⚡ Weekly Recap: Scattered Spider Arrests, Car Exploits, macOS Malware, Fortinet RCE and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025RansomwareCVE-2025-25257CVE-2025-25251CVE-2025-31365+36 CVEs160
Web-based Threats-2018 Q2: U.S. Remains #1 in Malicious Web Addresses, China Falls from #2 to #7Palo Alto Unit 42·Nov 6, 12:34 UTC · Nov 6, 2018Exploit / PoCCVE-2018-8174CVE-2009-0075CVE-2008-4844+3 CVEs60
Threat Advisory: Zero-day vulnerability in Microsoft diagnostic tool MSDT could lead to code executionCisco Talos·Jun 1, 14:19 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
UPS: Observations on CVE-2015-3113, Prior ZeroPalo Alto Unit 42·Nov 1, 09:48 UTC · Nov 1, 2018VulnerabilityCVE-2015-3113CVE-2014-1776CVE-2014-633260
Flaws in Popup Builder WordPress plugin expose 100K+ websites to hackSecurity Affairs·Mar 13, 11:42 UTC · Mar 13, 2020Exploit / PoC in the wildCVE-2020-10196CVE-2020-1019560
Microsoft shared workarounds for the Microsoft Office Follina 0daySecurity Affairs·May 31, 11:19 UTC · May 31, 2022Exploit / PoCCVE-2022-30190160
LastPass says attacker hacked employee’s home computer to access corporate vaultThe Record·Mar 7, 19:10 UTC · Mar 7, 2023Vulnerability55
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP SupplyThe Hacker News·Aug 10, 15:03 UTC · Aug 10, 2026Ransomware in the wildCVE-2026-34348CVE-2026-18497CVE-2026-63508+43 CVEs160
Cloud-audit: Fast, open-source AWS security scannerHelp Net Security·Apr 20, 06:36 UTC · Apr 20, 2026Tools55
Attacker Uses Suspected AI-Generated PowerShell Script to Map Active DirectoryThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Ransomware160
China-linked TA413 group actively exploits Microsoft Follina ZeroSecurity Affairs·Jun 1, 10:25 UTC · Jun 1, 2022Exploit / PoCCVE-2022-3019060
CVE-2022-30190 (Follina) vulnerability in MSDT: description and counteractionKaspersky Securelist·Jun 6, 08:00 UTC · Jun 6, 2022Vulnerability in the wildCVE-2022-30190CVE-2017-0199CVE-2021-4044460
Lazarus APT updates its toolset in watering hole attacksKaspersky Securelist·Apr 24, 05:00 UTC · Apr 24, 2025Threat actor60
Chinese State-Sponsored Group TA413 Adopts New Capabilities in Pursuit of Tibetan TargetsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actorCVE-2022-1040CVE-2022-3019060
Banking Trojan Techniques: How Financially Motivated Malware Became InfrastructurePalo Alto Unit 42·Jun 5, 17:45 UTC · Jun 5, 2024Malware55