All Categories
Zero-Day Exploits
Attacks exploiting vulnerabilities that vendors do not yet know about — no patch, no warning.
13 case studies
Zero-Day Exploits
2024critical
Salt Typhoon: China Hacks US Telecom Wiretap Infrastructure
2 min readZero-Day Exploits
2023critical
Citrix Bleed: Authentication Bypass in Citrix ADC Used in Ransomware Attacks
2 min readZero-Day Exploits
2023critical
MOVEit Zero-Day: One SQL Injection Flaw, 2,700 Organisations Breached
2 min readZero-Day Exploits
2022high
Spring4Shell: Critical RCE in Spring Framework Affects Millions of Java Applications
2 min readZero-Day Exploits
2021critical
Fortinet VPN Zero-Days: Nation-States Exploit Unpatched VPN Gateways for Years
2 min readZero-Day Exploits
2021critical
Log4Shell: A Single Java Library Puts 3 Billion Devices at Risk
2 min readZero-Day Exploits
2021critical
Exchange ProxyLogon: 250,000 Servers Backdoored in 24 Hours via Email Server Zero-Days
2 min readZero-Day Exploits
2021high
MSHTML Zero-Day: Nation-States Weaponise Office Documents with No Macros Required
2 min readZero-Day Exploits
2017critical
EternalBlue: NSA's Stolen Weapon Powers WannaCry, NotPetya, and Years of Attacks
2 min readZero-Day Exploits
2014critical
Heartbleed: OpenSSL Bug Exposes Private Keys and Passwords of Two-Thirds of the Internet
2 min readZero-Day Exploits
2014critical
Shellshock: A 25-Year-Old Bash Bug Enables Remote Code Execution on Millions of Servers
2 min readZero-Day Exploits
2010critical
Operation Aurora IE Zero-Day: China Exploits Browser Flaw to Hack Google and 34 Others
2 min readZero-Day Exploits
2010critical
Stuxnet's Four Zero-Days: The Most Expensive Zero-Day Stockpile Ever Deployed
2 min readZero-Day Exploits
Defend against zero-day exploits
Practical guides drawn directly from these incidents.