IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,438 matching records.
AUTO-POLL // 2026-10-04 10:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P9 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 4

RANSOMWARE
P9
P9
COOL // 5 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
MON
Sep 28

RANSOMWARE
P7
P7
COOL // 52 ARTICLES
RESET
2026-09-29 06:08 UTC
Security Journalism

Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-29 06:50 UTC

A malicious MCP server could trick an application built on the official MCP Python SDK into handing over the OAuth credentials it uses to log in to a real service, the SDK's maintainers said in a security advisory. Affected versions sent the client secret, the authorization code, and the PKCE proof key to a token endpoint the attacker controlled. The fix is in versions 1.30.0 and

P0
2026-09-29 05:12 UTC
Security Journalism

OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-29 06:50 UTC

OpenAI on Monday shelved plans to release GPT-6.1 Astra, a next-generation artificial intelligence (AI) model that was planned for an October launch, after it failed internal safety and alignment audits. The development was first reported by The Wall Street Journal. The move "marks a rare case of a major AI developer ditching a new release because of safety concerns," the news publication said.

AI Security
P0
2026-09-29 04:45 UTC
Security Journalism

OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-29 06:50 UTC

OpenAI said it has made the decision to pause training of its most powerful models after one of its agents during reinforcement learning (RL) training contacted an external chatbot by exploiting a loophole in its internet-access restrictions. "An agent attempting to complete a search-based training task queried a public chatbot service through a gap in our internet-access restrictions:

P0
2026-09-28 22:35 UTC
Community

Apple Emergency Patch for iOS 26, macOS26, macOS15 (CVE-2026-86950), (Mon, Sep 28th)

SANS Internet Storm Center · indexed 2026-09-28 22:10 UTC

Apple today released patches for all of its operating systems. However, only patches for older branches include a security fix. The vulnerability being addressed in iOS 26, macOS 26 and macOS 15 is already being exploited. iOS and macOS 27 are not affected. Today's update for the current "27" branch does not address security issues, but fixes some functional issues that got caught after the release two weeks ago. A 27.1 version was also expected to support the new foldable iPhone and w…

AppleVulnerabilitiesCVE-2026-86950
P5
2026-09-28 21:13 UTC
Security Journalism

One Packet Can Crash OT Servers in Industrial Sectors

Dark Reading · Jai Vijayan · indexed 2026-09-28 21:25 UTC

A high-severity vulnerability affects the TDengine time-series database used across industrial, IoT, energy, and automotive environments, and orgs should patch right away.

Vulnerabilities
P0
2026-09-28 20:14 UTC
Other

AI Accounts Are Becoming the New Target for Infostealers

Security Affairs · Pierluigi Paganini · indexed 2026-09-28 21:25 UTC

Infostealers are exposing corporate AI accounts, sessions and API keys, giving attackers access to sensitive data, compute and connected systems. SOCRadar analyzed stealer log data from the last 90 days and found 482 companies with exposed AI accounts and credentials. Of those, 295 appeared in active logs during that period, suggesting the exposure is recent […]

Malware
P0
2026-09-28 19:18 UTC
Security Journalism

Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-28 20:10 UTC

Apple has released security updates to address a vulnerability in older versions of iOS, iPadOS, and macOS that it said may have been exploited in targeted attacks. The vulnerability, tracked as CVE-2026-86950, refers to an out-of-bounds write impacting the CoreGraphics component that could lead to arbitrary code execution when processing a maliciously crafted file. The iPhone maker said the

AppleVulnerabilitiesCVE-2026-86950
P5
2026-09-28 18:50 UTC
Security Journalism

Over 16,000 Supabase databases expose PII, passwords, auth tokens

BleepingComputer · Bill Toulas · indexed 2026-09-28 18:55 UTC

Researchers found more than 16,000 misconfigured Supabase databases exposing readable tables with personally identifiable information, passwords, or authentication tokens. [...]

P0
2026-09-28 18:44 UTC
Security Journalism

AI Agents Are Privileged Users; Who Is Auditing Their Access?

Dark Reading · Ravi Sharma · indexed 2026-09-28 19:10 UTC

Enterprises regularly rigorously monitor human employees, while autonomous AI agents quietly operate with broad privileges that could turn them into the next generation of insider threats.

AI Security
P0
2026-09-28 18:35 UTC
Security Journalism

Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-28 20:10 UTC

Hackers have used a malware family called NeedyMantis to maintain long-term access to networks they had already breached, Microsoft said in a technical analysis. The malware has been seen in a small number of targeted intrusions at telecommunications organizations, universities, medical nonprofits, intergovernmental organizations, and government contractors. Its use goes back to at least

MalwareMicrosoft
P0
2026-09-28 18:20 UTC
Security Journalism

IAM for AI agents: A Practical Enterprise Framework

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-28 18:40 UTC

What is IAM for AI agents? AI agents authenticate, invoke tools, and act across enterprise systems with delegated authority. IAM for AI Agents is the identity-control architecture that governs those actors. This guide covers the limits of conventional provisioning, the components that matter, how to evaluate framework choices, and what runtime evidence proves an agent behaved as intended.

AI Security
P0
2026-09-28 17:42 UTC
Security Journalism

Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-28 18:40 UTC

The attacker who stole about $388 million from the cryptocurrency exchange Bitget gained access through a vulnerability in a third-party security product the exchange used, Bitget said on Monday. The attacker exploited the flaw to obtain high-level internal credentials and then, on September 24, used them to send fraudulent withdrawal commands to Bitget's wallet system. Exchanges keep most

CybercrimeMicrosoftVulnerabilities
P0
2026-09-28 17:38 UTC
Security Journalism

RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-28 18:40 UTC

RatHat's operators build and publish the Android banking trojan and control infected phones from a web console, according to security company Cleafy. Cleafy has traced nearly 100 deployments of that console since April 2026. It said this fits a malware-as-a-service model, in which each customer runs a separate copy. The console stores what the malware collects from each phone,

MalwareMobile Security
P0
2026-09-28 17:30 UTC
Security Journalism

Modulate Raises $25 Million to Advance Deepfake Detection

Security Week · Kevin Townsend · indexed 2026-09-28 17:50 UTC

The misuse and abuse of AI-generated voice is growing. Modulate’s intention is to allow real time detection and intervention. The post Modulate Raises $25 Million to Advance Deepfake Detection appeared first on SecurityWeek.

P0
2026-09-28 17:05 UTC
Vendor Research

AWS European Sovereign Cloud: Demonstrating an independent operation

AWS Security Blog · Stéphane Israël · indexed 2026-09-28 17:40 UTC

On Saturday, October 24, 2026, we will conduct an exercise demonstrating that the AWS European Sovereign Cloud can operate without depending on any infrastructure outside of the European Union (EU). For several hours, the AWS European Sovereign Cloud will operate without a connection to the AWS Global Network backbone. The backbone is the private network […]

Cloud Security
P0
2026-09-28 17:00 UTC
Security Journalism

Privilege Hygiene: Least Privilege Best Practices Guide

Huntress · indexed 2026-09-29 07:55 UTC

Learn what good privilege hygiene looks like, from local admin sprawl to accidental access, plus least privilege best practices you can start today.

P0
2026-09-28 16:19 UTC
Security Journalism

US, UK warn of exploited Citrix NetScaler zero-day bugs

The Record · indexed 2026-09-28 16:25 UTC

Incident responders began warning of potential vulnerabilities in NetScaler Gateway products on Saturday before cybersecurity agencies in the Netherlands, U.S. and U.K. released advisories on Sunday confirming vulnerabilities. Citrix itself confirmed eight new vulnerabilities.

Vulnerabilities
P25
2026-09-28 15:15 UTC
Security Journalism

Call for Presentations Open for 2026 CISO Forum Virtual Summit

Security Week · Mike Lennon · indexed 2026-09-28 15:30 UTC

SecurityWeek seeks original, vendor-neutral presentations that help cybersecurity leaders navigate emerging threats, strengthen resilience, and address the strategic challenges facing today’s enterprise security programs. The post Call for Presentations Open for 2026 CISO Forum Virtual Summit appeared first on SecurityWeek.

P0
8 9 10 11 12