Oracle logo (Getty Images) ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flaw Oracle still hasn't patched the vulnerability the group has been using in its attacks since late May. 4 days ago By Matt Kapko
The Cisco Systems logo is displayed at the Mobile World Congress (MWC) in Barcelona on February 25, 2019. (GABRIEL BOUYS / AFP) Cisco customers encounter another SD-WAN zero-day under attack The defect marks the seventh actively exploited zero-day in Cisco SD-WANs this year, and the vendor has yet to release a patch. Jun 9, 2026 By Matt Kapko
(Getty Images) Nightmare Eclipse incident shows the researcher-vendor fights may never fully go away When a researcher went public with Microsoft vulnerabilities, it laid bare a conflict that has never really been solved. Jun 5, 2026 By Matt Kapko
Cisco logo sits illuminated at MWC Barcelona on February 28, 2022. (David Ramos/Getty Images) Cisco zero-day under ongoing attack by persistent threat group The threat group behind the attacks is also linked to a series of recently disclosed vulnerabilities in the vendor’s firewalls and SD-WAN systems. May 15, 2026 By Matt Kapko
The Apple logo appears on a mobile phone screen in this photo illustration in Brussels, Belgium, on Feb. 26, 2026. (Photo by Jonathan Raa/NurPhoto) Possible U.S.-developed exploits linked to first known ‘mass’ iOS attack Researchers traced the kit moving from a spyware vendor’s customer to Russian hackers to Chinese cybercriminals. Mar 3, 2026 By Tim Starks
(Getty Images) Governments issue warning over Cisco zero-day attacks dating back to 2023 The global campaign marks the second series of multiple actively exploited zero-day vulnerabilities in Cisco edge technology since last spring. The similarities don’t end there. Feb 25, 2026 By Matt Kapko
(Justin Sullivan/Getty Images) Apple discloses first actively exploited zero-day of 2026 The vendor said the memory-corruption defect was exploited to target specific people, but it did not describe the objectives of the attack. Feb 12, 2026 By Matt Kapko
Cisco logo sits illuminated at MWC Barcelona on February 28, 2022. (David Ramos/Getty Images) Cisco customers hit by fresh wave of zero-day attacks from China-linked APT Cisco has yet to release a patch for the actively exploited vulnerability, and attacks have been underway since at least late November. Dec 18, 2025 By Matt Kapko
(Photo by John Smith/VIEWpress/Getty Images) Microsoft Patch Tuesday addresses 63 defects, including one actively exploited zero-day Researchers warn that although exploitation of the zero-day is complex, a functional exploit exists in the wild. Nov 11, 2025 By Matt Kapko
(Jeenah Moon/Getty Images) Microsoft’s Patch Tuesday fixes 175 vulnerabilities, including two actively exploited zero-days The tech giant addressed a record-high number of defects for the year in its latest update. Oct 14, 2025 By Matt Kapko