Crooks use HTML smuggling to spread QBot malware via SVG filesSecurity Affairs·Dec 15, 07:54 UTC · Dec 15, 2022Malware55
Dissecting UAT-8099: New persistence mechanisms and regional focusCisco Talos·Jan 29, 11:00 UTC · Jan 29, 2026Malware55
17-Year-Old Weakness in Firefox Let HTML File Steal Other Files From DeviceThe Hacker News·Jul 3, 15:54 UTC · Jul 3, 2019Exploit / PoC in the wild60
Journalist won't be indicted for hacking for viewing a state website's HTMLMalwarebytes Labs·Sep 28, 13:40 UTC · Sep 28, 2023Policy & legal55
Spam report: June 2010Kaspersky Securelist·Jul 21, 17:08 UTC · Jul 21, 2010Vulnerability in the wild60
Russian APT targets Ukraine via Zimbra XSS flaw CVE-2025Security Affairs·Mar 19, 14:48 UTC · Mar 19, 2026Vulnerability in the wildCVE-2025-6637660
Qbot - known channel for ransomware - delivered via phishing and Follina exploitHelp Net Security·Jun 8, 00:00 UTC · Jun 8, 2022Ransomware in the wildCVE-2022-3019060
Yahoo Flaw Allowed Hackers to Read Anyone's EmailsThe Hacker News·Dec 8, 18:30 UTC · Dec 8, 2016Exploit / PoC60
Why React Didn't Kill XSS: The New JavaScript Injection PlaybookThe Hacker News·Jul 29, 10:00 UTC · Jul 29, 2025Vulnerability55
Void Banshee exploits CVE-2024-38112 zeroSecurity Affairs·Jul 17, 14:16 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-38112CVE-2021-4044460
A cascade of compromise: unveiling Lazarus' new campaignKaspersky Securelist·Oct 27, 05:41 UTC · Oct 27, 2023Threat actor160
Threat Advisory: Zero-day vulnerability in Microsoft diagnostic tool MSDT could lead to code executionCisco Talos·Jun 1, 14:19 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
Researchers disclosed details of #EFAIL attacks on in PGP and S/MIME tools. Experts believe claims are overblownSecurity Affairs·May 14, 18:07 UTC · May 14, 2018VulnerabilityCVE-2017-17688CVE-2017-1768960
Google fixed the seventh Chrome zeroSecurity Affairs·Nov 18, 08:59 UTC · Nov 18, 2025Exploit / PoC in the wildCVE-2025-13223CVE-2025-13224CVE-2025-10585+5 CVEs60
⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & MoreThe Hacker News·Oct 6, 11:38 UTC · Oct 6, 2025RansomwareCVE-2025-61882CVE-2025-27915CVE-2025-4008+16 CVEs60
⚡ Weekly Recap: Chrome 0-Day, Ivanti Exploits, MacOS Stealers, Crypto Heists and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2025-32462CVE-2025-32463CVE-2025-20309+23 CVEs60
GitLab Duo Vulnerability Enabled Attackers to Hijack AI Responses with Hidden PromptsThe Hacker News·May 23, 04:34 UTC · May 23, 2025Vulnerability55
Threat Brief: CVE-2022-30190Palo Alto Unit 42·Jun 5, 20:40 UTC · Jun 5, 2024VulnerabilityCVE-2022-3019060
Cybercriminals have adapted since Microsoft's decision to block macrosCyberScoop·May 12, 14:00 UTC · May 12, 2023Ransomware in the wild60
Russian Sandworm Hackers Impersonate Ukrainian Telecoms to Distribute MalwareThe Hacker News·Sep 22, 06:02 UTC · Sep 22, 2022MalwareCVE-2022-3019060
Emotet is the most common malwareHelp Net Security·May 17, 00:00 UTC · May 17, 2022MalwareCVE-2017-1188260
Moodle vulnerability exposed users to account takeoverSecurity Affairs·Apr 8, 20:22 UTC · Apr 8, 2021Vulnerability55
Adobe fixes flaws in Adobe InDesign,Framemaker, Experience ManagerSecurity Affairs·Sep 8, 20:43 UTC · Sep 8, 2020VulnerabilityCVE-2020-9727CVE-2020-9728CVE-2020-9729+15 CVEs60
Friday Squid Blogging: Another Giant Squid Caught off the Coast of KerrySchneier on Security·Jun 22, 16:24 UTC · Jun 22, 2020Malware55
Thunderbird Version 52.9 addresses several issues, including the EFAIL flawSecurity Affairs·Jul 5, 15:28 UTC · Jul 5, 2018VulnerabilityCVE-2018-12372CVE-2018-12373CVE-2018-12359+2 CVEs60
Is India's Aadhaar System Really "Hack-Proof"? Assessing a Publicly Observable Security PostureTroy Hunt·Jan 11, 06:12 UTC · Jan 11, 2018Data breach60
Microsoft Patch TuesdayCisco Talos·Jun 13, 20:48 UTC · Jun 13, 2017VulnerabilityCVE-2017-0283CVE-2017-0291CVE-2017-0292+37 CVEs60
Serious Bug Exposes Sensitive Data From Millions Sites Sitting Behind CloudFlareThe Hacker News·Feb 25, 07:44 UTC · Feb 25, 2017Data breach in the wild60
Kaspersky researchers warns Linkedin from potential spear phishingKaspersky Securelist·Jul 23, 11:59 UTC · Jul 23, 2015Phishing & fraud55
Monthly Malware Statistics, March 2011Kaspersky Securelist·Apr 5, 12:57 UTC · Apr 5, 2011MalwareCVE-2010-0840CVE-2011-060960
CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco ZeroThe Hacker News·Mar 20, 04:36 UTC · Mar 20, 2026Advisory in the wildCVE-2025-66376CVE-2026-20963CVE-2026-20131+5 CVEs60
Russia-linked APT28 exploited MSHTML zero-day CVE-2026Security Affairs·Mar 2, 14:46 UTC · Mar 2, 2026Exploit / PoCCVE-2026-2151360
Threat AdvisoryCisco Talos·Dec 19, 16:50 UTC · Dec 19, 2025Advisory in the wildCVE-2026-20182CVE-2025-20333CVE-2025-20362+6 CVEs160
New BYOVD loader behind DeadLock ransomware attackCisco Talos·Dec 9, 11:00 UTC · Dec 9, 2025RansomwareCVE-2024-5132460
Behind the Curtain: How Lumma Affiliates OperateRecorded Future·Nov 28, 00:00 UTC · Nov 28, 2025Malware55
⚡ Weekly Recap: Scattered Spider Arrests, Car Exploits, macOS Malware, Fortinet RCE and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025RansomwareCVE-2025-25257CVE-2025-25251CVE-2025-31365+36 CVEs160
TA577 Exploits NTLM Authentication VulnerabilityInfosecurity Magazine·Mar 4, 16:30 UTC · Mar 4, 2024Vulnerability55
Hackers using Follina Windows zeroThe Record·Jan 13, 00:00 UTC · Jan 13, 2023RansomwareCVE-2022-3019060