IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,637 matching records.
AUTO-POLL // 2026-10-07 22:50 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P5 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 7

RANSOMWARE
P5
P5
COOL // 84 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
RESET
2018-11-28 00:00 UTC
Other

Resource policy confused deputy issue with services

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Resource policies lacked a way of restricting service access to only your own account, allowing an attacker to leverage a service to potentially access your resources. Originally discovered by Dan Peebles and presented at re:Invent in 2018, this issue did not gain enough attention to be fixed until Shir Tamari and Ami Luttwak from Wiz presented it at Black Hat 2021.

P0
2018-08-16 20:00 UTC
Security Journalism

Attackers Abuse Trust with Indirection

Huntress · indexed 2026-09-07 17:30 UTC

Preventive security products like antivirus have made major strides in their ability to detect malicious behaviors as opposed to weak/static signatures. When implemented properly, these heuristics are capable of discovering even the most cleverly obfuscated routines. But don’t ring the victory bells yet. This cat-and-mouse game is just getting started…

P0
2018-08-13 00:00 UTC
Other

Launching EC2s did not require specifying AMI owner

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Attackers had put malicious AMIs in the marketplace to abuse the CLI''s way of selecting what AMI to use. Although the concept of planting malicious AMIs had existed for a while (ex. in the 2009 presentation "Clobbering the clouds" by Nicholas Arvanitis, Marco Slaviero, and Haroon Meer) it had not been used specifically to target this issue with the CLI.

P0
2018-05-29 20:00 UTC
Security Journalism

Potentially Unwanted Programs: It's Not Always Malware | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Regardless of your daily duties, we’ve all encountered annoying ads, unwanted pop-ups, or generically named rogue applications. These nuisances, commonly called Potentially Unwanted Programs (PUP), are often unknowingly installed when downloading free software.

Malware
P0
2018-05-29 11:56 UTC
Other

Cobalt Renaissance

Group-IB · indexed 2026-09-07 17:30 UTC

New attacks and joint operations

P0
2018-01-30 07:00 UTC
Security Journalism

Deep Dive: Kaseya VSA Mining Payload

Huntress · indexed 2026-09-07 17:30 UTC

For many of us in the Managed Services Provider market, we were rocked with news of a vulnerability in Kaseya’s VSA product. The purpose of this blog is to shine technical light on what the Huntress ThreatOps team observed and analyzed thus far.

Vulnerabilities
P0
2017-11-07 00:00 UTC
Other

Bypassable and overly-privileged IAM policies

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

AWS has previously provided managed policies or guidance in documentation for policies with mistakes that allow them to be bypassed. Additionally, some policies are over-privileged. Date of disclosure is for the first issue of this type, while references provide other examples by various individuals.

Cloud Security
P0
2017-11-02 13:04 UTC
Other

In a Queue for a Scam

Group-IB · indexed 2026-09-07 17:30 UTC

How faudsters cash in on hype around new iPhones

Apple
P0
2017-10-19 13:13 UTC
Other

‘Black spot’ for pirates

Group-IB · indexed 2026-09-07 17:30 UTC

Russia has developed a strong legal framework to combat online piracy. All that is needed is for it to be used effectively (especially for Forbes.ru)

P0
2017-10-10 00:00 UTC
Other

AWS Java SDK XXE injection

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

The AWS Java SDK was vulnerable to XML external entity (XXE) injection related to XML parsers.

Cloud Security
P0
2017-10-02 13:00 UTC
Security Journalism

Abusing Trusted Applications with Nested Execution

Huntress · indexed 2026-09-07 17:30 UTC

Recently, my co-founders gave a talk at DerbyCon 7.0 on evading common persistence enumeration tools. Evasion using trusted applications has been a hot topic of discussion within the infosec community and is one of the techniques they covered in their presentation. However, very little discussion exists on why these matter or the steps researchers take to find “hosting” applications.

P0
2017-08-25 14:00 UTC
Security Journalism

MSP Moment | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Over the past month, the Emotet family of malware has re-emerged as a formidable piece of crimeware, thanks to its new self-propagation techniques (undoubtedly inspired by the success of WannaCry and Petya).

Malware
P0
2017-08-15 12:25 UTC
Other

Secrets of Cobalt

Group-IB · indexed 2026-09-07 17:30 UTC

How Cobalt hackers bypass your defenses

P0
2017-08-10 13:36 UTC
Other

Insecure venture

Group-IB · indexed 2026-09-07 17:30 UTC

On the price of hacker attacks and the toxic cyber environment

P0
2017-08-04 13:34 UTC
Other

Kronos devouring its children

Group-IB · indexed 2026-09-07 17:30 UTC

The man who "saved the world" from the WannaCry outbreak has been arrested on suspicion of being the author of Kronos banking Trojan

Law EnforcementMalware
P0
2017-08-02 12:29 UTC
Other

Hacktivists unmasked

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB reveals the identity of alleged members of the Islamic hacker group United Islamic Cyber Force

Threat Actors
P0
2017-07-17 17:00 UTC
Security Journalism

Deep Dive: Squashing an MSSQL Attack

Huntress · indexed 2026-09-07 17:30 UTC

During the previous MSP Moment, we walked our readers through an incident where our partner, NTConnections, used Huntress to discover a previously undetected breach. In this Deep Drive, we’ll examine the tradecraft used by the attackers to gain access through the database, kill/disable antivirus, download malicious files, and establish a persistent foothold within the network.

P0
152 153 154 155