CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • The Register
Microsoft quietly shuts down Windows shortcut flaw after years of espionage abuse

Microsoft has quietly closed off a critical Windows shortcut file bug long abused by espionage and cybercrime networks. The flaw, tracked as CVE-2025-9491, allows malicious .lnk shortcut files to hide ...

Published Date: Dec 04, 2025 (5 days, 8 hours ago)
  • hackread.com
WebXR Flaw Hits 4 Billion Chromium Users, Update Your Browser Now

A serious security vulnerability in the underlying technology for most of the world’s web was recently discovered in the underlying code for most of the world’s web browsers, putting over 4 billion de ...

Published Date: Dec 04, 2025 (5 days, 10 hours ago)
  • CybersecurityNews
PickleScan 0-Day Vulnerabilities Enable Arbitrary Code Execution via Malicious PyTorch Models

Multiple critical zero‑day vulnerabilities in PickleScan, a popular open‑source tool used to scan machine learning models for malicious code. PickleScan is widely used in the AI world, including by Hu ...

Published Date: Dec 04, 2025 (5 days, 10 hours ago)
  • CybersecurityNews
iOS Zero-Day Exploit Chain Leveraged by Mercenary Spyware for Device Surveillance

A new iOS zero-day exploit chain has been linked to mercenary spyware used for silent device surveillance against high‑risk users. The operation, attributed to the commercial surveillance vendor Intel ...

Published Date: Dec 04, 2025 (5 days, 11 hours ago)
  • Help Net Security
Max-severity vulnerability in React, Node.js patched, update ASAP (CVE-2025-55182)

A critical vulnerability (CVE-2025-55182) in React Server Components (RSC) may allow unauthenticated attackers to achieve remote code exection on the application server, the React development team war ...

Published Date: Dec 04, 2025 (5 days, 11 hours ago)
  • The Hacker News
5 Threats That Reshaped Web Security This Year [2025]

As 2025 draws to a close, security professionals face a sobering realization: the traditional playbook for web security has become dangerously obsolete. AI-powered attacks, evolving injection techniqu ...

Published Date: Dec 04, 2025 (5 days, 11 hours ago)
  • TheCyberThrone
King Addons vulnerability CVE-2025-8489 for Elementor Plugin

December 4, 2025A critical security vulnerability, tracked as CVE-2025-8489, has been discovered in the popular King Addons for Elementor WordPress plugin, affecting versions from 24.12.92 through 51. ...

Published Date: Dec 04, 2025 (5 days, 12 hours ago)
  • CybersecurityNews
Hackers Leverage Velociraptor DFIR Tool for Stealthy C2 & Ransomware Delivery

Legitimate administrative tools are increasingly becoming the weapon of choice for sophisticated threat actors aiming to blend in with normal network activity. A recent campaign has highlighted this d ...

Published Date: Dec 04, 2025 (5 days, 14 hours ago)
  • Daily CyberSecurity
AWS Trainium Chip Business Hits Multi-Billion Revenue, Challenging NVIDIA’s Pricing

Under the near-monopoly that NVIDIA holds in the AI acceleration market, Amazon has unmistakably carved out a path of its own. According to CEO Andy Jassy, AWS’s in-house AI compute chip business buil ...

Published Date: Dec 04, 2025 (5 days, 14 hours ago)
  • security.nl
React waarschuwt voor kritieke RCE-kwetsbaarheid in Server Components

De ontwikkelaars van React alsmede allerlei overheidsinstanties en techbedrijven wereldwijd waarschuwen voor een kritieke kwetsbaarheid in React Server Components waardoor remote code execution (RCE) ...

Published Date: Dec 04, 2025 (5 days, 14 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8484 Results