IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,562 matching records.
AUTO-POLL // 2026-10-07 07:50 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P4 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P4
P4
COOL // 9 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2025-06-16 05:00 UTC
Security Journalism

Introducing Behavior-Based Assignments

Huntress · indexed 2026-09-07 17:30 UTC

Manage human risk by turning real-world incidents into teachable moments with Behavior-Based Assignments. This new feature integrates with Managed EDR and Managed ITDR to provide targeted security awareness training.

P0
2025-06-13 16:03 UTC
Vendor Research

Mitigating prompt injection attacks with a layered defense strategy

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Adam Gavish, Google GenAI Security TeamWith the rapid adoption of generative AI, a new wave of threats is emerging across the industry with the aim of manipulating the AI systems themselves. One such emerging attack vector is indirect prompt injections. Unlike direct prompt injections, where an attacker directly inputs malicious commands into a prompt, indirect prompt injections involve hidden malicious instructions within external data sources. These may include emails, documents, or…

AI SecurityMalwarePhishingSecurity ResearchThreat ActorsThreat IntelligenceVulnerabilities
P0
2025-06-12 12:00 UTC
Government

The Impact of Artificial Intelligence on the Cybersecurity Workforce

NIST Cybersecurity Insights · Karen Wetzel · indexed 2026-08-15 20:45 UTC

The NICE Workforce Framework for Cybersecurity ( NICE Framework) was revised in November 2020 as NIST Special Publication 800-181 rev.1 to enable more effective and rapid updates to the NICE Framework Components, including how the advent of emerging technologies would impact cybersecurity work. NICE has been actively engaging in conversations with: federal departments and agencies; industry; education, training, and certification providers; and international representatives to understand how Ar…

AI Security
P0
2025-06-11 16:25 UTC
Other

Doomla! Zero Days

Black Lantern Security · Jack Pas · indexed 2026-09-07 17:30 UTC

Discovery and Exploitation of two Zero Days from the perspective of a first year Penetration Tester.

P0
2025-06-05 00:00 UTC
Government

[MàJ] Vulnérabilité dans Roundcube (05 juin 2025)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

[Mise à jour du 06 juin 2025] Une preuve de concept est publiquement disponible. [Publication initiale] Le 01 juin 2025, Roundcube a publié des correctifs concernant une vulnérabilité critique affectant son portail de messagerie ainsi que tous les produits l'incluant (par exemple cPanel et...

P0
2025-06-03 05:00 UTC
Security Journalism

Infostealers Crash Course: A Tradecraft Tuesday Recap

Huntress · indexed 2026-09-07 17:30 UTC

Cybercriminals are sitting on a pile of stolen credentials, financial information, and sensitive data, thanks to the success of infostealers. Read more to learn how infostealers have grown to become a scourge to defenders, and how businesses can protect themselves.

CybercrimeMalwareMicrosoft
P0
2025-05-27 05:00 UTC
Security Journalism

'Advanced' Intrusion Targeting a Marketing Research Company | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

An intrusion at a market research company used living-off-the-land techniques, but Huntress detected and mitigated the threat, uncovering tactics like service creation and registry manipulation. Learn more and get detection guidance and mitigation strategies.

P0
2025-05-22 12:00 UTC
Government

Cybersecurity and AI: Integrating and Building on Existing NIST Guidelines

NIST Cybersecurity Insights · Katerina Megas, Victoria Yan Pillitteri · indexed 2026-08-15 20:45 UTC

What is NIST up to? On April 3, 2025, NIST hosted a Cybersecurity and AI Profile Workshop at our National Cybersecurity Center of Excellence (NCCoE) to hear feedback on our concept paper which presented opportunities to create profiles of the NIST Cybersecurity Framework (CSF) and the NIST AI Risk Management Framework (AI RMF). These would serve to support the cybersecurity community as they adopt AI for cybersecurity, need to defend against AI-enabled cybersecurity attacks, as well as protect …

P0
2025-05-22 00:00 UTC
Other

Remote Prompt Injection in GitLab Duo Leaks Source Code

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A remote prompt injection vulnerability in GitLab Duo allowed attackers to steal source code from private projects, manipulate code suggestions, and exfiltrate confidential information. The attack chain involved hidden prompts, HTML injection, and exploitation of Duo's access to private data. GitLab has since patched both the HTML and prompt injection vectors.

AI SecurityVulnerabilities
P0
2025-05-19 00:00 UTC
Other

AWS Security Tool Introduces Privilege Escalation Risk

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS's Account Assessment for AWS Organizations tool, designed to audit cross-account access, inadvertently introduced privilege escalation risks due to flawed deployment instructions. Customers were encouraged to deploy the tool in lower-sensitivity accounts, creating risky trust paths from insecure environments into highly sensitive ones. This could allow attackers to pivot from compromised development accounts into production and management accounts.

Cloud SecurityVulnerabilities
P10
2025-05-14 05:00 UTC
Security Journalism

Simplify Agent Management with Automated Health Checks

Huntress · indexed 2026-09-07 17:30 UTC

Get to know Huntress' new client-side API for EDR, which enables real-time agent health checks and simplifies endpoint management. With instant “healthy” or “unhealthy” status updates, you can ensure your security is running smoothly.

P0
2025-05-14 00:00 UTC
Government

Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile (EPMM) (14 mai 2025)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

[Mise à jour du 15 mai 2025] Une preuve de concept est publiquement disponible sur Internet. [Publication initiale] Le 13 mai 2025, Ivanti a publié deux avis de sécurité concernant les vulnérabilités CVE-2025-4427 et CVE-2025-4428. L'utilisation combinée de ces deux vulnérabilités permet...

VulnerabilitiesCVE-2025-4427CVE-2025-4428
P5
2025-05-13 12:00 UTC
Government

Five Years Later: Evolving IoT Cybersecurity Guidelines

NIST Cybersecurity Insights · Katerina Megas, Michael Fagan · indexed 2026-08-15 20:45 UTC

The Background…and NIST’s Plan for Improving IoT Cybersecurity The passage of the Internet of Things (IoT) Cybersecurity Improvement Act in 2020 marked a pivotal step in enhancing the cybersecurity of IoT products. Recognizing the increasing internet connectivity of physical devices, this legislation tasked NIST with developing cybersecurity guidelines to manage and secure IoT effectively. As an early building block, we developed NIST IR 8259, Foundational Cybersecurity Activities for IoT Devic…

P0
2025-05-13 05:00 UTC
Security Journalism

Time to Ransom is Money

Huntress · indexed 2026-09-07 17:30 UTC

During ransomware attacks, the average time-to-ransom for attackers is almost 17 hours. Learn more about what this means for businesses.

Ransomware
P15
2025-05-10 00:00 UTC
Other

FreeRTOS and coreSNTP Security Advisories

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Security advisories were issued for FreeRTOS and coreSNTP releases containing unintended scripts that could potentially transmit AWS credentials if executed on Linux/macOS. Affected releases have been removed and users are advised to rotate credentials and delete downloaded copies.

AppleCloud SecurityLinux
P0
2025-05-08 05:00 UTC
Security Journalism

Utilizing ASNs for Hunting & Response

Huntress · indexed 2026-09-07 17:30 UTC

Autonomous system numbers are like the address book of the internet, and not every IP address belongs to a “friendly” address. Learn more about how the Huntress Hunt & Response teams utilize ASNs.

P0
2025-05-07 12:00 UTC
Government

Impact of AI on cyber threat from now to 2027

UK NCSC Threat Reports · indexed 2026-08-15 18:50 UTC

An NCSC assessment highlighting the impacts on cyber threat from AI developments between now and 2027.

P0
2025-05-07 05:00 UTC
Security Journalism

Rapid Response: Samsung MagicINFO 9 Server Flaw

Huntress · indexed 2026-09-07 17:30 UTC

Huntress has verified Samsung’s MagicINFO 9 Server (version 21.1050.0) is vulnerable to a publicly available proof-of-concept (PoC). Understand why MagicINFO 9 Server shouldn’t be internet-facing until a patch is applied.

P0
2025-05-06 05:00 UTC
Security Journalism

Do Tigers Really Change Their Stripes?

Huntress · indexed 2026-09-07 17:30 UTC

Across the larger cybersecurity community, an often-used adage is that “threat actors always change their tactics.” However, when we really start to look at and track incident data, we begin to see that while some changes may be necessitated based on infrastructures and other challenges the threat actor may encounter, there are times when tactics remain consistent across incidents. Recent investigations into exploitation activity for CVE-2025-31151 and CVE-2025-30406 show similar TTPs across di…

DFIRThreat ActorsThreat IntelligenceVulnerabilitiesCVE-2025-30406CVE-2025-31151
P5
117 118 119 120 121