IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,556 matching records.
AUTO-POLL // 2026-10-07 07:00 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P3 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

ADVISORY
P3
P3
COOL // 3 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2025-08-25 09:04 UTC
Other

Trust issues: How email threats hide behind your partners

Group-IB · indexed 2026-09-07 17:30 UTC

The most widely used email security tools still focus on yesterday’s threats. Meanwhile, attackers have moved on. By hijacking legitimate business relationships and embedding infostealers in familiar-sounding, well-written emails, cybercriminals bypass conventional defenses. The only way to keep up is by using a behavioral approach.

Malware
P0
2025-08-25 05:00 UTC
Security Journalism

Ten Years of Resilience, Innovation & Community-Driven Defense

Huntress · indexed 2026-09-07 17:30 UTC

Celebrate 10 years of wrecking hackers! See how Huntress has evolved and elevated in an ever-changing cybersecurity landscape, shaped by key milestones and critical lessons.

P0
2025-08-21 21:00 UTC
Security Journalism

Cephalus Ransomware: Don’t Lose Your Head

Huntress · indexed 2026-09-07 17:30 UTC

In mid-August, Huntress saw two incidents that linked back to a ransomware variant called Cephalus, which included DLL sideloading via a legitimate SentinelOne executable.

Ransomware
P15
2025-08-21 00:00 UTC
Other

Dataform cross-tenant path traversal

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Dataform could have allowed a malicious customer to gain unauthorized cross-tenant access to other customer's code repositories and data. By preparing a maliciously crafted package.json file, an attacker could exploit a path traversal vulnerability in the npm package installation process, thereby gaining read and write access in other customers' repositories. According to Google, there was no evidence of exploitation in the wild.

Vulnerabilities
P20
2025-08-20 06:44 UTC
Other

Evolving Mule Tactics in the META Region Banking Sector

Group-IB · indexed 2026-09-07 17:30 UTC

Discover how mule operators evolved in META-region banks—from IP masking to Starlink tactics with advanced GPS spoofing, SIM abuse, and device muling—and how layered fraud detection strategies fought back.

Cybercrime
P0
2025-08-19 14:00 UTC
Security Journalism

Exposing Data Exfiltration | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Threat actors often steal data during the course of their attacks. This is particularly true for ransomware threat actors, who do it before deploying file encryption in order to engage in “double extortion” activities. This activity can be difficult to detect, particularly if it’s not dissimilar to legitimate actions taken by system administrators.

RansomwareThreat Actors
P15
2025-08-15 16:00 UTC
Security Journalism

90 Data Breach Trends & Statistics for 2026

Huntress · indexed 2026-09-07 17:30 UTC

Learn the top data breach statistics of the last several years and learn about common causes, how they vary by industry, and future trends.

Data Breaches
P0
2025-08-14 05:00 UTC
Security Journalism

Kawabunga, Dude, You’ve Been Ransomed!

Huntress · indexed 2026-09-07 17:30 UTC

Thanks in large part to our customer base, Huntress sees a great deal of interesting activity, particularly from threat actors (but also from admins). Part of that activity includes not just ransomware variants that Huntress hasn’t seen before, but also variants that may not have been documented via any public means. Further, when these incidents occur, Huntress very often gets a detailed look at the threat actor’s activity, including commands and their timing.

RansomwareThreat Actors
P15
2025-08-14 00:00 UTC
Other

AWS ECS Agent Information Disclosure Vulnerability

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability in the Amazon ECS agent could allow an introspection server to be accessed off-host. This information disclosure issue, if exploited, could allow another instance in the same security group to access the server's data. The vulnerability does not affect instances where off-host access is set to 'false'. The issue has been patched in version 1.97.1 of the ECS agent.

Cloud SecurityVulnerabilities
P0
2025-08-13 22:00 UTC
Security Journalism

Active Exploitation of SonicWall VPNs

Huntress · indexed 2026-09-07 17:30 UTC

A likely zero-day vulnerability in SonicWall VPNs is being actively exploited to bypass MFA and deploy ransomware. Huntress advises disabling the VPN service immediately or severely restricting access via IP allow-listing. We're seeing threat actors pivot directly to domain controllers within hours of the initial breach.

Network SecurityRansomwareThreat ActorsVulnerabilities
P40
2025-08-13 13:00 UTC
Security Journalism

Huntress for CMMC Compliance

Huntress · indexed 2026-09-07 17:30 UTC

See how Huntress fits into the updated 2024 CMMC framework. Explore how Sensitive Data Mode helps safeguard CUI and support compliance.

P0
2025-08-12 16:00 UTC
Vendor Research

Android’s pKVM Becomes First Globally Certified Software to Achieve Prestigious SESIP Level 5 Security Certification

Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC

Posted by Dave Kleidermacher, VP Engineering, Android Security & Privacy Today marks a watershed moment and new benchmark for open-source security and the future of consumer electronics. Google is proud to announce that protected KVM (pKVM), the hypervisor that powers the Android Virtualization Framework, has officially achieved SESIP Level 5 certification. This makes pKVM the first software security system designed for large-scale deployment in consumer electronics to meet this assurance bar. …

LinuxMobile SecurityVulnerabilities
P0
2025-08-05 00:00 UTC
Government

Incidents de sécurité dans les pare-feux SonicWall (05 août 2025)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

[Mise à jour du 7 août 2025] Le 6 août 2025, SonicWall a remplacé une partie de son communiqué initial pour indiquer que les incidents de sécurité évoqués étaient vraisemblablement corrélés à la vulnérabilité CVE-2024-40766. Celle-ci a fait l'objet d'un bulletin de sécurité, SNWLID-2024-0015 (cf....

VulnerabilitiesCVE-2024-40766
P5
2025-08-01 12:00 UTC
Government

Let’s get Digital! Updated Digital Identity Guidelines are Here!

NIST Cybersecurity Insights · Ryan Galluzzo, Connie LaSalle, Andrew Regenscheid · indexed 2026-08-15 20:45 UTC

Today is the day! Digital Identity Guidelines, Revision 4 is finally here...it’s been an exciting journey and NIST is honored to be a part of it. What can we expect? Serving as a culmination of a nearly four-year collaborative process that included foundational research, two public drafts, and about 6,000 individual comments from the public, Revision 4 of Special Publication 800-63, Digital Identity Guidelines, intends to respond to the changing digital landscape that has emerged since the last…

P0
2025-07-31 12:00 UTC
Government

Reflections from the First Cyber AI Profile Workshop

NIST Cybersecurity Insights · Katerina Megas, Julie Nethery Snyder , Bronwyn Patrick · indexed 2026-08-15 20:45 UTC

Thank you to everyone who participated in the Cyber AI Profile Workshop NIST hosted this past April! This work intends to support the cybersecurity and AI communities — and the input you provided during this workshop is critical. We are working to publish a Workshop Summary that captures themes and highlights from the event. In the interim, we would like to share a preview of what we heard. Background on the Cyber AI Profile Workshop ( watch the workshop introduction video) As NIST began explor…

P0
2025-07-30 04:00 UTC
Security Journalism

Information to Insights: Intrusion Analysis Methodology

Huntress · indexed 2026-09-07 17:30 UTC

Transform raw Windows event data into actionable insights. Learn expert methodologies for intrusion analysis, authentication events, credential dumping, and RDP activity to stay ahead of threats.

Microsoft
P0
2025-07-23 07:48 UTC
Other

Signed, Sealed, Altered? Deepdive into PDF Tampering

Group-IB · indexed 2026-09-07 17:30 UTC

Uncovering the validity of a PDF by utilizing some of the tools and methods to detect changes made to a PDF, and understand the limitations in proving PDF integrity.

P0
2025-07-21 21:34 UTC
Vendor Research

Introducing OSS Rebuild: Open Source, Rebuilt to Last

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Matthew Suozzo, Google Open Source Security Team (GOSST)Today we're excited to announce OSS Rebuild, a new project to strengthen trust in open source package ecosystems by reproducing upstream artifacts. As supply chain attacks continue to target widely-used dependencies, OSS Rebuild gives security teams powerful data to avoid compromise without burden on upstream maintainers.The project comprises:Automation to derive declarative build definitions for existing PyPI (Python), npm (JS/T…

MalwareSecurity ResearchVulnerabilities
P0
2025-07-21 00:00 UTC
Government

[MàJ] Multiples vulnérabilités dans Microsoft SharePoint (21 juillet 2025)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

**[Mise à jour du 23 juillet 2025]** Le 20 juillet 2025, Microsoft a publié des correctifs pour une vulnérabilité de type limitation insuffisante d'un chemin d'accès à un répertoire restreint, aussi appelé *path traversal*, affectant SharePoint Enterprise Server 2016, SharePoint Server 2019 et...

Microsoft
P0
115 116 117 118 119