CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • huntress.com
Netscaler Exploitation to Social Engineering: Mapping Convergence of Adversary Tradecraft Across Victims | Huntress

The following write-up and analysis is thanks to Matthew Brennan, Harlan Carvey, Anthony Smith, Craig Sweeney, and Joe Slowik. BackgroundHuntress periodically performs reviews of identified incidents ... Read more

Published Date: Sep 26, 2023 (1 year, 10 months ago)
  • 0patch.com
Micropatches Released For Windows Error Reporting Service Elevation of Privilege (CVE-2023-36874)

With July 2023 Windows Updates, Microsoft brought a fix for CVE-2023-36874, a local privilege escalation vulnerability in Windows Error Reporting Service that was found both by Google TAG and CrowdStr ... Read more

Published Date: Sep 13, 2023 (1 year, 11 months ago)
  • 0patch.com
Micropatches Released For Windows Search Remote Code Execution (CVE-2023-36884)

Alongside July 2023 Windows Updates, Microsoft revealed the existence of a 0day that was detected in the wild and assigned it CVE-2023-36884. Without issuing a patch, they titled their original adviso ... Read more

Published Date: Sep 06, 2023 (1 year, 11 months ago)
  • cert.pl
Vulnerability in lua-http library

CVE ID CVE-2023-4540 Publication date 05 September 2023 Vendor Daurnimator Product lua-http Vulnerable versions All including 0.4 before ddab283 commit Vulnerability type (CWE) Improper Handling of Ex ... Read more

Published Date: Sep 05, 2023 (1 year, 11 months ago)
  • huntress.com
How Businesses Should Be Scaling Their Security

Small and medium businesses are changing their security stance for the better. There are still some stragglers, but they tend to be brought forward by insurance companies requiring at least a shred of ... Read more

Published Date: Aug 08, 2023 (2 years ago)
  • huntress.com
Another PaperCut: CVE-2023-39143 Remote Code Execution | Huntress

On August 5, Huntress was made aware of the recently uncovered vulnerability tracked as CVE-2023-39143. For overall statistics, in our partner base we have over 1,000 vulnerable servers across 812 dif ... Read more

Published Date: Aug 05, 2023 (2 years ago)
  • 0patch.com
Micropatches Released For Denial of Service in Microsoft Message Queuing (CVE-2023-28302, CVE-2023-21769)

April 2023 Windows Updates brought fixes for a number of vulnerabilities in Microsoft Message Queuing Service. We first issued patches for the "Queuejumper" remote code execution vulnerability (CVE-20 ... Read more

Published Date: Jul 14, 2023 (2 years, 1 month ago)
  • huntress.com
Move It on Over: Reflecting on the MOVEit Exploitation | Huntress

In late May 2023, customers running the popular MOVEit file transfer software faced multiple, unexplained intrusions. As previously documented by Huntress, MOVEit customers found themselves the victim ... Read more

Published Date: Jul 07, 2023 (2 years, 1 month ago)
  • 0patch.com
Micropatches Released For DHCP Server Service Remote Code Execution (CVE-2023-28231)

April 2023 Windows Updates brought a fix for CVE-2023-28231, a remote code execution vulnerability in DHCP Server service. The vulnerability was reported to Microsoft by security researcher YanZiShuan ... Read more

Published Date: Jun 30, 2023 (2 years, 1 month ago)
  • curatedintel.org
CL0P likes to MOVEit MOVEit

CL0P likes to MOVEit MOVEit BackgroundFor the last couple of years, the threat actors associated with the CL0P ransomware group have occasionally ditched encryption in favour of exploiting file transf ... Read more

Published Date: Jun 08, 2023 (2 years, 2 months ago)

Filters

Showing 10 of 7558 Results