IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 233 matching records.
AUTO-POLL // 2026-10-04 09:45 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P9 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 4

RANSOMWARE
P9
P9
COOL // 5 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
MON
Sep 28

RANSOMWARE
P7
P7
COOL // 52 ARTICLES
RESET
2025-10-22 07:01 UTC
Other

Unmasking MuddyWater’s New Malware Toolkit Driving International Espionage

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB Threat Intelligence has uncovered a sophisticated phishing campaign, attributed with high confidence to the Advanced Persistent Threat (APT) MuddyWater. The attack used a compromised mailbox to distribute Phoenix backdoor malware to international organizations and across the whole Middle East and North Africa region, targeting more than 100 government entities.

APT / Nation-StateMalwarePhishingThreat Intelligence
P0
2025-09-29 05:58 UTC
Other

E-commerce Fraud-as-a-Service: How Scammers Exploit Brand Trust at Scale

Red Hunt Labs · Hariharan M · indexed 2026-09-07 17:30 UTC

In the rapidly evolving digital marketplace, e-commerce brands have become prime targets for cybercriminals. Beyond traditional data breaches, these brands now face sophisticated scams that exploit their reputation, deceive consumers, and erode trust. Drawing from investigations conducted by RedHunt Labs’ threat intelligence team, this blog delves into some of the most prevalent scams targeting e-commerce platforms and highlights how a Digital Risk Protection (DRP) solution can help fortify you…

CybercrimeData BreachesDFIRPhishingThreat ActorsThreat Intelligence
P0
2025-06-13 16:03 UTC
Vendor Research

Mitigating prompt injection attacks with a layered defense strategy

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Adam Gavish, Google GenAI Security TeamWith the rapid adoption of generative AI, a new wave of threats is emerging across the industry with the aim of manipulating the AI systems themselves. One such emerging attack vector is indirect prompt injections. Unlike direct prompt injections, where an attacker directly inputs malicious commands into a prompt, indirect prompt injections involve hidden malicious instructions within external data sources. These may include emails, documents, or…

AI SecurityMalwarePhishingSecurity ResearchThreat ActorsThreat IntelligenceVulnerabilities
P0
2025-04-24 05:00 UTC
Security Journalism

Credential Theft: Expanding Your Reach, Pt. II

Huntress · indexed 2026-09-07 17:30 UTC

As with many tactics within the MITRE ATT&CK framework, credential theft consists of a number of different techniques. Showing what many of them look like on an endpoint helps other security professionals understand what to look for and how to detect and respond to similar activity.

Phishing
P0
2025-04-23 07:05 UTC
Other

Toll of Deception: Where Evasion Drives Phishing Forward

Group-IB · indexed 2026-09-07 17:30 UTC

Discover the latest phishing campaign targeting a major toll road service provider, where cybercriminals use sophisticated evasion techniques to bypass security detections. This in-depth blog reveals how threat actors exploit legitimate platforms and deploy cloaking methods to disguise malicious links, allowing them to evade detection by security solutions. Discover how these sophisticated tactics create highly convincing phishing pages designed to steal victims’ card information, and how to sa…

PhishingThreat Actors
P0
2025-03-28 05:00 UTC
Security Journalism

Securing Endpoints from Common Vulnerabilities

Huntress · indexed 2026-09-07 17:30 UTC

Learn how to lock down common endpoint vulnerabilities like weak passwords and unpatched software to secure your systems against threats like phishing and malware.

MalwarePhishing
P0
2025-02-11 00:00 UTC
Security Journalism

2025 Cybersecurity Threat Report | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Huntress’ 2025 Cyber Threat Report is here! Explore the year's biggest threats—RATs, phishing, ransomware—and how evolving tactics demand smarter defense.

PhishingRansomware
P15
2025-02-06 00:00 UTC
Security Journalism

Device Code Phishing: OAuth 2.0 Attacks in Google & Azure

Huntress · indexed 2026-09-07 17:30 UTC

All OAuth 2.0 implementations are equal. Some are just more equal than others. This blog covers device code phishing and compares OAuth implementations between Google and Azure. Does OAuth implementation impact the efficacy of hacker tradecraft? Find out here!

Cloud SecurityPhishing
P0
2024-12-11 07:11 UTC
Other

Trust Hijacked: The Subtle Art of Phishing Through Familiar Facades

Group-IB · indexed 2026-09-07 17:30 UTC

Explore the advanced tactics employed in recent email phishing campaigns targeting employees from over 30 companies across 12 industries and 15 jurisdictions. This blog unveils sophisticated techniques used to outsmart Secure Email Gateways (SEGs) and exploit trusted platforms, creating highly convincing schemes to deceive victims and steal their credentials.

Phishing
P0
2024-10-30 05:44 UTC
Other

Delivery Deception: Escalating cybercriminal tactics in the Balkan region

Group-IB · indexed 2026-09-07 17:30 UTC

Explore our latest findings on the surge of cyberattacks in the Balkan region, focusing on threats to financial institutions and critical infrastructure. Discover how phishing scams impersonating postal services are targeting citizens in Croatia, Romania, Serbia, and Slovenia, and learn about the implications for public safety and security. Stay informed and protected against the rising tide of cybercrime.

CybercrimePhishing
P0
2024-10-09 00:00 UTC
Other

Subdomain Takeover Vulnerability in GitLab Pages

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability in GitLab Pages allowed attackers to take over dangling custom domains pointing to 'instanceX.gitlab.io'. The issue occured when adding an unverified custom domain to GitLab Pages, which serves content for 7 days before disabling. This could lead to cookie stealing, phishing campaigns, and bypassing of Content-Security Policies and CORS.

PhishingVulnerabilities
P0
2024-09-03 00:00 UTC
Security Journalism

Phishing in the Fast Lane | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Join Huntress team members as they walk through some of the most malicious phishing techniques, presented from the attacker's perspective.

Phishing
P0
2024-08-21 00:00 UTC
Security Journalism

Protecting Against Session Hijacking & Credential Theft | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Discover how our new Unwanted Access capability strengthens your defenses against session hijacking and credential theft. Dive in and learn how to minimize risks and protect your business-critical assets from evolving cyber threats.

Phishing
P0
2024-06-12 00:00 UTC
Security Journalism

Mistakes to Mastery | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Get to know Phishing Defense Coaching, the latest addition to Huntress SAT. This personalized feature helps teach learners how phishing simulations tricked them so they can better identify potential threats.

Phishing
P0
5 6 7 8