Iranian Nation-State Actors Employ Password Spray Attacks Targeting Multiple SectorsThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023Threat actorCVE-2022-26134CVE-2022-47966160
Iranian state hackers targeted satellite, defense organizations worldwideThe Record·Sep 14, 19:21 UTC · Sep 14, 2023Vulnerability42
Microsoft: Iranian espionage campaign targeted satellite and defense sectorsCyberScoop·Sep 14, 16:30 UTC · Sep 14, 2023Threat actor in the wild60
Security Affairs newsletter Round 436 by Pierluigi PaganiniSecurity Affairs·Sep 10, 08:53 UTC · Sep 10, 2023Ransomware in the wildCVE-2023-34039CVE-2023-3324660
Multiple nation-state hackers infiltrate single aviation organizationCyberScoop·Sep 7, 17:07 UTC · Sep 7, 2023Threat actor in the wild60
Microsoft Releases Patches for 74 New Vulnerabilities in August UpdateThe Hacker News·Aug 10, 03:31 UTC · Aug 10, 2023Vulnerability in the wildCVE-2023-20569CVE-2023-36884CVE-2023-35388+8 CVEs60
Top 12 vulnerabilities routinely exploited in 2022Help Net Security·Aug 7, 07:41 UTC · Aug 7, 2023VulnerabilityCVE-2018-13379CVE-2021-34473CVE-2021-31207+23 CVEs147
Major Cybersecurity Agencies Collaborate to Unveil 2022's Most Exploited VulnerabilitiesThe Hacker News·Aug 4, 07:02 UTC · Aug 4, 2023VulnerabilityCVE-2018-13379CVE-2021-34473CVE-2021-31207+9 CVEs160
CISA, FBI, and NSA published the list of 12 most exploited vulnerabilities of 2022Security Affairs·Aug 4, 06:31 UTC · Aug 4, 2023VulnerabilityCVE-2018-13379CVE-2021-34473CVE-2021-31207+8 CVEs60
Are GPT-Based Models the Right Fit for AIInfosecurity Magazine·Jun 27, 08:00 UTC · Jun 27, 2023Model release50
Buhti Ransomware Gang Switches Tactics, Utilizes Leaked LockBit and Babuk CodeThe Hacker News·Jun 7, 08:52 UTC · Jun 7, 2023RansomwareCVE-2022-47966CVE-2022-47986CVE-2023-2735060
China's Stealthy Hackers Infiltrate U.S. and Guam Critical Infrastructure UndetectedThe Hacker News·May 26, 03:32 UTC · May 26, 2023Data breach60
Week in review: Fake ChatGPT desktop client steals data, Patch Tuesday forecastHelp Net Security·May 7, 00:00 UTC · May 7, 2023VulnerabilityCVE-2023-20126CVE-2018-9995CVE-2016-20016+1 CVEs60
Week in review: PaperCut vulnerabilities, VMware fixes critical flaws, RSA Conference 2023Help Net Security·Apr 30, 00:00 UTC · Apr 30, 2023VulnerabilityCVE-2023-27524CVE-2023-20869CVE-2023-20870+4 CVEs60
Charming Kitten's New BellaCiao Malware Discovered in MultiThe Hacker News·Apr 27, 07:58 UTC · Apr 27, 2023Malware55
Week in review: Western Digital network security incident, QNAP vulns, Patch Tuesday forecastHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2023Vulnerability in the wildCVE-2023-26360CVE-2023-26359160
Threat Source newsletter (April 6, 2023) — Another friendly reminder about supply chain attacksCisco Talos·Apr 6, 18:00 UTC · Apr 6, 2023Ransomware57
Week in review: LastPass breach, GCP data exfiltration, UEFI bootkitHelp Net Security·Mar 5, 00:00 UTC · Mar 5, 2023Ransomware60
Darktrace Newsroom monitors open-source intelligence sourcesHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2023Ransomware60
Red Cross blames hack on Zoho vulnerability, suspects APT attackThe Record·Jan 17, 00:00 UTC · Jan 17, 2023VulnerabilityCVE-2021-4053947
State-sponsored hacking group targets Port of Houston using Zoho zeroThe Record·Dec 14, 00:00 UTC · Dec 14, 2022Threat actorCVE-2021-4053960
Attacks on SolarWinds Servers Also Linked To Chinese Threat ActorThe Record·Nov 17, 07:59 UTC · Nov 17, 2022Threat actorCVE-2020-1014860
Week in review: Log4Shell exploitation, DevSecOps myths, 56 vulnerabilities impacting OT devicesHelp Net Security·Jun 26, 00:00 UTC · Jun 26, 2022VulnerabilityCVE-2021-4422847
State-Backed Hackers Using Ransomware as a Decoy for Cyber Espionage AttacksThe Hacker News·Jun 25, 04:04 UTC · Jun 25, 2022Ransomware57
U.S. Cybersecurity Agency Lists 2021's Top 15 Most Exploited Software VulnerabilitiesThe Hacker News·May 9, 02:55 UTC · May 9, 2022VulnerabilityCVE-2020-0688CVE-2019-11510CVE-2018-1337947
AvosLocker Ransomware Variant Using New Trick to Disable Antivirus ProtectionThe Hacker News·May 3, 05:50 UTC · May 3, 2022RansomwareCVE-2021-40539CVE-2021-4422860
CISA published 2021 Top 15 most exploited software vulnerabilitiesSecurity Affairs·Apr 28, 13:49 UTC · Apr 28, 2022VulnerabilityCVE-2021-21972CVE-2021-26084CVE-2021-40539+2 CVEs35
Chinese APT41 Hackers Broke into at Least 6 U.S. State Governments: MandiantThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2022Threat actorCVE-2021-44207CVE-2021-4422860
Fileless SockDetour backdoor targets U.S.Security Affairs·Feb 26, 18:44 UTC · Feb 26, 2022MalwareCVE-2021-40539CVE-2021-44077147
Red Cross Attackers Exploited Zoho Bug Used by ChinaInfosecurity Magazine·Feb 17, 09:02 UTC · Feb 17, 2022Data breachCVE-2021-4053960
Nation-state actors hacked Red Cross exploiting Zoho bugSecurity Affairs·Feb 17, 08:18 UTC · Feb 17, 2022Threat actorCVE-2021-4053960
Red Cross attributes server breach to nationCyberScoop·Feb 16, 16:50 UTC · Feb 16, 2022Data breach in the wild60
Threat Source Newsletter (Dec. 9, 2021)Cisco Talos·Dec 9, 19:00 UTC · Dec 9, 2021VulnerabilityCVE-2021-4451547
Microsoft: Patch Zoho Bug Now to Stop Chinese HackersInfosecurity Magazine·Nov 10, 10:30 UTC · Nov 10, 2021VulnerabilityCVE-2021-4053960