New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux HostsThe Hacker News·Aug 6, 17:58 UTC · Aug 6, 2026Exploit / PoC in the wildCVE-2026-64561CVE-2026-53359CVE-2026-4631660
Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged AgentThe Hacker News·Aug 4, 11:16 UTC · Aug 4, 2026Exploit / PoC in the wild60
Ghanaian national sentenced to 7 years in prison for stealing $10M from romance scam victimsCyberScoop·Jul 30, 14:35 UTC · Jul 30, 2026Phishing & fraud in the wild60
OpenAI's rogue AI agent shows why we need federal rules for autonomous systemsCyberScoop·Jul 29, 10:00 UTC · Jul 29, 2026Exploit / PoC in the wild60
Contrast CVE Shield aims to protect applications while security teams deploy patchesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability in the wildCVE-2021-44228160
Rubio restricts visas for sextortionists, cyber scammersCyberScoop·Jul 23, 20:14 UTC · Jul 23, 2026Ransomware in the wild60
AI models keep getting caught cheatingCyberScoop·Jul 21, 19:20 UTC · Jul 21, 2026Exploit / PoC in the wild60
Why blocking AI models won't stop the cyber threats they createCyberScoop·Jul 20, 14:24 UTC · Jul 20, 2026Exploit / PoC in the wild60
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Leading members of Scattered Spider sentenced in UK to 66 months in jailCyberScoop·Jul 17, 14:13 UTC · Jul 17, 2026Ransomware in the wild160
Armenian national pleads guilty to Ryuk ransomware attacksCyberScoop·Jul 10, 20:13 UTC · Jul 10, 2026Ransomware in the wild60
Interpol cybercrime crackdown nets 5,800 arrests across 97 countriesCyberScoop·Jul 9, 17:22 UTC · Jul 9, 2026Ransomware in the wild60
Critical Gitea Docker Bug Under Active Exploitation Exposes Repositories and SecretsSecurity Affairs·Jul 7, 21:16 UTC · Jul 7, 2026Vulnerability in the wildCVE-2026-20896160
Bad Epoll Flaw Gives Attackers Root Access on Linux and AndroidSecurity Affairs·Jul 6, 08:24 UTC · Jul 6, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-4307460
New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidThe Hacker News·Jul 3, 19:41 UTC · Jul 3, 2026Exploit / PoC in the wildCVE-2026-46242CVE-2026-43074CVE-2026-31431+2 CVEs160
What the AI patch gap means for enterprise securityHelp Net Security·Jul 2, 00:00 UTC · Jul 2, 2026Vulnerability in the wild160
BlueHammer: Windows zero-day exploit leakedHelp Net Security·Jun 30, 11:31 UTC · Jun 30, 2026Exploit / PoC in the wildCVE-2026-3382560
Vulnerability reports are arriving faster than GitHub can review themHelp Net Security·Jun 30, 00:00 UTC · Jun 30, 2026Vulnerability in the wild57
Public PoC Released for Critical libssh2 CVE-2026-55200 ClientThe Hacker News·Jun 29, 07:06 UTC · Jun 29, 2026Exploit / PoC in the wildCVE-2026-55200CVE-2019-3855CVE-2026-55199+1 CVEs160
Justice Department seizes infrastructure used by cyber scam and criminal marketplaceCyberScoop·Jun 23, 18:34 UTC · Jun 23, 2026Phishing & fraud in the wild60
Algerian man charged with running two cybercrime marketplacesCyberScoop·Jun 23, 14:36 UTC · Jun 23, 2026Policy & legal in the wild60
29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP RequestsThe Hacker News·Jun 23, 11:30 UTC · Jun 23, 2026Exploit / PoC in the wildCVE-2026-47729CVE-2026-50012160
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekThe Hacker News·Jun 19, 13:44 UTC · Jun 19, 2026Vulnerability in the wildCVE-2026-39813CVE-2026-39808CVE-2026-25089+1 CVEs60
Authorities disrupt Evil Corp’s SocGholish botnetCyberScoop·Jun 18, 22:03 UTC · Jun 18, 2026Malware in the wild60
Unauthenticated file upload in Amasty Order Attributes for MagentoSansec (Magento / e-commerce security)·Jun 15, 20:13 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2026-5378760
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160
FBI takes down massive China-based cybercrime network that caused $1.9B in lossesCyberScoop·Jun 12, 21:56 UTC · Jun 12, 2026Exploit / PoC in the wild60
Conti ransomware group member pleads guilty, faces up to 20 years in prisonCyberScoop·Jun 12, 17:44 UTC · Jun 12, 2026Ransomware in the wild60
Russian national charged in connection with Void Blizzard espionage campaignCyberScoop·Jun 11, 17:11 UTC · Jun 11, 2026Threat actor in the wild60
Anthropic's new model is Mythos on a leashCyberScoop·Jun 9, 19:46 UTC · Jun 9, 2026Exploit / PoC in the wild60
Researcher Drops a New VS Code Zero-Day After Losing Trust in Microsoft's Disclosure ProcessSecurity Affairs·Jun 4, 09:13 UTC · Jun 4, 2026Exploit / PoC in the wild160
How NIST fumbled management of the National Vulnerability DatabaseHelp Net Security·Jun 1, 00:00 UTC · Jun 1, 2026Vulnerability in the wild60
Tennessee man linked to 764 accused of series of crimes against children dating back to 2022CyberScoop·May 29, 18:17 UTC · May 29, 2026Ransomware in the wild60
Microsoft calls zero-day releases ‘never justifiable’ as researcher threatens to drop moreThe Record·May 29, 13:37 UTC · May 29, 2026Exploit / PoC in the wild60
Microsoft Calls the Zero-Day Dumps Irresponsible. The Researcher Says Microsoft Started It.Security Affairs·May 29, 10:51 UTC · May 29, 2026Exploit / PoC in the wildCVE-2026-45585160
Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account RemovalThe Hacker News·May 29, 05:43 UTC · May 29, 2026Exploit / PoC in the wildCVE-2026-33825CVE-2026-41091CVE-2026-45498+1 CVEs60
Less panic patching, more precisionCisco Talos·May 28, 18:00 UTC · May 28, 2026Exploit / PoC in the wild60
Microsoft CondemnsInfosecurity Magazine·May 28, 12:00 UTC · May 28, 2026Exploit / PoC in the wildCVE-2026-41091CVE-2026-45498CVE-2026-4558560
GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionThe Hacker News·May 28, 05:34 UTC · May 28, 2026Data breach in the wildCVE-2026-45321CVE-2026-4802760