Cyber Newsroom Feed

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Cybersecurity News
0-Day Flaw CVE-2024-38200 in Microsoft Office Exposes NTLMv2 Hashes: PoC Exploit Released

A discovered zero-day vulnerability is putting Microsoft Office users at risk. Security researcher Metin Yunus Kandemir recently published the technical details and a proof-of-concept (PoC) exploit th ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Cybersecurity News
CVE-2024-20432 (CVSS 9.9): Cisco Nexus Dashboard Fabric Controller Exposed to RCE

Cisco has issued a security advisory addressing a critical vulnerability (CVE-2024-20432) in its Nexus Dashboard Fabric Controller (NDFC). This flaw, which carries a severity rating of 9.9 out of 10 o ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Cybersecurity News
CUPS Exploit Turns Common Devices into DDoS Weapons

In a recent revelation, researchers at Akamai have identified a new attack vector exploiting vulnerabilities in the Common Unix Printing System (CUPS). This discovery highlights how everyday devices, ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • TheCyberThrone
CISA adds CVE-2024-29824 to its KEV Catalog

The US CISA has added Ivanti EPM flaw to its Known Exploited Vulnerabilities Catalog based on evidence of active exploitation.CVE-2024-29824 Ivanti Endpoint Manager (EPM) SQL Injection Vulnerability:  ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Cybersecurity News
CVE-2024-47374: LiteSpeed Cache Plugin Flaw Threatens Millions of WordPress Sites

A significant security vulnerability has been discovered in the LiteSpeed Cache plugin for WordPress, a widely used tool with over 6 million active installations. The flaw is an unauthenticated stored ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Cybersecurity News
DrayTek Patched Multi Flaws in Routers, Including CVE-2024-41592 (CVSS 10.0)

Potential attack scenarios | Image: ForescoutExperts from Forescout have uncovered 14 vulnerabilities in DrayTek routers, potentially allowing malicious actors to gain full access to these devices and ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Dark Reading
Near-'perfctl' Fileless Malware Targets Millions of Linux Servers

Source: J Poulssen via Alamy Stock PhotoA multipurpose and mysterious malware dropper has been terrorizing Linux servers worldwide for years, infecting untold thousands of victims with cryptomining an ... Read more

Published Date: Oct 03, 2024 (2 months, 2 weeks ago)
  • Ars Technica
Attackers exploit critical vulnerability recently patched in Zimbra servers

Attackers are actively exploiting a critical vulnerability in mail servers sold by Zimbra in an attempt to remotely execute malicious commands that install a backdoor, researchers warn. The vulnerabil ... Read more

Published Date: Oct 02, 2024 (2 months, 2 weeks ago)
  • Ars Technica
Attackers exploit critical Zimbra vulnerability using cc’d email addresses

Attackers are actively exploiting a critical vulnerability in mail servers sold by Zimbra in an attempt to remotely execute malicious commands that install a backdoor, researchers warn. The vulnerabil ... Read more

Published Date: Oct 02, 2024 (2 months, 2 weeks ago)
  • The Register
700K+ DrayTek routers are sitting ducks on the internet, open to remote hijacking

Fourteen newly found bugs in DrayTek Vigor routers — including one critical remote-code-execution flaw that received a perfect 10 out of 10 CVSS severity rating — could be abused by crooks looking to ... Read more

Published Date: Oct 02, 2024 (2 months, 2 weeks ago)

Filters

Showing 10 of 2618 Results
© cvefeed.io
Latest DB Update: Dec. 21, 2024 15:36