Inside Win32k Exploitation: Background on Implementations of Win32k and Exploitation MethodologiesPalo Alto Unit 42·Jun 5, 13:30 UTC · Jun 5, 2024Exploit / PoC in the wildCVE-2022-21882CVE-2021-1732CVE-2022-1732160
XPAJ: Reversing a Windows x64 BootkitKaspersky Securelist·Jun 19, 18:16 UTC · Jun 19, 2012Ransomware60
Decrement by one to rule them all: AsIO3.sys driver exploitationCisco Talos·Jun 26, 10:00 UTC · Jun 26, 2025Exploit / PoCCVE-2025-1533CVE-2025-346460
Old certificate, new signature: Open-source tools forge signature timestamps on Windows driversCisco Talos·Jul 11, 17:04 UTC · Jul 11, 2023Malware55
Microsoft Patch TuesdayCisco Talos·Nov 8, 22:09 UTC · Nov 8, 2016VulnerabilityCVE-2016-7212CVE-2016-7248CVE-2016-7205+8 CVEs60
Daxin: 13-Year-Old China-Linked Malware Found Still Active on Manufacturer's NetworkSecurity Affairs·Jul 18, 14:01 UTC · Jul 18, 2026Malware55
Daxin Resurfaces in Taiwan Alongside Stupig PreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Malware55
Microsoft Patch Tuesday addresses 63 defects, including one actively exploited zeroCyberScoop·Nov 11, 20:49 UTC · Nov 11, 2025Vulnerability in the wildCVE-2025-62215CVE-2025-60724CVE-2025-60719+2 CVEs60
Microsoft Releases Patches for 132 Vulnerabilities, Including 6 Under Active AttackThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Vulnerability in the wildCVE-2023-32046CVE-2023-32049CVE-2023-35311+2 CVEs160
BlackLotus Becomes First UEFI Bootkit Malware to Bypass Secure Boot on Windows 11The Hacker News·Jun 23, 08:42 UTC · Jun 23, 2023Malware in the wildCVE-2022-21894160
BlackLotus UEFI bootkit disables Windows security mechanismsHelp Net Security·Apr 17, 10:14 UTC · Apr 17, 2023Vulnerability in the wildCVE-2022-2189460
The Slingshot APT FAQKaspersky Securelist·Mar 9, 15:20 UTC · Mar 9, 2018Exploit / PoCCVE-2007-5633CVE-2010-1592CVE-2009-082460
Microsoft Patch TuesdayCisco Talos·Mar 14, 21:26 UTC · Mar 14, 2017Vulnerability in the wildCVE-2017-0149CVE-2017-0012CVE-2017-0037+1 CVEs60
Microsoft Patch TuesdayCisco Talos·Oct 11, 20:57 UTC · Oct 11, 2016VulnerabilityCVE-2016-3393CVE-2016-3396CVE-2016-3270+16 CVEs60
Microsoft Patch TuesdayCisco Talos·Aug 9, 19:15 UTC · Aug 9, 2016VulnerabilityCVE-2016-3301CVE-2016-3303CVE-2016-3304+11 CVEs60
Microsoft Patch TuesdayCisco Talos·Jul 12, 23:43 UTC · Jul 12, 2016VulnerabilityCVE-2016-3204CVE-2016-3238CVE-2016-3239+7 CVEs60
Microsoft Fixes 3 ZeroSecurity Affairs·Oct 15, 14:09 UTC · Oct 15, 2014Exploit / PoC in the wildCVE-2014-4114CVE-2014-4148CVE-2014-4113160
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0The Hacker News·Jul 21, 04:34 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-63030CVE-2026-60137CVE-2026-15409+26 CVEs60
Microsoft Defender vulnerabilities exploited in the wild (CVE-2026-41091, CVE-2026-45498)Help Net Security·May 21, 00:00 UTC · May 21, 2026Exploit / PoC in the wildCVE-2026-41091CVE-2026-45498CVE-2026-45584+2 CVEs60
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-34621160
Kaspersky Global Report by Kaspersky Security Services 2026Kaspersky Securelist·Mar 25, 10:35 UTC · Mar 25, 2026Exploit / PoC in the wild60
Google uncovers Coruna iOS Exploit Kit targeting iOS 13Security Affairs·Mar 5, 09:03 UTC · Mar 5, 2026Exploit / PoCCVE-2021-30952CVE-2022-48503CVE-2023-43000+9 CVEs60
Reynolds ransomware uses BYOVD to disable security before encryptionSecurity Affairs·Feb 11, 15:00 UTC · Feb 11, 2026RansomwareCVE-2025-6894760
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
Microsoft Fixes Three ZeroInfosecurity Magazine·Dec 10, 09:45 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62221CVE-2025-54100CVE-2025-64671+4 CVEs60
Last Windows 10 Patch Tuesday Features Six ZeroInfosecurity Magazine·Oct 15, 10:45 UTC · Oct 15, 2025Vulnerability in the wildCVE-2025-59230CVE-2025-24990CVE-2025-47827+3 CVEs60
⚡ Weekly Recap: Bootkit Malware, AI-Powered Attacks, Supply Chain Breaches, ZeroThe Hacker News·Oct 14, 10:56 UTC · Oct 14, 2025Malware in the wildCVE-2025-2104360
Analyzing the TTPs of hacktivists and APTs targeting Russian organizationsKaspersky Securelist·Sep 10, 14:00 UTC · Sep 10, 2025Data breach60
Microsoft Patch Tuesday for September 2025 – Snort rules and prominent vulnerabilitiesCisco Talos·Sep 9, 19:15 UTC · Sep 9, 2025Vulnerability in the wildCVE-2025-54916CVE-2025-54910CVE-2025-54918+8 CVEs160
French cybersecurity agency confirms government affected by Ivanti hacksThe Record·Jul 2, 12:09 UTC · Jul 2, 2025Exploit / PoCCVE-2024-8190CVE-2024-8963CVE-2024-938060
Kaspersky Managed Detection and Response report 2024Kaspersky Securelist·Feb 20, 11:21 UTC · Feb 20, 2025Malware55
Kaspersky ICS CERT predictions for the industrial threat landscape in 2025Kaspersky Securelist·Jan 29, 10:01 UTC · Jan 29, 2025Ransomware60
CISA and FBI Raise Alerts on Exploited Flaws and Expanding HiatusRAT CampaignThe Hacker News·Dec 17, 06:34 UTC · Dec 17, 2024Malware in the wildCVE-2024-20767CVE-2024-35250CVE-2017-7921+6 CVEs60
Microsoft Fixes 71 CVEs Including Actively Exploited ZeroInfosecurity Magazine·Dec 11, 10:15 UTC · Dec 11, 2024Ransomware in the wildCVE-2024-49138CVE-2022-24521CVE-2023-23376+3 CVEs160
Crimeware and financial predictions for 2025Kaspersky Securelist·Nov 14, 09:01 UTC · Nov 14, 2024Ransomware60
CosmicBeetle Deploys Custom ScRansom Ransomware, Partnering with RansomHubThe Hacker News·Sep 11, 06:02 UTC · Sep 11, 2024RansomwareCVE-2017-0144CVE-2020-1472CVE-2021-42278+3 CVEs160
AI, election security headline discussions at Black Hat and DEF CONCisco Talos·Aug 15, 18:00 UTC · Aug 15, 2024Ransomware in the wildCVE-2024-38184CVE-2024-38185CVE-2024-38186+3 CVEs160