Cyber Newsroom Feed
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

-
seclists.org
CVE-2024-48939: Unauthorized enabling of API in Paxton Net2 software
Full Disclosure mailing list archives From: Jeroen Hermans via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 20 Oct 2024 12:37:31 +0200 CloudAware Security Advisory CVE-2024-48939: Unauth ... Read more

-
Cybersecurity News
Microsoft Windows Flaw: CVE-2024-30090 PoC Exploit Published, Posing SYSTEM Privilege Threat
Security researcher Angelboy (@scwuaptx) with DEVCORE has identified a privilege escalation vulnerability in Microsoft’s Kernel Streaming service. The vulnerability, tracked as CVE-2024-30090 and assi ... Read more

-
Cybersecurity News
CVE-2024-21216 (CVSS 9.8): Oracle WebLogic Flaw That Could Give Attackers Full Control
Oracle has recently rolled out its October 2024 Critical Patch Update (CPU), addressing 329 vulnerabilities across a variety of products. Among these are five severe vulnerabilities within the Oracle ... Read more

-
Dark Reading
DPRK Uses Microsoft Zero-Day in No-Click Toast Attacks
Source: Eric Anthony Johnson via Alamy Stock PhotoThe North Korea-backed advanced persistent threat known as APT37 exploited a zero-day vulnerability in Microsoft's Internet Explorer Web browser over ... Read more

-
Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
“HM Surf” macOS Flaw Lets Attackers Access Camera and Mic – Patch Now!
Researchers at Microsoft discovered a new macOS vulnerability, “HM Surf” (CVE-2024-44133), which bypasses TCC protections, allowing unauthorized access to sensitive data like the camera and microphone ... Read more

-
TheCyberThrone
BIG-IP F5 affected by a vulnerability CVE-2024-45844
A critical vulnerability has been identified in F5 BIG-IP that could allow authenticated attackers to bypass access control restrictions and potentially compromise the system.The vulnerability tracked ... Read more

-
Help Net Security
Week in review: 87k+ Fortinet devices still open to attack, red teaming tool used for EDR evasion
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 87,000+ Fortinet devices still open to attack, are yours among them? (CVE-2024-23113) Last week, CISA ... Read more

-
The Hacker News
Hackers Exploit Roundcube Webmail XSS Vulnerability to Steal Login Credentials
Vulnerability / Email Security Unknown threat actors have been observed attempting to exploit a now-patched security flaw in the open-source Roundcube webmail software as part of a phishing attack des ... Read more

-
TheCyberThrone
The CyberThrone most exploited vulnerabilities review – October 19, 2024
This blog series is a brand new from TheCyberThrone. Starting this week, the most exploited vulnerabilities in the week will be discussed. Its based on the exploitation by the threat actors, vulnerabl ... Read more

-
TheCyberThrone
TheCyberThrone Security Weekly Review – October 19, 2024
Welcome to TheCyberThrone cybersecurity week in review will be posted covering the important security happenings. This review is for the weeks ending Saturday, October 5, 12, 2024.GitHub fixes Critica ... Read more