IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,439 matching records.
AUTO-POLL // 2026-10-04 13:00 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P8 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 4

RANSOMWARE
P8
P8
COOL // 6 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
MON
Sep 28

RANSOMWARE
P7
P7
COOL // 52 ARTICLES
RESET
2026-09-24 12:16 UTC
Security Journalism

Windows 11 KB5124010 update released with 46 changes and fixes

BleepingComputer · Sergiu Gatlan · indexed 2026-09-24 12:25 UTC

Microsoft released the KB5124010 September 2026 non-security preview update for Windows 11 24H2 and 25H2, with 46 changes including Bluetooth improvements and the ability to remap the Copilot key. [...]

Microsoft
P0
2026-09-24 12:05 UTC
Security Journalism

Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 12:15 UTC

The logistics sector has become the target of a new malicious cyber campaign that distributes an Android spyware codenamed Corp MDM. According to Have I Been Squatted, the campaign uses fake Google Play pages branded as CEVA and TKW Logistics to distribute an Android Package Kit (APK) file that's dressed up as a system service. The delivered app has the package name "com.corp.mdm" Corp MDM

Mobile Security
P0
2026-09-24 11:39 UTC
Security Journalism

Island Raises $400 Million at $6.4 Billion Valuation

Security Week · SecurityWeek News · indexed 2026-09-24 11:45 UTC

The enterprise security firm has raised more than $1 billion since its launch in 2020; Evolution Equity Partners led the latest funding round. The post Island Raises $400 Million at $6.4 Billion Valuation appeared first on SecurityWeek.

P0
2026-09-24 11:00 UTC
Security Journalism

Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 12:15 UTC

AI coding agents are changing how quickly developers can build and ship software as well as how quickly credentials can become exposed. According to GitGuardian’s 2026 State of Secrets Sprawl Report, commits identified as AI-assisted are leaking secrets at approximately twice the rate of human-written ones. Most of the fastest-growing categories of leaked credentials are now connected to AI

P0
2026-09-24 11:00 UTC
Security Journalism

Begin at the End: How to Enable Agentic Remediation

Security Week · Nadir Izrael · indexed 2026-09-24 11:05 UTC

Agentic remediation is not an act of faith. We are talking about fixing known problems, not judgment calls about unfamiliar risk. The post Begin at the End: How to Enable Agentic Remediation appeared first on SecurityWeek.

P0
2026-09-24 10:31 UTC
Other

OpenAI Agent Bypassed an Australian Government Health Portal During Internal Research

Security Affairs · Pierluigi Paganini · indexed 2026-09-24 11:45 UTC

OpenAI’s AI agent bypassed controls on an Australian health portal, accessed non-public files and triggered a government investigation. An OpenAI AI agent bypassed access controls on an Australian government health statistics portal in June, accessing both public and non-public files in what Australian authorities are treating as a serious AI-related cyber incident. The case was […]

AI SecurityDFIR
P0
2026-09-24 09:56 UTC
Security Journalism

Astrana Health Data Breach Impacts Private, Confidential Information

Security Week · Ionut Arghire · indexed 2026-09-24 10:05 UTC

Hackers impersonated the company’s personnel and contacted its employees to gain access to Astrana Health’s servers. The post Astrana Health Data Breach Impacts Private, Confidential Information appeared first on SecurityWeek.

Data Breaches
P0
2026-09-24 09:38 UTC
Security Journalism

OpenAI hacked Australian Medicare govt site, probed data providers

BleepingComputer · Bill Toulas · indexed 2026-09-24 09:45 UTC

OpenAI agents targeted public data providers in multiple countries, probing some for vulnerabilities and exploiting a security weakness in an Australian government portal while performing information-retrieval tasks as part of a research project. [...]

AI Security
P0
2026-09-24 09:14 UTC
Security Journalism

17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 11:05 UTC

ClickFix has become the most common way attackers get into enterprise networks, and it does it without an exploit, an attachment, or a file on disk. Our new global threat report traces the technique from a novelty in late 2023 to a subscription product with on-chain infrastructure and a state-sponsored user base, and explains why blocking malicious domains is no longer a useful defense. Read

APT / Nation-StateMalware
P0
2026-09-24 09:00 UTC
Other

Been told to pay at a Bitcoin ATM? Read this first

ESET · indexed 2026-09-25 12:20 UTC

Crypto ATM scams often follow a predictable script – here’s how to recognize it and what to do if you’ve already been caught out

P0
2026-09-24 07:07 UTC
Security Journalism

OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 08:35 UTC

An AI agent on an internal OpenAI research task bypassed access controls on an Australian government Medicare statistics portal in June, Prime Minister Anthony Albanese said. The portal publishes aggregate figures, such as spending, and is separate from the systems that handle Medicare claims and personal records. The agent reached files on it that were not public, but no personal

AI Security
P0
2026-09-24 06:32 UTC
Security Journalism

TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 08:35 UTC

Cybersecurity researchers have disclosed details of an active TeamFiltration campaign codenamed UNK_CondorFiltration that has targeted over 5,700 accounts across 28 Microsoft 365 tenants. According to Proofpoint, the activity has primarily focused on Chilean retail and financial institutions. It originated from 1,487 unique AWS EC2 source IP addresses. "The campaign compromised 7 accounts –

Cloud SecurityMicrosoftSecurity Research
P0
2026-09-24 06:25 UTC
Community

One URL, Three Different Tricks, (Thu, Sep 24th)

SANS Internet Storm Center · indexed 2026-09-24 06:45 UTC

Yesterday, we received a phishing email with an interesting link. At first sight, it looks like garbage, but every piece of it has been carefully crafted to confuse basic security controls. Here is the defanged link:

Phishing
P0
2026-09-24 06:24 UTC
Other

No One Gets Phished: The New Group-IB Browser Agent Applies Predictive Intelligence At The Click

Group-IB · indexed 2026-09-24 09:10 UTC

One employee reaches a phishing page. The tab closes, the domain is blocked for every browser in the company, and the targeted password is already being reset. The new Group-IB Browser Agent brings the corporate browser under XDR coverage, checking every page against predictive Threat Intelligence in real time.

PhishingThreat Intelligence
P0
2026-09-24 05:44 UTC
Other

CLOSEDQUORUM, the malware that asks four AI models what to do next

Security Affairs · Pierluigi Paganini · indexed 2026-09-24 05:50 UTC

Cisco Talos finds CLOSEDQUORUM, malware that lets four commercial AI models vote on its next move, with no human operator required. Cisco Talos found malware, dubbed CLOSEDQUORUM, that holds a vote before deciding what to steal from you. Four AI models vote on its next move, without any human interaction. CLOSEDQUORUM is the first Windows […]

MalwareMicrosoft
P0
2026-09-24 05:36 UTC
Security Journalism

Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-24 08:35 UTC

Threat actors have begun to actively exploit a critical security flaw in WordPress within hours of public disclosure. The vulnerability in question is CVE-2026-87902 (CVSS score: 9.2), which could allow an unauthenticated attacker to obtain remote code execution (RCE). "An unauthenticated attacker can make get_page_template() page-template resolution include a chosen readable local .php file

Threat ActorsVulnerabilitiesCVE-2026-87902
P20
2026-09-23 23:07 UTC
Vendor Research

ICYMI: August 2026 @AWS Security

AWS Security Blog · Rodolfo Brenes · indexed 2026-09-23 23:25 UTC

Read all about the latest AWS security features, compliance updates, and hands-on resources in our monthly digest posts. You’ll find expert blog posts, new service capabilities, code samples, and workshops. AWS Security Blog posts August brought 20 AWS Security Blog posts organized across seven categories. Identity and access management led the month with five posts […]

Cloud Security
P0
2026-09-23 22:46 UTC
Security Journalism

Placeholder domain used in dev docs now serves ClickFix attacks

BleepingComputer · Lawrence Abrams · indexed 2026-09-23 22:50 UTC

The "third-party.com" domain, commonly used as a placeholder in developer documentation and code examples, is serving a fake Cloudflare verification page that attempts to trick Windows users into executing PowerShell commands. [...]

Microsoft
P0
2026-09-23 21:03 UTC
Security Journalism

EDR Evasion Stack Helps Process Injection Slip Past Defenses

Dark Reading · Alexander Culafi · indexed 2026-09-23 21:10 UTC

A process parameter-poisoning technique evades EDR by injecting code into process initialization structures without using the Windows APIs that EDR tools typically watch out for.

Microsoft
P0
14 15 16 17 18