Index live· 1,284 files · 148 editions
ForensicPost

Search the index

7 results
Try
Results for “Zero-day exploitation”Newest first
25-1003
File

The Oracle Campaign Named Another One

For most of the interval the company was the victim of an incident that had already happened and had not yet surfaced.

Cl0pZero-day exploitationManufacturingExploitation
Sev 4TargetLogitechActorCl0p
25-0719
File

ToolShell SharePoint Chain Confirmed Under Exploitation, 150 Organisations Hit

Self-hosting transfers the patch obligation. In a window measured in days, that transfer decides the outcome.

MultipleZero-day exploit chainCloudExploitation
Sev 5TargetOn-premises SharePoint estatesActorMultiple
25-0214
File

The File-Transfer Product Is the Bank’s Weakest Wall

Internet-facing, authentication-heavy, holding the files too sensitive for email. Managed file transfer keeps producing portfolios of victims.

UnattributedZero-day exploitationFinanceFinance
Sev 3TargetWestern Alliance BankActorUnattributed
25-0109
File

Ivanti Connect Secure Flaw CVE-2025-0282 Exploited From January 2025

The identity boundary expressed as hardware. And a vendor exploited recently is more likely, not less, to be exploited again.

MultipleZero-day exploitationCloudExploitation
Sev 4TargetIvanti Connect Secure estatesActorMultiple
23-0724
File

Ivanti Zero-Day Breached 12 Norwegian Ministries; Four Kept off the Platform Escaped

A decision made years earlier for classification reasons turned out to be the security control.

UnattributedCVE-2023-35078 — zero-dayGovernmentExploitation
Sev 5TargetNorwegian government ministriesActorUnattributedNorway
23-0518
File

Barracuda Told Customers to Replace ESG Appliances Rather Than Patch Them

The vendor did not tell customers to update the appliance. It told them to throw it away.

UNC4841Zero-day exploitationMultipleEdge devices
Sev 5TargetBarracuda ESG appliancesActorUNC4841
22-0527
File

Follina Exploited Word Documents With No Macro and No Protected View Warning

Ten years of telling people not to enable macros, and this one did not ask.

UnattributedCVE-2022-30190 — zero-dayTechnologyExploitation
Sev 4TargetWindows usersActorUnattributedUSA
© 2026 ForensicPost Media · the desk · newsletterGlossaryNo search logging