Tens of thousands unpatched GitLab servers under attack via CVE-2021-22205Help Net Security·Nov 4, 00:00 UTC · Nov 4, 2021Vulnerability in the wildCVE-2021-2220560
50% of internet-facing GitLab installations are still affected by a RCE flawSecurity Affairs·Nov 2, 14:45 UTC · Nov 2, 2021Vulnerability in the wildCVE-2021-2220560
Network Security Trends: November 2021 to January 2022Palo Alto Unit 42·Jun 5, 20:41 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2021-44228CVE-2021-45046CVE-2021-38647+13 CVEs60
GitLab Releases Urgent Security Patches for Critical VulnerabilityThe Hacker News·Sep 21, 03:44 UTC · Sep 21, 2023Vulnerability in the wildCVE-2023-5009CVE-2023-3932CVE-2021-22205160
New LABRAT Campaign Exploits GitLab Flaw for Cryptojacking and Proxyjacking ActivitiesThe Hacker News·Aug 19, 06:07 UTC · Aug 19, 2023Malware in the wildCVE-2021-22205CVE-2021-403460
Proxyjacking and Cryptomining Campaign Targets GitLabInfosecurity Magazine·Aug 18, 09:30 UTC · Aug 18, 2023Threat actorCVE-2021-2220560
GitLab servers are being exploited in DDoS attacks in excess of 1 TbpsThe Record·Dec 18, 00:00 UTC · Dec 18, 2022Exploit / PoCCVE-2021-22205CVE-2021-2220450
Kaspersky Q4 2021 DDoS attack reportKaspersky Securelist·Feb 10, 10:00 UTC · Feb 10, 2022RansomwareCVE-2017-6079CVE-2021-22205CVE-2021-3626060
Week in review: CVE + MITRE ATT&CK methodology, new issue of (IN)SECURE MagazineHelp Net Security·Nov 7, 00:00 UTC · Nov 7, 2021RansomwareCVE-2021-2220560
China-Linked Hackers Exploit SAP and SQL Server Flaws in Attacks Across Asia and BrazilThe Hacker News·Jun 10, 16:26 UTC · Jun 10, 2025Ransomware in the wildCVE-2025-31324CVE-2017-9805CVE-2021-22205+6 CVEs60
Number of incidents affecting GitHub, Bitbucket, GitLab, and Jira continues to riseHelp Net Security·Aug 7, 00:00 UTC · Aug 7, 2024RansomwareCVE-2021-22205160
Cyber Group 'Gold Melody' Selling Compromised Access to Ransomware AttackersThe Hacker News·Sep 21, 09:11 UTC · Sep 21, 2023RansomwareCVE-2017-7504CVE-2019-19781CVE-2020-14750+10 CVEs60
Earth Lusca's New SprySOCKS Linux Backdoor Targets Government EntitiesThe Hacker News·Sep 20, 04:37 UTC · Sep 20, 2023MalwareCVE-2022-39952CVE-2022-40684CVE-2021-22205+3 CVEs47
Earth Lusca expands its arsenal with SprySOCKS Linux malwareSecurity Affairs·Sep 19, 07:52 UTC · Sep 19, 2023MalwareCVE-2022-40684CVE-2022-39952CVE-2021-22205+6 CVEs160
Indonesian Cybercriminals Exploit AWS for Profitable Crypto Mining OperationsThe Hacker News·May 23, 04:44 UTC · May 23, 2023VulnerabilityCVE-2021-2220547
Andoryu Botnet Exploits Critical Ruckus Wireless Flaw for Widespread AttackThe Hacker News·May 11, 07:05 UTC · May 11, 2023MalwareCVE-2023-25717CVE-2021-2220560
Confluence and GitLab servers targeted by new ransomware strainThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Ransomware in the wildCVE-2021-26084CVE-2021-2220560
Quarterly Report: Incident Response trends in Q1 2022Cisco Talos·Apr 26, 13:11 UTC · Apr 26, 2022Ransomware in the wildCVE-2021-44228CVE-2021-45046CVE-2021-22204+1 CVEs60
Researchers Takeover Unpatched 3rdThe Hacker News·Apr 26, 08:30 UTC · Apr 26, 2022VulnerabilityCVE-2021-22204CVE-2021-2220560
New EnemyBot DDoS Botnet Borrows Exploit Code from Mirai and GafgytThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2022MalwareCVE-2020-17456CVE-2018-10823CVE-2022-27226+2 CVEs47
Alert! Hackers Exploiting GitLab Unauthenticated RCE Flaw in the WildThe Hacker News·Nov 5, 05:40 UTC · Nov 5, 2021Vulnerability in the wildCVE-2021-2220560