IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,759 matching records.
AUTO-POLL // 2026-10-09 20:40 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P5 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 9

RANSOMWARE
P5
P5
COOL // 58 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
RESET
2026-10-09 06:39 UTC
Security Journalism

FBI Seizes 7 Domains, Disrupts Flax Typhoon Tools Used in Critical Infrastructure Intrusions

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-09 06:55 UTC

The U.S. Federal Bureau of Investigation (FBI) and Department of Justice (DoJ) have announced the disruption of malicious tools used by a China-linked advanced persistent threat group known as Flax Typhoon. To that end, the agencies seized several domains and blocked access to platforms that were used to scan, and in some cases infiltrate, U.S. critical infrastructure. The list of seized

DFIRLaw Enforcement
P0
2026-10-09 04:12 UTC
Security Journalism

Formula Predicts When AI Chatbots Are at Risk of Turning Bad

Security Week · Kevin Townsend · indexed 2026-10-09 04:20 UTC

Researchers from George Washington University have published a paper examining whether the time and cause of AI going rogue can be predicted. The post Formula Predicts When AI Chatbots Are at Risk of Turning Bad appeared first on SecurityWeek.

P0
2026-10-08 20:44 UTC
Vendor Research

Post-quantum authentication: Why organizations should start testing certificate ecosystems now

Microsoft Security Blog · Microsoft Security Research, Lora Randolph, Tahmina Ahmad and Karina Sirota Goodley · indexed 2026-10-08 21:00 UTC

Prepare for post-quantum authentication by testing certificate ecosystems now. Learn how Microsoft’s PQC TLS Pilot Program helps advance future readiness. The post Post-quantum authentication: Why organizations should start testing certificate ecosystems now appeared first on Microsoft Security Blog.

Microsoft
P0
2026-10-08 20:09 UTC
Security Journalism

Ransomware attack disrupts Japan's IDCF Cloud used by govt clients

BleepingComputer · Bill Toulas · indexed 2026-10-08 20:20 UTC

IDC Frontier, a major Japanese cloud and digital infrastructure company, disclosed that its IDCF Cloud service was targeted in a ransomware attack that caused an outage at a data center cluster serving the eastern part of the country. [...]

Ransomware
P15
2026-10-08 19:44 UTC
Vendor Research

CVE-2026-107608: Improper link resolution in asset bundling output handling in aws-cdk-lib

AWS Security Bulletins · aws@amazon.com · indexed 2026-10-08 20:10 UTC

Bulletin ID: 2026-131-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/08/2026 12:30 PM PDT Description: AWS CDK is an open source framework that allows customers to build cloud infrastructure using their favorite programming language (Python, Typescript, C#, Go). That infrastructure is then able to be deployed with AWS CDK command line commands to AWS CloudFormation. We identified CVE-2026-107608, which is an issue where Docker files could be configured to inser…

Cloud SecurityVulnerabilitiesCVE-2026-107608
P5
2026-10-08 19:33 UTC
Other

Italy’s Foreign Ministry Under Cyberattack as Embassy Sites Come Under Review

Security Affairs · Pierluigi Paganini · indexed 2026-10-08 20:30 UTC

Italy’s Foreign Ministry is defending its website against a cyberattack, checking embassy sites and pushing for EU action to identify attackers. On the morning of October 8, Italy’s Ministry of Foreign Affairs said its website was being attacked. According to the ministry’s own statement, its protection systems have mitigated the attack so far, with no […]

P0
2026-10-08 19:29 UTC
Vendor Research

CVE-2026-107322 - OS command injection in Amazon Agent Plugins for AWS databases-on-aws

AWS Security Bulletins · aws@amazon.com · indexed 2026-10-08 19:10 UTC

Bulletin ID: 2026-130-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/08/2026 11:30 AM PDT Description: Amazon Agent Plugins for AWS is an open source collection of plugins that extends supported AI coding agents with AWS-focused workflows and tool integrations. The databases-on-aws plugin provides database design, development, migration, and operational guidance, including Aurora DSQL helper scripts. We identified CVE-2026-107322, where an incomplete list of di…

Cloud SecurityVulnerabilitiesCVE-2026-107322
P5
2026-10-08 19:20 UTC
Security Journalism

Low-cost Android phones ship with residential proxy malware

BleepingComputer · Lawrence Abrams · indexed 2026-10-08 19:25 UTC

A malware campaign dubbed 'Midnight Mimosa' has been discovered on low-cost Android smartphones that ship with malicious software embedded in their firmware, allowing attackers to silently install apps, perform ad fraud, and turn devices into residential proxies. [...]

CybercrimeMalwareMobile Security
P0
2026-10-08 18:32 UTC
Security Journalism

FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-08 18:55 UTC

Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious institutions in Southeast Asia, the FBI and agencies in 6 other countries said on October 8. The company, Integrity Technology Group, has been sanctioned by the U.S. and the UK. The hackers scanned websites for flaws using a tool containing more

Cloud SecurityLaw Enforcement
P0
2026-10-08 18:00 UTC
Vendor Research

Making sure the checks get printed

Cisco Talos Intelligence Blog · Pierre Cadieux · indexed 2026-10-08 18:20 UTC

Pierre's debut newsletter explores the messy, real-world side of risk management and how to keep vital systems running when a perfect patch isn't an option.

P0
2026-10-08 17:58 UTC
Security Journalism

ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-08 18:55 UTC

The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server exposed, complete with tools and traces of an intrusion. Apparently, keeping things secure is a problem on both sides of the fence. The rest of the week isn't much more reassuring. Malicious code turned up in developer packages and extensions that

Ransomware
P15
2026-10-08 17:47 UTC
Other

Hunt.io Finds New Infrastructure Of BraZetsu Access Broker Months Before Disclosure

Security Affairs · Pierluigi Paganini · indexed 2026-10-08 18:10 UTC

Hunt.io traced BraZetsu ‘s infrastructure and found that hosting patterns and certificate data remained useful after published IOCs became outdated. Group-IB researchers published a detailed writeup on BraZetsu back on August 31, naming it a Python framework compiled with Nuitka and tying it to a Brazilian actor called Exilware with high confidence. Hunt.io checked whether […]

Threat Intelligence
P0
2026-10-08 17:43 UTC
Vendor Research

CVE-2026-107332 - Insecure default file permissions on cached credentials in AWS Toolkit for Visual Studio Code

AWS Security Bulletins · aws@amazon.com · indexed 2026-10-08 17:50 UTC

Bulletin ID: 2026-129-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/08/2026 10:30 PM PDT Description: AWS Toolkit for Visual Studio Code is an open source extension that lets developers work with AWS services, including Amazon CodeCatalyst, from within Visual Studio Code. We identified CVE-2026-107332, an issue in the CodeCatalyst connection handler. When a user connected to a CodeCatalyst Dev Environment, the extension cached the user's CodeCatalyst bearer to…

Cloud SecurityVulnerabilitiesCVE-2026-107332
P5
1 2 3 4 5