IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 165 matching records.
AUTO-POLL // 2026-10-09 22:15 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P5 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 9

RANSOMWARE
P5
P5
COOL // 62 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
RESET
2026-09-28 15:08 UTC
Independent Research

Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation

Krebs on Security · BrianKrebs · indexed 2026-09-28 15:15 UTC

Authorities in the Netherlands have arrested a 23-year-old convicted cybercriminal on suspicion of aiding in data thefts and extortions by the prolific hacker group ShinyHunters. In the days immediately following the suspect's arrest, remaining ShinyHunters members dramatically escalated their attacks, stealing highly sensitive data from the FBI and extorting the Russian ransomware group Cl0p.

DFIRLaw EnforcementRansomwareThreat Actors
P15
2026-09-24 20:35 UTC
Security Journalism

Autonomous AI Hacks Raise Thorny Questions of Legal Accountability

Security Week · Associated Press · indexed 2026-09-24 20:40 UTC

The prospect of legal accountability is unclear. Lawsuits are a possibility, but some legal experts believe any criminal investigations would face an extremely high burden. The post Autonomous AI Hacks Raise Thorny Questions of Legal Accountability appeared first on SecurityWeek.

Cloud SecurityDFIR
P0
2026-09-24 13:00 UTC
Vendor Research

When Business Email Compromise Starts Rewriting Reality

Rapid7 · Douglas McKee, Director, Vulnerability Intelligence · indexed 2026-09-24 13:20 UTC

Business Email Compromise (BEC) operates on a familiar playbook. Threat actors breach a mailbox, silently monitor operations, map approval chains, and ultimately exploit that access to divert funds or exfiltrate sensitive assets.This dynamic is central to our analysis as we kick off a series around Rapid7's collaborative research with Zimbra; upcoming installments will explore technical details and broader findings based within the Zimbra Collaboration Suite. Our investigation disrupted the tra…

CybercrimeDFIRMicrosoftPhishingThreat ActorsVulnerabilitiesCVE-2022-27925CVE-2022-37042CVE-2023-37580CVE-2024-45519CVE-2025-27915CVE-2026-73570
P70
2026-09-24 10:31 UTC
Other

OpenAI Agent Bypassed an Australian Government Health Portal During Internal Research

Security Affairs · Pierluigi Paganini · indexed 2026-09-24 11:45 UTC

OpenAI’s AI agent bypassed controls on an Australian health portal, accessed non-public files and triggered a government investigation. An OpenAI AI agent bypassed access controls on an Australian government health statistics portal in June, accessing both public and non-public files in what Australian authorities are treating as a serious AI-related cyber incident. The case was […]

AI SecurityDFIR
P0
2026-09-23 13:56 UTC
Other

ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack

Security Affairs · Pierluigi Paganini · indexed 2026-09-23 14:20 UTC

ShinyHunters claims FBI breach via PeopleSoft zero-day, steals staff data; FBI investigating, no confirmation yet. The popular cybercrime group ShinyHunters is claiming that it breached the U.S. Federal Bureau of Investigation (FBI) and stole sensitive information belonging to FBI employees and job applicants. The group says the operation was not financially motivated and was instead […]

CybercrimeDFIRLaw EnforcementVulnerabilities
P25
2026-09-23 05:30 UTC
Security Journalism

ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-23 06:40 UTC

The cyber extortion group known as ShinyHunters on Tuesday claimed it had breached the U.S. Federal Bureau of Investigation and stolen data belonging to current and former employees at the agency. "We have compromised the FBI. We hold very sensitive data on almost ALL FBI Agents and individuals who filed an application with the FBI for a job," the group said in a statement posted on their dark

Data BreachesDFIRLaw Enforcement
P0
2026-09-22 12:57 UTC
Security Journalism

Webinar tomorrow: Inside real-world Google Workspace breaches

BleepingComputer · BleepingComputer · indexed 2026-09-22 13:10 UTC

Tomorrow's webinar examines real Google Workspace breaches involving social engineering and malicious OAuth applications, from initial access through the critical first hours of incident response. Learn which security controls and response decisions can make the greatest difference. [...]

DFIR
P0
2026-09-21 20:20 UTC
Other

Google Fined €403 Million Over Location Data Practices

Security Affairs · Pierluigi Paganini · indexed 2026-09-21 21:20 UTC

Ireland’s DPC fined Google €403 million over GDPR violations involving location data, transparency, retention and user control. Ireland’s Data Protection Commission (DPC) just fined Google €403 million, and the case behind it goes back six years, to a set of complaints that never really went away. The DPC launched the investigation in February 2020 after […]

DFIR
P0
2026-09-21 07:28 UTC
Other

UK Police Data Faces Long-Standing Microsoft Cloud Security Concerns

Security Affairs · Pierluigi Paganini · indexed 2026-09-21 08:25 UTC

A 2017 UK assessment warned that police data on Microsoft Azure could face foreign access risks. The risks may still exist. A Guardian investigation has surfaced a 2017 document signed off by then City of London police commissioner Ian Dyson, who also held the title of senior information risk owner for the entire country. That […]

Cloud SecurityDFIRMicrosoft
P0
2026-09-19 13:28 UTC
Security Journalism

Identity Visibility in 2026: The Foundation of Identity Security

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-19 14:30 UTC

Identity visibility is a starting point for modern identity security, because stolen and misused credentials are among the most frequently reported initial access vectors in breach research, including Verizon's annual Data Breach Investigations Report. This article explains what identity visibility means in IAM, why cloud and multicloud environments complicate it, which capabilities matter in

Data BreachesDFIR
P0
2026-09-17 11:33 UTC
Security Journalism

US takes down NightmareStresser DDoS-for-hire platform

BleepingComputer · Sergiu Gatlan · indexed 2026-09-17 11:40 UTC

The U.S. Federal Bureau of Investigation (FBI) seized the domains used by NightmareStresser, one of the world's longest-running distributed denial-of-service (DDoS) platforms. [...]

DFIRLaw Enforcement
P0
2026-09-17 10:00 UTC
Vendor Research

Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use

Cisco Talos Intelligence Blog · Takahiro Takeda · indexed 2026-09-17 10:15 UTC

Ransomware incidents in Japan rose 4.7% year over year. The Gentlemen was the most active group, with leak-site listings more than doubling from January to July. Qilin ranked second and appeared to use AI, while SMEs with capital under JPY 1 billion represented 80% of victims.

DFIRRansomware
P15
2026-09-17 07:44 UTC
Vendor Research

Enterprise Threat Intelligence Buying Guide: How to Choose the Right Solution

ANY.RUN Blog · ANY.RUN · indexed 2026-10-06 14:56 UTC

Choosing an enterprise threat intelligence solution is about more than just data volume or integrations. The right provider should deliver relevant intelligence, fit existing workflows, and help security teams investigate threats faster. While SOCs may prioritize rapid investigation and enrichment at scale, MSSPs may focus more on multi-tenancy and customer separation. This enterprise threat intelligence […] The post Enterprise Threat Intelligence Buying Guide: How to Choose the Right Solution …

DFIRThreat Intelligence
P0
2026-09-16 18:28 UTC
Security Journalism

House passes bill to equip local law enforcement with scam-fighting tools

The Record · indexed 2026-09-16 18:35 UTC

The Guarding Unprotected Aging Retirees from Deception Act (GUARD) attempts to address a common complaint from the victims of online scams like pig butchering — that such cases typically do not rise to the level of a federal investigation but local law enforcement is unequipped to properly investigate them.

DFIR
P0
2026-09-16 16:07 UTC
Vendor Research

Cisco Advance Notification for Publication of September 16, 2026, Security Advisories

Cisco Security Advisories · indexed 2026-09-09 16:30 UTC

On September 16, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the advisories that are listed in the following tables. To remediate these vulnerabilities, Cisco strongly recommends that customers upgrade to the fixed software that is indicated in the advisories. For more information about changes in Cisco PSIRT vulnerability disclosure, see Strengthening the Foundation: A Predictable, Customer-Focused Response to AI-Accelerated Vulnerability Discovery. Cisco Identity…

DFIRVulnerabilitiesCVE-2026-20352CVE-2026-76460
P30
2026-09-16 06:40 UTC
Vendor Research

ANY.RUN & SentinelOne: One Workspace, Instant Context for Rapid Response

ANY.RUN Blog · ANY.RUN · indexed 2026-10-06 14:56 UTC

Speed and clarity are the ultimate advantages for modern SOC teams. The integration of ANY.RUN into SentinelOne delivers exactly that. Instant threat intelligence and interactive sandbox capabilities embedded right where your analysts already work. Let’s look at how this unified workflow eliminates context switching, accelerates incident response, and drives higher ROI by transforming alerts into […] The post ANY.RUN & SentinelOne: One Workspace, Instant Context for Rapid Response appeared firs…

DFIRNetwork SecurityThreat Intelligence
P0
2026-09-14 14:51 UTC
Vendor Research

Rapid7 Named Among Notable Vendors in Forrester MDR Landscape: Why the Future is Exposure-informed, Preemptive MDR

Rapid7 · Rapid7 · indexed 2026-09-14 15:25 UTC

The managed detection and response (MDR) market has reached a turning point. We’ve gone beyond the baseline of 24/7 monitoring focusing on the speed of detection and moved to a world with a convergence of exposure management and response to deliver measurable, outcome-based defenses of a larger, AI-driven attack surface.For anyone evaluating MDR right now, the Managed Detection and Response Services Landscape, Q3 2026 report by Forrester is a useful map that lays out where the market is heading…

DFIRVulnerabilities
P0
2026-09-09 19:09 UTC
Vendor Research

The state of AI for security: Measuring what matters most for building trust

AWS Security Blog · Anshumali Shrivastava · indexed 2026-09-09 19:30 UTC

Security teams are starting to actively use AI for security work, including vulnerability triage, penetration testing, threat modeling, incident response, and code review. The promise is speed, but a security tool that moves fast and raises too many false alarms doesn’t save time. Engineers spend time on false alarms, on-call is noisier, and teams distrust […]

DFIRVulnerabilities
P0
2026-09-09 10:00 UTC
Vendor Research

Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure

Palo Alto Networks Unit 42 · Rem Dudas · indexed 2026-09-09 10:10 UTC

An investigation into how cybercriminals used YouTube gaming lures and SEO poisoning to deliver multi-payload malware to enterprise networks. The post Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure appeared first on Unit 42.

DFIRMalware
P0
2026-09-08 14:00 UTC
Vendor Research

GTIG AI Threat Tracker: From Prompting to Autonomy – The Evolution of Adversarial AI

Google Threat Intelligence / Mandiant · Google Threat Intelligence Group · indexed 2026-09-08 13:45 UTC

Executive Summary Since the release of our May 2026 report detailing adversarial misuse of artificial intelligence (AI), Google Threat Intelligence Group (GTIG) has observed forward leaning adversaries transition from basic prompting to agentic AI workflows and AI-enabled automation. In these operations, human-in-the-loop latency is dramatically reduced, compressing the traditional window for defenders to respond. In Q2 2026, GTIG observed threat actors compromise a cloud resource, then plan, b…

AI SecurityAPT / Nation-StateCloud SecurityData BreachesDFIRMalwareMicrosoftPhishingRansomwareThreat ActorsThreat IntelligenceVulnerabilities
P35
2026-09-08 10:00 UTC
Vendor Research

StyleSmuggler (CVE-2026-75650): Frequently asked questions about Adobe Commerce and Magento zero-day

Tenable Cyber Exposure Alerts · Satnam Narang · indexed 2026-09-08 14:20 UTC

A critical unauthenticated remote code execution (RCE) zero-day in Adobe Commerce and Magento Open Source, dubbed StyleSmuggler, has been actively exploited since September 4 with attacks observed three days before a vendor patch became available.Key takeawaysCVE-2026-75650 is a critical remote code execution vulnerability in Adobe Commerce, Adobe Commerce B2B and Magento Open Source that can be triggered without authentication.Active exploitation of CVE-2026-75650 began on September 4, 2026, t…

DFIRLinuxMalwareThreat ActorsThreat IntelligenceVulnerabilitiesCVE-2026-75650
P95
1 2 3 4