IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,596 matching records.
AUTO-POLL // 2026-10-07 15:15 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P4 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P4
P4
COOL // 43 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2023-08-02 00:00 UTC
Security Journalism

Breaking Down the Threat Hunting Process | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Discover the key phases of the threat hunting process and how threat hunters structure their hunts to proactively seek out threats.

P0
2023-07-19 00:00 UTC
Security Journalism

Celebrating One Year of Security Awareness Training

Huntress · indexed 2026-09-07 17:30 UTC

Dive into the improvements and progress we’ve made with Huntress Security Awareness Training since acquiring Curricula one year ago.

P0
2023-07-18 00:00 UTC
Other

Bad.Build

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

An information disclosure vulnerability in the Google Cloud Build service could have allowed an attacker to view sensitive logs if they had gained prior access to a GCP environment and had permission to create a new Cloud Build instance (cloudbuild.builds.create) or permission to directly impersonate the Cloud Build default service account (which is highly privileged by design and therefore considered to be a known privilege escalation vector in GCP). An attacker could then potentially use this…

Cloud SecurityVulnerabilities
P10
2023-07-06 12:00 UTC
Government

ACD - The Sixth Year

UK NCSC Threat Reports · indexed 2026-08-15 18:50 UTC

Key findings and full report from the 6th year of the Active Cyber Defence (ACD) programme.

P0
2023-06-28 00:00 UTC
Security Journalism

dmXProtect: Stop, Drop, Shut Malware Down

Huntress · indexed 2026-09-07 17:30 UTC

Do you need third-party security for macOS? Discover if Apple’s malware prevention products, XProtect and XProtect Remediator, are good enough solutions to keep users safe.

AppleMalware
P0
2023-06-27 00:00 UTC
Other

Azure Front Door client-side desync

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A client-side desync vulnerability was discovered in Front Door, one of Azure's CDN solutions, caused by mishandling of the 'Content-Length' header in HTTP requests. Exploiting this vulnerability would most likely require user interaction through social engineering (such as clicking on a malicious link), but could allow an attacker to steal session cookies or forge responses to victim requests.

Cloud SecurityVulnerabilities
P0
2023-06-22 12:00 UTC
Government

Cyber Threat Report: UK Legal Sector

UK NCSC Threat Reports · indexed 2026-08-15 18:50 UTC

An updated report from the NCSC explaining how UK law firms - of all sizes - can protect themselves from common cyber threats.

P0
2023-06-21 00:00 UTC
Other

Critical Authentication Bypass in Google Cloud API Gateway

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A critical authentication bypass vulnerability was discovered in Google Cloud API Gateway, affecting its JWT authentication method. The flaw, stemming from a business logic bug in the ESPv2 service proxy, allowed attackers to bypass authentication controls by manipulating HTTP methods. This vulnerability impacted various authentication methods including Firebase, Auth0, Okta, and Google ID tokens.

Cloud SecurityVulnerabilities
P10
2023-06-20 00:00 UTC
Other

nOAuth

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Descope identified a possible misconfiguration in Azure AD which could lead to misuse of the "Log in with Microsoft" authentication method on a web app. If an application relies on email attribute claims for authentication (which is against best practice) and also merges user accounts without proper validation, an attacker could falsify an email claim to gain full control over the target account. Descope and Microsoft Microsoft identified several popular multi-tenant applications with users tha…

Cloud SecurityMicrosoft
P0
2023-06-20 00:00 UTC
Security Journalism

How To Speak To SMBs About Cybersecurity | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Need help approaching the security sales conversation? Use these tips to walk into your next client meeting armed with points for selling cybersecurity.

P0
2023-06-14 00:00 UTC
Other

XSS in Azure Bastion and Container Registry

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Orca discovered vulnerabilities in Azure Bastion and Azure Container Registry that could have enabled an attacker to achieve Cross-Site Scripting (XSS) by using iframe postMessages. The vulnerabilities allowed embedding of endpoints within remote attacker-controlled servers using the iframe tag, thereby granting unauthorized access to the victim’s session in the affected service if they were tricked into navigating to an attacker-controlled website. The root cause was that certain web pages in …

Cloud Security
P0
2023-06-13 00:00 UTC
Other

Bucket Traversal in Google Cloud Storage Transfer Manager

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A bucket traversal vulnerability was discovered in the google.cloud.storage.transfer_manager.upload_chunks_concurrently() function of Google Cloud Storage. This issue could potentially allow unauthorized access to files in different buckets or directories within the same project.

Cloud SecurityVulnerabilities
P0
2023-06-12 00:00 UTC
Other

Azure App Services takeover via legacy API

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Binary Security found two vulnerabilities in the legacy Azure Resource Manager (ARM) REST API. The first vulnerability allowed an attacker with Reader access to an Azure Function, acting from a Windows host, to get an admin token that could be exchanged for a master key granting access to all operations in Kudu (the Functions deployment service). This would allow them to tamper with the function by deploying malicious code to it. The other vulnerability allowed an attacker with Reader access to…

Cloud SecurityMicrosoftVulnerabilities
P0
2023-06-08 00:00 UTC
Security Journalism

Calm In The Storm: Reviewing Volt Typhoon

Huntress · indexed 2026-09-07 17:30 UTC

Explore the recent disclosures concerning Volt Typhoon, a threat actor engaged in the widespread exploitation of external-facing services and network appliances.

Threat Actors
P0
2023-06-07 00:00 UTC
Other

AWS Directory Service not checking PassRole on EnableRoleAccess

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS Directory Service didn't check the iam:PassRole permissions when using the EnableRoleAccess action. This could have been used for privilege escalation by an authenticated user with sufficient permissions (ds:EnableRoleAccess), if the role had a trust policy that allowed use by Directory Service.

Cloud SecurityVulnerabilities
P10
2023-06-02 00:00 UTC
Other

Privilege escalation in GCP Cloud SQL

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability was discovered in Cloud SQL for SQL Server that allowed customer administrator accounts to create triggers in the tempdb database and use those to gain sysadmin privileges in the instance. The sysadmin privileges would give the attacker access to system databases and partial access to the machine running that SQL Server instance.

Vulnerabilities
P10
134 135 136 137 138