IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,784 matching records.
AUTO-POLL // 2026-10-11 17:20 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 11

ACTIVE EXPLOITATION
P6
P6
COOL // 5 ARTICLES
SAT
Oct 10

RANSOMWARE
P1
P1
COOL // 11 ARTICLES
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
RESET
2026-04-15 14:00 UTC
Vendor Research

The German Cyber Criminal Überfall: Shifts in Europe's Data Leak Landscape

Google Threat Intelligence / Mandiant · Google Threat Intelligence Group · indexed 2026-08-15 18:55 UTC

Written by: Jamie Collier, Robin Grunewald Germany has reclaimed its position as a primary focus for cyber extortion in Europe. While data leak site (DLS) posts rose almost 50% globally in 2025, Google Threat Intelligence (GTI) data shows that the surge is hitting German infrastructure harder and faster than its regional neighbors, marking a significant return to the high-pressure levels previously observed in the country during 2022 and 2023. Cyber Criminals Pivoting Back to Germany Germany mo…

CybercrimeData BreachesRansomwareThreat ActorsThreat Intelligence
P15
2026-04-14 13:00 UTC
Vendor Research

Securing non-human identities: automated revocation, OAuth, and scoped permissions

Cloudflare Security · Justin Hutchings · indexed 2026-08-15 18:58 UTC

Cloudflare is introducing scannable API tokens, enhanced OAuth visibility, and GA for resource-scoped permissions. These tools help developers implement a true least-privilege architecture while protecting against credential leakage.

P0
2026-04-14 13:00 UTC
Security Journalism

When PUPs Grow Fangs: Dragon Boss Solutions' $10 Supply Chain Risk

Huntress · indexed 2026-09-07 17:30 UTC

Huntress uncovered a malware operation using signed PUP to deploy AV killers with SYSTEM privileges. Learn how this adware crosses the line into malware territory and how anyone could have hijacked their update mechanism.

Malware
P0
2026-04-10 18:00 UTC
Security Journalism

Your Staging Site Is More Important than You Think

Huntress · indexed 2026-09-07 17:30 UTC

Don’t forget to secure your side doors. Attackers look for the systems you treat as secondary. Don't neglect staging environments, as they’re a critical part of your attack surface.

P0
2026-04-10 15:12 UTC
Vendor Research

Bringing Rust to the Pixel Baseband

Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC

Posted by Jiacheng Lu, Software Engineer, Google Pixel Team Google is continuously advancing the security of Pixel devices. We have been focusing on hardening the cellular baseband modem against exploitation. Recognizing the risks associated within the complex modem firmware, Pixel 9 shipped with mitigations against a range of memory-safety vulnerabilities. For Pixel 10, Google is advancing its proactive security measures further. Following our previous discussion on "Deploying Rust in Existing…

Mobile SecuritySecurity ResearchVulnerabilitiesCVE-2024-27227
P20
2026-04-10 09:56 UTC
Vendor Research

Bringing Rust to the Pixel Baseband

Google Security Blog · Jiacheng Lu · indexed 2026-08-15 18:55 UTC

Google is continuously advancing the security of Pixel devices.

P0
2026-04-09 19:25 UTC
Vendor Research

Protecting Cookies with Device Bound Session Credentials

Google Security Blog · Benjamin Ackerman · indexed 2026-08-15 18:55 UTC

Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for Windows users on Chrome 146, and expanding to macO…

Microsoft
P0
2026-04-09 19:00 UTC
Security Journalism

What a Fake Claude Download Says About Security Today

Huntress · indexed 2026-09-07 17:30 UTC

Attackers are already targeting the AI tools your team just started using. Here's what that looks like when it lands in your own environment. And what actually stops it.

P0
2026-04-09 17:07 UTC
Vendor Research

Protecting Cookies with Device Bound Session Credentials

Google Online Security Blog · Google · indexed 2026-08-15 14:33 UTC

Posted by Ben Ackerman, Chrome team, Daniel Rubery, Chrome team and Guillaume Ehinger, Google Account Security team Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for Windows users on Chrome 146, and expanding to macOS in an upcoming Chrome release. This project represents a significant step forward in our ongoing efforts to combat session theft, which remains a prevalent threat in the modern security landscape. Session theft t…

AppleCybercrimeMalwareMicrosoftThreat Actors
P0
2026-04-09 14:00 UTC
Security Journalism

The 60ms Window: How Event 5156 Solves the ADWS Attribution Problem

Huntress · indexed 2026-09-07 17:30 UTC

Event 1644 shows localhost, hiding the attacker's real IP. By correlating Event 5156 with a ~60-80ms timing window, you can attribute ADWS queries to their actual source—and the data was already in your SIEM.

P0
2026-04-09 09:25 UTC
Other

Seven Signals Cyber Experts Agreed on at FIRST Paris 2026

Group-IB · indexed 2026-09-07 17:30 UTC

Group-IB hosted the FIRST Technical Colloquium in Paris, where cybersecurity experts challenged assumptions around modern cyber defense. FIRST Chair Olivier Caleff opened and moderated the event.

P0
2026-04-08 14:00 UTC
Security Journalism

The ADWS Architecture That Hides PowerShell AD Enumeration

Huntress · indexed 2026-09-07 17:30 UTC

A threat actor enumerated our entire AD with Get-ADComputer, and none of our detections fired. The problem wasn't their evasion - it was an architectural blind spot in how PowerShell talks to Active Directory.

Threat Actors
P0
2026-04-08 11:00 UTC
Security Journalism

Why the Stryker Attack Still Matters. And Five Steps You Can Take Today

Huntress · indexed 2026-09-07 17:30 UTC

The Stryker incident revealed that a "Weaponized Remote Wipe" via compromised MDM is a more permanent and difficult threat than ransomware. Learn concrete steps to secure management platforms and prevent your security shield from becoming a weapon.

Ransomware
P15
2026-04-08 07:30 UTC
Other

Cyber Saga: In the Footsteps of the DPRK IT Workers

Group-IB · indexed 2026-09-07 17:30 UTC

Discover how North Korean threat actors use synthetic identities, AI-assisted workflows, and overlapping infrastructure to infiltrate companies, and learn actionable strategies to mitigate this insider threat.

Threat Actors
P0
2026-04-07 21:00 UTC
Vendor Research

Cloudflare targets 2029 for full post-quantum security

Cloudflare Security · Bas Westerbaan · indexed 2026-08-15 18:58 UTC

Recent advances in quantum hardware and software have accelerated the timeline on which quantum attack might happen. Cloudflare is responding by moving our target for full post-quantum security to 2029.

P0
2026-04-02 16:00 UTC
Vendor Research

Google Workspace’s continuous approach to mitigating indirect prompt injections

Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC

Posted by Adam Gavish, Google GenAI Security TeamIndirect prompt injection (IPI) is an evolving threat vector targeting users of complex AI applications with multiple data sources, such as Workspace with Gemini. This technique enables the attacker to influence the behavior of an LLM by injecting malicious instructions into the data or tools used by the LLM as it completes the user’s query. This may even be possible without any input directly from the user.IPI is not the kind of technical proble…

AI SecurityMicrosoftSecurity ResearchVulnerabilities
P0
2026-04-01 15:00 UTC
Government

Cyber Brief 26-04 - March 2026

CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC

Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.

P0
2026-04-01 14:00 UTC
Security Journalism

OpenClaw, Rogue Agents, and Application Hygiene

Huntress · indexed 2026-09-07 17:30 UTC

OpenClaw AI agents pose identity and data risks if deployed with broad cloud permissions. Learn how to find and secure these apps before an attacker does.

AI Security
P0
113 114 115 116 117