CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Proofpoint
TA488 Targets Zimbra Mailservers with Half-Click Exploits

July 24, 2026 Greg Lesnewich, Nick Attfield, Konstantin Klinger, Saher Naumaan, Mark Kelly, and the Proofpoint Threat Research Team Proofpoint is releasing this report in coordination with NSA and FBI ...

Published Date: Jul 24, 2026 (0 minutes ago)
  • cert.pl
Vulnerabilities in GNU coreutils software

Vulnerabilities in GNU coreutils software CVE ID CVE-2026-56391 Publication date 24 July 2026 Vendor GNU Product coreutils Vulnerable versions From 9.5 through 9.11 Vulnerability type (CWE) Out-of-bou ...

Published Date: Jul 24, 2026 (0 minutes ago)
  • The Hacker News
Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that's dressed up as a Notepad++ plugin to compromise Windows system ...

Published Date: Jul 24, 2026 (1 hour, 41 minutes ago)
  • The Cyber Express
Russian-Linked Hackers Target Zimbra Users With Zero-Day Exploit

A Zimbra phishing campaign attributed to Russian state-supported cyber actors has targeted Western government and commercial organizations, exploiting CVE-2025-66376 to access sensitive email data and ...

Published Date: Jul 24, 2026 (2 hours, 18 minutes ago)
  • The Hacker News
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes

A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The payload goes after the last 90 days of email, the organizat ...

Published Date: Jul 23, 2026 (13 hours, 56 minutes ago)
  • security.nl
Clop-ransomwaregroep perst bedrijven af met gehackte PTC Windchill-server

De criminelen achter de Clop-ransomware hebben meerdere bedrijven afgeperst, waarbij ze beweren allerlei vertrouwelijke data te hebben gestolen. Als de ondernemingen niet betalen dreigen de criminelen ...

Published Date: Jul 23, 2026 (17 hours, 8 minutes ago)
  • Proofpoint
ta458 roundpress exploits

July 23, 2026 Greg Lesnewich, Nick Attfield, Konstantin Klinger, Saher Naumaan, Mark Kelly, and the Proofpoint Threat Research Team This is part 2 of a 2-part blog series Proofpoint is publishing abou ...

Published Date: Jul 23, 2026 (17 hours, 32 minutes ago)
  • security.nl
AIVD waarschuwt voor XSS-aanvallen op gebruikers van Zimbra-webmail

Gebruikers van Zimbra-webmail zijn het doelwit van cross-site scripting (XSS)-aanvallen waarbij wordt geprobeerd om e-mails en andere informatie te stelen, zo waarschuwen de AIVD, MIVD en inlichtingen ...

Published Date: Jul 23, 2026 (17 hours, 44 minutes ago)
  • TheCyberThrone
CISA adds six vulnerabilities to KEV – July 2026

On 21 and 22 July 2026, the Cybersecurity and Infrastructure Security Agency (CISA) expanded its Known Exploited Vulnerabilities (KEV) Catalog by adding six vulnerabilities spanning enterprise collabo ...

Published Date: Jul 23, 2026 (19 hours, 27 minutes ago)
  • SentinelOne
Mount Here, Read There: Twin Path Traversal CVEs in Kubernetes Storage

filepath.Join was never designed to be a security boundary. We found two CSI drivers that shipped on the assumption it was, and the result was cross-tenant data access with optional node destruction, ...

Published Date: Jul 23, 2026 (19 hours, 31 minutes ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 11879 Results