CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
Proofpoint
ta458 roundpress exploits
July 23, 2026 Greg Lesnewich, Nick Attfield, Konstantin Klinger, Saher Naumaan, Mark Kelly, and the Proofpoint Threat Research Team This is part 2 of a 2-part blog series Proofpoint is publishing abou ...
-
security.nl
AIVD waarschuwt voor XSS-aanvallen op gebruikers van Zimbra-webmail
Gebruikers van Zimbra-webmail zijn het doelwit van cross-site scripting (XSS)-aanvallen waarbij wordt geprobeerd om e-mails en andere informatie te stelen, zo waarschuwen de AIVD, MIVD en inlichtingen ...
-
TheCyberThrone
CISA adds six vulnerabilities to KEV – July 2026
On 21 and 22 July 2026, the Cybersecurity and Infrastructure Security Agency (CISA) expanded its Known Exploited Vulnerabilities (KEV) Catalog by adding six vulnerabilities spanning enterprise collabo ...
-
SentinelOne
Mount Here, Read There: Twin Path Traversal CVEs in Kubernetes Storage
filepath.Join was never designed to be a security boundary. We found two CSI drivers that shipped on the assumption it was, and the result was cross-tenant data access with optional node destruction, ...
-
security.nl
Nieuw Linux-lek kan lokale aanvaller root maken op systemen met XFS
Onderzoekers waarschuwen voor een nieuwe kwetsbaarheid in de Linux-kernel waardoor een lokale aanvaller root kan worden op systemen met een XFS-bestandssysteem. Miljoenen systemen lopen mogelijk risic ...
-
The Hacker News
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Lati ...
-
The Hacker News
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager ...
-
security.nl
Grootschalig misbruik van kritiek Microsoft SharePoint-lek verwacht
Onderzoekers verwachten dat een kritieke kwetsbaarheid in Microsoft SharePoint, waardoor een ongeauthenticeerde aanvaller code op kwetsbare servers kan uitvoeren, op grote schaal zal worden misbruikt. ...
-
The Hacker News
Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs
RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persistent root access. Q ...
-
security.nl
Check Point waarschuwt voor actief misbruik van kritiek SmartConsole-lek
Cybersecuritybedrijf Check Point waarschuwt voor actief misbruik van een kritieke kwetsbaarheid waardoor aanvallers via SmartConsole als admin op een beveiligingsoplossing van het bedrijf kunnen inlog ...