CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Daily CyberSecurity
macOS LPE Flaw Resurfaces: .localized Directory Exploited to Hijack Installers and Gain Root Access

A stubborn vulnerability in macOS third-party installers has resurfaced, allowing attackers to hijack privileged processes and gain root access to a system. Discovered by security researcher Csaba Fit ...

Published Date: Dec 16, 2025 (6 hours, 13 minutes ago)
  • Daily CyberSecurity
BlackForce PhaaS Weaponizes React and Stateful Sessions to Bypass MFA & Steal Credentials

A sophisticated new player has entered the Phishing-as-a-Service (PhaaS) market, offering cybercriminals a powerful toolset designed to bypass modern security controls with alarming ease. Dubbed Black ...

Published Date: Dec 16, 2025 (6 hours, 38 minutes ago)
  • Daily CyberSecurity
From Cisco Student Rivalry to Global Hackers: Salt Typhoon Breaches 80+ Telecos for Intelligence

A new report from SentinelLabs sheds light on the origins of “Salt Typhoon,” the hacking group responsible for one of the most brazen intelligence collection efforts of the last decade. The operators, ...

Published Date: Dec 16, 2025 (6 hours, 43 minutes ago)
  • Daily CyberSecurity
Data Disaster: Claude AI Executes rm -rf ~/ and Wipes Developer’s Mac Home Directory

An increasing number of developers are turning to AI-assisted tools to streamline their workflows. Yet as adoption grows, so too do reports of catastrophic failures caused by these tools. In one earli ...

Published Date: Dec 16, 2025 (6 hours, 50 minutes ago)
  • The Register
Amazon security boss blames Russia's GRU for years-long energy-sector hacks

Russia's Main Intelligence Directorate (GRU) is behind a years-long campaign targeting energy, telecommunications, and tech providers, stealing credentials and compromising misconfigured devices hoste ...

Published Date: Dec 15, 2025 (7 hours, 19 minutes ago)
  • BleepingComputer
PornHub extorted after hackers steal Premium member activity data

Adult video platform PornHub is being extorted by the ShinyHunters extortion gang after the search and watch history of its Premium members was reportedly stolen in a recent Mixpanel data breach. Last ...

Published Date: Dec 15, 2025 (9 hours, 26 minutes ago)
  • BleepingComputer
PornHub extorted after hackers steal Premium member activity data

Adult video platform PornHub is being extorted by the ShinyHunters extortion gang after the search and watch history of its Premium members was reportedly stolen in a recent Mixpanel data breach. Last ...

Published Date: Dec 15, 2025 (9 hours, 26 minutes ago)
  • CybersecurityNews
ZnDoor Malware Exploiting React2Shell Vulnerability to Compromise Network Devices

Since December 2025, a concerning trend has emerged across Japanese organizations as attackers exploit a critical vulnerability in React/Next.js applications. The vulnerability, tracked as CVE-2025-55 ...

Published Date: Dec 15, 2025 (12 hours, 10 minutes ago)
  • The Register
China, Iran are having a field day with React2Shell, Google warns

At least five more Chinese spy crews, Iran-linked goons, and financially motivated criminals are now attacking the React2Shell, a maximum-severity flaw in the widely used React JavaScript library, acc ...

Published Date: Dec 15, 2025 (13 hours ago)
  • CybersecurityNews
New PCPcat Exploiting React2Shell Vulnerability to compromise 59,000+ Servers

A new malware campaign called PCPcat has successfully compromised more than 59,000 servers in under 48 hours through targeted exploitation of critical vulnerabilities in Next.js and React frameworks. ...

Published Date: Dec 15, 2025 (13 hours, 7 minutes ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8651 Results