IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,492 matching records.
AUTO-POLL // 2026-10-06 02:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
NO DATA
NO INTELLIGENCE AGGREGATED TODAY
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 6
NO DATA
--
NO INTEL
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
RESET
2026-09-09 05:00 UTC
Other

ZDI-26-628: Backblaze Personal Computer Backup bzreports Link Following Denial-of-Service Vulnerability

Zero Day Initiative · indexed 2026-09-09 21:50 UTC

This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Backblaze Personal Computer Backup. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-19820.

VulnerabilitiesCVE-2026-19820
P5
2026-09-09 05:00 UTC
Other

ZDI-26-627: Backblaze Personal Computer Backup bztransmit Link Following Denial-of-Service Vulnerability

Zero Day Initiative · indexed 2026-09-09 21:50 UTC

This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Backblaze Personal Computer Backup. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-19820.

VulnerabilitiesCVE-2026-19820
P5
2026-09-09 05:00 UTC
Other

ZDI-26-626: Backblaze Personal Computer Backup bzfilelist Link Following Denial-of-Service Vulnerability

Zero Day Initiative · indexed 2026-09-09 21:50 UTC

This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Backblaze Personal Computer Backup. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-19820.

VulnerabilitiesCVE-2026-19820
P5
2026-09-09 05:00 UTC
Other

ZDI-26-625: Backblaze Personal Computer Backup bzserv Link Following Denial-of-Service Vulnerability

Zero Day Initiative · indexed 2026-09-09 21:50 UTC

This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Backblaze Personal Computer Backup. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-19820.

VulnerabilitiesCVE-2026-19820
P5
2026-09-09 05:00 UTC
Other

ZDI-26-624: Backblaze Personal Computer Backup bzbackup Link Following Denial-of-Service Vulnerability

Zero Day Initiative · indexed 2026-09-09 21:50 UTC

This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Backblaze Personal Computer Backup. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.1. The following CVEs are assigned: CVE-2026-19820.

VulnerabilitiesCVE-2026-19820
P5
2026-09-09 04:41 UTC
Security Journalism

Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-09 06:20 UTC

Microsoft on Tuesday broke Patch Tuesday records by addressing an earth-shattering 974 vulnerabilities spanning its software portfolio, including two flaws that it said have been actively exploited in the wild. These include 723 flaws in Windows, 111 in Office and Office 2016, 62 in SQL, and 22 in Developer Tools. Of these, over 110 shortcomings have been assigned a critical severity rating.

Cloud SecurityMicrosoftVulnerabilities
P45
2026-09-09 04:27 UTC
Security Journalism

N-able N-central Pre-Auth RCE Flaw Exploited in the Wild

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-09 04:40 UTC

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026. The vulnerability in question is CVE-2026-86218 (CVSS score: 10.0), which has been described as a

MicrosoftVulnerabilitiesCVE-2026-86218
P70
2026-09-08 21:44 UTC
Independent Research

Microsoft Plugs Nearly 1,000 Security Holes

Krebs on Security · BrianKrebs · indexed 2026-09-08 21:50 UTC

Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping to speed the discovery of vulnerabilities, but security experts warn that many organizations already are struggling to prioritize the more human-intensive endeavor of testing and deploying so many fixes each month.

AI SecurityMicrosoft
P0
2026-09-08 21:44 UTC
Vendor Research

Patch Tuesday - September 2026

Rapid7 · Rapid7 · indexed 2026-09-09 00:10 UTC

Microsoft is publishing 974 own-product vulnerabilities on September 2026 Patch Tuesday, including 723 vulnerabilities in Windows. Along with Microsoft fixes for 25 non-Microsoft CVEs, that brings the total number of vulnerabilities on the table today to 999. Whether this is the biggest Patch Tuesday ever depends on how we count, but this is by far the most CVEs that Microsoft has ever published in a single day. As Rapid7 noted last month, there is no reason to suppose that Patch Tuesday will e…

Cloud SecurityLinuxMicrosoftRansomwareVulnerabilitiesCVE-2026-81963CVE-2026-84323CVE-2026-84324CVE-2026-84325CVE-2026-84326CVE-2026-84327CVE-2026-84328CVE-2026-84329CVE-2026-84331CVE-2026-84332CVE-2026-84334CVE-2026-84335CVE-2026-84347CVE-2026-84348CVE-2026-84349CVE-2026-84350CVE-2026-84351CVE-2026-84353CVE-2026-84354CVE-2026-84355CVE-2026-85045CVE-2026-85046CVE-2026-85880
P65
2026-09-08 21:26 UTC
Security Journalism

Patch Tuesday Sets Another Record With 974 CVEs

Dark Reading · Jai Vijayan · indexed 2026-09-08 21:45 UTC

Attackers are actively exploiting two of the vulnerabilities, and another 58 are more likely to be exploited, according to Microsoft.

Microsoft
P0
2026-09-08 20:35 UTC
Other

Hackers Drain $320 Million From Liquid Network, Then Return Most of It

Security Affairs · Pierluigi Paganini · indexed 2026-09-08 21:10 UTC

Crypto exchange network Liquid Network lost $320 million overnight, then got most of it back after the hackers demanded a bug fix instead of a ransom Bitcoin’s Liquid Network, a sidechain built by Blockstream and used by dozens of exchanges to move funds faster and more privately than the main Bitcoin blockchain allows, got drained […]

Microsoft
P0
2026-09-08 20:24 UTC
Security Journalism

The EU CRA's Real Question: What Shipped, and When Did You Know?

BleepingComputer · Sponsored by ActiveState · indexed 2026-09-08 20:25 UTC

The EU Cyber Resilience Act's vulnerability reporting requirements take effect September 11, giving software vendors as little as 24 hours to report actively exploited flaws. ActiveState explains why knowing exactly what shipped and when vulnerabilities were discovered will be critical to meeting the new requirements. [...]

Cloud SecurityVulnerabilities
P25
2026-09-08 20:08 UTC
Security Journalism

Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

BleepingComputer · Bill Toulas · indexed 2026-09-08 20:10 UTC

A Linux rootkit targeting devices in F5 BIG-IP APM environments can intercept PHP file loading and inject a fileless web shell directly into memory, avoiding the need to write malicious code to disk. [...]

LinuxMalware
P0
2026-09-08 19:20 UTC
Community

September 2026 Microsoft Patch Tuesday, (Tue, Sep 8th)

SANS Internet Storm Center · indexed 2026-09-08 19:35 UTC

This month, Microsoft released patches for a record-breaking 973 vulnerabilities, including 113 rated critical. It is by far the largest Patch Tuesday to date, well ahead of the previous high of 664 set in July 2026. Two vulnerabilities are listed as exploited in the wild, while none were publicly disclosed before Patch Tuesday. Notable fixes include Windows privilege escalation and critical RCEs in Skype for Business, MSMQ and RRAS.

MicrosoftVulnerabilities
P30
47 48 49 50 51