IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,555 matching records.
AUTO-POLL // 2026-10-07 02:40 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P0 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

CLEAR
P0
P0
COOL // 2 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2026-04-21 13:00 UTC
Security Journalism

Tradecraft Tuesday Recap: axios npm Supply Chain Compromise

Huntress · indexed 2026-09-07 17:30 UTC

A few weeks after the major axios npm supply chain attack, a group of researchers from Huntress, Wiz, and Aikido Security debriefed on the compromise’s lasting impacts.

Apple
P0
2026-04-20 18:00 UTC
Security Journalism

Nightmare-Eclipse Tooling Seen in Real-World Intrusion

Huntress · indexed 2026-09-07 17:30 UTC

Huntress observed in-the-wild use of Nightmare-Eclipse tooling, including BlueHammer, RedSun, and UnDefend, in a live intrusion involving FortiGate VPN compromise as the initial access, reconnaissance commands, and likely tunneling activity.

Network Security
P0
2026-04-17 20:00 UTC
Security Journalism

Uptick in Bomgar RMM Exploitation

Huntress · indexed 2026-09-07 17:30 UTC

The Huntress SOC has seen a recent uptick in incidents involving compromised Bomgar remote monitoring and management (RMM) instances.

P0
2026-04-17 14:00 UTC
Security Journalism

Untangling a Linux Incident With an OpenAI Twist

Huntress · indexed 2026-09-07 17:30 UTC

A Linux user recently tried to respond to potentially malicious behavior on their machine using OpenAI’s Codex coding agent, before installing the Huntress agent. What ensued shows the unexpected impacts of this AI use case on DFIR investigations.

DFIRLinux
P0
2026-04-17 14:00 UTC
Security Journalism

Disrupting Attacks on Endpoints | Attack Disruption Engine

Huntress · indexed 2026-09-07 17:30 UTC

Standard EDR creates a gap between detection and action. Huntress closes it. Learn how our Attack Disruption Engine automatically disrupts threat actors and reduces the impact of endpoint attacks.

Threat Actors
P0
2026-04-17 07:00 UTC
Security Journalism

Attackers Love Your VPN To-Do List

Huntress · indexed 2026-09-07 17:30 UTC

VPN misconfiguration is behind 70% of intrusions. See real Huntress SOC incidents and learn the simple steps to close your biggest open door before attackers walk through it.

Network Security
P0
2026-04-16 14:00 UTC
Vendor Research

Defending Your Enterprise When AI Models Can Find Vulnerabilities Faster Than Ever

Google Threat Intelligence / Mandiant · Francis deSouza · indexed 2026-08-15 18:55 UTC

Introduction Advances in AI model-powered exploitation have demonstrated that general-purpose AI models can excel at vulnerability discovery, even without being purpose-built for the task. Eventually, capabilities such as these will be integrated directly into the development cycle, and code will be more difficult to exploit than ever; however, this transition creates a critical window of risk. As we harden existing software with AI, threat actors will use it to discover and exploit novel vulne…

AI SecurityAPT / Nation-StateCloud SecurityDFIRMicrosoftRansomwareThreat ActorsVulnerabilities
P60
2026-04-15 14:00 UTC
Vendor Research

The German Cyber Criminal Überfall: Shifts in Europe's Data Leak Landscape

Google Threat Intelligence / Mandiant · Google Threat Intelligence Group · indexed 2026-08-15 18:55 UTC

Written by: Jamie Collier, Robin Grunewald Germany has reclaimed its position as a primary focus for cyber extortion in Europe. While data leak site (DLS) posts rose almost 50% globally in 2025, Google Threat Intelligence (GTI) data shows that the surge is hitting German infrastructure harder and faster than its regional neighbors, marking a significant return to the high-pressure levels previously observed in the country during 2022 and 2023. Cyber Criminals Pivoting Back to Germany Germany mo…

CybercrimeData BreachesRansomwareThreat ActorsThreat Intelligence
P15
2026-04-14 13:00 UTC
Vendor Research

Securing non-human identities: automated revocation, OAuth, and scoped permissions

Cloudflare Security · Justin Hutchings · indexed 2026-08-15 18:58 UTC

Cloudflare is introducing scannable API tokens, enhanced OAuth visibility, and GA for resource-scoped permissions. These tools help developers implement a true least-privilege architecture while protecting against credential leakage.

P0
2026-04-14 13:00 UTC
Security Journalism

When PUPs Grow Fangs: Dragon Boss Solutions' $10 Supply Chain Risk

Huntress · indexed 2026-09-07 17:30 UTC

Huntress uncovered a malware operation using signed PUP to deploy AV killers with SYSTEM privileges. Learn how this adware crosses the line into malware territory and how anyone could have hijacked their update mechanism.

Malware
P0
2026-04-10 18:00 UTC
Security Journalism

Your Staging Site Is More Important than You Think

Huntress · indexed 2026-09-07 17:30 UTC

Don’t forget to secure your side doors. Attackers look for the systems you treat as secondary. Don't neglect staging environments, as they’re a critical part of your attack surface.

P0
2026-04-10 15:12 UTC
Vendor Research

Bringing Rust to the Pixel Baseband

Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC

Posted by Jiacheng Lu, Software Engineer, Google Pixel Team Google is continuously advancing the security of Pixel devices. We have been focusing on hardening the cellular baseband modem against exploitation. Recognizing the risks associated within the complex modem firmware, Pixel 9 shipped with mitigations against a range of memory-safety vulnerabilities. For Pixel 10, Google is advancing its proactive security measures further. Following our previous discussion on "Deploying Rust in Existing…

Mobile SecuritySecurity ResearchVulnerabilitiesCVE-2024-27227
P20
2026-04-10 09:56 UTC
Vendor Research

Bringing Rust to the Pixel Baseband

Google Security Blog · Jiacheng Lu · indexed 2026-08-15 18:55 UTC

Google is continuously advancing the security of Pixel devices.

P0
2026-04-09 19:25 UTC
Vendor Research

Protecting Cookies with Device Bound Session Credentials

Google Security Blog · Benjamin Ackerman · indexed 2026-08-15 18:55 UTC

Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for Windows users on Chrome 146, and expanding to macO…

Microsoft
P0
2026-04-09 19:00 UTC
Security Journalism

What a Fake Claude Download Says About Security Today

Huntress · indexed 2026-09-07 17:30 UTC

Attackers are already targeting the AI tools your team just started using. Here's what that looks like when it lands in your own environment. And what actually stops it.

P0
2026-04-09 17:07 UTC
Vendor Research

Protecting Cookies with Device Bound Session Credentials

Google Online Security Blog · Google · indexed 2026-08-15 14:33 UTC

Posted by Ben Ackerman, Chrome team, Daniel Rubery, Chrome team and Guillaume Ehinger, Google Account Security team Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for Windows users on Chrome 146, and expanding to macOS in an upcoming Chrome release. This project represents a significant step forward in our ongoing efforts to combat session theft, which remains a prevalent threat in the modern security landscape. Session theft t…

AppleCybercrimeMalwareMicrosoftThreat Actors
P0
2026-04-09 14:00 UTC
Security Journalism

The 60ms Window: How Event 5156 Solves the ADWS Attribution Problem

Huntress · indexed 2026-09-07 17:30 UTC

Event 1644 shows localhost, hiding the attacker's real IP. By correlating Event 5156 with a ~60-80ms timing window, you can attribute ADWS queries to their actual source—and the data was already in your SIEM.

P0
2026-04-09 09:25 UTC
Other

Seven Signals Cyber Experts Agreed on at FIRST Paris 2026

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB hosted the FIRST Technical Colloquium in Paris, where cybersecurity experts challenged assumptions around modern cyber defense. FIRST Chair Olivier Caleff opened and moderated the event.

P0
105 106 107 108 109