What Am I Supposed to Do With This Threat Intelligence?Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Data breach60
A OpenPGP.js flaw lets attackers spoof message signaturesSecurity Affairs·May 21, 08:46 UTC · May 21, 2025VulnerabilityCVE-2025-4793460
CampusGuard ScriptSafe prevents unauthorized script executionHelp Net Security·May 20, 00:00 UTC · May 20, 2025Policy & legal55
Mozilla fixed zeroSecurity Affairs·May 19, 18:31 UTC · May 19, 2025Exploit / PoCCVE-2025-4918CVE-2025-491960
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
Firefox Patches 2 Zero-Days Exploited at Pwn2Own Berlin with $100K in RewardsThe Hacker News·May 19, 14:34 UTC · May 19, 2025VulnerabilityCVE-2025-4918CVE-2025-491960
Fancy Bear campaign sought emails of high-level Ukrainians and their military suppliersCyberScoop·May 15, 09:00 UTC · May 15, 2025Threat actor in the wildCVE-2024-1118260
⚡ THN Weekly Recap: GitHub Supply Chain Attack, AI Malware, BYOVD Tactics, and MoreThe Hacker News·May 7, 10:33 UTC · May 7, 2025MalwareCVE-2025-29927CVE-2025-23120CVE-2024-56346+13 CVEs60
⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Data breachCVE-2025-22457CVE-2025-24061CVE-2025-2407+15 CVEs60
DarkWatchman, Sheriff Malware Hit Russia and Ukraine with Stealth and NationThe Hacker News·May 1, 09:27 UTC · May 1, 2025Malware55
Most critical vulnerabilities aren't worth your attentionHelp Net Security·Apr 28, 00:00 UTC · Apr 28, 2025Vulnerability55
Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoaderThe Hacker News·Apr 18, 12:03 UTC · Apr 18, 2025MalwareCVE-2021-4044960
Researchers raise alarm about critical Next.js vulnerabilityCyberScoop·Mar 24, 21:26 UTC · Mar 24, 2025VulnerabilityCVE-2025-2992760
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [30 Dec]The Hacker News·Jan 8, 11:22 UTC · Jan 8, 2025Exploit / PoCCVE-2024-3393CVE-2019-3568CVE-2024-56337+7 CVEs160
Cryptomining Malware Found in Popular Open Source PackagesInfosecurity Magazine·Dec 23, 16:30 UTC · Dec 23, 2024Malware55
Over Two Dozen Flaws Identified in Advantech Industrial Wi-Fi Access PointsThe Hacker News·Dec 1, 07:13 UTC · Dec 1, 2024VulnerabilityCVE-2024-50370CVE-2024-50374CVE-2024-50375+2 CVEs60
ProjectSend critical flaw actively exploited in the wild, experts warnSecurity Affairs·Nov 28, 07:28 UTC · Nov 28, 2024Exploit / PoC in the wildCVE-2024-1168060
Lazarus Group Exploits Google Chrome Vulnerability to Control Infected DevicesThe Hacker News·Nov 4, 05:56 UTC · Nov 4, 2024VulnerabilityCVE-2024-494760
Roundcube XSS flaw exploited to steal credentials, email (CVE-2024-37383)Help Net Security·Oct 22, 00:00 UTC · Oct 22, 2024VulnerabilityCVE-2024-3738360
Sonatype Reports 156% Increase in OSS Malicious PackagesInfosecurity Magazine·Oct 11, 11:00 UTC · Oct 11, 2024Vulnerability55
Internet Archive Breached, 31 Million Records ExposedInfosecurity Magazine·Oct 10, 12:15 UTC · Oct 10, 2024Data breach60
Hacking Kia cars made after 2013 using just their license plateSecurity Affairs·Sep 26, 23:22 UTC · Sep 26, 2024Vulnerability55
Master Your PCI DSS v4 Compliance with Innovative Smart ApprovalsThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Vulnerability55
New malicious web shell from the Tropic Trooper group is found in the Middle EastKaspersky Securelist·Sep 5, 08:02 UTC · Sep 5, 2024Vulnerability in the wildCVE-2021-34473CVE-2021-34523CVE-2021-31207+1 CVEs60
Roundcube Webmail Flaws Allow Hackers to Steal Emails and PasswordsThe Hacker News·Aug 7, 13:29 UTC · Aug 7, 2024VulnerabilityCVE-2024-42008CVE-2024-42009CVE-2024-42010+1 CVEs60
CrowdStrike Warns of New Phishing Scam Targeting German CustomersThe Hacker News·Jul 29, 12:19 UTC · Jul 29, 2024Phishing & fraud155
Banking Trojan Techniques: How Financially Motivated Malware Became InfrastructurePalo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024Malware55
Google fixes fifth actively exploited Chrome zeroSecurity Affairs·May 16, 12:58 UTC · May 16, 2024Exploit / PoC in the wildCVE-2024-4671CVE-2024-0519CVE-2024-2887+2 CVEs60
Researchers Detail Multistage Attack Hijacking Systems with SSLoad, Cobalt StrikeThe Hacker News·Apr 25, 16:12 UTC · Apr 25, 2024Malware55
Other Attempts to Take Over Open Source ProjectsSchneier on Security·Apr 18, 11:06 UTC · Apr 18, 2024Vulnerability55
Open Source Leaders Warn of XZ UtilsInfosecurity Magazine·Apr 16, 10:15 UTC · Apr 16, 2024Vulnerability55
New open-source project takeover attacks spotted, stymiedHelp Net Security·Apr 16, 00:00 UTC · Apr 16, 2024Vulnerability55
Google fixed another Chrome zeroSecurity Affairs·Apr 3, 21:15 UTC · Apr 3, 2024Exploit / PoC in the wildCVE-2024-3159CVE-2024-3156CVE-2024-3158+3 CVEs60
Microsoft Edge Bug Could Have Allowed Attackers to Silently Install Malicious ExtensionsThe Hacker News·Mar 29, 05:21 UTC · Mar 29, 2024Exploit / PoC in the wildCVE-2024-2138860
Google addressed 2 Chrome zeroSecurity Affairs·Mar 28, 00:39 UTC · Mar 28, 2024Exploit / PoC in the wildCVE-2024-2886CVE-2024-2887CVE-2024-2883+4 CVEs60
Mozilla fixed Firefox 0days exploited at Pwn2Own Vancouver 2024Security Affairs·Mar 23, 13:53 UTC · Mar 23, 2024Exploit / PoCCVE-2024-29944CVE-2024-29943CVE-2024-299460
Transitioning to memory-safe languages: Challenges and considerationsHelp Net Security·Mar 11, 00:00 UTC · Mar 11, 2024Vulnerability155
Cybercriminals harness AI for new era of malware developmentHelp Net Security·Mar 1, 00:00 UTC · Mar 1, 2024Malware55