CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
The Hacker News
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by coming in over the private cellular network the local grid operator uses to reac ...
-
The Hacker News
BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily dis ...
-
TheCyberThrone
StormEncryptor Ransomware Dissection
TL;DRStorm-1175, a financially motivated ransomware actor tracked by Microsoft, has introduced a custom ransomware payload dubbed StormEncryptor, marking a notable evolution from its previous reliance ...
-
The Hacker News
China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called StormEncryptor. The use of StormEncryptor ...
-
The Hacker News
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default. That pretty much covers the mood thi ...
-
security.nl
Microsoft vermoedt dat criminelen ransomware verspreiden via N-Central-lek
Criminelen gebruiken vermoedelijk een beveiligingslek in N-Central van N-Able om organisaties met ransomware te infecteren, zo stelt Microsoft op X. Het gaat om een beveiligingslek aangeduid als CVE-2 ...
-
cert.pl
Vulnerability in Magnolia CMS software
Vulnerability in Magnolia CMS software CVE ID CVE-2026-18478 Publication date 10 August 2026 Vendor Magnolia DXP Product Magnolia CMS Vulnerable versions From 6.3.0 to 6.3.10 Vulnerability type (CWE) ...
-
The Hacker News
New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist ...
-
cert.pl
Vulnerability in entr software
Vulnerability in entr software CVE ID CVE-2026-18370 Publication date 10 August 2026 Vendor eradman Product entr Vulnerable versions All through 5.8 Vulnerability type (CWE) Heap-based buffer overflow ...
-
The Hacker News
TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore
The threat actor known as Head Mare has been observed weaponizing security flaws in unpatched TrueConf servers once again in attacks targeting Russian companies spanning instrumentation, electronics, ...