exploitation
75 articles with this tag
INFO
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
INFO
CRITICAL
INFO
HIGH
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
MEDIUM
MEDIUM
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
INFO
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
MEDIUM
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
CRITICAL
CRITICAL
INFO
CRITICAL
Metasploit Framework 6.5 Released
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Critical SharePoint RCE flaw exploited to steal machine keys
Attackers pummel critical WordPress vuln to create all sorts of mischief
CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilities
[Security Blog] StrikeShark Campaign Exploits Known Vulnerabilities to Deploy Cobalt Strike via SharkLoader
AI used to help plan the break-in, now it’s doing the break-in
Windows Service - Playbook & Detection Strategies
Agentic AI Used to Conduct Ransomware Attack via Langflow
The context gap: Building trusted agents in the age of AI-accelerated exploitation
Researchers spot exploitation of another critical Oracle defect
Applying DI in C to decouple Windows exploitation from the execution mechanics
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever
FortiBleed Attackers Turn Firewalls Into Credentials Stealers as Heist Persists
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever
Can Valorant brick YOUR PC? Is Vanguard safe?
Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed
Attackers hit pair of critical Fortinet vulnerabilities the vendor disclosed in April
Ivanti Sentry Exploitation Attempts Hitting Honeypots
Max severity Ivanti Sentry vulnerability now exploited in attacks
WinGet - Code Execution, Persistence and Detection Strategies
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Veikleikar í Linux, Flowise, Windows NetLogon, WP Maps Pro, Oracle & Palo Alto Networks
Veikleikar í Android, Cisco, Acer Wave 7, HP Poly VVX og Trio VoIP
USN-8397-1: libjxl vulnerability
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast
Hackers Are After the Gaps in Your Vulnerability Program: Here's Their Playbook
Two-year old Oracle WebLogic Server vulnerability is being exploited
'The Com' Cyberattacks Support Violence & Sexploitation
‘Underminr’ exploitation poses similar risks to domain fronting, researchers say
Terra Security expands platform to include network infrastructure exploitation validation
GhostTree: Unveiling Path Manipulation Techniques to Bypass Windows Security
Exploitation of Critical NGINX Vulnerability Begins
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited
On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted Email
Taiwan Incident Highlights Cybersecurity Gaps in Rail Systems
Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities
Detecting Exploitation of CrushFTP Vulnerability (CVE-2025-31161) With PacketSmith Yara Detection Module - Using track_state and flow_state
Inside AD CS Escalation: Unpacking Advanced Misuse Techniques and Tools
New GhostLock tool abuses Windows API to block file access
Lateral Movement - Cross-Session Activation
Over 40,000 Servers Compromised in Ongoing cPanel Exploitation
CISA, Microsoft warn of active exploitation of Windows Shell vulnerability (CVE-2026-32202)
CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal Deadline
Bissa Scanner Exposed: AI-Assisted Mass Exploitation and Credential Harvesting
Surge in Bomgar RMM Exploitation Demonstrates Supply Chain Risk
Hackers Abuse QEMU for Defense Evasion
QEMU abused to evade detection and enable ransomware delivery
Smashing Security podcast #463: This AI company leaked its own code. It’s also built something terrifying
Codex Hacked a Samsung TV
CVE-2025-8061: From User-land to Ring 0
[Video] The TTP Ep. 22: The Collapse of the Patch Window
Hackers make FAKE notifications
Storm-1175 focuses gaze on vulnerable web-facing assets in high-tempo Medusa ransomware operations
Security lapse lets researchers view React2Shell hackers’ dashboard
Risky Business #831 -- The AI bugpocalypse begins
5-month-old F5 BIG-IP DoS bug becomes critical RCE exploited in the wild
Citrix NetScaler bug exploited in days, may be multiple flaws in a trench coat
Exploitation of Fresh Citrix NetScaler Vulnerability Begins
Attackers are exploiting RCE vulnerability in BIG-IP APM systems (CVE-2025-53521)
Attackers are handing off access in 22 seconds, Mandiant finds
Unknown attackers exploit yet another critical SharePoint bug
AI-Enabled Adversaries Compress Time-to-Exploit Following Vulnerability Disclosure
Metasploit Wrap-Up 03/13/2026
CISA warns of actively exploited Ivanti EPM and Cisco SD-WAN flaws
New 'Zombie ZIP' technique lets malware slip past security tools
Police dismantles online gambling ring exploiting Ukrainian women
Firewall Vulnerability Exploitation: Why the Edge is Fraying
Edge systems take the brunt of internet-wide exploitation attempts
Ivanti Exploitation Surges as Zero-Day Attacks Traced Back to July 2025
DroidGround Demo
Ivanti EPMM exploitation: Researchers warn of “sleeper” webshells