IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,564 matching records.
AUTO-POLL // 2026-10-07 08:35 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P4 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P4
P4
COOL // 11 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2025-04-03 00:00 UTC
Government

[MàJ] Vulnérabilité dans les produits Ivanti (03 avril 2025)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

**\[Mise à jour du 11 avril 2025\]** Le CERT-FR a connaissance d'une preuve de concept publique permettant de provoquer une exécution de code arbitraire à distance. **[Mise à jour du 04 avril 2025]** Le CERT-FR a connaissance d'une preuve de concept publique permettant de provoquer un arrêt du...

P0
2025-04-02 06:02 UTC
Other

The beginning of the end: the story of Hunters International

Group-IB · indexed 2026-09-07 17:30 UTC

Learn about technical details on the ransomware and Storage Software tool, how the criminals use the affiliate panel as well as information on the Hunters International ransomware group from its emergence to the end of the operation.

Ransomware
P15
2025-04-02 05:00 UTC
Security Journalism

The Unwanted Guest

Huntress · indexed 2026-09-07 17:30 UTC

Threat actors are enabling the built-in Windows Guest account to maintain persistence. Learn how they gain access and how to detect this activity.

MicrosoftThreat Actors
P0
2025-04-01 05:00 UTC
Security Journalism

Scalable EDR Advanced Agent Analytics with ClickHouse

Huntress · indexed 2026-09-07 17:30 UTC

Learn how and why Huntress uses ClickHouse for scalable EDR agent analytics, ensuring availability and stability for millions of endpoints while maintaining cost efficiency.

P0
2025-04-01 00:00 UTC
Other

ImageRunner: Privilege Escalation Vulnerability in GCP Cloud Run

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

An attacker with `run.services.update` and `iam.serviceAccounts.actAs` permissions but without explicit registry access could deploy new revisions of Cloud Run services that pulled private container images stored in the same GCP project. This was possible because Cloud Run uses a service agent with the necessary registry read permissions to retrieve these images, regardless of the caller’s access level. By updating a service revision and injecting malicious commands into the container's argumen…

Vulnerabilities
P10
2025-03-31 05:00 UTC
Security Journalism

Why cybersecurity matters for your business.

Huntress · indexed 2026-09-07 17:30 UTC

Doing nothing now can cost your business more than money. Learn why proactive cybersecurity steps keep your business resilient and save costs in the long term.

P0
2025-03-28 05:00 UTC
Security Journalism

Securing Endpoints from Common Vulnerabilities

Huntress · indexed 2026-09-07 17:30 UTC

Learn how to lock down common endpoint vulnerabilities like weak passwords and unpatched software to secure your systems against threats like phishing and malware.

MalwarePhishing
P0
2025-03-26 09:03 UTC
Other

Unmasking the Classiscam in Central Asia

Group-IB · indexed 2026-09-07 17:30 UTC

Scams like Classiscam automate fake websites to steal financial data, exploiting digitalization’s rise in developing countries, making fraud both effective and hard to detect. In this blog, we dissect the inner working of the scam and its prevalence in Central Asia.

CybercrimeMicrosoft
P0
2025-03-26 00:00 UTC
Other

CodeQLEAKED - CodeQL Supply Chain Attack via Exposed Secret

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A publicly exposed GitHub token in CodeQL workflow artifacts could allow attackers to execute malicious code in repositories using CodeQL, potentially leading to source code exfiltration, secrets compromise, and supply chain attacks. The vulnerability stemmed from a debug artifact containing environment variables, which could be downloaded and exploited within a 1-2 second window.

Vulnerabilities
P0
2025-03-25 00:00 UTC
Other

Entra ID Bug Creates Immutable Users

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A bug in Entra ID restricted management administrative units allowed creating immutable users that couldn't be modified or disabled, even by Global Administrators. This could enable an attacker to protect a compromised account from containment. The issue was caused by a timing vulnerability when removing users from restricted AUs and required specific steps to remediate affected accounts.

MicrosoftVulnerabilities
P0
2025-03-21 00:00 UTC
Other

AWS CDK CLI Issue with Custom Credential Plugins

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS identified a security issue in the AWS CDK CLI versions 2.172.0-2.178.1 where temporary credentials from custom credential plugins could be printed to console output. This potentially exposes sensitive information to users with access to the console. The issue affects plugins that include an expiration property when returning temporary credentials.

Cloud Security
P0
2025-03-20 09:09 UTC
Other

The Cybercriminal with Four Faces: Revealing Group-IB’s Investigation into ALTDOS, DESORDEN, GHOSTR and 0mid16B

Group-IB · indexed 2026-09-07 17:30 UTC

Following the arrest of the cybercriminal behind the aliases ALTDOS, DESORDEN, GHOSTR, and 0mid16B, Group-IB provides a deep dive into his activities, uncovering striking similarities and unmasking the cybercriminal that breached more than 90 instances of data leaks worldwide over the span of four years in operation.

Data BreachesDFIR
P0
2025-03-10 00:00 UTC
Other

Azure API Connections Expose Backend Secrets

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Azure API Connections were found to allow any reader on a subscription to access backend resources through a proxy endpoint, potentially exposing secrets from Key Vaults, databases, and third-party services. This vulnerability affects various Azure services and external APIs, enabling privilege escalation and unauthorized access to sensitive information.

Cloud SecurityVulnerabilities
P10
2025-03-10 00:00 UTC
Security Journalism

Untold Tales from Tactical Response | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Explore the inner workings of real-world cyberattacks and gain insight into the challenges faced by Huntress threat analysts. Discover the critical role of investigative techniques and their importance in uncovering and addressing these threats.

P0
2025-03-06 00:00 UTC
Security Journalism

How Huntress Achieved a Blazing Fast MTTR

Huntress · indexed 2026-09-07 17:30 UTC

The Huntress SOC has an average response time of 8 minutes. That means we can investigate threats, send incident reports, and resolve alerts in record time, shutting down attackers before they have a chance to act.

P0
2025-03-04 00:00 UTC
Other

Issue with AWS Temporary Elevated Access Management

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability in AWS Temporary Elevated Access Management (TEAM) allows users to modify valid requests and spoof approvals due to improper input validation. This affects versions prior to 1.2.2 of TEAM for AWS IAM Identity Center. AWS has released a fix in version 1.2.2 and recommends customers upgrade to the latest release.

Cloud SecurityVulnerabilities
P0
119 120 121 122 123