IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,555 matching records.
AUTO-POLL // 2026-10-07 03:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P0 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

CLEAR
P0
P0
COOL // 2 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2026-04-08 14:00 UTC
Security Journalism

The ADWS Architecture That Hides PowerShell AD Enumeration

Huntress · indexed 2026-09-07 17:30 UTC

A threat actor enumerated our entire AD with Get-ADComputer, and none of our detections fired. The problem wasn't their evasion - it was an architectural blind spot in how PowerShell talks to Active Directory.

Threat Actors
P0
2026-04-08 11:00 UTC
Security Journalism

Why the Stryker Attack Still Matters. And Five Steps You Can Take Today

Huntress · indexed 2026-09-07 17:30 UTC

The Stryker incident revealed that a "Weaponized Remote Wipe" via compromised MDM is a more permanent and difficult threat than ransomware. Learn concrete steps to secure management platforms and prevent your security shield from becoming a weapon.

Ransomware
P15
2026-04-08 07:30 UTC
Other

Cyber Saga: In the Footsteps of the DPRK IT Workers

Group-IB · indexed 2026-09-07 17:30 UTC

Discover how North Korean threat actors use synthetic identities, AI-assisted workflows, and overlapping infrastructure to infiltrate companies, and learn actionable strategies to mitigate this insider threat.

Threat Actors
P0
2026-04-07 21:00 UTC
Vendor Research

Cloudflare targets 2029 for full post-quantum security

Cloudflare Security · Bas Westerbaan · indexed 2026-08-15 18:58 UTC

Recent advances in quantum hardware and software have accelerated the timeline on which quantum attack might happen. Cloudflare is responding by moving our target for full post-quantum security to 2029.

P0
2026-04-02 16:00 UTC
Vendor Research

Google Workspace’s continuous approach to mitigating indirect prompt injections

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Adam Gavish, Google GenAI Security TeamIndirect prompt injection (IPI) is an evolving threat vector targeting users of complex AI applications with multiple data sources, such as Workspace with Gemini. This technique enables the attacker to influence the behavior of an LLM by injecting malicious instructions into the data or tools used by the LLM as it completes the user’s query. This may even be possible without any input directly from the user.IPI is not the kind of technical proble…

AI SecurityMicrosoftSecurity ResearchVulnerabilities
P0
2026-04-01 15:00 UTC
Government

Cyber Brief 26-04 - March 2026

CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC

Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.

P0
2026-04-01 14:00 UTC
Security Journalism

OpenClaw, Rogue Agents, and Application Hygiene

Huntress · indexed 2026-09-07 17:30 UTC

OpenClaw AI agents pose identity and data risks if deployed with broad cloud permissions. Learn how to find and secure these apps before an attacker does.

AI Security
P0
2026-04-01 10:32 UTC
Other

Hooking the Archipelago: Dissecting a Phishing Campaign Targeting Philippine Banking Users

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB researchers uncover an ongoing phishing campaign targeting major banks in the Philippines. This blog details how threat actors abuse trusted and legitimate platforms to deceive users and evade detection. It highlights a significant threat escalation with the successful hijacking of a legitimate domain to host malicious infrastructure, enabling threat actors to operate with even greater credibility and reduced detection.

PhishingThreat Actors
P0
2026-04-01 09:00 UTC
Security Journalism

The Three-Finger Test

Huntress · indexed 2026-09-07 17:30 UTC

See why the viral "three-finger test" is almost outdated, and how to build resilient security processes that protect your organization from identity-based attacks and social engineering, no matter how advanced the AI gets.

P0
2026-03-31 23:30 UTC
Security Journalism

Supply Chain Compromise of axios npm Package

Huntress · indexed 2026-09-07 17:30 UTC

An NPM supply chain attack struck the ubiquitous open-source axios library and Huntress has observed over a hundred affected devices.

Apple
P0
2026-03-31 18:58 UTC
Vendor Research

VRP 2025 Year in Review

Google Security Blog · Dirk Göhmann · indexed 2026-08-15 18:55 UTC

2025 marked a special year in the history of vulnerability rewards and bug bounty programs at Google: our 15th anniversary 🎉🎉🎉! Originally started in 2010, our vulnerabi…

Vulnerabilities
P0
2026-03-31 16:55 UTC
Vendor Research

VRP 2025 Year in Review

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Dirk Göhmann, Tony Mendez, and the Vulnerability Rewards Program Team2025 marked a special year in the history of vulnerability rewards and bug bounty programs at Google: our 15th anniversary 🎉🎉🎉! Originally started in 2010, our vulnerability reward program (VRP) has seen constant additions and expansions over the past decade and a half, clearly indicating the value the programs under this umbrella contribute to the safety and security of Google and its users, but also highlighting…

Mobile SecuritySecurity ResearchVulnerabilities
P0
2026-03-31 00:00 UTC
Government

Vulnérabilité dans F5 BIG-IP Access Policy Manager (31 mars 2026)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

Le 15 octobre 2025, F5 a publié un avis de sécurité concernant entre autres la vulnérabilité CVE-2025-53521. Celle-ci affecte BIG-IP APM et permet à un attaquant non authentifié d'exécuter du code à distance. Le 29 mars 2026, l'éditeur indique que cette vulnérabilité est exploitée activement. Le...

VulnerabilitiesCVE-2025-53521
P5
2026-03-30 16:51 UTC
Other

red-run 2.0: Agent Teams

Black Lantern Security · Kevin O'Riley · indexed 2026-09-07 17:30 UTC

A Claude Code Agent Dashboard

P0
2026-03-25 17:00 UTC
Security Journalism

That “Friendly” Prompt is ClickFix

Huntress · indexed 2026-09-07 17:30 UTC

That "friendly" prompt is a ClickFix scam. Learn about this advanced social engineering tactic that tricks users into running malicious code on their own systems, and why security resilience is your winning bet.

P0
2026-03-25 13:00 UTC
Vendor Research

Security for the Quantum Era: Implementing Post-Quantum Cryptography in Android

Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC

Posted by Eric Lynch, Product Manager, Android and Dom Elliott, Group Product Manager, Google Play Modern digital security is at a turning point. We are on the threshold of using quantum computers to solve "impossible" problems in drug discovery, materials science, and energy—tasks that even the most powerful classical supercomputers cannot handle. However, the same unique ability to consider different options simultaneously also allows these machines to bypass our current digital locks. This p…

Cloud SecurityMobile Security
P0
106 107 108 109 110