IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,773 matching records.
AUTO-POLL // 2026-10-10 11:40 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P3 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 10

RANSOMWARE
P3
P3
COOL // 5 ARTICLES
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
RESET
2026-09-16 13:09 UTC
Other

Revolut Data Leak May Trace Back to Compromised Italian Government Accounts

Security Affairs · Pierluigi Paganini · indexed 2026-09-16 14:15 UTC

A suspected compromise of an Italian government PEC account may have allowed threat actors to impersonate law enforcement and obtain sensitive data from hundreds of Revolut customers. The Revolut data exposure may be part of a much broader cyber incident involving compromised Italian government infrastructure. Revolut has confirmed that its systems were not breached. Instead, […]

Data BreachesThreat Actors
P0
2026-09-16 12:45 UTC
Security Journalism

Ukraine moves to crack down on scam call centers after corruption scandal

The Record · indexed 2026-09-16 13:00 UTC

Ukraine’s parliament has approved tougher criminal penalties for involvement in fraudulent call centers and the theft of personal data, following a corruption scandal in which prosecutors were accused of taking bribes to protect scam operations.

Cybercrime
P0
2026-09-16 12:11 UTC
Security Journalism

Webinar: What happens in the first hours of a Google Workspace breach

BleepingComputer · BleepingComputer · indexed 2026-09-16 12:30 UTC

The first hours after discovering a Google Workspace breach can determine how an incident unfolds. This webinar examines real-world breaches to show which early response decisions can limit the impact and which can make matters worse. [...]

P0
2026-09-16 11:58 UTC
Security Journalism

N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 12:45 UTC

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensitive data, business systems, and additional cloud

MalwarePhishingThreat Actors
P0
2026-09-16 11:15 UTC
Security Journalism

Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE-2026-58704 (CVSS score: 8.0), is a privilege escalation flaw. "In Cellular Modem, there is a possible permission bypass due to a logic error in the code," according to a description of the bug in the NIST National Vulnerability Database

VulnerabilitiesCVE-2026-58704
P35
2026-09-16 11:15 UTC
Security Journalism

Threat Intelligence Alone Won't Close the Exploitation Gap

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

A leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real target before most security teams have triaged the alert. Attackers are combining that kind of intelligence with AI-assisted exploitation to accelerate the path from exposure to breach faster than most security programs are built to react.

Threat IntelligenceVulnerabilities
P0
2026-09-16 11:11 UTC
Security Journalism

Hackuity Raises $19 Million for AI-Powered Vulnerability Management

Security Week · SecurityWeek News · indexed 2026-09-16 11:20 UTC

The company will use the new capital to expand its vulnerability operations platform and support international growth. The post Hackuity Raises $19 Million for AI-Powered Vulnerability Management appeared first on SecurityWeek.

Vulnerabilities
P0
2026-09-16 11:08 UTC
Security Journalism

Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 11:45 UTC

Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the wild. The vulnerability, tracked as CVE-2026-87886 (CVSS score: 7.8), is described as a case of local privilege escalation due to insecure file permissions. It affects the following versions - Acronis Backup plugin for cPanel & WHM (Linux

LinuxVulnerabilitiesCVE-2026-87886
P35
2026-09-16 10:47 UTC
Security Journalism

280,000 Impacted by Premier Medical Group Data Breach

Security Week · Ionut Arghire · indexed 2026-09-16 11:00 UTC

In June 2026, hackers accessed files containing patients’ names, contact information, diagnosis details, and health insurance information. The post 280,000 Impacted by Premier Medical Group Data Breach appeared first on SecurityWeek.

Data Breaches
P0
2026-09-16 10:28 UTC
Security Journalism

Chrome, Firefox Updates Patch 115 Vulnerabilities

Security Week · Ionut Arghire · indexed 2026-09-16 10:40 UTC

Google resolved 42 security defects in Chrome, and Mozilla fixed 73 bugs in Firefox. The post Chrome, Firefox Updates Patch 115 Vulnerabilities appeared first on SecurityWeek.

P0
2026-09-16 10:00 UTC
Vendor Research

Securing the unpatchable in an age of AI-driven vulnerabilities

Cisco Talos Intelligence Blog · Martin Lee · indexed 2026-09-16 10:25 UTC

Advances in AI technology will continue to identify vulnerabilities that in some circumstances are difficult, or effectively impossible, to patch. Appropriate network segmentation, rigorous visibility, and the deployment of NGFW/IPS combinations can provide a powerful compensatory layer.

P0
2026-09-16 10:00 UTC
Vendor Research

Atomic macOS (AMOS) Stealer Activity

Palo Alto Networks Unit 42 · Bradley Duncan · indexed 2026-09-16 10:20 UTC

Modern macOS malware uses deceptive setup guides to steal credentials and sensitive user data. Learn how to identify and block these threats. The post Atomic macOS (AMOS) Stealer Activity appeared first on Unit 42.

AppleMalware
P0
2026-09-16 08:19 UTC
Other

Texas Utility CenterPoint Energy Confirms Data Breach After Hacker Claims 7.49M Records Stolen

Security Affairs · Pierluigi Paganini · indexed 2026-09-16 08:40 UTC

CenterPoint Energy confirmed a customer data breach after a hacker claimed to leak 7.49M records, including personal and billing information. CenterPoint Energy admitted on Monday that an intruder stole personal information belonging to some of its customers. The Houston-based utility, which supplies electricity and gas to about 7 million accounts across Texas, Indiana, Minnesota and […]

Data Breaches
P0
2026-09-16 08:06 UTC
Security Journalism

Oracle Patches 800+ Vulnerabilities in September 2026 Security Update

Security Week · Ionut Arghire · indexed 2026-09-16 08:20 UTC

The security updates resolve over 800 vulnerabilities across 17 product families, including over 100 critical-severity flaws. The post Oracle Patches 800+ Vulnerabilities in September 2026 Security Update appeared first on SecurityWeek.

Cloud Security
P5
2026-09-16 06:40 UTC
Vendor Research

ANY.RUN & SentinelOne: One Workspace, Instant Context for Rapid Response

ANY.RUN Blog · ANY.RUN · indexed 2026-10-06 14:56 UTC

Speed and clarity are the ultimate advantages for modern SOC teams. The integration of ANY.RUN into SentinelOne delivers exactly that. Instant threat intelligence and interactive sandbox capabilities embedded right where your analysts already work. Let’s look at how this unified workflow eliminates context switching, accelerates incident response, and drives higher ROI by transforming alerts into […] The post ANY.RUN & SentinelOne: One Workspace, Instant Context for Rapid Response appeared firs…

DFIRNetwork SecurityThreat Intelligence
P0
2026-09-16 05:48 UTC
Security Journalism

Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 06:40 UTC

Threat actors are exploiting a critical security flaw in WooCommerce Wholesale Lead Capture, a premium WordPress plugin that has more than 6,000 active installs. "This vulnerability can be leveraged by unauthenticated attackers to upload arbitrary files, including PHP backdoors, and achieve remote code execution," Wordfence said. The WordPress security company said it has blocked over

MalwareThreat ActorsVulnerabilities
P15
2026-09-16 05:18 UTC
Security Journalism

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-16 06:40 UTC

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw. "JWT authentication

VulnerabilitiesCVE-2026-5430
P25
2026-09-16 05:00 UTC
Other

ZDI-26-713: GIMP APNG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

Zero Day Initiative · indexed 2026-09-17 00:20 UTC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-92183.

VulnerabilitiesCVE-2026-92183
P20
41 42 43 44 45