All Categories

Zero-Day Exploits

Attacks exploiting vulnerabilities that vendors do not yet know about — no patch, no warning.

13 case studies

·

Zero-Day Exploits

13 cases
2024critical

Salt Typhoon: China Hacks US Telecom Wiretap Infrastructure

2 min readZero-Day Exploits
2023critical

Citrix Bleed: Authentication Bypass in Citrix ADC Used in Ransomware Attacks

2 min readZero-Day Exploits
2023critical

MOVEit Zero-Day: One SQL Injection Flaw, 2,700 Organisations Breached

2 min readZero-Day Exploits
2022high

Spring4Shell: Critical RCE in Spring Framework Affects Millions of Java Applications

2 min readZero-Day Exploits
2021critical

Fortinet VPN Zero-Days: Nation-States Exploit Unpatched VPN Gateways for Years

2 min readZero-Day Exploits
2021critical

Log4Shell: A Single Java Library Puts 3 Billion Devices at Risk

2 min readZero-Day Exploits
2021critical

Exchange ProxyLogon: 250,000 Servers Backdoored in 24 Hours via Email Server Zero-Days

2 min readZero-Day Exploits
2021high

MSHTML Zero-Day: Nation-States Weaponise Office Documents with No Macros Required

2 min readZero-Day Exploits
2017critical

EternalBlue: NSA's Stolen Weapon Powers WannaCry, NotPetya, and Years of Attacks

2 min readZero-Day Exploits
2014critical

Heartbleed: OpenSSL Bug Exposes Private Keys and Passwords of Two-Thirds of the Internet

2 min readZero-Day Exploits
2014critical

Shellshock: A 25-Year-Old Bash Bug Enables Remote Code Execution on Millions of Servers

2 min readZero-Day Exploits
2010critical

Operation Aurora IE Zero-Day: China Exploits Browser Flaw to Hack Google and 34 Others

2 min readZero-Day Exploits
2010critical

Stuxnet's Four Zero-Days: The Most Expensive Zero-Day Stockpile Ever Deployed

2 min readZero-Day Exploits

Defend against zero-day exploits

Practical guides drawn directly from these incidents.

Browse guides