Cyber Newsroom Feed
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
- New Jetpack Site
Vulnerabilità su Checkpoint VPN sfruttata in the wild
05/30/2024 PROTO: N240530 CERT-Yoroi di Tinexta Cyber informa che è stata resa nota una vulnerabilità sul prodotto VPN di CheckPoint (comprensivo di IPsec VPN, Remote Access VPN e Mobile Access) ident ... Read more
- Trend Micro
Decoding Water Sigbin's Latest Obfuscation Tricks
APT & Targeted Attacks Water Sigbin (aka the 8220 Gang) exploited Oracle WebLogic vulnerabilities to deploy a cryptocurrency miner using a PowerShell script. The threat actor also adopted new techniqu ... Read more
- New Jetpack Site
Vulnerabilità critica in Zabbix
05/23/2024 PROTO: N240523 CERT-Yoroi informa che è stata resa nota una vulnerabilità critica su Zabbix che consente ad utenti malintenzionati di eseguire del codice da remoto arbitrario e privilege es ... Read more
- Google Cloud
IOC Extinction? China-Nexus Cyber Espionage Actors Use ORB Networks to Raise Cost on Defenders
Written by: Michael Raggi Mandiant Intelligence is tracking a growing trend among China-nexus cyber espionage operations where advanced persistent threat (APT) actors utilize proxy networks known as “ ... Read more
- cert.pl
Vulnerability in Online Shopping System Advanced software
CVE ID CVE-2024-3579 Publication date 14 May 2024 Vendor Puneeth Reddy Product Online Shopping System Advanced Vulnerable versions All Vulnerability type (CWE) Improper Neutralization of Input During ... Read more
- cert.pl
Vulnerability in Ant Media Server software
CVE ID CVE-2024-3462 Publication date 13 May 2024 Vendor Ant Media Product Ant Media Server Community Edition Vulnerable versions all through 2.9.0 Vulnerability type (CWE) Incorrect Authorization (CW ... Read more
- Darktrace
Confluence CVE-2022-26134 Zero-Day: Detection & Guidance
What is WarmCookie malware?WarmCookie, also known as BadSpace [2], is a two-stage backdoor tool that provides functionality for threat actors to retrieve victim information and launch additional paylo ... Read more
- New Jetpack Site
Vulnerabilità risolte in GOlang
05/10/2024 PROTO: N240509 CERT-Yoroi informa che sono state rese note due vulnerabilità, di cui una con gravità critica, sul linguaggio di programmazione GO, noto linguaggio di programmazione ampiamen ... Read more
- Zero Day Initiative
CVE-2024-21115: An Oracle VirtualBox LPE Used to Win Pwn2Own
None ... Read more
- cert.pl
Vulnerabilities in CemiPark software
CVE ID CVE-2024-4423 Publication date 09 May 2024 Vendor CEMI Tomasz Pawełek Product CemiPark Vulnerable versions 4.5, 4.7, 5.03 and potentially others Vulnerability type (CWE) Improper Neutralization ... Read more