IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,488 matching records.
AUTO-POLL // 2026-10-05 21:15 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 5

RANSOMWARE
P6
P6
COOL // 44 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
RESET
2026-09-16 10:28 UTC
Security Journalism

Chrome, Firefox Updates Patch 115 Vulnerabilities

Security Week · Ionut Arghire · indexed 2026-09-16 10:40 UTC

Google resolved 42 security defects in Chrome, and Mozilla fixed 73 bugs in Firefox. The post Chrome, Firefox Updates Patch 115 Vulnerabilities appeared first on SecurityWeek.

P0
2026-09-16 10:00 UTC
Vendor Research

Securing the unpatchable in an age of AI-driven vulnerabilities

Cisco Talos Intelligence Blog · Martin Lee · indexed 2026-09-16 10:25 UTC

Advances in AI technology will continue to identify vulnerabilities that in some circumstances are difficult, or effectively impossible, to patch. Appropriate network segmentation, rigorous visibility, and the deployment of NGFW/IPS combinations can provide a powerful compensatory layer.

P0
2026-09-16 10:00 UTC
Vendor Research

Atomic macOS (AMOS) Stealer Activity

Palo Alto Networks Unit 42 · Bradley Duncan · indexed 2026-09-16 10:20 UTC

Modern macOS malware uses deceptive setup guides to steal credentials and sensitive user data. Learn how to identify and block these threats. The post Atomic macOS (AMOS) Stealer Activity appeared first on Unit 42.

AppleMalware
P0
2026-09-16 08:19 UTC
Other

Texas Utility CenterPoint Energy Confirms Data Breach After Hacker Claims 7.49M Records Stolen

Security Affairs · Pierluigi Paganini · indexed 2026-09-16 08:40 UTC

CenterPoint Energy confirmed a customer data breach after a hacker claimed to leak 7.49M records, including personal and billing information. CenterPoint Energy admitted on Monday that an intruder stole personal information belonging to some of its customers. The Houston-based utility, which supplies electricity and gas to about 7 million accounts across Texas, Indiana, Minnesota and […]

Data Breaches
P0
2026-09-16 08:06 UTC
Security Journalism

Oracle Patches 800+ Vulnerabilities in September 2026 Security Update

Security Week · Ionut Arghire · indexed 2026-09-16 08:20 UTC

The security updates resolve over 800 vulnerabilities across 17 product families, including over 100 critical-severity flaws. The post Oracle Patches 800+ Vulnerabilities in September 2026 Security Update appeared first on SecurityWeek.

Cloud Security
P5
2026-09-16 05:48 UTC
Security Journalism

Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 06:40 UTC

Threat actors are exploiting a critical security flaw in WooCommerce Wholesale Lead Capture, a premium WordPress plugin that has more than 6,000 active installs. "This vulnerability can be leveraged by unauthenticated attackers to upload arbitrary files, including PHP backdoors, and achieve remote code execution," Wordfence said. The WordPress security company said it has blocked over

MalwareThreat ActorsVulnerabilities
P15
2026-09-16 05:18 UTC
Security Journalism

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 06:40 UTC

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw. "JWT authentication

VulnerabilitiesCVE-2026-5430
P25
2026-09-16 05:00 UTC
Other

ZDI-26-713: GIMP APNG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

Zero Day Initiative · indexed 2026-09-17 00:20 UTC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-92183.

VulnerabilitiesCVE-2026-92183
P20
2026-09-16 05:00 UTC
Other

ZDI-26-711: NoMachine Redis Improper Authentication Local Privilege Escalation Vulnerability

Zero Day Initiative · indexed 2026-09-17 00:20 UTC

This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-92209.

VulnerabilitiesCVE-2026-92209
P15
2026-09-16 05:00 UTC
Other

ZDI-26-709: Cisco Secure Firewall Management Center CommandSinkRmi Deserialization of Untrusted Data Remote Code Execution Vulnerability

Zero Day Initiative · indexed 2026-09-17 00:20 UTC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Secure Firewall Management Center. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.1. The following CVEs are assigned: CVE-2026-20242.

Network SecurityVulnerabilitiesCVE-2026-20242
P20
2026-09-16 05:00 UTC
Other

ZDI-26-706: (0Day) CrewAI crewAI Framework Agent Loading Unsafe Reflection Remote Code Execution Vulnerability

Zero Day Initiative · indexed 2026-09-16 15:20 UTC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CrewAI crewAI. User interaction is required to exploit this vulnerability in that the target must load a malicious agent configuration from the repository. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2026-92206.

VulnerabilitiesCVE-2026-92206
P20
2026-09-16 05:00 UTC
Other

ZDI-26-705: (0Day) BusyBox libarchive Symlink Directory Traversal Arbitrary File Creation Vulnerability

Zero Day Initiative · indexed 2026-09-16 15:20 UTC

This vulnerability allows remote attackers to create arbitrary files on affected installations of BusyBox. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-92205.

VulnerabilitiesCVE-2026-92205
P5
2026-09-16 05:00 UTC
Other

ZDI-26-704: (0Day) Airbyte OneDrive Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability

Zero Day Initiative · indexed 2026-09-16 15:20 UTC

This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.7. The following CVEs are assigned: CVE-2026-92204.

VulnerabilitiesCVE-2026-92204
P5
2026-09-16 05:00 UTC
Other

ZDI-26-703: (0Day) Airbyte SharePoint Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability

Zero Day Initiative · indexed 2026-09-16 15:20 UTC

This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.7. The following CVEs are assigned: CVE-2026-92203.

MicrosoftVulnerabilitiesCVE-2026-92203
P5
2026-09-15 22:21 UTC
Vendor Research

AWS STS simplifies session token size limits and adds session token size monitoring

AWS Security Blog · Rishi Tripathy · indexed 2026-09-15 22:45 UTC

AWS Security Token Service (AWS STS) has simplified session token size limits, giving you more room for your session policies and session tags. STS has replaced the packed policy size and the overall session token size limits with a single token size limit of 4,096 bytes. STS now reports session token size in API responses, […]

Cloud Security
P0
2026-09-15 21:00 UTC
Vendor Research

Oracle September 2026 Critical Security Patch Update addresses 672 CVEs

Tenable Blog · Research Special Operations · indexed 2026-09-15 21:15 UTC

Oracle addresses 672 CVEs in its September 2026 Critical Security Patch Update with 673 patches, including 104 critical updates.Key TakeawaysThe September 2026 Critical Security Patch Update (CSPU) contains fixes for 672 unique CVEs in 673 security updates104 issues (15.5% of all patches) were assigned a critical severity ratingOracle E-Business Suite received the highest number of patches at 159, accounting for 23.6% of all patchesBackgroundOn September 15, Oracle released its Critical Securit…

P5
2026-09-15 20:46 UTC
Other

U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog

Security Affairs · Pierluigi Paganini · indexed 2026-09-15 21:35 UTC

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Cisco Secure Email Gateway flaw, tracked as CVE-2026-76461 (CVSS score of 9,8), to its Known Exploited Vulnerabilities (KEV) catalog. Cisco disclosed a critical zero-day CVE-2026-76461 this week; […]

VulnerabilitiesCVE-2026-76461
P60
32 33 34 35 36