Week in review: Password-less security, WPA3 design flaws, new Windows 10 update controlsHelp Net Security·May 13, 13:23 UTC · May 13, 2020Ransomware in the wildCVE-2019-1573CVE-2019-021160
What's in the NIST cybersecurity controls catalogue update?CyberScoop·Apr 4, 00:43 UTC · Apr 4, 2017Exploit / PoC in the wild60
Securing the Open Android Ecosystem with Samsung KnoxThe Hacker News·Nov 5, 11:55 UTC · Nov 5, 2025Data breach60
CISA removes 'PetitPotam' bug from catalog after Microsoft warns of risk to domain controllersThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Ransomware in the wildCVE-2022-26925CVE-2021-3694260
CISA Issues Advisories on Critical ICS VulnerabilitiesInfosecurity Magazine·Jul 18, 16:27 UTC · Jul 18, 2025VulnerabilityCVE-2019-9262CVE-2019-9429CVE-2019-9256+4 CVEs60
Halo Security platform updates give teams better control over exposure dataHelp Net Security·Sep 1, 10:42 UTC · Sep 1, 2025Vulnerability55
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
Critical NetScaler ADC, Gateway flaw may soon be exploited (CVE-2026-3055)Help Net Security·Mar 31, 08:50 UTC · Mar 31, 2026Vulnerability in the wildCVE-2026-3055CVE-2026-4368CVE-2025-577760
Blue Cedar announces Accelerator for MicrosoftHelp Net Security·Dec 14, 12:24 UTC · Dec 14, 2023Industry155
US Commerce Department tightens screws on Huawei export controlsCyberScoop·May 15, 15:06 UTC · May 15, 2020Exploit / PoC in the wild60
Industrial cybersecurity: Protecting OT from ITHelp Net Security·Mar 9, 19:40 UTC · Mar 9, 2023Vulnerability55
How to implement a continuous offensive security testing programHelp Net Security·Aug 10, 12:13 UTC · Aug 10, 2026Exploit / PoC160
PerfektBlue Bluetooth Vulnerabilities Expose Millions of Vehicles to Remote Code ExecutionThe Hacker News·Jul 12, 12:32 UTC · Jul 12, 2025VulnerabilityCVE-2024-45434CVE-2024-45431CVE-2024-45433+1 CVEs60
Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto MinersThe Hacker News·Jan 17, 04:05 UTC · Jan 17, 2025Vulnerability in the wildCVE-2024-5060360
Godfather Android trojan uses virtualization to hijack banking and crypto appsSecurity Affairs·Jun 21, 05:53 UTC · Jun 21, 2025Malware55
Bad Certificate Management in Google Play StorePalo Alto Unit 42·Nov 1, 09:35 UTC · Nov 1, 2018Vulnerability55
Critical backdoor found in MGT Varnish extensionSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Malware in the wildCVE-2026-7565060
The best-funded companies open the most phishing attachmentsHelp Net Security·Jul 24, 00:00 UTC · Jul 24, 2026Phishing & fraud55
Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since MidThe Hacker News·Mar 6, 10:06 UTC · Mar 6, 2026Exploit / PoC in the wildCVE-2026-2276960
Download: CIS Critical Security Controls v8.1Help Net Security·Apr 8, 17:22 UTC · Apr 8, 2025Industry55
Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakThe Hacker News·May 11, 18:23 UTC · May 11, 2026VulnerabilityCVE-2026-7482CVE-2026-42248CVE-2026-4224960
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
⚡ Weekly Recap: AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and MoreThe Hacker News·Feb 9, 12:59 UTC · Feb 9, 2026MalwareCVE-2026-25049CVE-2026-0709CVE-2026-23795+23 CVEs160
CISA orders federal agencies to patch CVE-2022Security Affairs·Jul 4, 07:16 UTC · Jul 4, 2022Vulnerability in the wildCVE-2022-2692560
Active Directory Under Siege: Why Critical Infrastructure Needs Stronger SecurityThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Data breach60
Cisco addresses a critical flaw in Elastic Services ControllerSecurity Affairs·May 8, 06:54 UTC · May 8, 2019VulnerabilityCVE-2019-186760
Iran-Linked Actors Breach Are Targeting US Water and Energy Control SystemsSecurity Affairs·Jul 25, 20:11 UTC · Jul 25, 2026Threat actor60
New White House cyber executive order pushes rules as codeCyberScoop·Jul 14, 12:00 UTC · Jul 14, 2025Policy & legal55
Cybersecurity jobs available right now: November 18, 2025Help Net Security·Mar 19, 12:53 UTC · Mar 19, 2026Vulnerability55
CISA orders federal agencies to implement Zerologon fix by MondayHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2020Exploit / PoC in the wildCVE-2020-147260
"Perfect" Windows downgrade attack turns fixed vulnerabilities into zero-daysHelp Net Security·Aug 30, 12:36 UTC · Aug 30, 2024VulnerabilityCVE-2024-38202CVE-2024-2130260
ProcessUnity Risk Index delivers controls-driven vendor risk scoring for TPRMHelp Net Security·Mar 3, 00:00 UTC · Mar 3, 2026Vulnerability55
What Am I Supposed to Do With This Threat Intelligence?Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Data breach60
Friday Squid Blogging: New Tool for Grabbing Squid and other Fragile Sea CreaturesSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Exploit / PoC160
When everything's connected, everything's at riskHelp Net Security·Nov 5, 10:57 UTC · Nov 5, 2025Ransomware60
October 2020 Patch Tuesday forecast: Trick or treat?Help Net Security·Oct 9, 00:00 UTC · Oct 9, 2020VulnerabilityCVE-2020-147260
Unpatched Critical Flaw Disclosed in Zoom Software for Windows 7 or EarlierThe Hacker News·Jul 10, 15:51 UTC · Jul 10, 2020Vulnerability55
Russian state-sponsored espionage group Static Tundra compromises unpatched end-ofCisco Talos·Aug 20, 13:00 UTC · Aug 20, 2025VulnerabilityCVE-2018-017160
637 flaws in ICS products were published in H1 2021Security Affairs·Aug 20, 08:02 UTC · Aug 20, 2021Ransomware60
Russian Government Agency Warns Firms of US AttackInfosecurity Magazine·Jan 25, 11:35 UTC · Jan 25, 2021Threat actor60