Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
Network Security Trends: MayPalo Alto Unit 42·Jun 5, 17:26 UTC · Jun 5, 2024Exploit / PoC in the wild60
Network Security Trends: Recent Exploits Observed in the Wild Include Remote Code Execution, CrossPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-22954CVE-2022-22963CVE-2022-22965+20 CVEs60
Cisco fixes maximum-severity Secure FMC bugs threatening firewall securitySecurity Affairs·Mar 4, 22:10 UTC · Mar 4, 2026Vulnerability in the wildCVE-2026-20079CVE-2026-2013160
Network Security Trends: AugustPalo Alto Unit 42·Jun 6, 00:57 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2021-40438CVE-2021-34473CVE-2021-38647+9 CVEs60
Threat Brief: VMware Vulnerabilities Exploited in the Wild (CVE-2022Palo Alto Unit 42·Jun 5, 20:43 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2022-22954CVE-2022-22960CVE-2022-22972+8 CVEs60
Network Security Trends: November 2021 to January 2022Palo Alto Unit 42·Jun 5, 20:41 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-38647+13 CVEs60
CISA Orders US Government to Patch Maximum Severity Cisco FlawInfosecurity Magazine·Mar 23, 10:30 UTC · Mar 23, 2026Vulnerability in the wildCVE-2026-2013160
Week in review: Chrome 0-day fixed, npm supply chain attack, LinkedIn data used for AIHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2025Ransomware in the wildCVE-2025-1058560
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & MoreThe Hacker News·Mar 12, 15:00 UTC · Mar 12, 2026Phishing & fraud in the wild60
THN Recap: Top Cybersecurity Threats, Tools, and Practices (Nov 11The Hacker News·Nov 18, 11:36 UTC · Nov 18, 2024Ransomware in the wildCVE-2024-5910CVE-2024-9463CVE-2024-9465+29 CVEs60
Week in review: AiTM phishing kit used to hijack AWS accounts, year-long malware campaign targets HRHelp Net Security·Mar 15, 00:00 UTC · Mar 15, 2026Malware in the wildCVE-2026-21262CVE-2026-2612760
Threat Advisory: Microsoft Outlook privilege escalation vulnerability being exploited in the wildCisco Talos·Mar 15, 23:46 UTC · Mar 15, 2023Exploit / PoC in the wildCVE-2023-2339760
Insights into the clustering and reuse of phone numbers in scam emailsCisco Talos·May 6, 10:00 UTC · May 6, 2026Phishing & fraud in the wild60
SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-3361760
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreThe Hacker News·May 19, 04:33 UTC · May 19, 2026Ransomware in the wildCVE-2026-42897CVE-2026-20182CVE-2026-2012760
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260