CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Daily CyberSecurity
CVE-2026-25137: Critical Odoo on NixOS Flaw Exposes Databases

A critical vulnerability has been discovered in Odoo deployments running on NixOS. The vulnerability, tracked as CVE-2026-25137 (CVSS 9.1), leaves the database manager—and by extension, the entire org ...

Published Date: Feb 04, 2026 (1 month, 2 weeks ago)
  • Daily CyberSecurity
Game Over: Interlock Ransomware Weaponizes Anti-Cheat Zero-Day to Kill EDR

FortiGuard Threat Intelligence details related to the ScreenConnect C2 domain associated with the intrusion | Image: FortiGuard Labs A sophisticated ransomware group known as Interlock is turning the ...

Published Date: Feb 04, 2026 (1 month, 2 weeks ago)
  • confiant.com
The Curious Case Of MutantBedrog's Trusted-Types CSP Bypass

MutantBedrog is a malvertiser that caught our attention early summer ’24 for their highly disruptive forced redirect campaigns and the unique JavaScript payload that they use to fingerprint devices an ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • confiant.com
Profiling hackers using the Malvertising Attack Matrix by Confiant

A relatively new threat vector, Malvertising is a cyber-attack relying on ad networks and digital ads exposing virtually any internet user surfing the web to the risk of infection.From my experience, ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • BleepingComputer
Wave of Citrix NetScaler scans use thousands of residential proxies

A coordinated reconnaissance campaign targeting Citrix NetScaler infrastructure over the past week used tens of thousands of residential proxies to discover login panels. The activity was observed bet ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • BleepingComputer
CISA flags critical SolarWinds RCE flaw as exploited in attacks

CISA has flagged a critical SolarWinds Web Help Desk vulnerability as actively exploited in attacks and ordered federal agencies to patch their systems within three days. Tracked as CVE-2025-40551, th ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • The Register
Critical React Native Metro dev server bug under attack as researchers scream into the void

Baddies are exploiting a critical bug in React Native's Metro development server to deliver malware to both Windows and Linux machines, and yet the in-the-wild attacks still haven't received the "broa ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • confiant.com
Malvertiser 'eGobbler' Exploits Chrome & WebKit Bugs, Infects Over 1 Billion Ads

Stock Photo via Unsplash.comWe have written about the threat actor eGobbler extensively on our blog over the last year as they’ve continued to emerge as a prolific source of malvertising. It’s not unc ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • hackread.com
Op Neusploit: Russian APT28 Uses Microsoft Office Flaw in Malware Attacks

A targeted cyberattack campaign has been uncovered by researchers at Zscaler ThreatLabz. The operation, which the firm has named Operation Neusploit, was identified in January 2026 and is being linked ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)
  • CybersecurityNews
Hackers Exploiting React Native’s Metro Server in the Wild to Attack Developers

Threat actors are actively exploiting a critical remote code execution vulnerability in React Native’s Metro Development Server to deliver advanced malware payloads across Windows and Linux systems. V ...

Published Date: Feb 03, 2026 (1 month, 2 weeks ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 10345 Results