CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Kaspersky
Attackers exploiting a patched FortiClient EMS vulnerability in the wild

Introduction During a recent incident response, Kaspersky’s GERT team identified a set of TTPs and indicators linked to an attacker that infiltrated a company’s networks by targeting a Fortinet vulner ...

Published Date: Dec 19, 2024 (1 year ago)
  • cert.pl
Vulnerability in Govee Home mobile application (Android & iOS)

CVE ID CVE-2023-4617 Publication date 19 December 2024 Vendor Govee Product Govee Home Vulnerable versions All before 5.9 Vulnerability type (CWE) Incorrect Authorization (CWE-863) Report source NASK ...

Published Date: Dec 19, 2024 (1 year ago)
  • The Hacker News
Fortinet Warns of Critical FortiWLM Flaw That Could Lead to Admin Access Exploits

Vulnerability / Network Security Fortinet has issued an advisory for a now-patched critical security flaw impacting Wireless LAN Manager (FortiWLM) that could lead to disclosure of sensitive informati ...

Published Date: Dec 19, 2024 (1 year ago)
  • The Register
Critical security hole in Apache Struts under exploit

A critical security hole in Apache Struts 2 – patched last week – is currently being exploited using publicly available proof-of-concept (PoC) code. Struts is a Java-based web application framework wi ...

Published Date: Dec 17, 2024 (1 year ago)
  • The Cyber Express
New Android Spyware Detected in Serbian Surveillance Investigation

In February 2024, Serbian journalist Slaviša Milanov was taken to a police station following what seemed like a routine traffic stop. But after his release, the phone that he’d been asked to leave wit ...

Published Date: Dec 17, 2024 (1 year ago)
  • cybereason.com
CVE-2024-55956: Zero-Day Vulnerability in Cleo Software Could Lead to Data Theft

Key Takeaways Zero-day vulnerability was discovered in 3 Cleo products, tracked as CVE-2024-55956 Cleo is the developer of various managed file transfer platforms with approximately 4,000 customers, m ...

Published Date: Dec 17, 2024 (1 year ago)
  • TheCyberThrone
Detailing Critical Microsoft CVE-2024-49112 Vulnerability

Microsoft has recently disclosed a critical Remote Code Execution (RCE) vulnerability in its Lightweight Directory Access Protocol (LDAP) service, identified as CVE-2024-49112 Released as part of the ...

Published Date: Dec 17, 2024 (1 year ago)
  • BleepingComputer
New critical Apache Struts flaw exploited to find vulnerable servers

A recently patched critical Apache Struts 2 vulnerability tracked as CVE-2024-53677 is actively exploited using public proof-of-concept exploits to find vulnerable devices. Apache Struts is an open-so ...

Published Date: Dec 17, 2024 (1 year ago)
  • security.nl
'Tienduizenden SonicWall-firewalls online bevatten kritiek lek of zijn end-of-life'

Tienduizenden firewalls van fabrikant SonicWall die vanaf het internet benaderbaar zijn bevatten kritieke kwetsbaarheden of zijn end-of-life. Dat stelt securitybedrijf Bishop Fox op basis van eigen on ...

Published Date: Dec 17, 2024 (1 year ago)
  • Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
Hackers Use Fake PoCs on GitHub to Steal WordPress Credentials, AWS Keys

SUMMARY Fake PoCs on GitHub: Cybercriminals used trojanized proof-of-concept (PoC) code on GitHub to deliver malicious payloads to unsuspecting users, including researchers and security professionals. ...

Published Date: Dec 17, 2024 (1 year ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8838 Results