IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,492 matching records.
AUTO-POLL // 2026-10-06 01:35 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
NO DATA
NO INTELLIGENCE AGGREGATED TODAY
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 6
NO DATA
--
NO INTEL
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
RESET
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-77810 - Issue with Athena Federated Query Neptune Connector

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-21 20:00 UTC

Bulletin ID: 2026-087-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 12:30 PM PDT Description: Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data sources outside of Amazon S3 like DynamoDB, Azure Synapse, and custom connectors using standard SQL syntax. These connectors are open source and deployed to the Ath…

Cloud SecurityVulnerabilitiesCVE-2026-77810
P5
2026-09-09 21:30 UTC
Vendor Research

Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-21 18:10 UTC

Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT Description: FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small microprocessors. AWS identified four issues with FreeRTOS-Kernel, affecting multiple versions. - CVE-2026-77234: This issue affects configurations that use the FreeRTOS MPU together with software timers; applications that do not use the FreeRTOS MPU are not affected. - CVE-20…

Cloud SecurityLinuxVulnerabilitiesCVE-2026-77234CVE-2026-77235CVE-2026-77236CVE-2026-77237
P5
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-18420 - Remote Code Execution via Prototype Pollution in OpenSearch Dashboards TSVB Plugin

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-20 22:05 UTC

Bulletin ID: 2026-085-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/20/2026 13:30 PM PDT Description: Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards before 3.8 allows a remote authenticated user with standard data access permissions to execute arbitrary code on the server by sending a crafted JSON payload to the metrics visualization API endpoint. To mitigate this issue, users should upgrade to OpenSearch Das…

Cloud SecurityVulnerabilitiesCVE-2026-18420
P20
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-75910 - Issue with Athena Federated Query Clickhouse Connector

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-20 20:25 UTC

Bulletin ID: 2026-084-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/20/2026 13:00 PM PDT Description: Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data sources outside of Amazon S3 like DynamoDB, Azure Synapse, and custom connectors using standard SQL syntax. These connectors are open source and deployed to the Ath…

Cloud SecurityVulnerabilitiesCVE-2026-75910
P5
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-75935 and CVE-2026-75936 - Issue with Amazon ion-java - Memory-amplification denial of service

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-18 20:10 UTC

Bulletin ID: 2026-083-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/18/2026 12:30 PM PDT Description: ion-java is a Java library that implements the Amazon Ion data format specification. We identified CVE-2026-75935, memory-amplification denial of service via declared-length preallocation, and CVE-2026-75936, memory-amplification denial of service via highly compressed data expansion. Affected versions: < 1.12.0 Please refer to the article below for the most u…

Cloud SecurityVulnerabilitiesCVE-2026-75935CVE-2026-75936
P5
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-75897 - Uncontrolled resource consumption in OpenSearch Dashboards capabilities route

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-18 18:30 UTC

Bulletin ID: 2026-082-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/18/2026 10:00 AM PDT Description: OpenSearch Dashboards is the open-source visualization and management UI for OpenSearch, and ships as part of Amazon OpenSearch Service. We identified CVE-2026-75897, an improper input validation in the capabilities route handler in OpenSearch Dashboards. The handler does not bound the size of the request payload, which might allow remote attackers to cause a …

Cloud SecurityVulnerabilitiesCVE-2026-75897
P5
2026-09-09 21:30 UTC
Vendor Research

CVE-2026-18428 - OpenSearch SQL Plugin - Async Query Validation Bypass

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-15 18:58 UTC

Bulletin ID: 2026-081-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/13/2026 10:30 AM PDT Description: OpenSearch SQL plugin is a plugin that enables SQL and PPL query capabilities on OpenSearch clusters, including direct query integration with external data sources via Apache Spark. An issue exists where the Flint extension query handler validates SQL queries without sufficient restrictions, allowing a user with async query access to bypass the SQL grammar den…

Cloud SecurityVulnerabilitiesCVE-2026-18428
P5
2026-09-09 21:30 UTC
Vendor Research

Threat matrix: Mapping threats across cloud web applications

Microsoft Security Blog · Microsoft Security Research and Lior Leizerovich · indexed 2026-09-09 22:40 UTC

Microsoft introduces the Cloud Web Applications Threat Matrix, a MITRE ATT&CK-aligned framework that helps defenders understand, prioritize, and mitigate threats to cloud-hosted web apps and serverless platforms. The post Threat matrix: Mapping threats across cloud web applications appeared first on Microsoft Security Blog.

Microsoft
P0
2026-09-09 21:02 UTC
Security Journalism

Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking

BleepingComputer · Bill Toulas · indexed 2026-09-09 21:05 UTC

The Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction. [...]

P0
2026-09-09 19:09 UTC
Vendor Research

The state of AI for security: Measuring what matters most for building trust

AWS Security Blog · Anshumali Shrivastava · indexed 2026-09-09 19:30 UTC

Security teams are starting to actively use AI for security work, including vulnerability triage, penetration testing, threat modeling, incident response, and code review. The promise is speed, but a security tool that moves fast and raises too many false alarms doesn’t save time. Engineers spend time on false alarms, on-call is noisier, and teams distrust […]

DFIRVulnerabilities
P0
2026-09-09 18:26 UTC
Security Journalism

U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-09 19:50 UTC

The U.S. Department of Justice (DoJ) on Wednesday announced coordinated actions aimed at an illicit online marketplace called Xinbi Guarantee that offered scam services, including seizing Telegram channels used to run the service, confiscating two cryptocurrency wallets, and deploying the Scam Center Strike Force to Madagascar to help disrupt 13 scam compounds run by Chinese organized crime

Law Enforcement
P0
2026-09-09 18:20 UTC
Other

US Agencies Warn Chinese AI Firms Are Extracting Advanced AI Models

Security Affairs · Pierluigi Paganini · indexed 2026-09-09 18:50 UTC

US agencies accuse six Chinese AI firms of extracting billions of tokens from US AI models to accelerate development and copy advanced capabilities. NSA, CISA, and the FBI jointly published an advisory accusing six Chinese AI companies, DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI, of running industrial-scale extraction campaigns against US frontier models since […]

Law Enforcement
P0
2026-09-09 17:46 UTC
Community

Scans for Proxmox Servers, (Wed, Sep 9th)

SANS Internet Storm Center · indexed 2026-09-09 18:00 UTC

About a week ago, Proxmox published an advisory revealing a vulnerability in older versions of Proxmox VE, its flagship Virtual Environment product. The vulnerability only affects version 7, which has not been supported for a couple of years now.&#xd;

Vulnerabilities
P0
2026-09-09 17:41 UTC
Vendor Research

Passkey-themed social engineering leads to identity and cloud compromise

Microsoft Security Blog · Microsoft Security Research, Krithika Ramakrishnan, Bharat Vaghela, Vaibhav Deshmukh, Subhajit Ghosh, Anusha Chakraborty, Akash Chaudhuri, Victor Chingtham and Ivan Macalintal · indexed 2026-09-09 18:45 UTC

Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA persistence, abuse Microsoft Graph for reconnaissance, and access SharePoint, OneDrive, and email data, along with key detection and mitigation guidance. The post Passkey-themed social engineering leads to identity and cloud compromise appeared first on Microsoft Security Blog.

MicrosoftThreat Actors
P0
2026-09-09 17:23 UTC
Security Journalism

HelmGuard Raises $7.3 Million for Agentic GRC and Security

Security Week · Ionut Arghire · indexed 2026-09-09 17:30 UTC

The company will increase its US market presence and will expand its engineering and go-to-market teams. The post HelmGuard Raises $7.3 Million for Agentic GRC and Security appeared first on SecurityWeek.

P0
2026-09-09 17:03 UTC
Security Journalism

Electronic health record company says customer data stolen in breach

The Record · indexed 2026-09-09 17:20 UTC

Veradigm said access was limited to a specific interface, and did not impact the company’s broader environment such as its networks, servers or databases. The incident did not result in operational disruptions, the company added.

P0
2026-09-09 16:48 UTC
Security Journalism

US says Chinese firms extracted billions of tokens from frontier AI models

BleepingComputer · Bill Toulas · indexed 2026-09-09 16:50 UTC

U.S. cybersecurity and intelligence agencies say that six Chinese AI companies conducted industrial-scale distillation attacks on American frontier AI models since at least late 2024. [...]

P0
2026-09-09 16:34 UTC
Security Journalism

Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-09 19:50 UTC

Multiple espionage-motivated threat activity clusters have been found deploying a previously undocumented exploit kit called BlueMoon that chains together multiple vulnerabilities in Microsoft Windows and Google Chrome. The first in-the-wild use of BlueMoon has been attributed to the China-aligned state-sponsored group tracked as APT31 (aka Bronze Vinewood, Judgement Panda, JungleBamboo,

APT / Nation-StateMicrosoft
P0
44 45 46 47 48