Behind the scenes of cURL with its founder: Releases, updates, and securityHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2025Data breach60
Two High-Risk Security Flaws Discovered in Curl LibraryThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2023Exploit / PoC in the wildCVE-2023-38545CVE-2023-3854660
The World's Most "Dangerous" AI, Anthropic’s Mythos, found only one flaw in curlSecurity Affairs·May 12, 14:47 UTC · May 12, 2026Vulnerability55
Magento wish list exploit bypasses WAF protectionSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026VulnerabilityCVE-2022-2408660
Threat Actors Favor Rclone, WinSCP and cURL as Data Exfiltration ToolsInfosecurity Magazine·Aug 9, 10:00 UTC · Aug 9, 2024Threat actor60
ThreatsDay Bulletin: Smart TV Proxyware, 24-Year curl Bug, AI Crime Forums + 13 More StoriesThe Hacker News·Jun 25, 12:30 UTC · Jun 25, 2026RansomwareCVE-2026-8932CVE-2026-5016060
ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesThe Hacker News·May 15, 00:00 UTC · May 15, 2026VulnerabilityCVE-2026-0300160
Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerabilitiesCisco Talos·Oct 16, 15:05 UTC · Oct 16, 2023Vulnerability in the wildCVE-2023-20198CVE-2023-20273CVE-2021-1435160
Week in review: Patched curl and libcurl vulnerability, 15 free M365 security training modulesHelp Net Security·Oct 15, 00:00 UTC · Oct 15, 2023Vulnerability in the wildCVE-2023-43641CVE-2023-36563CVE-2023-41763+3 CVEs60
SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
Claude finds 353 zeroSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Data breach60
AI is drowning software maintainers in junk security reportsHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC60
CloudZ RAT potentially steals OTP messages using Pheno pluginCisco Talos·May 5, 10:00 UTC · May 5, 2026Malware55
AI might cut false positives, but it won’t stop the slopCyberScoop·May 18, 20:45 UTC · May 18, 2026Exploit / PoC in the wild60
Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangsCisco Talos·Apr 23, 10:00 UTC · Apr 23, 2025Ransomware60
Exploit in the Wild: #drupalgeddon2 - Analysis of CVE-2018Palo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-760060
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP TierThe Hacker News·Jul 23, 04:14 UTC · Jul 23, 2026Vulnerability55
Attackers deliver ShadowPad via newly patched WSUS RCE bugSecurity Affairs·Nov 24, 12:35 UTC · Nov 24, 2025Vulnerability in the wildCVE-2025-5928760
Week in review: Chrome 0-day fixed, npm supply chain attack, LinkedIn data used for AIHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2025Ransomware in the wildCVE-2025-1058560
Threat Brief: CVE-2022Palo Alto Unit 42·Jun 5, 22:35 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-138860
Criminal IP analysis report on zero-day vulnerability in Atlassian ConfluenceHelp Net Security·Mar 9, 20:21 UTC · Mar 9, 2023Exploit / PoCCVE-2022-2613460
Bitter APT adds Bangladesh to their targetsCisco Talos·May 11, 12:00 UTC · May 11, 2022Exploit / PoCCVE-2017-11882CVE-2018-0798CVE-2018-0802+1 CVEs60
What public money does to open-source projectsHelp Net Security·Jul 16, 00:00 UTC · Jul 16, 2026Vulnerability55
Public PoC Released for Critical libssh2 CVE-2026-55200 ClientThe Hacker News·Jun 29, 07:06 UTC · Jun 29, 2026Exploit / PoC in the wildCVE-2026-55200CVE-2019-3855CVE-2026-55199+1 CVEs160
EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesThe Hacker News·Jun 7, 15:47 UTC · Jun 7, 2026Malware155
Over 1,000 Exposed ComfyUI Instances Targeted in Cryptomining Botnet CampaignThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026MalwareCVE-2025-68613CVE-2025-7544CVE-2023-46604+2 CVEs60
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
Fortinet Fixes Critical FortiSIEM Flaw Allowing Unauthenticated Remote Code ExecutionThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026VulnerabilityCVE-2025-64155CVE-2025-4785560
Attacks on Kaspersky honeypots exploit CVE-2025Kaspersky Securelist·Dec 11, 07:30 UTC · Dec 11, 2025Exploit / PoC in the wildCVE-2025-5518260
North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT MalwareThe Hacker News·Dec 10, 07:33 UTC · Dec 10, 2025MalwareCVE-2025-5518260
SharePoint vulnerability with 9.8 severity rating under exploit across globeArs Technica · Security·Jul 21, 19:30 UTC · Jul 21, 2025Vulnerability in the wildCVE-2025-53770CVE-2025-53771CVE-2025-49704+1 CVEs60
Twelve: from initial compromise to ransomware and wipersKaspersky Securelist·Sep 20, 13:33 UTC · Sep 20, 2024RansomwareCVE-2021-21972CVE-2021-2200560
Mirai Botnet targeting OFBiz Servers Vulnerable to Directory TraversalThe Hacker News·Aug 2, 17:14 UTC · Aug 2, 2024Malware in the wildCVE-2024-3221360
Attackers Are Taking Advantage of the Open-Source Service Interactsh for Malicious PurposesPalo Alto Unit 42·Jun 6, 01:14 UTC · Jun 6, 2024Exploit / PoCCVE-2017-9506CVE-2017-12629CVE-2019-2767+23 CVEs60
Backdoor Implanted on Hacked Cisco Devices Modified to Evade DetectionThe Hacker News·Oct 25, 03:47 UTC · Oct 25, 2023MalwareCVE-2023-20198CVE-2023-2027360
Talos uncovers espionage campaigns targeting CIS countries, embassies and EU health care agencyCisco Talos·Mar 14, 11:00 UTC · Mar 14, 2023Threat actor60