⚠️ THIS IS A VULNERABLE LAB — YOU ARE ALLOWED TO HACK IT Learn more

Ethical Hacking Mission Control

This live lab is a safe space for defenders, red teamers, and curious hackers to sharpen their tradecraft using real tooling and real telemetry. Every article, lab module, and intel briefing is curated to help you practice responsible disclosure, grow your skill set, and support the security community.

Latest Intel Log in to unlock your personalized feed.
All feeds.feedburner.com bleepingcomputer.com krebsonsecurity.com darkreading.com
bleepingcomputer.com 2026-10-09 17:02

FBI arrests another suspected ShinyHunters hacker after agency breach

api
thumb
feeds.feedburner.com 2026-10-09 13:22

TP-Link Sued by Four More U.S. States Over Router Security and China Ties

darkreading.com 2026-10-09 17:21

What We Missed: FBI Strikes Back at ShinyHunters

api
bleepingcomputer.com 2026-10-09 17:17

Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto

thumb
feeds.feedburner.com 2026-10-09 16:29

P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands

thumb
darkreading.com 2026-10-09 16:25

Security Threats Don't Stop at the Office: Why Executives' Families Need Training Too

bleepingcomputer.com 2026-10-09 15:38

Germany arrests alleged core Qilin ransomware member after extradition

api
bleepingcomputer.com 2026-10-09 14:01

How to keep AI agents within their permissions

rce
thumb
darkreading.com 2026-10-09 13:00

Social Engineering AI Agents: The New BEC for 2026

blue
thumb
feeds.feedburner.com 2026-10-09 12:59

Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access

rce
thumb
feeds.feedburner.com 2026-10-09 12:47

Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects

rce
thumb
feeds.feedburner.com 2026-10-09 12:47

Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge

api
bleepingcomputer.com 2026-10-09 12:32

Max severity SonicWall SMA1000 flaw now exploited in attacks

thumb
feeds.feedburner.com 2026-10-09 12:21

Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies

thumb
feeds.feedburner.com 2026-10-09 06:39

FBI Seizes 7 Domains, Disrupts Flax Typhoon Tools Used in Critical Infrastructure Intrusions

thumb
feeds.feedburner.com 2026-10-09 11:30

The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition

bleepingcomputer.com 2026-10-09 11:14

Man admits to running network of 15,000 money mules for cybercriminals

bleepingcomputer.com 2026-10-09 10:12

Microsoft: Outdated Windows devices will stop receiving security updates

thumb
feeds.feedburner.com 2026-10-09 09:03

GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys

bleepingcomputer.com 2026-10-09 08:27

Citrix warns admins to patch new NetScaler RCE flaw immediately

rce
thumb
feeds.feedburner.com 2026-10-09 08:26

Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own

thumb
feeds.feedburner.com 2026-10-09 08:11

Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments

rce
bleepingcomputer.com 2026-10-09 05:41

Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland

bleepingcomputer.com 2026-10-08 21:42

FBI disrupts Chinese hacking tools used to breach critical infrastructure

thumb
darkreading.com 2026-10-08 20:39

'AgentCorruption' Puts AWS Environments At Risk With Single Prompt

bleepingcomputer.com 2026-10-08 20:09

Ransomware attack disrupts Japan's IDCF Cloud used by govt clients

bleepingcomputer.com 2026-10-08 19:20

Low-cost Android phones ship with residential proxy malware

thumb
darkreading.com 2026-10-08 19:08

Venezuelan Cartel's Malware Honcho Nabbed for ATM Jackpotting

thumb
feeds.feedburner.com 2026-10-08 18:32

FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails

rce
thumb
darkreading.com 2026-10-08 18:01

Russian Spies Give 'MatchBoil' Malware a Stealthy Facelift

thumb
feeds.feedburner.com 2026-10-08 17:58

ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories

api
bleepingcomputer.com 2026-10-08 17:10

FakeGit malware campaign returns with 17,610 malicious GitHub repos

thumb
feeds.feedburner.com 2026-10-08 15:45

Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks

api
thumb
feeds.feedburner.com 2026-10-08 15:26

UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML

bleepingcomputer.com 2026-10-08 15:26

Cisco warns of critical flaws allowing Nexus switch takeover

thumb
feeds.feedburner.com 2026-10-08 14:12

ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms

bleepingcomputer.com 2026-10-08 14:00

OAuth grants pile up faster than you can review them. Here's how to keep up.

bleepingcomputer.com 2026-10-08 13:18

Uranium crypto exchange hacker convicted for stealing $53 million

bleepingcomputer.com 2026-10-08 12:08

Microsoft Teams to get support for third-party deepfake detection tools

blue
thumb
darkreading.com 2026-10-08 12:00

Writing the Next Chapter

bleepingcomputer.com 2026-10-08 11:42

ASOS links data breach to social engineering attack, credential theft

blue
thumb
feeds.feedburner.com 2026-10-08 10:30

Wazza Phishkit Targets Banking, Government, and Manufacturing Across the US, EU, and Australia

thumb
feeds.feedburner.com 2026-10-08 09:46

16 Malicious Firefox Extensions Pose as Rabby and OKX Wallets to Steal Recovery Phrases

rce
thumb
feeds.feedburner.com 2026-10-08 07:42

U.S. Offers Up to $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks

thumb
feeds.feedburner.com 2026-10-08 07:41

MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data

thumb
feeds.feedburner.com 2026-10-08 05:46

Tensorlake npm Package Compromised to Deliver Shai-Hulud Credential-Stealing Worm

blue
thumb
darkreading.com 2026-10-07 21:25

Citizen Lab Slams Trump Administration, 'Techno-Fascist' Executives

thumb
darkreading.com 2026-10-07 21:42

Australian Gov't Weighs Mandatory AI Incident Reporting

thumb
darkreading.com 2026-10-07 20:51

Anthropic Gives Vetted Defenders Fewer Claude Guardrails

blue
thumb
darkreading.com 2026-10-07 19:34

OpenAI Agent Escape Causes Wikimedia Service Outage

thumb
feeds.feedburner.com 2026-10-07 18:48

Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains

thumb
feeds.feedburner.com 2026-10-07 17:43

Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer

thumb
feeds.feedburner.com 2026-10-07 16:17

SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances

ssrf
thumb
feeds.feedburner.com 2026-10-07 15:34

Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely

rce
thumb
feeds.feedburner.com 2026-10-07 15:33

PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet

krebsonsecurity.com 2026-10-07 13:48

ShinyHunters Extorted Boeing Spin-off Prior to Arrests

api
thumb
feeds.feedburner.com 2026-10-07 11:57

The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow

thumb
feeds.feedburner.com 2026-10-07 11:56

FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials

blue
thumb
feeds.feedburner.com 2026-10-07 11:49

Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details

thumb
feeds.feedburner.com 2026-10-07 11:42

What Is Agentic Pentesting? What It Proves, and Where It Stops.

thumb
feeds.feedburner.com 2026-10-07 08:07

Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws

thumb
feeds.feedburner.com 2026-10-07 06:57

100+ Compromised Websites Use Fake Cloudflare Checks to Deliver LunexStealer

thumb
darkreading.com 2026-10-06 20:32

ClickFix Attacks Evolve to Better Hide Malicious Payloads

thumb
darkreading.com 2026-10-06 20:30

Critical Healthcare Systems Aren't Quantum-Ready

thumb
feeds.feedburner.com 2026-10-06 18:38

Fake ChatGPT, Gemini, and Claude Ad Portals Capture Credentials and MFA Codes

thumb
feeds.feedburner.com 2026-10-06 18:24

Linux Backdoors Impersonate Email Security Tools to Evade Detection in Korea and Taiwan

blue
thumb
darkreading.com 2026-10-06 17:56

Google's PageBreak AI Agent Finds 500 Flaws in Its Web Apps

thumb
darkreading.com 2026-10-06 17:15

IANS' Kakolowski: How AI Is Reshaping CISO Budgets & Security Teams

api
thumb
darkreading.com 2026-10-06 16:59

'BigDiskBuster' Leaves Microsoft Defender Running While Blocking Updates

blue
thumb
feeds.feedburner.com 2026-10-06 11:57

LibreOffice and OpenOffice Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings

poc
thumb
feeds.feedburner.com 2026-10-06 11:26

Wikimedia Says OpenAI Agents Tried to Compromise Etherpad and Use Wiki Tools as Proxies

thumb
feeds.feedburner.com 2026-10-06 11:02

Welcome to the Jungle: What We Found Inside 15,465 Public MCP Servers

thumb
feeds.feedburner.com 2026-10-06 09:21

Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports

rce
thumb
feeds.feedburner.com 2026-10-06 06:58

Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products

thumb
feeds.feedburner.com 2026-10-06 06:56

FBI Removes Accenture Contractor After Patch Failure Led to ShinyHunters Breach

rce
thumb
feeds.feedburner.com 2026-10-06 06:00

Denmark Says Attackers Accessed CPR Data for 8.8 Million People via Company Account

thumb
feeds.feedburner.com 2026-10-06 05:22

ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

thumb
darkreading.com 2026-10-05 21:25

ClingSTUN Turns Vulnerable IoT Devices Into Proxy Nodes

thumb
feeds.feedburner.com 2026-10-05 16:21

Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes

thumb
darkreading.com 2026-10-05 15:52

Chinese Hackers Impersonate US Officials for AI Cyber Espionage

thumb
feeds.feedburner.com 2026-10-05 14:20

⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests

api
thumb
darkreading.com 2026-10-05 13:00

Need for Speed: AI-Driven Attacks Are Changing Security Strategies

thumb
feeds.feedburner.com 2026-10-05 11:55

The Credential Layer Is Expanding Faster Than Security Teams Can See It

blue
thumb
feeds.feedburner.com 2026-10-05 11:46

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

thumb
feeds.feedburner.com 2026-10-05 10:38

Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

thumb
feeds.feedburner.com 2026-10-05 08:09

Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

rce
thumb
feeds.feedburner.com 2026-10-05 06:40

New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline

thumb
feeds.feedburner.com 2026-10-04 07:22

ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members

thumb
feeds.feedburner.com 2026-10-04 07:20

China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing

thumb
darkreading.com 2026-10-02 20:18

RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail

thumb
darkreading.com 2026-10-02 16:56

Kiteworks & Citrix Incidents Show Challenges of Zero-Day Response

thumb
darkreading.com 2026-10-02 16:27

SWIFT Banking & Government Middleware Enables RCE

rce
thumb
darkreading.com 2026-10-02 16:01

Is Your Organization Ready for 2027's AI Accountability Era?

thumb
darkreading.com 2026-10-02 15:51

Is It Fair to Blame 'Rogue' AI for Security Failures?

blue
thumb
darkreading.com 2026-10-02 14:00

Vulnerability Backlogs Are an Ownership Problem

thumb
darkreading.com 2026-10-02 13:00

Malicious Linux Implants Mimic Asian Mail Security Products

thumb
darkreading.com 2026-10-01 21:37

Alleged KillSec Ransomware Mastermind a 16-Year-Old

rce
thumb
darkreading.com 2026-10-01 13:00

Warlock Ransomware Hits Large Spanish, Portuguese Orgs

blue
krebsonsecurity.com 2026-09-28 15:08

Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation

api
krebsonsecurity.com 2026-09-25 21:44

U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortions

api
krebsonsecurity.com 2026-09-16 18:14

Data Broker Radaris Loses Domains in Privacy Fight

rce
krebsonsecurity.com 2026-09-08 21:44

Microsoft Plugs Nearly 1,000 Security Holes

krebsonsecurity.com 2026-09-01 22:40

FBI Probes Service Selling 153M+ Drivers Licenses

rce
krebsonsecurity.com 2026-08-27 11:04

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

api rce
krebsonsecurity.com 2026-08-14 11:24

Who’s Tracking You? Use This New Service to Find Out

krebsonsecurity.com 2026-08-11 21:28

Microsoft Plugs Nearly 400 Security Holes

krebsonsecurity.com 2026-08-06 17:00

Canadian Man Pleads Guilty in Snowflake Extortions

thumb
darkreading.com 2026-09-30 21:25

Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure

thumb
darkreading.com 2026-09-30 20:51

Trump, Tech Giants Strike Voluntary AI Safety Accord

thumb
darkreading.com 2026-09-30 18:56

As AI Reshapes the SOC Career Ladder, Satisfaction Rises for 91%, but Entry Gets Harder for Nearly Half

blue
thumb
darkreading.com 2026-09-30 15:02

Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net

thumb
darkreading.com 2026-09-30 07:00

South Africa Seeks Help After Cyberattack Targets Air Traffic Control

thumb
darkreading.com 2026-09-29 21:31

Apple Zero-Day Vulnerability Weaponized in Targeted Attacks

thumb
darkreading.com 2026-09-29 21:08

Unsloth Studio Flaw Turns Routine Model Inspection Into Code Execution

thumb
darkreading.com 2026-09-29 17:02

Cloudflare Announces Public Certificate Authority for the Post-Quantum Web

thumb
darkreading.com 2026-09-29 15:12

'NeedyMantis' Provides Long-Term Access to Compromised Networks

thumb
darkreading.com 2026-09-29 14:19

Dual NetScaler Zero-Days Trigger Chaos for Citrix Customers

thumb
darkreading.com 2026-09-28 22:02

Nvidia Launches AI Agent Safety Platform to Prevent Rogue Activities

thumb
darkreading.com 2026-09-28 21:13

One Packet Can Crash OT Servers in Industrial Sectors

thumb
darkreading.com 2026-09-28 20:23

Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts

api rce
thumb
darkreading.com 2026-09-28 18:44

AI Agents Are Privileged Users; Who Is Auditing Their Access?

thumb
darkreading.com 2026-09-28 16:51

Chrome Store Hosts 'Poper Blocker' Spyware Downloaded by Millions

thumb
darkreading.com 2026-09-28 15:33

JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack

rce
thumb
darkreading.com 2026-09-25 20:28

Why the CISO-CFO Relationship Is a Key to Cybersecurity Success

thumb
darkreading.com 2026-09-25 18:39

AI Sandbox Escapes: Why Forensic Readiness Matters More Than Containment

thumb
darkreading.com 2026-09-25 17:56

What We Missed: Google Gemini Joins the AI Escape Party

thumb
darkreading.com 2026-09-25 14:46

Stopping IT Worker Scams Requires Revamped HR Process

rce
thumb
darkreading.com 2026-09-25 07:00

Russia's Hybrid Cyber-Physical War in Europe Heats Up

thumb
darkreading.com 2026-09-24 21:04

'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing

rce
thumb
darkreading.com 2026-09-24 20:32

SectopRAT Returns, Hiding Inside a Legitimate Application

thumb
darkreading.com 2026-09-24 14:44

3 Cyber Threats That Defined the Summer of 2026

Bug Bounty Radar

Hand-picked programs with live scope and standout rewards to help you focus your next responsible disclosure run.

FastAPI Cloud

HackerOne • Updated 2024-05-18

Top reward $20K

Prototype pollution in async workers and GraphQL stitching flaws.

Scope: api.fastapicloud.com, *.fastapicloud.com

Program brief →

Supply Chain Monitor

Bugcrowd • Updated 2024-05-22

Top reward $12K

Dependency confusion, pipeline breakout, and artifact poisoning.

Scope: *.scm.dev, api.scm.dev

Program brief →

Secure Notes

Intigriti • Updated 2024-05-17

Top reward €8K

OAuth misconfigurations, storage isolation, and advanced XSS chains.

Scope: app.securenotes.io, api.securenotes.io

Program brief →

OpenTelemetry Hub

YesWeHack • Updated 2024-05-20

Top reward €10K

Collector escapes, tenant isolation bugs, and SSRF via exporters.

Scope: *.otelhub.dev

Program brief →