IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,591 matching records.
AUTO-POLL // 2026-10-07 14:20 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P4 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P4
P4
COOL // 38 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2023-10-23 00:00 UTC
Government

[MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway (23 octobre 2023)

CERT-FR Alerts · indexed 2026-09-10 16:10 UTC

\[Mise à jour du 22 novembre 2023\] L'éditeur a publié un document \[3\] le 20 novembre 2023 listant les différents journaux à analyser ainsi que les éléments à rechercher pour identifier une activité pouvant être liée à une compromission. Par ailleurs, la CISA a publié un avis de sécurité le 21...

P0
2023-10-19 00:00 UTC
Other

Azure AI Playground data exfiltration

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

In Azure AI Playground, a Prompt Injection attack could cause an LLM to return markdown tags. This would have allowed an adversary whose data makes it into the chat context (e.g., via an uploaded file) to achieve exfiltration of the victim’s data by rendering hyperlinks. However, the severity of this issue is low, as there were no integrations that could pull remote content. This means Indirect Prompt Injection was not possible, and it would require the victim to copy the malicious prompt from …

AI SecurityCloud Security
P0
2023-10-19 00:00 UTC
Other

Vertex AI Studio data exfiltration

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

In Vertex AI Studio, a Prompt Injection attack could cause the LLM to return markdown tags. This could have allowed an adversary whose data makes it into the chat context (e.g., via an uploaded file) to achieve exfiltration of the victim’s data by rendering hyperlinks. However, the severity of this issue is low, as there were no integrations that could pull remote content. This means Indirect Prompt Injection was not possible, and it would require the victim to copy the malicious prompt from el…

AI SecurityCloud Security
P0
2023-10-11 00:00 UTC
Security Journalism

Why Are You Still Paying for Antivirus? | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Is it worth ditching your legacy antivirus solution? This blog takes a hard look at what matters most in AV and endpoint protection tools.

P0
2023-10-06 00:00 UTC
Other

Amazon WorkSpaces Windows client credential logging

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS identified an issue in the Amazon WorkSpaces Windows client which resulted in unintentionally logging connection debugging information to a user's local system. This data could include usernames or passwords if they contain specific characters: \ (backslash) or " (double quotes). If an attacker gained access to an Amazon WorkSpaces user's machine, they could then compromise such credentials from the log.

Cloud SecurityMicrosoft
P0
2023-10-05 00:00 UTC
Security Journalism

Pairing SOCs with Automation | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

We can use automation, detection and response, and open-source software to solve common SOC challenges. Read about simple approaches for SOC automation.

P0
2023-10-03 00:00 UTC
Security Journalism

Ask the Mac Guy: Do I Need AV on My Mac? | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

In this blog, our Mac expert answers the existential question: As a Mac user, do you need to use an antivirus (AV) to protect your Mac?

P0
2023-10-02 00:00 UTC
Government

Multiples vulnérabilités dans Exim (02 octobre 2023)

CERT-FR Alerts · indexed 2026-09-07 17:35 UTC

Le 27 septembre 2023, Zero Day Initiative (ZDI) a publié six avis de sécurité \[1\] concernant des vulnérabilités de type zéro-jour affectant les versions antérieures à 4.96.1 ou 4.97 de l'agent de transfert de courriels (*Mail Transfer Agent* ou *MTA*) Exim. Le 1er octobre 2023, l'éditeur a...

P0
2023-09-22 00:00 UTC
Security Journalism

Introducing Incident Notification | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Read about Huntress' newest feature, Incident Notification, which allows us to instantly alert partners to critical incidents via SMS text or phone call.

P0
2023-09-19 00:00 UTC
Other

AWS API Gateway Header Smuggling and Cache Confusion

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Researchers at Omegapoint identified two issues in AWS API Gateway authorizers: 1) A header rewrite feature could be abused to bypass authorization by overwriting headers after the authorizer lambda processed them. 2) Caching of authorization policies could be exploited to reuse cached policies with modified identification sources, bypassing the authorizer.

Cloud Security
P0
2023-09-19 00:00 UTC
Other

Chronicle cross-customer bucket access

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Customers can configure Chronicle to ingest data from customer-owned Cloud Storage buckets using an ingestion feed. Chronicle previously used a shared service account for all customers for granting permission to the bucket. Therefore, one customer's Chronicle instance could be configured to ingest data from another customer's Cloud Storage bucket. However, this required knowledge of the bucket URI.

P0
132 133 134 135 136