers Detail Critical RCE Flaw Reported in Popular vm2 JavaScript SandboxThe Hacker News·Oct 11, 11:28 UTC · Oct 11, 2022VulnerabilityCVE-2022-3606760
Hackers Using Fake DDoS Protection Pages to Distribute MalwareThe Hacker News·Aug 24, 17:35 UTC · Aug 24, 2022Malware42
Overview of phishing HTML attachments in eKaspersky Securelist·May 16, 08:00 UTC · May 16, 2022Phishing & fraud30
25 Malicious JavaScript Libraries Distributed via Official NPM Package RepositoryThe Hacker News·Feb 23, 06:30 UTC · Feb 23, 2022Malware42
Check What Information Your Browser LeaksSchneier on Security·Sep 28, 14:51 UTC · Sep 28, 2021Policy & legal42
Silver Sparrow, a new malware infects Mac systems using Apple M1 chipSecurity Affairs·Feb 20, 14:09 UTC · Feb 20, 2021Malware142
Masslogger campaigns exfiltrates user credentialsCisco Talos·Feb 17, 13:00 UTC · Feb 17, 2021Threat actor57
Malicious NPM project steals browser info and Discord accountsSecurity Affairs·Nov 10, 15:13 UTC · Nov 10, 2020Data breach57
Google aims to improve security of browser engines, third-party Android devices and apps on Google PlayHelp Net Security·Oct 7, 11:57 UTC · Oct 7, 2020Exploit / PoC in the wild60
Over 800K WordPress sites are at risk due to a flaw in Ninja Forms pluginSecurity Affairs·May 1, 08:38 UTC · May 1, 2020Exploit / PoC in the wild60
Flaws in Popup Builder WordPress plugin expose 100K+ websites to hackSecurity Affairs·Mar 13, 11:42 UTC · Mar 13, 2020Exploit / PoC in the wildCVE-2020-10196CVE-2020-1019560
Friday Squid Blogging: "How the Squid Lost Its Shell"Schneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Vulnerability30
Chrome 0-day exploit CVE-2019Kaspersky Securelist·Nov 1, 16:00 UTC · Nov 1, 2019Exploit / PoCCVE-2019-1372060
Prototype Pollution flaw discovered in all versions of Lodash LibrarySecurity Affairs·Jul 9, 17:50 UTC · Jul 9, 2019Exploit / PoCCVE-2019-1074460
PoC Released for Outlook Flaw that Microsoft Patched 6 Month After DiscoveryThe Hacker News·Jun 22, 16:59 UTC · Jun 22, 2019Exploit / PoCCVE-2019-110560
Protecting applications from malicious scriptsHelp Net Security·Oct 17, 00:00 UTC · Oct 17, 2018Data breach60
Zerodium disclose exploit for NoScript bug in version 7 of Tor BrowserSecurity Affairs·Sep 11, 07:57 UTC · Sep 11, 2018Exploit / PoC60
The JavaScript Supply Chain Paradox: SRI, CSP and Trust in Third Party LibrariesTroy Hunt·Feb 12, 07:59 UTC · Feb 12, 2018Malware42
Samsung Android Browser is affected by a critical SOP bypass issue, a Metasploit exploit code is availableSecurity Affairs·Dec 29, 16:14 UTC · Dec 29, 2017Exploit / PoCCVE-2017-1769260
Critical "Same Origin Policy" Bypass Flaw Found in Samsung Android BrowserThe Hacker News·Dec 29, 12:26 UTC · Dec 29, 2017Exploit / PoCCVE-2017-1769260
Experts at ZDI reported two critical ZeroSecurity Affairs·Aug 22, 07:57 UTC · Aug 22, 2017Exploit / PoCCVE-2017-10951CVE-2017-1095260
Learn How to Code: Get 10 Best Online Training Courses for Just $49The Hacker News·Aug 3, 16:06 UTC · Aug 3, 2017Research30
Want Tofsee My Pictures? A Botnet Gets AggressiveCisco Talos·Sep 29, 15:02 UTC · Sep 29, 2016Malware30
Domain Shadowing Goes Nuclear: A Story in Failed SophisticationCisco Talos·Jun 16, 09:57 UTC · Jun 16, 2015Threat actor45
Micro optimising web content for unexpected, wild successTroy Hunt·Dec 12, 00:00 UTC · Dec 12, 2013Data breach45