Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn StealerThe Hacker News·Jun 30, 11:18 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-48558260
Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploitedHelp Net Security·May 24, 00:00 UTC · May 24, 2026Data breach in the wildCVE-2026-42945CVE-2026-45585CVE-2026-41091+1 CVEs60
⚡ Weekly Recap: Chrome 0-Day, AI Hacking Tools, DDR5 BitThe Hacker News·Sep 22, 15:16 UTC · Sep 22, 2025Ransomware in the wildCVE-2025-10585CVE-2025-55241CVE-2025-10035+14 CVEs160
Wiz researchers find sensitive DeepSeek data exposed to internetCyberScoop·Jan 30, 17:41 UTC · Jan 30, 2025Ransomware in the wild60
CISA Flags Two Actively Exploited Palo Alto Flaws; New RCE Attack ConfirmedThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Vulnerability in the wildCVE-2024-9463CVE-2024-9465CVE-2024-591060
Russian Hackers Use Zulip Chat App for Covert C&C in Diplomatic Phishing AttacksThe Hacker News·Aug 18, 03:58 UTC · Aug 18, 2023Phishing & fraud55
Hackers Target ATM Maker for BitcoinsInfosecurity Magazine·Aug 22, 10:20 UTC · Aug 22, 2022Exploit / PoC60
CodeHunter Enterprise pilot program provides early access to its automated malware hunting platformHelp Net Security·Apr 27, 13:41 UTC · Apr 27, 2022Malware55
Yubico YubiEnterprise Delivery: Allowing orgs to ship YubiKeys to remote workforcesHelp Net Security·May 13, 00:00 UTC · May 13, 2020Phishing & fraud55
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
Critical RCE Flaws in Cisco ISE and ISE-PIC Allow Unauthenticated Attackers to Gain Root AccessThe Hacker News·Jun 26, 13:24 UTC · Jun 26, 2025Vulnerability in the wildCVE-2025-20281CVE-2025-20282CVE-2025-2028660
Analyzing the vulnerability landscape in Q1 2024Kaspersky Securelist·May 7, 10:00 UTC · May 7, 2024VulnerabilityCVE-2023-38831CVE-2023-40477CVE-2023-2825260
⚡ Weekly Recap: WhatsApp 0-Day, Docker Bug, Salesforce Breach, Fake CAPTCHAs, Spyware App & MoreThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Malware in the wildCVE-2025-55177CVE-2025-43300CVE-2025-907460
Multiple Vulnerabilities Reported in Checkmk IT Infrastructure Monitoring SoftwareThe Hacker News·Nov 2, 13:11 UTC · Nov 2, 2022Vulnerability55
Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud EnvironmentsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Malware155
DepositFiles exposed config file, jeopardizing user securitySecurity Affairs·Jul 27, 20:39 UTC · Jul 27, 2023Ransomware60
Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor, Steal CredentialsThe Hacker News·May 15, 00:00 UTC · May 15, 2025Malware155
Russian Sandworm Group Using Novel Backdoor to Target UkraineInfosecurity Magazine·Apr 17, 08:01 UTC · Apr 17, 2024Malware55
Joker Malware Apps Once Again Bypass Google's Security to Spread via Play StoreThe Hacker News·Jul 9, 14:51 UTC · Jul 9, 2020Malware55
Threat Source newsletter for June 11, 2020Cisco Talos·Jun 11, 18:00 UTC · Jun 11, 2020Ransomware in the wild60
When ‘minimal impact’ isn’t reassuring: lessons from the largest npm supply chain compromiseCyberScoop·Sep 15, 13:21 UTC · Sep 15, 2025Exploit / PoC in the wild60
Critical flaw SessionReaper in Commerce and Magento platforms lets attackers hijack customer accountsSecurity Affairs·Sep 10, 20:54 UTC · Sep 10, 2025VulnerabilityCVE-2025-5423660
EndaceProbe Cloud detects threats and network performance issuesHelp Net Security·Jul 26, 00:00 UTC · Jul 26, 2023Vulnerability55
Two Critical 0-Day Remote Exploits for vBulletin Forum Disclosed PubliclyThe Hacker News·Dec 18, 08:17 UTC · Dec 18, 2017Exploit / PoCCVE-2017-1767260
Cisco Releases Security Updates for Actively Exploited SDThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-20245CVE-2026-20182+5 CVEs60
New cPanel vulnerabilities could allow file access and remote code executionSecurity Affairs·May 10, 16:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-29201CVE-2026-29202CVE-2026-29203+1 CVEs60
Cisco fixes critical flaws in data center and SD-WAN solutionsHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2020Vulnerability in the wildCVE-2020-3382CVE-2020-3375CVE-2020-337460
Over 200 PrestaShop stores expose installer, allowing full takeoverSansec (Magento / e-commerce security)·Apr 14, 13:40 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
How to Use Tines's SOC Automation Capability MatrixThe Hacker News·Jun 21, 11:00 UTC · Jun 21, 2024Malware55
Mount Locker Ransomware Offering Double Extortion Scheme to Other HackersThe Hacker News·Dec 17, 10:23 UTC · Dec 17, 2020Ransomware60
Italian-made spyware Dante linked to Chrome zero-day exploitation campaignHelp Net Security·Oct 28, 00:00 UTC · Oct 28, 2025Exploit / PoCCVE-2025-278360
cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowThe Hacker News·May 9, 10:15 UTC · May 9, 2026Vulnerability in the wildCVE-2026-29201CVE-2026-29202CVE-2026-29203+1 CVEs60
Kaseya Releases Patches for Flaws Exploited in Widespread Ransomware AttackThe Hacker News·Jul 12, 10:46 UTC · Jul 12, 2021RansomwareCVE-2021-30116CVE-2021-30119CVE-2021-30120+4 CVEs60
The serpent’s tongue: Luring the Python out of its denCisco Talos·Jul 14, 10:00 UTC · Jul 14, 2026Malware155
Microsoft silently patched a second critical Malware Protection Engine flawSecurity Affairs·Dec 8, 08:26 UTC · Dec 8, 2017VulnerabilityCVE-2017-029060
Ransomware Gang Exploits SimpleHelp RMM to Compromise Utility BillingInfosecurity Magazine·Jun 13, 11:00 UTC · Jun 13, 2025Ransomware in the wildCVE-2024-57727CVE-2024-57728CVE-2024-5772660
CosmicSting attack & defense overviewSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Data breach in the wildCVE-2024-2961CVE-2024-3410260
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
ENC Security, the encryption provider for Sony and Lexar, leaked sensitive data for over a yearSecurity Affairs·Nov 30, 09:06 UTC · Nov 30, 2022Ransomware60
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260