IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,488 matching records.
AUTO-POLL // 2026-10-05 20:35 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 5

RANSOMWARE
P6
P6
COOL // 44 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
RESET
2026-09-16 16:00 UTC
Vendor Research

Cisco Nexus Dashboard Software Security Hardening Release: September 2026

Cisco Security Advisories · indexed 2026-09-16 16:05 UTC

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these issues by …

VulnerabilitiesCVE-2026-20322CVE-2026-20325CVE-2026-20326CVE-2026-20360CVE-2026-20361CVE-2026-76409
P30
2026-09-16 15:50 UTC
Security Journalism

Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 16:25 UTC

A critical security flaw in Issabel Framework, a web-based framework for the open-source unified communications PBX software, has come under active exploitation. The vulnerability in question is CVE-2026-89026 (CVSS v3.1 score: 9.8/CVSS v4.0 score: 9.3), which can allow an unauthenticated remote attacker to execute arbitrary operating system (OS) commands by taking advantage of a hard-coded

VulnerabilitiesCVE-2026-89026
P5
2026-09-16 15:27 UTC
Security Journalism

Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 16:25 UTC

Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, and Toy Ghouls, according to multiple reports from Kaspersky. The cybersecurity vendor said it has identified attacks mounted by NightEagle (aka APT-Q-95), a threat actor known to be active since at least 2023, that involve new techniques for persistence and lateral movement.

APT / Nation-StateMalwareRansomwareThreat Actors
P15
2026-09-16 14:36 UTC
Security Journalism

One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 16:25 UTC

Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromium-based products: Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension. Once the extension was installed, it could access each product's built-in AI with a single click. On Comet, Edge,

MicrosoftSecurity Research
P0
2026-09-16 14:35 UTC
Security Journalism

Virtual Event Today: Attack Surface Management Summit

Security Week · SecurityWeek News · indexed 2026-09-16 14:55 UTC

Join SecurityWeek today for a virtual summit exploring the strategies and tools organizations need to discover, prioritize, and defend their expanding attack surfaces. The post Virtual Event Today: Attack Surface Management Summit appeared first on SecurityWeek.

P0
2026-09-16 14:20 UTC
Vendor Research

ScadaLTS Multiple Vulnerabilities

Tenable Research Advisories · Joshua Martinelle · indexed 2026-09-16 15:00 UTC

ScadaLTS Multiple Vulnerabilities ScadaLTS is an open-source, web-based SCADA/HMI application. Version 2.8.1-release-candidate build 0 is affected by multiple vulnerabilities:CVE-2026-84858: Authenticated Remote Code Execution via Scripting Sandbox Bypass (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)The DWR "DataSourceEditDwr" class exposes the "validateScript" method that compiles and executes attacker-supplied JavaScript via the Rhino scripting engine. There are no authorization checks on this method…

ICS / OTVulnerabilitiesCVE-2026-84858CVE-2026-84859CVE-2026-84860
P20
2026-09-16 14:15 UTC
Security Journalism

EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media

Security Week · Kevin Townsend · indexed 2026-09-16 14:35 UTC

Ursula von der Leyen warns that advanced AI could unleash hacking on an unprecedented scale as Europe prepares new protections against social media’s “capture” of children. The post EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media appeared first on SecurityWeek.

P0
2026-09-16 14:00 UTC
Security Journalism

The true cost of a ransomware attack, with and without BCDR

BleepingComputer · Sponsored by Datto · indexed 2026-09-16 14:20 UTC

The ransom itself can be only a fraction of the total cost of a ransomware attack, with downtime, recovery, remediation, and legal obligations adding millions to the bill. Datto explains how a mature BCDR strategy can reduce downtime and provide a faster, more predictable path to recovery. [...]

Ransomware
P15
2026-09-16 13:43 UTC
Other

Google Patches Pixel Modem Zero-Day Exploited in Targeted Attacks

Security Affairs · Pierluigi Paganini · indexed 2026-09-16 14:15 UTC

Google has patched a high-severity zero-day in the Pixel cellular modem after finding evidence that the vulnerability was exploited in limited, targeted attacks. Google has released its September 2026 Pixel security update, addressing a large set of vulnerabilities, including a high-severity flaw, tracked as CVE-2026-58704 (CVSS score of 8.0), in the cellular modem that has […]

VulnerabilitiesCVE-2026-58704
P30
2026-09-16 13:38 UTC
Security Journalism

AIUC Raises $40 Million to Certify Enterprise AI Agents

Security Week · Ionut Arghire · indexed 2026-09-16 13:55 UTC

The company provides a standard for AI systems, testing them against risks such as jailbreaks, prompt injections, and unauthorized actions. The post AIUC Raises $40 Million to Certify Enterprise AI Agents appeared first on SecurityWeek.

AI Security
P0
2026-09-16 13:37 UTC
Security Journalism

Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 14:15 UTC

Mandiant says an attacker hijacked an active AI coding-assistant session at an unnamed software-as-a-service provider and later spread Shai-Hulud across about 100 internal code repositories. Before the repository spread, the assistant recommended software that the attacker had poisoned, and the recommendation was accepted. The worm stole repository secrets and source code for the

P0
2026-09-16 13:14 UTC
Security Journalism

Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 14:15 UTC

Parallels Desktop for Mac has a flaw that lets an ordinary local account run code as root, the highest level of access on a Mac, software company JFrog said this week. The attack needs code already running on the machine as a normal user, so it does not work over the network. JFrog says the fix is in Parallels Desktop 27, a version that Intel Macs cannot install. Yuval Moravchick, who leads

P0
2026-09-16 13:14 UTC
Security Journalism

EU chief wants joint response to cyberattacks, sabotage

The Record · indexed 2026-09-16 13:30 UTC

Delivering her annual State of the Union address in Strasbourg, Ursula von der Leyen said threats were “mounting on our soil,” pointing to recent incidents in Denmark, Lithuania and Poland and an attempted drone attack in Leipzig.

P0
2026-09-16 13:09 UTC
Other

Revolut Data Leak May Trace Back to Compromised Italian Government Accounts

Security Affairs · Pierluigi Paganini · indexed 2026-09-16 14:15 UTC

A suspected compromise of an Italian government PEC account may have allowed threat actors to impersonate law enforcement and obtain sensitive data from hundreds of Revolut customers. The Revolut data exposure may be part of a much broader cyber incident involving compromised Italian government infrastructure. Revolut has confirmed that its systems were not breached. Instead, […]

Data BreachesThreat Actors
P0
2026-09-16 12:45 UTC
Security Journalism

Ukraine moves to crack down on scam call centers after corruption scandal

The Record · indexed 2026-09-16 13:00 UTC

Ukraine’s parliament has approved tougher criminal penalties for involvement in fraudulent call centers and the theft of personal data, following a corruption scandal in which prosecutors were accused of taking bribes to protect scam operations.

Cybercrime
P0
2026-09-16 12:11 UTC
Security Journalism

Webinar: What happens in the first hours of a Google Workspace breach

BleepingComputer · BleepingComputer · indexed 2026-09-16 12:30 UTC

The first hours after discovering a Google Workspace breach can determine how an incident unfolds. This webinar examines real-world breaches to show which early response decisions can limit the impact and which can make matters worse. [...]

P0
2026-09-16 11:58 UTC
Security Journalism

N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 12:45 UTC

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensitive data, business systems, and additional cloud

MalwarePhishingThreat Actors
P0
2026-09-16 11:15 UTC
Security Journalism

Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE-2026-58704 (CVSS score: 8.0), is a privilege escalation flaw. "In Cellular Modem, there is a possible permission bypass due to a logic error in the code," according to a description of the bug in the NIST National Vulnerability Database

VulnerabilitiesCVE-2026-58704
P35
2026-09-16 11:15 UTC
Security Journalism

Threat Intelligence Alone Won't Close the Exploitation Gap

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

A leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real target before most security teams have triaged the alert. Attackers are combining that kind of intelligence with AI-assisted exploitation to accelerate the path from exposure to breach faster than most security programs are built to react.

Threat IntelligenceVulnerabilities
P0
2026-09-16 11:11 UTC
Security Journalism

Hackuity Raises $19 Million for AI-Powered Vulnerability Management

Security Week · SecurityWeek News · indexed 2026-09-16 11:20 UTC

The company will use the new capital to expand its vulnerability operations platform and support international growth. The post Hackuity Raises $19 Million for AI-Powered Vulnerability Management appeared first on SecurityWeek.

Vulnerabilities
P0
2026-09-16 11:08 UTC
Security Journalism

Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the wild. The vulnerability, tracked as CVE-2026-87886 (CVSS score: 7.8), is described as a case of local privilege escalation due to insecure file permissions. It affects the following versions - Acronis Backup plugin for cPanel & WHM (Linux

LinuxVulnerabilitiesCVE-2026-87886
P35
2026-09-16 10:47 UTC
Security Journalism

280,000 Impacted by Premier Medical Group Data Breach

Security Week · Ionut Arghire · indexed 2026-09-16 11:00 UTC

In June 2026, hackers accessed files containing patients’ names, contact information, diagnosis details, and health insurance information. The post 280,000 Impacted by Premier Medical Group Data Breach appeared first on SecurityWeek.

Data Breaches
P0
31 32 33 34 35