CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
Daily CyberSecurity
Acreed: The New Infostealer Using BNB Smart Chain and Steam Profiles for Stealthy C2
The cybercriminal underground is witnessing a dramatic shift with the emergence of Acreed, a new infostealer that is rapidly gaining traction in Russian-speaking forums. According to Intrinsec’s lates ... Read more
-
The Cyber Express
China-linked RedNovember Campaign Shows Importance of Patching Edge Devices
A long-running threat campaign linked to a Chinese state-sponsored cyber-espionage group highlights the importance of patching and protecting edge devices and internet-facing assets. RedNovember – pre ... Read more
-
NVISO Labs
You name it, VMware elevates it (CVE-2025-41244)
On September 29th, 2025, Broadcom disclosed a local privilege escalation vulnerability, CVE-2025-41244, impacting VMware’s guest service discovery features. NVISO has identified zero-day exploitation ... Read more
-
Help Net Security
Akira ransomware: From SonicWall VPN login to encryption in under four hours
Four hours or less: that’s how long it takes for Akira affiliates to break into organizations and deploy the ransomware on their systems, Arctic Wolf researchers have warned. Armed with SonicWall SSL ... Read more
-
CybersecurityNews
New TamperedChef Malware Leverages Productivity Tools to Gain Access and Exfiltrate Sensitive Data
A sophisticated malware campaign has emerged that weaponizes seemingly legitimate productivity tools to infiltrate systems and steal sensitive information. The TamperedChef malware represents a concer ... Read more
-
The Hacker News
⚡ Weekly Recap: Cisco 0-Day, Record DDoS, LockBit 5.0, BMC Bugs, ShadowV2 Botnet & More
Sep 29, 2025Ravie LakshmananCybersecurity / Hacking News Cybersecurity never stops—and neither do hackers. While you wrapped up last week, new attacks were already underway. From hidden software bug ... Read more
-
CybersecurityNews
WhatsApp 0-Click Vulnerability Exploited Using Malicious DNG File
Security researchers detailed a zero-click remote code execution (RCE) vulnerability affecting WhatsApp on Apple’s iOS, macOS, and iPadOS platforms. The attack chain exploits two distinct vulnerabilit ... Read more
-
cert.pl
Vulnerability in CivetWeb software
Vulnerability in CivetWeb software CVE ID CVE-2025-9648 Publication date 29 September 2025 Vendor CivetWeb Product CivetWeb Vulnerable versions All before 1.08 Vulnerability type (CWE) Improper Neutra ... Read more
-
CybersecurityNews
SUSE Rancher Vulnerabilities Let Attackers Lockout the Administrators Account
A critical flaw in SUSE Rancher’s user management module allows privileged users to disrupt administrative access by modifying usernames of other accounts. Tracked as CVE-2024-58260, this vulnerabilit ... Read more
-
The Cyber Express
Google Project Zero Exposes ASLR Bypass Vulnerability in Apple’s Serialization Framework
Google Project Zero has revealed a new technique capable of bypassing Address Space Layout Randomization (ASLR) protections on Apple devices. The finding, published by security researcher Jann Horn, s ... Read more