IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,617 matching records.
AUTO-POLL // 2026-10-07 17:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P6
P6
COOL // 64 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2022-08-17 00:00 UTC
Other

Remote Code Execution via GitHub Import

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A critical vulnerability in GitLab's GitHub import feature allows remote code execution. The issue stems from improper handling of Sawyer::Resource objects, enabling injection of Redis commands. This can be escalated to execute arbitrary bash commands on the SaaS managed service as well as self-hosted GitLab servers, potentially leading to full system compromise.

Vulnerabilities
P25
2022-08-12 00:00 UTC
Other

Actions Core Delimiter Injection Vulnerability

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

The @actions/core package had a delimiter injection vulnerability in the exportVariable function. Attackers could use a known delimiter to break out of a specific variable and assign values to other arbitrary variables. This may have allowed modification of path or environment variables without the intention of workflow or action authors.

Vulnerabilities
P0
2022-08-11 00:00 UTC
Other

Cloud SQL escape to host

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

In GCP's case, they introduced a modification to the Cloud SQL's PostgreSQL engine allowing the role assigned to the tenant (cloudsqlsuperuser) to arbitrarily change the ownership of a table to any user or role in the database. Thus, an attacker could (1) create a new table, (2) create an index function with a malicious payload, and (3) change the table owner to GCP’s superuser role (cloudsqladmin). Next, by initiating an ANALYZE command, the malicious function is executed with GCP’s superuser …

Cloud SecurityVulnerabilities
P10
2022-08-10 00:00 UTC
Other

Google Cloud Shell command injection

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability was discovered in Cloud Shell that enabled command injection and remote shell access. By manipulating the "project" parameter, an attacker could have cause an unencoded Python script execution flaw. Exploiting this flaw, they could inject a command to display the contents of the "/etc/passwd" file, successfully execute arbitrary commands and obtain remote shell access. However, the impact of this is unclear, as an attacker would seemingly only be able to gain such a remote shell…

Cloud SecurityVulnerabilities
P0
2022-07-25 11:38 UTC
Other

Under the Hood. Group-IB Managed XDR

Group-IB · indexed 2026-09-07 17:30 UTC

What Group-IB’s new all-in-one solution offers: cybersecurity management, network event analysis, and lightning-fast stops to attacks

P0
2022-07-20 00:00 UTC
Other

S3 Replication only logs first destination bucket

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

If a malicious actor with prior access to an AWS environment has permission to modify the S3 Replication Service role access policy, they could abuse cross-account replication to exfiltrate stolen data to an external bucket under their control. Moreover, when configured to replicate to multiple buckets at once, and if logging is only scoped to specific buckets (as opposed to being set to log "all current and future buckets"), then the S3 Replication Service only logs a putObject event to CloudT…

Cloud SecurityData Breaches
P0
2022-07-16 00:00 UTC
Other

Persistence Vulnerability in GCP Cloud Workstations

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A critical security flaw in Google Cloud Platform's Cloud Workstations allows unauthorized access and privilege escalation. The vulnerability stems from persistent session management, enabling users to access and exploit credentials of higher-privileged users. This can lead to impersonation, creation of new service accounts with elevated permissions, and bypassing of access controls.

Cloud SecurityVulnerabilities
P10
2022-07-14 00:00 UTC
Other

Dependency confusion in AWS CodeArtifact

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS CodeArtifact was susceptible to dependency confusion / substitution (i.e, publication of a malicious package to a public repository with the same name as an organization’s internal package). AWS fixed this issue by adding package origin controls, allowing users to limit how versions of a given package can be added to a CodeArtifact repository.

Cloud Security
P0
2022-07-12 00:00 UTC
Other

Microsoft Azure Site Recovery DLL hijacking

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

The Microsoft Azure Site Recovery suite contained a DLL hijacking flaw that allowed for privilege escalation from any low privileged user to SYSTEM on hosts where this service was installed. Incorrect permissions on the cxprocessserver service's executable directory allowed new files to be created in it by any user. Since the service ran automatically and with SYSTEM privileges and attempted to load DLLs from the directory, this allowed for a DLL hijacking / planting attack.

Cloud SecurityMicrosoftVulnerabilities
P10
2022-07-11 00:00 UTC
Other

AWS IAM Authenticator for Kubernetes AccessKeyID Validation Bypass

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Amazon Elastic Kubernetes Service (EKS) uses IAM to provide authentication to the cluster through the AWS IAM Authenticator for Kubernetes (aws-iam-authenticator). aws-iam-authenticator can be installed on any Kubernetes cluster, and it is installed by default in any EKS cluster both on AWS cloud and on-premises (Amazon EKS Anywhere). A security issue was discovered in aws-iam-authenticator where an allow-listed IAM identity may be able to modify their username and escalate privileges. The bug …

Cloud Security
P0
2022-06-28 00:00 UTC
Other

FabricScape (CVE-2022-30137) - Azure Service Fabric privilege escalation

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability in Service Fabric allows Linux containers to escalate their privileges in order to gain root privileges on the node, and then compromise all of the nodes in the cluster. An attacker would need to have read/write access to the cluster, and the vulnerability could be exploited on containers that are configured to have runtime access, but this is granted by default to every container. Though the bug exists in both the Windows and Linux versions, it is only exploitable on Linux.

Cloud SecurityLinuxMicrosoftVulnerabilitiesCVE-2022-30137
P15
2022-06-28 00:00 UTC
Security Journalism

Fighting Log4Shell with Huntress Managed EDR | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Read how our ThreatOps team used Huntress Managed EDR and Managed Antivirus to stop bad actors who were exploiting Log4Shell vulnerabilities.

P0
2022-06-22 00:00 UTC
Security Journalism

Diversity in Security Awareness Training Content

Huntress · indexed 2026-09-07 17:30 UTC

Enhance your organization's security posture with our Diversity Security Awareness Training content. Explore engaging modules designed to foster inclusivity while equipping your team with essential skills to identify and mitigate security threats.

P0
2022-06-17 00:00 UTC
Security Journalism

Scaling To Protect the 99% | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Learn about the latest platform changes and updates as Huntress continues to scale to protect the 99%.

P0
140 141 142 143 144