Progress Software fixed multiple highSecurity Affairs·Feb 11, 15:40 UTC · Feb 11, 2025Exploit / PoC in the wildCVE-2024-56131CVE-2024-56132CVE-2024-56133+3 CVEs60
Progress Software fixed 2 new critical flaws in WhatsUp GoldSecurity Affairs·Sep 29, 07:43 UTC · Sep 29, 2024Exploit / PoC in the wildCVE-2024-8785CVE-2024-46909CVE-2024-46905+4 CVEs60
Progress Software fixed critical RCE CVE-2024Security Affairs·Jul 25, 20:27 UTC · Jul 25, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-1800CVE-2024-4358160
Progress Software Patches High-Severity LoadMaster Flaws Affecting Multiple VersionsThe Hacker News·Feb 11, 11:52 UTC · Feb 11, 2025Vulnerability in the wildCVE-2024-56131CVE-2024-56132CVE-2024-56133+2 CVEs60
Progress Software Releases Urgent Hotfixes for Multiple Security Flaws in WS_FTP ServerThe Hacker News·Oct 9, 06:43 UTC · Oct 9, 2023Ransomware in the wildCVE-2023-40044CVE-2023-42657CVE-2023-40045+5 CVEs60
Progress Software Releases Patches for 6 Flaws in WhatsUp GoldThe Hacker News·Dec 4, 04:30 UTC · Dec 4, 2024Vulnerability in the wildCVE-2024-46905CVE-2024-46906CVE-2024-46907+4 CVEs60
Progress Software Issues Patch for Vulnerability in LoadMaster and MT HypervisorThe Hacker News·Sep 9, 09:25 UTC · Sep 9, 2024Vulnerability in the wildCVE-2024-759160
Progress fixes critical RCE flaw in Telerik Report Server, upgrade ASAP! (CVE-2024-6327)Help Net Security·Jul 26, 00:00 UTC · Jul 26, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-6096CVE-2024-4358+1 CVEs60
They’ve begun: Attacks exploiting vulnerability with maximum 10 severity ratingArs Technica · Security·Oct 3, 21:53 UTC · Oct 3, 2023Vulnerability in the wildCVE-2023-40044CVE-2023-4265760
Active exploitation of the MOVEit Transfer vulnerability — CVE-2023Cisco Talos·Jun 16, 18:17 UTC · Jun 16, 2023Vulnerability in the wildCVE-2023-34362CVE-2023-35036CVE-2023-3570860
PoC for Progress Telerik RCE chain released (CVE-2024-4358, CVE-2024-1800)Help Net Security·Jun 6, 10:01 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2024-4358CVE-2024-1800CVE-2023-3436260
WS_FTP flaw CVE-2023Security Affairs·Oct 2, 18:48 UTC · Oct 2, 2023Exploit / PoC in the wildCVE-2023-4004460
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
New MOVEit Transfer critical bug is actively exploitedSecurity Affairs·Jun 26, 19:54 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Critical Security Flaw in WhatsUp Gold Under Active AttackThe Hacker News·Aug 31, 15:14 UTC · Aug 31, 2024Exploit / PoC in the wildCVE-2024-4885CVE-2024-4883CVE-2024-4884+1 CVEs60
MOVEit automation flaws could enable full system compromiseSecurity Affairs·May 4, 21:32 UTC · May 4, 2026Ransomware in the wildCVE-2026-4670CVE-2026-5174CVE-2023-3436260
Exploit Attempts Recorded Against New MOVEit Transfer VulnerabilityThe Hacker News·Jul 1, 05:51 UTC · Jul 1, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-5805CVE-2023-34362+3 CVEs60
Critical zero-day vulnerability in MOVEit Transfer exploited by attackers!Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2023-066960
MOVEit Transfer zero-day was exploited by Cl0p gang (CVE-2023-34362)Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Ransomware in the wildCVE-2023-3436260
Critical Flaw in Telerik Report Server Poses Remote Code Execution RiskThe Hacker News·Jul 27, 05:40 UTC · Jul 27, 2024Vulnerability in the wildCVE-2024-6327CVE-2024-435860
Week in review: Claude Mythos finds 271 Firefox flaws, Vercel breachHelp Net Security·Apr 26, 00:00 UTC · Apr 26, 2026Ransomware in the wildCVE-2026-20133CVE-2026-21876CVE-2026-2895060
Progress Told ShareFile Customers to Pull the Plug on Their Servers. Here's What We Know.Security Affairs·Jul 12, 14:39 UTC · Jul 12, 2026Exploit / PoC in the wildCVE-2023-2448960
Clop Ransomware Gang Likely Aware of MOVEit Transfer Vulnerability Since 2021The Hacker News·Jun 9, 15:38 UTC · Jun 9, 2023Ransomware in the wildCVE-2023-3436260
Telerik Report Server Flaw Could Let Attackers Create Rogue Admin AccountsThe Hacker News·Jun 5, 05:26 UTC · Jun 5, 2024Vulnerability in the wildCVE-2024-4358CVE-2024-180060
US cyber officials offer technical details associated with CL0P ransomware attacksCyberScoop·Jun 7, 20:12 UTC · Jun 7, 2023Ransomware in the wildCVE-2023-346260
MOVEit app mass-exploited last month patches new critical vulnerabilityArs Technica · Security·Jul 7, 19:10 UTC · Jul 7, 2023Vulnerability in the wildCVE-2023-3693460
Progress quietly fixes MOVEit auth bypass flaws (CVE-2024-5805, CVE-2024-5806)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Hackers seen exploiting bugs in browsers and popular file transfer toolThe Record·Oct 3, 13:21 UTC · Oct 3, 2023Ransomware in the wildCVE-2023-5217CVE-2023-4004460
It's time to patch your MOVEit Transfer solution again!Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2023Vulnerability in the wildCVE-2023-3436260
New Critical MOVEit Transfer SQL Injection Vulnerabilities DiscoveredThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-3436260
Warning: VMware vCenter and Kemp LoadMaster Flaws Under Active ExploitationThe Hacker News·Nov 21, 03:53 UTC · Nov 21, 2024Ransomware in the wildCVE-2024-1212CVE-2024-38812CVE-2024-38813+1 CVEs60
MOVEit Transfer software zeroSecurity Affairs·Jun 7, 13:57 UTC · Jun 7, 2023Exploit / PoC in the wild60
Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical FlawThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2024Exploit / PoC in the wildCVE-2024-6670CVE-2024-6671CVE-2024-4885+1 CVEs60
Third-party risk management best practices and why they matterHelp Net Security·Feb 15, 11:52 UTC · Feb 15, 2024Ransomware in the wild60
Microsoft Patches 61 Flaws, Including Two Actively Exploited ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2024Vulnerability in the wildCVE-2024-4671CVE-2024-4761CVE-2024-30040+9 CVEs60
Microsoft Fixes 72 Flaws, Including Patch for Actively Exploited CLFS VulnerabilityThe Hacker News·Dec 11, 15:01 UTC · Dec 11, 2024Vulnerability in the wildCVE-2024-49138CVE-2022-24521CVE-2022-37969+6 CVEs60
CISA Alerts on Active Exploitation of Flaws in Fortinet, Ivanti, and Nice ProductsThe Hacker News·Mar 28, 04:45 UTC · Mar 28, 2024Ransomware in the wildCVE-2023-48788CVE-2021-44529CVE-2019-7256+1 CVEs60
Progress Discloses Two New Vulnerabilities in MOVEit ProductsInfosecurity Magazine·Jun 26, 17:15 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-580560
April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-27681CVE-2026-34621CVE-2026-34619+7 CVEs60
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160