IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,784 matching records.
AUTO-POLL // 2026-10-11 19:25 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P6 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 11

ACTIVE EXPLOITATION
P6
P6
COOL // 5 ARTICLES
SAT
Oct 10

RANSOMWARE
P1
P1
COOL // 11 ARTICLES
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
RESET
2026-01-21 06:56 UTC
Other

Peruvian Peaks: The Digital Loan Illusion

Group-IB · indexed 2026-09-07 17:30 UTC

A deep dive into loan phishing scams in Peru and Latin America. Discover how scammers lure victims with fake loan offers, harvest sensitive banking credentials, and leverage advanced scripts to maximize fraud at scale.

CybercrimePhishing
P0
2026-01-16 06:00 UTC
Security Journalism

Dissecting CrashFix: KongTuke's New Toy

Huntress · indexed 2026-09-07 17:30 UTC

Fake ad blocker crashes your browser, then offers a "fix." Go inside KongTuke's CrashFix campaign, from malicious extension to ModeloRAT for VIP targets.

P0
2026-01-15 15:00 UTC
Security Journalism

SDFlags | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

While investigating LDAP filters and attributes, I completely missed "SDFlags" in my Event 1644 logs. When I finally noticed it, the investigation led to nTSecurityDescriptor, attack path discovery, and a high-confidence detection signature.

DFIR
P0
2026-01-15 06:07 UTC
Other

DeadLock Ransomware: Smart Contracts for Malicious Purposes

Group-IB · indexed 2026-09-07 17:30 UTC

This blog uncovers DeadLock’s stealthy usage of Polygon smart contracts for proxy address storage, a poorly-documented and under-reported technique that Group-IB analysts have observed increased usage in the wild. Variants of this technique are very wide and offer great alternatives to threat actors for bypassing traditional defenses by abusing decentralized blockchains available worldwide.

MicrosoftRansomwareThreat Actors
P35
2026-01-13 06:39 UTC
Other

PCI DSS v4.0.1 for Payment Integrations: A Realistic Security-First Approach

Red Hunt Labs · Lohit · indexed 2026-09-07 17:30 UTC

Modern payment integrations are fast, flexible, and increasingly complex. APIs talk to gateways, webhooks trigger state changes, third parties handle fraud, retries, refunds, and orchestration layers quietly sit in between. In most teams, the signal that things are “working” is simple: transactions go through. That signal is misleading. At RedHunt Labs, we found that the real-world payment pentests reveal the common mistake of treating PCI DSS as a finish line instead of a baseline. This blog r…

AppleCybercrimeDFIR
P0
2026-01-13 06:00 UTC
Security Journalism

Cross-Platform Unity in EDR

Huntress · indexed 2026-09-07 17:30 UTC

Huntress researchers weigh in on the challenge of getting feature parity across Windows, macOS, and Linux. And learn how unique security models and platform maturity shape the way products are built.

AppleLinuxMicrosoft
P0
2026-01-07 14:00 UTC
Security Journalism

ESXi Exploitation in the Wild

Huntress · indexed 2026-09-07 17:30 UTC

Huntress outlines a complex, multi-step attack designed to break out of guest VMs and target the ESXi hypervisor, using potential zero-day vulnerabilities and sneaky VSOCK communication.

Vulnerabilities
P45
2026-01-07 12:00 UTC
Government

Digital Identities: Getting to Know the Verifiable Digital Credential Ecosystem

NIST Cybersecurity Insights · Bill Fisher, Ryan Galluzzo, Heather Flanagan · indexed 2026-08-15 20:45 UTC

Understanding mDL credential formats Standards in the VDC Ecosystem In our first blog post in this series, we highlighted that VDCs can represent a wide range of credentials, from a driver’s license to a diploma to proof of age. The ability to use VDCs in a wide variety of use cases is a major reason why many are looking at the VDC ecosystem as technology that can change how we present identity and attributes (both in person and online). While credential variety is a good thing, interoperabilit…

P0
2026-01-05 15:00 UTC
Government

Cyber Brief 26-01 - December 2025

CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC

Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.

P0
2026-01-05 08:15 UTC
Other

The DocuSign Impersonation Wave with Real-Time Customizable LogoKit

Group-IB · indexed 2026-09-07 17:30 UTC

Learn how Group-IB’s Business Email Protection stops the growing wave of DocuSign impersonation before users are exposed, and protects them from credential-capturing websites built with real-time customizable LogoKit.

P0
2025-12-31 06:00 UTC
Security Journalism

Rogue RMMs: Common Social Engineering Tactics We Saw in 2025

Huntress · indexed 2026-09-07 17:30 UTC

From lures involving Social Security statements to top domains and hashes used in attacks, here's an in-depth look at incidents involving ScreenConnect in 2025.

P0
2025-12-30 06:00 UTC
Security Journalism

The LDAP Whitespace Problem | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

Your LDAP detection rules work in the lab but fail in production. Here's why Event 1644 whitespace variations break your Sigma rules and how to fix them.

P0
2025-12-24 07:04 UTC
Other

Empty Promises in MENA: How Online Quick Cash Schemes Exploit the Gig Economy

Group-IB · indexed 2026-09-07 17:30 UTC

Fake online job ads continue to circulate across social media, especially in Arab countries, offering easy remote work and quick income. The sinister goal: to harvest sensitive information, from ID documents to banking details. This blog explains how the scheme operates, who the scammers target, and how to prevent falling victim to it.

P0
2025-12-23 08:00 UTC
Security Journalism

Tradecraft Tuesday Recap | Huntress

Huntress · indexed 2026-09-07 17:30 UTC

From "React2Shell" exploitation to sophisticated "Living off Trusted Sites" phishing, Huntress experts break down the threats targeting both enterprises and families today.

Phishing
P0
2025-12-22 11:40 UTC
Other

Explore Payment Gateways Through an Attacker’s Lens | Inside the Payment Gateway Integrations Security Handbook

Red Hunt Labs · Lohit · indexed 2026-09-07 17:30 UTC

Payment gateways are built to move money reliably. Attackers view them as systems built on trust, timing, and assumptions. A gateway that works consistently is not a sign of safety. It is a stable environment to study, probe, and eventually abuse. This blog examines payment gateways from an attacker’s perspective, grounded in real exploitation patterns and reinforced with direct insights from industry experts. These patterns are documented extensively in the RedHunt Labs Payment Gateway Integra…

AppleCloud SecurityCybercrimeDFIR
P0
118 119 120 121 122