Pulse Secure fixes zero-day in Pulse Connect Secure (PCS) SSL VPNSecurity Affairs·May 3, 17:39 UTC · May 3, 2021Exploit / PoC in the wildCVE-2021-2289360
Critical Patch Out for Critical Pulse Secure VPN 0The Hacker News·May 4, 08:21 UTC · May 4, 2021Vulnerability in the wildCVE-2021-2289360
Pulse Secure VPN hacking also hit transportation, telecom firms, FireEye saysCyberScoop·May 28, 00:48 UTC · May 28, 2021Data breach in the wild60
China-linked attackers breached Metropolitan Transportation Authority (MTA) using Pulse Secure zeroSecurity Affairs·Jun 4, 11:44 UTC · Jun 4, 2021Data breach in the wildCVE-2021-2289360
WARNING: Hackers Exploit Unpatched Pulse Secure 0The Hacker News·Apr 21, 17:42 UTC · Apr 21, 2021Vulnerability in the wildCVE-2021-22893CVE-2019-11510CVE-2020-8260+1 CVEs60
New High-Severity Vulnerability Reported in Pulse Connect Secure VPNThe Hacker News·May 25, 07:37 UTC · May 25, 2021Vulnerability in the wildCVE-2021-22908CVE-2021-22893CVE-2021-22894+2 CVEs160
Attackers are targeting vulnerable Fortigate and Pulse Secure SSL VPNsHelp Net Security·Aug 28, 10:05 UTC · Aug 28, 2019Exploit / PoC in the wildCVE-2019-11510CVE-2018-1337960
NSA warns defense contractors of recent Chinese governmentCyberScoop·Oct 20, 15:09 UTC · Oct 20, 2020Exploit / PoC in the wild60
Threat Source Newsletter (April 29, 2021)Cisco Talos·Apr 29, 18:00 UTC · Apr 29, 2021Ransomware in the wildCVE-2021-2289360
State-linked hackers hit American, European organizations with Pulse Secure exploitsCyberScoop·Apr 20, 19:44 UTC · Apr 20, 2021Data breach in the wild60
Chinese intelligence-linked hackers are exploiting known flaws to target Washington, US saysCyberScoop·Sep 14, 16:56 UTC · Sep 14, 2020Exploit / PoC in the wild60
Five Chinese nationals, two Malaysians charged in connection with global hacking campaignCyberScoop·Sep 16, 15:22 UTC · Sep 16, 2020Threat actor in the wild60
Mandiant researcher doxed by hackers; FireEye counters claim that internal info dumpedCyberScoop·Jul 31, 16:13 UTC · Jul 31, 2017Data breach in the wild60
NSA, FBI, DHS expose Russian intelligence hacking tradecraftCyberScoop·Apr 15, 13:56 UTC · Apr 15, 2021Exploit / PoC in the wild60
Threat Advisory: Pulse Secure Connect CoverageCisco Talos·Apr 22, 13:50 UTC · Apr 22, 2021Advisory in the wildCVE-2021-22893CVE-2019-11510CVE-2020-8243+1 CVEs60
Threat AdvisoryCisco Talos·Dec 19, 16:50 UTC · Dec 19, 2025Advisory in the wildCVE-2026-20182CVE-2025-20333CVE-2025-20362+6 CVEs160
At least 24 agencies run Pulse Secure software. How many were hacked is an open question.CyberScoop·Apr 22, 02:51 UTC · Apr 22, 2021Data breach in the wild60
US Cyber Command, CISA warn of hackers exploiting critical VMware flawCyberScoop·Jun 7, 16:38 UTC · Jun 7, 2021Exploit / PoC in the wild60
Actively exploited 0-days in Ivanti VPN are letting hackers backdoor networksArs Technica · Security·Jan 10, 22:18 UTC · Jan 10, 2024Malware in the wildCVE-2023-46805CVE-2024-2188760
Cyber Command’s bug bounty program uncovers more than 30 vulnerabilitiesCyberScoop·Oct 15, 02:13 UTC · Oct 15, 2019Vulnerability in the wild60
RDP and VPN use soars, increasing enterprise cyber riskHelp Net Security·Nov 14, 12:29 UTC · Nov 14, 2023Exploit / PoC in the wildCVE-2019-1573CVE-2019-11510CVE-2018-1337960
Week in review: Pulse Secure zero-day actively exploited, how to select an IAM solutionHelp Net Security·Apr 25, 00:00 UTC · Apr 25, 2021Exploit / PoC in the wildCVE-2021-2289360
Pulse Secure VPNs Get New Urgent Update for Poorly Patched Critical FlawThe Hacker News·Aug 10, 07:48 UTC · Aug 10, 2021Vulnerability in the wildCVE-2020-8260CVE-2021-22937CVE-2021-229360
China-Linked Silk Typhoon Expands Cyber Attacks to IT Supply Chains for Initial AccessThe Hacker News·Mar 7, 04:04 UTC · Mar 7, 2025Data breach in the wildCVE-2025-0282CVE-2024-3400CVE-2023-3519+5 CVEs60
Shimo VPN service contains six unpatched vulnerabilities, Talos discoversCyberScoop·Apr 15, 16:21 UTC · Apr 15, 2019Vulnerability in the wildCVE-2018-4004CVE-2018-400760
FBI says Iranian hackers have stepped up reconnaissance since Soleimani killingCyberScoop·Jan 10, 19:10 UTC · Jan 10, 2020Exploit / PoC in the wild60
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518)Help Net Security·Apr 24, 13:36 UTC · Apr 24, 2023Vulnerability in the wildCVE-2022-2751860
Iran-linked hackers use VPN exploits in farCyberScoop·Feb 18, 18:12 UTC · Feb 18, 2020Exploit / PoC in the wild60
Ivanti VPN customers targeted via unrecognized RCE vulnerability (CVE-2025-22457)Help Net Security·Apr 11, 10:14 UTC · Apr 11, 2025Vulnerability in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+2 CVEs60
FBI Issues Flash Alert on Actively Exploited FatPipe VPN ZeroThe Hacker News·Nov 19, 09:27 UTC · Nov 19, 2021Exploit / PoC in the wild60
Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecastHelp Net Security·Apr 6, 00:00 UTC · Apr 6, 2025Vulnerability in the wildCVE-2025-22457CVE-2024-20439CVE-2025-2825+1 CVEs60
Researchers warn of hackers widely exploiting bug in Zyxel hardwareThe Record·Jun 1, 12:30 UTC · Jun 1, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-33009CVE-2023-3301060
Ivanti Connect Secure zero-days exploited by attackers (CVE-2023-46805, CVE-2024-21887)Help Net Security·Jan 16, 16:05 UTC · Jan 16, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-2188760
APT groups are exploiting outdated VPNs to spy on international targets, U.K. and U.S. warnCyberScoop·Oct 7, 19:18 UTC · Oct 7, 2019Threat actor in the wild60
Silk Typhoon shifted to specifically targeting IT management companiesCyberScoop·Mar 6, 14:54 UTC · Mar 6, 2025Exploit / PoC in the wildCVE-2025-028260
Two Ivanti ZeroInfosecurity Magazine·Jan 11, 09:30 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2023-35078+1 CVEs60
Silk Typhoon Shifts Tactics to Exploit Common IT SolutionsInfosecurity Magazine·Mar 5, 16:30 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2025-028260
Top 30 Critical Security Vulnerabilities Most Exploited by HackersThe Hacker News·Aug 4, 09:03 UTC · Aug 4, 2021Vulnerability in the wildCVE-2019-19781CVE-2019-11510CVE-2018-13379+26 CVEs60
Dataminr to acquire cybersecurity firm ThreatConnect for $290 millionCyberScoop·Oct 21, 12:45 UTC · Oct 21, 2025Exploit / PoC in the wild60
Army Secretary forces West Point to rescind appointment given to EasterlyCyberScoop·Jul 31, 16:57 UTC · Jul 31, 2025Exploit / PoC in the wild60