New 'Siren' mailing list aims to share threat intelligence for open source projectsThe Record·May 20, 14:20 UTC · May 20, 2024Exploit / PoC60
New ExileRAT backdoor used in attacks aimed at users in TibetSecurity Affairs·Feb 6, 10:24 UTC · Feb 6, 2019Malware in the wildCVE-2017-019960
How hackers used a PowerPoint file to spy on Tibet’s government-inCyberScoop·Feb 4, 21:07 UTC · Feb 4, 2019Exploit / PoC in the wild60
RCE flaw in Exim MTA affects half of the email servers onlineSecurity Affairs·Mar 31, 15:58 UTC · Mar 31, 2018VulnerabilityCVE-2018-678960
Behind the scenes of cURL with its founder: Releases, updates, and securityHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2025Data breach60
Firefox Zero-Day Exploit to Unmask Tor Users Released OnlineThe Hacker News·Nov 30, 08:49 UTC · Nov 30, 2016Exploit / PoC in the wild60
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitThe Hacker News·Jun 12, 19:35 UTC · Jun 12, 2026Malware55
Critical vulnerabilities in Exim threaten over 250k email servers worldwideArs Technica · Security·Sep 29, 22:59 UTC · Sep 29, 2023VulnerabilityCVE-2023-42115CVE-2023-4211660
Malware report for Q2 2024 — a quarterly reviewKaspersky Securelist·Sep 5, 07:45 UTC · Sep 5, 2024MalwareCVE-2024-309460
What's in a name? Strange behaviors at topCisco Talos·Aug 29, 12:00 UTC · Aug 29, 2023Policy & legal55
New Critical Security Flaws Expose Exim Mail Servers to Remote AttacksThe Hacker News·Sep 30, 04:14 UTC · Sep 30, 2023VulnerabilityCVE-2023-42114CVE-2023-42115CVE-2023-42116+4 CVEs60
Hackers compromise WordPress sites via ZeroSecurity Affairs·Jan 28, 15:26 UTC · Jan 28, 2019Exploit / PoC in the wildCVE-2019-670360
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
Google launches Open Source Vulnerabilities (OSV) databaseSecurity Affairs·Feb 8, 21:24 UTC · Feb 8, 2021Vulnerability55
Wine scams spiked during COVIDCyberScoop·Apr 7, 16:00 UTC · Apr 7, 2021Phishing & fraud in the wild60
DarkHotel APT group leverages new methods to target politiciansSecurity Affairs·Aug 10, 08:56 UTC · Aug 10, 2017Threat actor60
What we know about the xz Utils backdoor that almost infected the worldArs Technica · Security·Apr 1, 06:55 UTC · Apr 1, 2024Malware55
Expert disclosed 10 zero-day vulnerabilities in DSecurity Affairs·Sep 11, 19:16 UTC · Sep 11, 2017Exploit / PoC60
PoC exploit for critical Erlang/OTP SSH bug is public (CVE-2025-32433)Help Net Security·Aug 14, 09:20 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2025-3243360
If you think you're immune to phishing attempts, you're wrong!Help Net Security·Apr 2, 08:45 UTC · Apr 2, 2025Phishing & fraud55
Here's what Anthropic found when it turned Mythos loose on encryption algorithmsCyberScoop·Jul 28, 20:54 UTC · Jul 28, 2026Exploit / PoC in the wild60
Researcher Discloses 10 Zero-Day Flaws in DThe Hacker News·Sep 11, 11:29 UTC · Sep 11, 2017Exploit / PoC60
As homomorphic encryption gains steam, experts search for standardsCyberScoop·Aug 20, 19:08 UTC · Aug 20, 2019Exploit / PoC in the wild60
Giving a Face to the Malware Proxy Service ‘Faceless’Krebs on Security·Apr 18, 23:59 UTC · Apr 18, 2023Malware55
Will #infosecTwitter survive Elon Musk?CyberScoop·Nov 18, 03:16 UTC · Nov 18, 2022Data breach in the wild60
AI is drowning software maintainers in junk security reportsHelp Net Security·May 18, 00:00 UTC · May 18, 2026Exploit / PoC60
Dirty Frag: Linux kernel hit by second major security flaw in two weeksThe Record·May 11, 12:30 UTC · May 11, 2026VulnerabilityCVE-2026-43284CVE-2026-4350060
Critical GNU InetUtils telnetd Flaw Lets Attackers Bypass Login and Gain Root AccessThe Hacker News·Jan 27, 08:53 UTC · Jan 27, 2026Exploit / PoC in the wildCVE-2026-2406160
The Definitive Guide to Risk Reduction: Launching at RSA Conference 2020Recorded Future·Nov 27, 00:00 UTC · Nov 27, 2025Industry55
Senator blasts Microsoft for making default Windows vulnerable to “Kerberoasting”Ars Technica · Security·Sep 10, 19:38 UTC · Sep 10, 2025Ransomware60
New CrushFTP Critical Vulnerability Exploited in the WildInfosecurity Magazine·Jul 21, 14:00 UTC · Jul 21, 2025Exploit / PoC in the wildCVE-2025-54309CVE-2025-3116160
Meta Warns of FreeType Vulnerability (CVE-2025The Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Vulnerability in the wildCVE-2025-2736360
Security Affairs newsletter Round 479 by Pierluigi PaganiniSecurity Affairs·Jul 7, 09:14 UTC · Jul 7, 2024RansomwareCVE-2021-40444CVE-2024-0769CVE-2024-23692+1 CVEs60
Widely-Used PuTTY SSH Client Found Vulnerable to Key Recovery AttackThe Hacker News·Apr 17, 07:58 UTC · Apr 17, 2024VulnerabilityCVE-2024-3149760
Beware! Backdoor found in XZ utilities used by many Linux distros (CVE-2024-3094)Help Net Security·Apr 8, 13:25 UTC · Apr 8, 2024VulnerabilityCVE-2024-309460