CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 10 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
The Hacker News
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, bu ...
-
The Cyber Express
Attackers Exploit Unpatched Magento Zero-Day to Backdoor Online Stores
Attackers are exploiting an unpatched remote code execution flaw in Adobe Commerce and Magento Open Source to install persistent backdoors on e-commerce sites, Dutch security firm Sansec reported, wit ...
-
The Cyber Express
Attackers Exploited MikroTik RouterOS Flaws a Day Before Patches Shipped
Attackers began compromising internet-exposed MikroTik routers on Sept. 2, a day before the Latvian vendor released fixes and three days before national authorities published the technical detail defe ...
-
The Hacker News
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released
A TantoSec proof-of-concept turns an AES-CBC "padding oracle" in Telerik UI for ASP.NET AJAX into unauthenticated remote code execution — but only against applications in a specific non-default config ...
-
security.nl
N-able waarschuwt voor misbruik van kritiek lek in N-central RMM-servers
Softwarebedrijf N-able waarschuwt voor actief misbruik van een kritieke kwetsbaarheid in N-central, een remote monitoring en management' (RMM) oplossing. Via het beveiligingslek (CVE-2026-86218) kan e ...
-
security.nl
MikroTik-routers via kritieke SSH-kwetsbaarheden op afstand overgenomen
Aanvallers maken actief misbruik van kritieke SSH-kwetsbaarheden om routers van fabrikant MikroTik op afstand en zonder authenticatie over te nemen, zo waarschuwen MikroTik en de Poolse overheid. Mikr ...
-
The Hacker News
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw
Every on-premises N-central build below 2026.3.1.14 — including servers updated to Hotfix 3 a day earlier — needs Hotfix 4. N-able's incident notice says the flaw has been exploited in the wild; its r ...
-
The Cyber Express
Liquid Network Hackers Demand Bug Fix Before Returning $320M BTC
The Liquid Network security incident has taken an unusual turn after the unidentified actors behind the theft of nearly 4,000 BTC offered to return “most” of the funds — but only after the vulnerabili ...
-
security.nl
Kritiek beveiligingslek in Citrix NetScaler actief misbruikt bij aanvallen
Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in Citrix NetScaler, zo waarschuwen het Belgische Centrum voor Cybersecurity (CCB) en cybersecuritybedrijf Previdian. Citrix kwam op 19 ...
-
The Hacker News
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerabilit ...