gcve.eu

Seven new GNAs have been registered on GCVE.EU !

We're glad to see the community grow and are open to new GNA applications

🔗 JSON gcve.eu/dist/gcve.json
🔗 Why and How to become a GNA gcve.eu/about/#eligibility-and

#cve #gcve #vulnerabilities #cybersecurity

Xavier «X» Santolaria :verified_paw: :donor:

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #17/2025 is out!

It includes the following and much more:

🇺🇸 👋🏻 Two top officials from #CISA resigned;

🇺🇸 💬 U.S. Defense Secretary Pete Hegseth caught in another information leak;

📊 Yearly Threat Intelligence Reports Released;

🇺🇸 💸 U.S. lost record $16.6 billion to #cybercrime in 2024;

🇺🇸 5.5 Million Patients Affected by #DataBreach at Yale New Haven Health;

🐛 💥 VulnCheck spotted 159 actively exploited #vulnerabilities in first few months of 2025;

🇺🇸 🇨🇳 FBI is seeking public help to identify Chinese hackers known as #SaltTyphoon and offers $10 million reward;

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

infosec-mashup.santolaria.net/

🕵🏻‍♂️ [InfoSec MASHUP] 16/2025

Two top officials from CISA resigned; U.S. Defense…

X’s InfoSec Newsletter
gcve.eu

A Python client for the Global CVE Allocation System has been released.

by @cedric

#cve #gcve #vulnerabilities #vulnerability

🔗 github.com/gcve-eu/gcve

gcve.eu

The first publication of the GCVE-BCP-01 - Signature Verification of the Directory File

🔗 More information about BCP gcve.eu/bcp/
🔗 GCVE-BCP-01 gcve.eu/bcp/gcve-bcp-01/

#cve #vulnerabilities #cybersecurity #vulnerability #gcve

GCVE.eu - Best Current Practice (BCP)

gcve.eu
Alexandre Dulaunoy

While digging into some #Fortinet vulnerabilities, I discovered a set of CVEs that were rejected for being unused.

I'm wondering how this is actually helping vulnerability management. Does this mean those will be never used? or something else?

#vulnerability #cve #vulnerabilities

🔗 vulnerability.circl.lu/vuln/cv

PrivacyDigest

'Stupid and Dangerous': #CISA Funding Chaos Threatens Essential #Cybersecurity Program

The #CVE Program is the primary way software #vulnerabilities are tracked. Its long-term future remains in limbo even after a last-minute renewal of the US government contract that funds it.

wired.com/story/cve-program-ci

Marcus "MajorLinux" Summers

Please make sure to update your devices!

Update Now: iOS 18.4.1 and macOS Sequoia 15.4.1 Address Actively Exploited Vulnerabilities

macrumors.com/2025/04/16/ios-1

#Apple #iOS #macOS #Sequoia #Exploits #Vulnerabilities #Security #InfoSec #Tech

Tino Eberl

Nach dem drohenden Aus der #CVE-Liste startet die EU mit der eigenen Schwachstellendatenbank #EUVD.

Die Plattform der der EU-#Cybersicherheitsbehörde #ENISA soll laut NIS2-Richtlinie für mehr IT-Sicherheit in Europa sorgen.

Parallel arbeiten Initiativen an dezentralen und unabhängigen Lösungen. Eine mögliche Vertragsverlängerung durch die US-Behörde #CISA könnte den Dienst vorerst sichern.

heise.de/news/Nach-drohendem-C

#Cybersecurity #Sicherheitslücken #ITSecurity #Vulnerabilities #CVEFoundation

Nach drohendem CVE-Aus: Schwachstellendatenbank der EU geht an den Start

Neben der EU-Cybersicherheitsbehörde ENISA positionieren…

heise online
Brian Greenberg :verified:

⚠️ The backbone of vulnerability tracking may be about to snap. 🤦🏻‍♂️

MITRE’s federal contract for managing the CVE program expires April 16 — with no confirmed renewal.

Without it, we risk:
🚫 A breakdown in standardized vulnerability tracking
🌍 Global coordination gaps
💣 Increased exposure to unpatched threats

Cybersecurity doesn’t work without CVE. Leadership must step up before this vital resource goes dark.

#CyberSecurity #CVE #RiskManagement #Vulnerabilities #Leadership
theverge.com/news/649314/cve-m

The CVE program for tracking security flaws is about to lose federal funding

The federally funded organization behind the Common…

The Verge
Mix Mistress Alice💄

I posted the above because I find it insane that many major companies are requesting their employees to use such dangerous products as Microsoft offerings, especially 365 and even more so with Copilot.
Outside of jobs but for some productions and personal projects I only past used AmigaOS, IRIX, SunOS, Oracle Solaris, various versions of macOS (Classic & Darwin), and a few Linux distributions such as Red Hat with KDE or GNOME. Microsoft has always been a no-go for me, and this company does everything to remain away from me forever.

#Copilot #microsoft #vulnerabilities #privacy #GDPR #CrapOS #OperatingSystems #OS #software #Clouds

Apr 15, 2025, 17:59 · · · 0 · 0