Cyber Newsroom Feed
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

-
seclists.org
APPLE-SA-11-19-2024-1 Safari 18.1.1
Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure <fulldisclosure () seclists org> Date: Tue, 19 Nov 2024 17:39:30 -0700 -----BEGIN PGP SIGNED MESSAGE----- Hash: SH ... Read more

-
seclists.org
St. Poelten UAS | Path Traversal in Korenix JetPort 5601
Full Disclosure mailing list archives St. Poelten UAS | Path Traversal in Korenix JetPort 5601 From: Weber Thomas via Fulldisclosure <fulldisclosure () seclists org> Date: Tue, 19 Nov 2024 10:10:33 +0 ... Read more

-
seclists.org
St. Poelten UAS | Multiple Stored Cross-Site Scripting in SEH utnserver Pro
Full Disclosure mailing list archives St. Poelten UAS | Multiple Stored Cross-Site Scripting in SEH utnserver Pro From: Weber Thomas via Fulldisclosure <fulldisclosure () seclists org> Date: Tue, 19 N ... Read more

-
seclists.org
Apple web content filter bypass allows unrestricted access to blocked content (macOS/iOS/iPadOS/visionOS/watchOS)
Full Disclosure mailing list archives From: Nosebeard Labs <labs () nosebeard co> Date: Fri, 15 Nov 2024 22:17:54 +0100 Dear colleagues, Nosebeard Labs is pleased to share its latest advisory, detaili ... Read more

-
BleepingComputer
CISA says BianLian ransomware now focuses only on data theft
The BianLian ransomware operation has shifted its tactics, becoming primarily a data theft extortion group, according to an updated advisory from the U.S. Cybersecurity & Infrastructure Security Agenc ... Read more

-
TheCyberThrone
CISA KEV Catalog Update Part VI – November 2024
The US CISA has added the following vulnerabilities to its Known Exploited Vulnerabilities Catalog based on the evidence of active exploitationCVE-2024-44308 With no CVSS score assigned yet, Apple iOS ... Read more

-
The Hacker News
Warning: Over 2,000 Palo Alto Networks Devices Hacked in Ongoing Attack Campaign
Vulnerability / Cyber Attack As many as 2,000 Palo Alto Networks devices are estimated to have been compromised as part of a campaign abusing the newly disclosed security flaws that have come under ac ... Read more

-
The Register
'Alarming' bugs lay low in Ubuntu Server utility for 10 years
Researchers at Qualys refuse to release exploit code for five bugs in the Linux world's needrestart utility that allow unprivileged local attackers to gain root access without any user interaction. Th ... Read more

-
Cybersecurity News
Researchers Uncover XenoRAT’s New Tactics Leveraging Excel XLL Files and Advanced Obfuscation
Hunt researchers have discovered a novel deployment of XenoRAT, an open-source remote access tool (RAT), leveraging Excel XLL files and advanced obfuscation methods. Known for targeting gamers and pos ... Read more

-
TheCyberThrone
Oracle Agile PLM Vulnerability CVE-2024-21287 Exploited in wild
Oracle has released an alert about a critical vulnerability in its Agile Product Lifecycle Management (PLM) software, allows attackers to remotely access sensitive files without any authentication, an ... Read more