IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,500 matching records.
AUTO-POLL // 2026-10-06 09:15 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 6

RANSOMWARE
P6
P6
COOL // 8 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
RESET
2026-08-27 12:00 UTC
Government

Back to the Future: Why Agentic AI Needs a Strong Identity Foundation

NIST Cybersecurity Insights · Bill Fisher, Ryan Galluzzo · indexed 2026-08-27 12:00 UTC

As AI matures, enterprises and customers are rapidly deploying agents seeking to unlock the next level of automation and productivity. Agentic AI shows potential to handle a multitude of use cases, from buying personal items on Amazon to customer service applications to enterprise security and software development. However, early agentic deployments are repeating a familiar pattern: prioritizing feature development and immediate value over security. This strategy is understandable. Strategic, f…

P0
2026-08-27 11:56 UTC
Security Journalism

Learn How to Build Security Operations Ready for AI-Powered Attacks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 12:55 UTC

Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act. Advanced AI models can now help attackers discover vulnerabilities, generate exploit code, and move through weaknesses faster than traditional security processes were built to handle. The challenge is no longer just finding another vulnerability or

MicrosoftVulnerabilities
P0
2026-08-27 11:56 UTC
Security Journalism

Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 12:55 UTC

The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March 2026 compromise of the open-source security scanners Trivy and Checkmarx KICS and the AI gateway LiteLLM. Louis Michael Gaebler, 23, and Ruben Ian Thomson, 21, appeared in Perth Magistrates Court on August 27,

Cybercrime
P0
2026-08-27 11:30 UTC
Security Journalism

What the Data Says About AI in Security Operations in 2026

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 12:55 UTC

AI is officially mainstream in security operations. According to Prophet Security's State of AI in Security Operations 2026 report (produced from ViB’s survey of 250+ cybersecurity pros), 40% of security teams now use AI daily. Another 56% are currently testing it out, and only 4% have no plans to adopt it. For the teams already using AI, what is actually changing? Here are the ten biggest

P0
2026-08-27 11:17 UTC
Other

One Adversary, Two Outcomes: The 0.027% Proof

Group-IB · indexed 2026-09-07 17:30 UTC

One malware campaign, 11,000 compromised devices, two banks with very different outcomes. At the bank with fused defence, fraud succeeded on just 0.027% of compromised devices; nine times less than the market average. Regulators are taking notice too.

CybercrimeMalware
P0
2026-08-27 11:10 UTC
Security Journalism

Carhartt data breach exposes information of 12.9 million accounts

BleepingComputer · Sergiu Gatlan · indexed 2026-08-27 11:15 UTC

The ShinyHunters extortion group has published sensitive data from nearly 13 million accounts stolen from clothing retailer giant Carhartt earlier this month, according to data breach notification service Have I Been Pwned. [...]

Data Breaches
P0
2026-08-27 11:04 UTC
Independent Research

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

Krebs on Security · BrianKrebs · indexed 2026-08-27 11:20 UTC

Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were arrested in connection with a "sophisticated cybercrime syndicate that allegedly created malicious open-source software to rob thousands of glo…

CybercrimeLaw Enforcement
P0
2026-08-27 11:00 UTC
Security Journalism

Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 11:25 UTC

Individuals and organizations in Cambodia have emerged as the target of a new campaign that delivers an open-source remote access trojan (RAT) called Spark RAT. "The samples employ diverse lure themes, suggesting an effort to appeal to a broad range of potential victims. These include government notices, public health materials, real estate-related content, and other topics," Acronis Threat

Malware
P0
2026-08-27 09:33 UTC
Security Journalism

GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 10:15 UTC

Threat actors linked by Arctic Wolf to Dark Caracal with medium confidence deployed a previously undocumented Go-based malware framework, GoCaracal, during a June 2026 intrusion at an unnamed communications organization in Venezuela. GoCaracal provides operators with remote shell access and payload execution, while the extended profile adds browser data theft, keylogging, remote desktop control

MalwareThreat Actors
P0
2026-08-27 08:15 UTC
Other

Meta to Pay Up to $18B Over Teen Social Media Use

Security Affairs · Pierluigi Paganini · indexed 2026-08-27 09:05 UTC

Meta will pay up to $18B and cap teen Facebook and Instagram use at two hours daily after nearly all US states sued over child safety. Meta will pay up to $18 billion over the next decade and impose real usage limits on teenagers using Facebook and Instagram, settling claims that the company deliberately designed […]

P0
2026-08-27 08:13 UTC
Security Journalism

New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 08:50 UTC

Academic researchers have disclosed a Rowhammer attack impacting NVIDIA workstation GPUs with GDDR6 memory that defeats error correction codes (ECC), the mitigation NVIDIA recommends against GPU Rowhammer, and enables denial-of-service (DoS) and privilege escalation to a root shell. Dubbed GPUThor, the attack was developed by researchers at the University of Toronto, who hammered four DRAM

Vulnerabilities
P10
2026-08-27 07:36 UTC
Other

CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do

Security Affairs · Pierluigi Paganini · indexed 2026-08-27 08:10 UTC

CISA urges water utilities to find and secure internet-exposed PLCs after July attacks showed how easily exposed industrial systems can be compromised. Over 100 internet-exposed systems in the US water and wastewater sector got hit by cyberattacks in July 2026, and CISA’s response wasn’t just an incident report, it was a how-to guide for making […]

P0
2026-08-27 07:05 UTC
Security Journalism

CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 07:15 UTC

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added six flaws to its Known Exploited Vulnerabilities (KEV) catalog, including a high-severity security vulnerability impacting Citrix NetScaler ADC and NetScaler Gateway, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2019-1068 - A remote code execution vulnerability in

Cloud SecurityLinuxVulnerabilitiesCVE-2019-1068
P50
2026-08-27 04:39 UTC
Other

OpenAI banned Russian ChatGPT accounts backing covert influence operation

Security Affairs · Pierluigi Paganini · indexed 2026-08-27 05:50 UTC

OpenAI banned Russian ChatGPT accounts backing a fake think tank, IBI, that used AI posts and a fake “sovereignty” index to push pro‑Russia narratives. OpenAI says it has banned a cluster of ChatGPT accounts that likely originated in Russia and were used to support a covert influence operation. The campaign promoted an organisation called the […]

P0
2026-08-26 23:20 UTC
Other

CISA Red Team Fully Compromised Two Critical Infrastructure Orgs

Security Affairs · Pierluigi Paganini · indexed 2026-08-27 00:30 UTC

CISA red teams fully compromised two critical infrastructure orgs. One SOC isolated hosts in minutes; the other never detected the breach. CISA published an advisory (AA26-237A) documenting two simultaneous red team assessments at critical infrastructure organizations. Both organizations lost full domain control and had their cloud environments compromised. One of them didn’t know until CISA […]

P0
2026-08-26 20:53 UTC
Security Journalism

Exclusive: NSA to host a hacker reunion in bid to rebuild secretive unit

The Record · indexed 2026-08-26 21:05 UTC

The National Security Agency will welcome back to campus potentially hundreds of former members of the elite group known as Tailored Access Operations (TAO) to celebrate the division’s recent rebranding.

P0
2026-08-26 19:54 UTC
Security Journalism

'HTTP Terminator' Hunts for Novel Desync Attacks

Dark Reading · indexed 2026-08-27 12:40 UTC

James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP request-smuggling techniques.

P0
2026-08-26 19:32 UTC
Vendor Research

ICYMI: July 2026 @AWS Security

AWS Security Blog · Rodolfo Brenes · indexed 2026-08-26 19:40 UTC

If you found time for a bit of vacation this summer, you might be in catch-up mode. Here’s a list to help: all the expert blog posts, new service capabilities, code samples, and workshops, in case you missed it, from July 2026. AWS Security Blog post This month’s AWS Security Blog posts covered AI agent […]

AI SecurityCloud Security
P0
2026-08-26 19:21 UTC
Security Journalism

Red Flags That Expose Fake North Korean IT Workers

Dark Reading · Alexander Culafi · indexed 2026-08-26 21:05 UTC

North Korean operatives posing as IT workers are improving their tactics, but researchers say there are still ways to spot them before they do damage.

P0
63 64 65 66 67