CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
CybersecurityNews
FortiSandbox OS command injection Vulnerability Let Attackers execute Malicious code
Fortinet has released a critical security update for its FortiSandbox analysis appliances to fix a dangerous vulnerability. If left unpatched, this flaw could allow attackers to take control of the un ...
-
security.nl
Microsoft Outlook-lek laat aanvaller code uitvoeren bij reply op malafide e-mail
Een kwetsbaarheid in Microsoft Outlook maakt het mogelijk voor aanvallers om op afstand code op de systemen van slachtoffers uit te voeren als die een malafide e-mail beantwoorden. Daarnaast kunnen tw ...
-
Daily CyberSecurity
EtherRAT Malware Hijacks Ethereum Blockchain for Covert C2 After React2Shell Exploit
In a alarming escalation of the “React2Shell” crisis, security researchers have uncovered a sophisticated new malware strain that leverages the Ethereum blockchain to hide its tracks. Dubbed EtherRAT, ...
-
CybersecurityNews
CISA Warns of WinRAR 0-Day RCE Vulnerability Exploited in Attacks
A high-priority warning regarding a critical security flaw in WinRAR, the popular file compression tool used by millions of Windows users. The vulnerability, tracked as CVE-2025-6218, is currently bei ...
-
The Hacker News
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two Zero-Days
Microsoft closed out 2025 with patches for 56 security flaws in various products across the Windows platform, including one vulnerability that has been actively exploited in the wild. Of the 56 flaws, ...
-
security.nl
Microsoft dicht aangevallen Windows-lek dat aanvaller SYSTEM-rechten geeft
Tijdens de patchdinsdag van december heeft Microsoft een actief aangevallen kwetsbaarheid in Windows verholpen waardoor een aanvaller die al toegang tot een systeem heeft SYSTEM-rechten kan krijgen. H ...
-
CrowdStrike.com
December 2025 Patch Tuesday: One Critical Zero-Day, Two Publicly Disclosed Vulnerabilities Among 57 CVEs
Microsoft has addressed 57 vulnerabilities in its December 2025 security update release. This month's updates address one actively exploited Important zero-day, two publicly disclosed Important zero-d ...
-
Huntress
Active Exploitation of Gladinet CentreStack/Triofox Insecure Cryptography Vulnerability
Acknowledgments: Special thanks to John Hammond for his contributions to this investigation and write-up. TL;DR: The AES implementation of Gladinet’s CentreStack and Triofox products contains hardcode ...
-
The Hacker News
Fortinet, Ivanti, and SAP Issue Urgent Patches for Authentication and Code Execution Flaws
Fortinet, Ivanti, and SAP have moved to address critical security flaws in their products that, if successfully exploited, could result in an authentication bypass and code execution. The Fortinet vul ...
-
Daily CyberSecurity
The “Surprise Metric”: Google’s New AI Architecture Outperforms GPT-4 in Memory
Do you recall the familiar frustration of reading a lengthy article only to forget the earlier sections by the time you reach the end? It appears that even AI now seeks to remedy this problem. Google’ ...