CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Zero Day Initiative
The December 2025 Security Update Review

It’s the final patch Tuesday of 2025, but that doesn’t make it any less exciting. Put aside your holiday planning for just a moment as we review the latest security offering from Adobe and Microsoft. ...

Published Date: Dec 09, 2025 (3 days, 4 hours ago)
  • The Hacker News
North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware

Threat actors with ties to North Korea have likely become the latest to exploit the recently disclosed critical security React2Shell flaw in React Server Components (RSC) to deliver a previously undoc ...

Published Date: Dec 09, 2025 (3 days, 4 hours ago)
  • CybersecurityNews
Microsoft December 2025 Patch Tuesday – 56 Vulnerabilities Fixed Including 3 Zero-days

CVE-2025-62554Microsoft Office Remote Code Execution VulnerabilityCriticalRemote Code ExecutionAccess of resource using incompatible type (‘type confusion’) in Microsoft Office allows an unauthorized ...

Published Date: Dec 09, 2025 (3 days, 5 hours ago)
  • CybersecurityNews
Makop Ransomware Exploits RDP Systems with AV Killer and Other Exploits

Makop ransomware, a strain of the Phobos malware family first spotted in 2020, continues to evolve into a significant threat to businesses worldwide. Recent analysis reveals that attackers are combini ...

Published Date: Dec 09, 2025 (3 days, 5 hours ago)
  • CybersecurityNews
Ivanti Security Update: Patch for Code Execution Vulnerabilities in Endpoint Manager

Ivanti has officially released urgent security updates for its Endpoint Manager (EPM) solution to address four distinct security flaws. The latest advisory highlights one critical vulnerability and th ...

Published Date: Dec 09, 2025 (3 days, 6 hours ago)
  • BleepingComputer
Ivanti warns of critical Endpoint Manager code execution flaw

American IT software company Ivanti warned customers today to patch a newly disclosed vulnerability in its Endpoint Manager (EPM) solution that could allow attackers to execute code remotely. Ivanti d ...

Published Date: Dec 09, 2025 (3 days, 6 hours ago)
  • BleepingComputer
North Korean hackers exploit React2Shell flaw in EtherRAT malware attacks

A new malware implant called EtherRAT, deployed in a recent React2Shell attack, runs five separate Linux persistence mechanisms and leverages Ethereum smart contracts for communication with the attack ...

Published Date: Dec 09, 2025 (3 days, 7 hours ago)
  • CybersecurityNews
Critical Emby Server Vulnerability Let Attackers Gain Admin Access

A critical vulnerability has been discovered in Emby Server that allows unauthenticated attackers to gain full administrative access to affected systems. Tracked as CVE-2025-64113 with a severity scor ...

Published Date: Dec 09, 2025 (3 days, 9 hours ago)
  • CybersecurityNews
Ruby SAML Library Vulnerability Let Attackers Bypass Authentication

A critical vulnerability has been discovered in the Ruby SAML library that could allow attackers to bypass authentication mechanisms in affected applications completely. The flaw, tracked as CVE-2025- ...

Published Date: Dec 09, 2025 (3 days, 9 hours ago)
  • CybersecurityNews
Zoom Rooms for Windows and macOS Flaws Enable Privilege Escalation and Sensitive Data Leaks

Zoom has disclosed two critical security vulnerabilities in its Zoom Rooms software for Windows and macOS, which could allow attackers with local access to escalate privileges or expose sensitive info ...

Published Date: Dec 09, 2025 (3 days, 10 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8590 Results