New infosec products of the month: June 2026Help Net Security·Jun 26, 00:00 UTC · Jun 26, 2026Policy & legal155
From Infection to Access: A 24-Hour Timeline of a Modern Stealer CampaignThe Hacker News·May 28, 11:25 UTC · May 28, 2025Malware55
New Apple Zero-Days Exploited to Target Egyptian exThe Hacker News·Sep 26, 11:42 UTC · Sep 26, 2023Exploit / PoCCVE-2023-41991CVE-2023-41992CVE-2023-41993+1 CVEs60
SSHStalker Botnet Uses IRC C2 to Control Linux Systems via Legacy Kernel ExploitsThe Hacker News·Feb 11, 09:58 UTC · Feb 11, 2026MalwareCVE-2009-2692CVE-2009-2698CVE-2010-3849+6 CVEs60
Hackers exploit unsecured MongoDB instances to wipe data and demand ransomSecurity Affairs·Feb 2, 15:13 UTC · Feb 2, 2026Exploit / PoC60
Threat actors intensify focus on NATO member statesHelp Net Security·Feb 14, 00:00 UTC · Feb 14, 2024Threat actor60
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain CampaignThe Hacker News·Aug 7, 06:50 UTC · Aug 7, 2026Threat actor60
DoJ Seizes Huione Cloud Account Tied to Cyber Scam Money LaunderingThe Hacker News·Jun 24, 09:08 UTC · Jun 24, 2026Phishing & fraud55
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
JPMorgan Chase, Toshiba and Ciena build the Quantum Key Distribution network for mission-critical applicationsHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2022Exploit / PoC60
Tausight raises $20M to protect clinical workflowsHelp Net Security·Mar 12, 00:00 UTC · Mar 12, 2021Vulnerability55
Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breachedHelp Net Security·Jul 26, 00:00 UTC · Jul 26, 2026Data breach in the wildCVE-2026-6875CVE-2026-15409CVE-2026-15410+4 CVEs60
Microsoft Patches Record 622 Flaws, Including Two ZeroThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Vulnerability in the wildCVE-2026-56164CVE-2026-56155CVE-2026-50661+6 CVEs60
Justice Department seizes infrastructure used by cyber scam and criminal marketplaceCyberScoop·Jun 23, 18:34 UTC · Jun 23, 2026Phishing & fraud in the wild60
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Malware in the wildCVE-2026-11645CVE-2026-2441CVE-2026-3909+23 CVEs160
Election threats are focused on campaign systems, not voting machinesCyberScoop·Jun 2, 20:42 UTC · Jun 2, 2026Threat actor in the wild60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & MoreThe Hacker News·Mar 12, 15:00 UTC · Mar 12, 2026Phishing & fraud in the wild60
Sprawling FBI, European operation takes down Leakbase cybercriminal forumThe Record·Mar 4, 16:28 UTC · Mar 4, 2026Ransomware60
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
Friday Squid Blogging: Flying Neon Squid Found on Israeli BeachSchneier on Security·Dec 1, 17:17 UTC · Dec 1, 2025Vulnerability55
Treasury Department targets Southeast Asia scam hubs with sanctionsCyberScoop·Sep 8, 23:24 UTC · Sep 8, 2025Phishing & fraud in the wild60
Pro-Iran Hackers Aligned Cyber with Kinetic War AimsInfosecurity Magazine·Aug 5, 11:30 UTC · Aug 5, 2025Exploit / PoC60
TAG-140 Deploys DRAT V2 RAT, Targeting Indian Government, Defense, and Rail SectorsThe Hacker News·Jul 7, 17:00 UTC · Jul 7, 2025Malware55
⚡ Weekly Recap: Chrome 0-Day, 7.3 Tbps DDoS, MFA Bypass Tricks, Banking Trojan and MoreThe Hacker News·Jun 30, 13:01 UTC · Jun 30, 2025MalwareCVE-2025-2783CVE-2025-34509CVE-2025-34510+17 CVEs60
Iran's State TV Hijacked Mid-Broadcast Amid Geopolitical Tensions; $90M Stolen in Crypto HeistThe Hacker News·Jun 20, 14:15 UTC · Jun 20, 2025Data breach60
Inside DragonForce, the Group Tied to M&S, CoInfosecurity Magazine·May 6, 13:25 UTC · May 6, 2025Ransomware60
U.S. sanctions take aim at Chinese company said to aid hackers’ massive botnetCyberScoop·Jan 3, 19:58 UTC · Jan 3, 2025Malware in the wild60
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and TipsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2024Ransomware in the wildCVE-2024-50623CVE-2020-12271CVE-2024-11639+24 CVEs60
THN Cybersecurity Recap: Top Threats and Trends (Sep 30The Hacker News·Oct 7, 12:34 UTC · Oct 7, 2024Ransomware in the wild60
Treasury official: Small financial institutions have ‘growth to do’ in using AI against threatsCyberScoop·Apr 19, 15:45 UTC · Apr 19, 2024Exploit / PoC in the wild60
Windows CLFS and five exploits used by ransomware operators (Exploit #2Kaspersky Securelist·Dec 21, 10:29 UTC · Dec 21, 2023Ransomware in the wildCVE-2022-24521CVE-2023-23376CVE-2023-28252+2 CVEs60
3 iOS 0-days, a cellular network compromise, and HTTP used to infect an iPhoneArs Technica · Security·Sep 23, 00:23 UTC · Sep 23, 2023VulnerabilityCVE-2023-41993CVE-2023-41991CVE-2023-41992+1 CVEs60
Tracking atrocities in Sudan: 'The world has become significantly less anonymous for war criminals'The Record·Jun 27, 12:29 UTC · Jun 27, 2023Industry55
Return of the EARN IT Act rekindles encryption debate at critical moment for privacyCyberScoop·Apr 26, 18:54 UTC · Apr 26, 2023Policy & legal55
Friday Squid Blogging: New Species of Vampire Squid Lives 3,000 Feet below Sea LevelSchneier on Security·Mar 17, 21:19 UTC · Mar 17, 2023Ransomware60
Al Jazeera says it blocked cyberattack looking to disrupt & control its platformThe Record·Dec 10, 00:00 UTC · Dec 10, 2022Threat actor60
Experts disclose technical details of now-patched CVE-2022-37969 Windows ZeroSecurity Affairs·Oct 14, 22:30 UTC · Oct 14, 2022Vulnerability in the wildCVE-2022-3796960
CISA added 2 more security flaws to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Sep 14, 20:16 UTC · Sep 14, 2022Exploit / PoC in the wildCVE-2022-37969CVE-2022-3291760