CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • seclists.org
Use of Hard-coded Cryptographic Key (CWE-321) CVE-2024-33895

Full Disclosure mailing list archives From: Moritz Abrell via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 11 Aug 2024 19:48:04 +0200 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Advi ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • seclists.org
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) CVE-2024-33896

Full Disclosure mailing list archives From: Moritz Abrell via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 11 Aug 2024 19:47:30 +0200 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Advi ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • seclists.org
Cleartext Storage of Sensitive Information in a Cookie (CWE-315) CVE-2024-33892

Full Disclosure mailing list archives From: Moritz Abrell via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 11 Aug 2024 19:46:57 +0200 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Advi ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • seclists.org
Improper Neutralization of Input During Web Page Generation (CWE-79) CVE-2024-33893

Full Disclosure mailing list archives From: Moritz Abrell via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 11 Aug 2024 19:46:22 +0200 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Advi ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • seclists.org
Dovecot CVE-2024-23185: Very large headers can cause resource exhaustion when parsing message

Full Disclosure mailing list archives From: Aki Tuomi via Fulldisclosure <fulldisclosure () seclists org> Date: Wed, 14 Aug 2024 14:13:42 +0300 (EEST) Affected product: Dovecot IMAP Server Internal re ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • seclists.org
CVE-2024-23184: Having a large number of address headers (From, To, Cc, Bcc, etc.) becomes excessively CPU intensive

Full Disclosure mailing list archives From: Aki Tuomi via Fulldisclosure <fulldisclosure () seclists org> Date: Wed, 14 Aug 2024 14:13:42 +0300 (EEST) Affected product: Dovecot IMAP Server Internal re ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • Cybersecurity News
10,000+ WordPress Sites at Risk: Critical File Deletion Flaw Found in InPost Plugins

A critical vulnerability, tracked as CVE-2024-6500 (CVSS 10), has been uncovered in two popular WordPress plugins, InPost PL and InPost for WooCommerce, leaving over 10,000 websites susceptible to com ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • Cybersecurity News
EDRKillShifter: A New EDR-Killing Tool in Ransomware Attack

High-level overview of the loader execution process | Image: SophosSophos researchers have discovered a new threat: EDRKillShifter, a sophisticated tool designed to dismantle endpoint detection and re ... Read more

Published Date: Aug 18, 2024 (1 year ago)
  • Cybersecurity News
Cybercriminals Evolve Social Engineering Tactics, Exploit CVE-2022-26923 in Sophisticated Campaign

Credential harvester prompt spawned by `AntiSpam.exe | Image: Rapid7 Recently, cybersecurity firm Rapid7 identified a series of sophisticated intrusion attempts linked to an ongoing social engineering ... Read more

Published Date: Aug 17, 2024 (1 year ago)
  • Cyber Security News
Windows 0-Day Flaw Exploited by Lazarus to Gain Unauthorized Access

Security researchers at Avast have uncovered evidence that the notorious North Korean hacker group Lazarus exploited a previously unknown zero-day vulnerability in the Windows AFD.sys driver to gain k ... Read more

Published Date: Aug 17, 2024 (1 year ago)

Filters

Showing 10 of 8048 Results