APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-3361760
Critical ManageEngine vulns affect majority of Fortune 500 companiesCyberScoop·Mar 23, 21:51 UTC · Mar 23, 2018Exploit / PoC in the wild60
Nation-state actors exploit Fortinet FortiOS SSL-VPN and Zoho ManageEngine ServiceDesk Plus, CISA warnsSecurity Affairs·Sep 8, 12:06 UTC · Sep 8, 2023Threat actor in the wildCVE-2022-47966CVE-2022-42475CVE-2021-4422860
Hackers are compromising vulnerable ManageEngine Desktop Central instancesHelp Net Security·Aug 10, 07:29 UTC · Aug 10, 2020Exploit / PoC in the wildCVE-2020-1018960
Hackers are actively exploiting Zoho ManageEngine flawSecurity Affairs·Feb 24, 11:01 UTC · Feb 24, 2023Ransomware in the wildCVE-2022-4796660
PoC for critical ManageEngine bug to be released, so get patching! (CVE-2022-47966)Help Net Security·Feb 21, 17:23 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-4796660
Hackers exploiting vulnerability affecting Zoho ManageEngine products: Rapid7The Record·Feb 3, 00:00 UTC · Feb 3, 2023Vulnerability in the wildCVE-2022-47966CVE-2021-4053960
Determined APT is exploiting ManageEngine ServiceDesk Plus vulnerability (CVE-2021-44077)Help Net Security·Dec 3, 00:00 UTC · Dec 3, 2021Vulnerability in the wildCVE-2021-44077CVE-2021-33617160
CISA Warns of Actively Exploited Zoho ManageEngine ADSelfService VulnerabilityThe Hacker News·Sep 17, 04:49 UTC · Sep 17, 2021Vulnerability in the wildCVE-2021-40539CVE-2021-37421CVE-2021-37417+3 CVEs60
CISA added Zoho ManageEngine RCE (CVE-2022-47966) to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Jan 24, 11:03 UTC · Jan 24, 2023Exploit / PoC in the wildCVE-2022-4796660
Zoho urges fixing a critical SQL Injection flaw in ManageEngineSecurity Affairs·Jan 5, 15:21 UTC · Jan 5, 2023Vulnerability in the wildCVE-2022-47523CVE-2022-3540560
CISA adds Zoho ManageEngine flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Sep 23, 15:13 UTC · Sep 23, 2022Exploit / PoC in the wildCVE-2022-3540560
Critical ManageEngine RCE flaw is being exploited (CVE-2022-35405)Help Net Security·Sep 23, 00:00 UTC · Sep 23, 2022Vulnerability in the wildCVE-2022-3540560
CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk VulnerabilityThe Hacker News·Dec 3, 13:34 UTC · Dec 3, 2021Vulnerability in the wildCVE-2021-44077CVE-2021-4053960
Vulnerability Spotlight: Vulnerability in ManageEngine OpManager could lead to XXE attackCisco Talos·Mar 30, 19:00 UTC · Mar 30, 2023Vulnerability in the wildCVE-2022-4347360
Experts Detail Malicious Code Dropped Using ManageEngine ADSelfService ExploitThe Hacker News·Nov 9, 03:15 UTC · Nov 9, 2021Exploit / PoC in the wildCVE-2021-4053960
CISA Warns of Hackers Exploiting Recent Zoho ManageEngine VulnerabilityThe Hacker News·Sep 26, 04:47 UTC · Sep 26, 2022Vulnerability in the wildCVE-2022-3540560
Week in review: Revolut data breach, ManageEngine RCE flaw, free Linux security training coursesHelp Net Security·Sep 25, 00:00 UTC · Sep 25, 2022Data breach in the wildCVE-2007-4559CVE-2022-35405CVE-2022-31671+4 CVEs60
Nation-state actors are exploiting Zoho zero-day CVE-2021Security Affairs·Dec 20, 21:25 UTC · Dec 20, 2021Exploit / PoC in the wildCVE-2021-4451560
FBI, CISA, and CGCYBER warn of nation-state actors exploiting CVE-2021Security Affairs·Sep 16, 22:07 UTC · Sep 16, 2021Threat actor in the wildCVE-2021-4053960
Lazarus Group exploited ManageEngine vulnerability to target critical infrastructureHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2023Vulnerability in the wildCVE-2022-4796660
CISA warns of Zoho server zeroThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Advisory in the wildCVE-2021-40539CVE-2020-1018960
Warning: Yet Another Zoho ManageEngine Product Found Under Active AttacksThe Hacker News·Dec 4, 05:09 UTC · Dec 4, 2021Exploit / PoC in the wildCVE-2021-44515CVE-2021-44077CVE-2021-4053960
Port of Houston was hit by an alleged stateSecurity Affairs·Sep 26, 13:31 UTC · Sep 26, 2021Exploit / PoC in the wildCVE-2021-4053960
Zoho warns of zero-day authentication bypass flaw actively exploitedSecurity Affairs·Sep 9, 06:49 UTC · Sep 9, 2021Exploit / PoC in the wildCVE-2021-4053960
Zoho fixes a critical vulnerability (CVE-2021Security Affairs·Jan 17, 20:42 UTC · Jan 17, 2022Vulnerability in the wildCVE-2021-44757CVE-2021-4451560
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
CISA's KEV Catalog Updated with 3 New Flaws Threatening IT Management SystemsThe Hacker News·Mar 11, 06:26 UTC · Mar 11, 2023Exploit / PoC in the wildCVE-2022-35914CVE-2022-33891CVE-2022-28810+3 CVEs60
CISA adds 3 new bugs to Known Exploited Vulnerabilities CatalogSecurity Affairs·Mar 8, 11:58 UTC · Mar 8, 2023Exploit / PoC in the wildCVE-2022-35914CVE-2022-33891CVE-2022-28810+1 CVEs60
Zoho warns of new zeroThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Exploit / PoC in the wildCVE-2021-44515CVE-2021-40539CVE-2021-4407760
CISA adds Zoho, Apache, Qualcomm, Mikrotik flaws to the list of actively exploited issuesSecurity Affairs·Dec 2, 20:17 UTC · Dec 2, 2021Advisory in the wildCVE-2021-37415CVE-2021-44077CVE-2018-14847+2 CVEs60
CISA: Patch Zoho Bug Actively Exploited by APT GroupsInfosecurity Magazine·Sep 17, 09:30 UTC · Sep 17, 2021Vulnerability in the wildCVE-2021-4053CVE-2021-4053960
Threat Source newsletter (March 19, 2020)Cisco Talos·Mar 19, 18:00 UTC · Mar 19, 2020Ransomware in the wildCVE-2020-1018960
SolarWinds Web Help Desk Exploited for RCE in MultiThe Hacker News·Mar 7, 07:03 UTC · Mar 7, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40536CVE-2025-26399+1 CVEs60
Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security toolsHelp Net Security·Oct 13, 00:00 UTC · Oct 13, 2024Exploit / PoC in the wildCVE-2024-43573CVE-2024-43572CVE-2024-9680+5 CVEs60
Week in review: Apache Log4j 0day exploited, Kali Linux 2021.4 released, Patch Tuesday forecastHelp Net Security·Dec 12, 00:00 UTC · Dec 12, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-4451560
Nation-state actors target critical sectors by exploiting CVE-2021Security Affairs·Nov 8, 10:37 UTC · Nov 8, 2021Threat actor in the wildCVE-2021-4053960
Chinese hackers hit Citrix, Cisco vulnerabilities in sweeping campaignCyberScoop·Mar 25, 15:16 UTC · Mar 25, 2020Vulnerability in the wildCVE-2019-1978160
Week in review: The future of smartphone security, automated cyber threat anticipationHelp Net Security·Feb 4, 00:00 UTC · Feb 4, 2018Ransomware in the wildCVE-2018-512460
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosThe Hacker News·May 26, 04:39 UTC · May 26, 2026Malware in the wildCVE-2026-46333CVE-2026-41091CVE-2026-45498+31 CVEs60