IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 247 matching records.
AUTO-POLL // 2026-10-10 00:35 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
NO DATA
NO INTELLIGENCE AGGREGATED TODAY
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 10
NO DATA
--
NO INTEL
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
RESET
2024-10-30 05:44 UTC
Other

Delivery Deception: Escalating cybercriminal tactics in the Balkan region

Group-IB · indexed 2026-09-07 17:30 UTC

Explore our latest findings on the surge of cyberattacks in the Balkan region, focusing on threats to financial institutions and critical infrastructure. Discover how phishing scams impersonating postal services are targeting citizens in Croatia, Romania, Serbia, and Slovenia, and learn about the implications for public safety and security. Stay informed and protected against the rising tide of cybercrime.

CybercrimePhishing
P0
2024-10-09 00:00 UTC
Other

Subdomain Takeover Vulnerability in GitLab Pages

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability in GitLab Pages allowed attackers to take over dangling custom domains pointing to 'instanceX.gitlab.io'. The issue occured when adding an unverified custom domain to GitLab Pages, which serves content for 7 days before disabling. This could lead to cookie stealing, phishing campaigns, and bypassing of Content-Security Policies and CORS.

PhishingVulnerabilities
P0
2024-09-03 00:00 UTC
Security Journalism

Phishing in the Fast Lane | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Join Huntress team members as they walk through some of the most malicious phishing techniques, presented from the attacker's perspective.

Phishing
P0
2024-08-21 00:00 UTC
Security Journalism

Protecting Against Session Hijacking & Credential Theft | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Discover how our new Unwanted Access capability strengthens your defenses against session hijacking and credential theft. Dive in and learn how to minimize risks and protect your business-critical assets from evolving cyber threats.

Phishing
P0
2024-06-12 00:00 UTC
Security Journalism

Mistakes to Mastery | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Get to know Phishing Defense Coaching, the latest addition to Huntress SAT. This personalized feature helps teach learners how phishing simulations tricked them so they can better identify potential threats.

Phishing
P0
2023-04-21 00:00 UTC
Other

GhostToken

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Google users can find and install third-party OAuth applications from Google Marketplace that are integrated with Google Workspace. Each OAuth application client in Google is associated with a GCP project. A bug in the way a GCP project enters a "pending deletion" state when deleted, could have allowed threat actors to make a malicious application invisible and unremovable from the user's account. If an attacker had managed to install an application in an account (e.g., through a phishing attac…

PhishingThreat ActorsVulnerabilities
P0
2023-01-13 00:00 UTC
Other

Bypassing authorization in Google Cloud Workstations

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

Several vulnerabilities were present in how Google Cloud Shell (ssh.cloud.google.com) handled OAuth credentials. These included an open-redirect vulnerability, where attackers could redirect users to malicious sites to capture their credentials, and a validation bypass that allowed tokens to be submitted to user-defined URIs, circumventing normal security checks. Additionally, Google Cloud Workstations did not correctly tie the state parameter to the session that generated it, which allowed val…

Cloud SecurityPhishingVulnerabilities
P0
2022-06-09 15:53 UTC
Other

Swiss Army Knife Phishing

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB identifies massive campaign capable of targeting clients of major Vietnamese banks

Phishing
P0
2021-12-28 00:00 UTC
Other

Google Cloud Shell command injection

Cloud Vuln DB · indexed 2026-09-07 17:30 UTC

A vulnerability was discovered in Cloud Shell that enabled command injection and remote shell access. The "Open in Cloud Shell" functionality allowed a user to provide values for both the "git_repo" and "go_get_repo" parameters, which would clone the target repo in the user's environment. While "git_repo" was validated against a list of trusted repos, "go_get_repo" was not. Therefore, an attacker could have supplied a trusted repository as "git_repo" and an arbitrary command in the "go_get_repo…

Cloud SecurityPhishingVulnerabilities
P0
2021-10-28 14:19 UTC
Other

Cannibal Carders

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB uncovers largest networks of fake shops – phishing websites disguised as card shops

Phishing
P0
6 7 8 9