CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • The Register
Clop raid on Oracle E-Business Suite started months ago, researchers warn

Security boffins say the Clop cybercriminal gang has been rummaging through Oracle's E-Business Suite (EBS) for months – and now the exploit code's out there for anyone to grab. Oracle's EBS deploymen ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • Help Net Security
Redis patches critical “RediShell” RCE vulnerability, update ASAP! (CVE-2025-49844)

Redis, the company behind the widely used in-memory data structure store of the same name, has released patches for a critical vulnerability (CVE-2025-49844) that may allow attackers full access to th ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • CybersecurityNews
CrowdStrike Warns of New Mass Exploitation Campaign Leveraging Oracle E-Business Suite 0-Day

A widespread campaign observed exploiting a novel zero-day vulnerability in Oracle E-Business Suite (EBS) applications, now tracked as CVE-2025-61882. First observed on August 9, 2025, this unauthenti ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • The Cyber Express
Researchers Uncover 13-Year-Old Redis Flaw Impacting Nearly 330,000 Instances

Researchers have uncovered a 13-year-old critical remote-code-execution flaw in Redis that let attackers escape the product’s Lua sandbox and execute native code on the host, creating a straight line ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • CybersecurityNews
Cisco ASA/FTD 0-Day Vulnerability Exploited for Authentication Bypass – PoC Released

Cisco has released advisories for a zero-day exploit chain affecting its Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) software, which is reportedly being ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • Help Net Security
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)

Resecurity and watchTowr researchers have analyzed the leaked scripts used by attackers to exploit CVE-2025-61882 on internet-facing Oracle ESB instances. Whether the attackers were Cl0p or LAPSUS$, b ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • The Cyber Express
Attackers Deployed Medusa Ransomware via GoAnywhere MFT Zero-Day

Cybercriminals exploited a critical deserialization flaw in Fortra’s GoAnywhere Managed File Transfer (MFT) tool—tracked as CVE-2025-10035—to drop Medusa ransomware, Microsoft disclosed Monday. The ca ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • CybersecurityNews
GoAnywhere 0-Day RCE Vulnerability Exploited in the Wild to Deploy Medusa Ransomware

A critical deserialization flaw in GoAnywhere MFT’s License Servlet, tracked as CVE-2025-10035, has already been weaponized by the Storm-1175 group to execute the Medusa ransomware. The vulnerability ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • security.nl
Redis dicht kritieke kwetsbaarheid die aanvaller code op server laat uitvoeren

De makers van Redis, een cachingoplossing die als databaseserver kan worden gebruikt of kan helpen om de prestaties van databases te verbeteren, hebben een kritieke kwetsbaarheid gepatcht waardoor aan ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)
  • CybersecurityNews
Kibana Crowdstrike Connector Vulnerability Exposes Protected Credentials

Elastic has released a security advisory detailing a medium-severity vulnerability in the Kibana CrowdStrike Connector that could allow for the exposure of sensitive credentials. The flaw, tracked as ...

Published Date: Oct 07, 2025 (1 month, 2 weeks ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8239 Results