IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,777 matching records.
AUTO-POLL // 2026-10-10 15:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P2 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 10

RANSOMWARE
P2
P2
COOL // 9 ARTICLES
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
RESET
2026-09-11 07:11 UTC
Other

UK Council Attack Linked to Mass Exploitation of SonicWall Flaw

Security Affairs · Pierluigi Paganini · indexed 2026-09-11 07:45 UTC

A critical SonicWall flaw was rapidly weaponized, with a UK Council attack linked to a campaign that exposed credentials and enabled Active Directory theft. On July 17, 2026, the Borough Council of King’s Lynn and West Norfolk announced it had detected a cyberattack affecting council services. Hunt.io has since published a detailed technical analysis linking […]

P20
2026-09-11 06:46 UTC
Security Journalism

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-11 07:40 UTC

PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that

Cloud Security
P25
2026-09-11 06:19 UTC
Security Journalism

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-11 07:40 UTC

Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unauthenticated, remote attacker to bypass

APT / Nation-StateCloud SecurityNetwork SecurityRansomwareVulnerabilitiesCVE-2026-20079
P30
2026-09-10 20:34 UTC
Security Journalism

September Windows Server updates break Remote Desktop Services

BleepingComputer · Lawrence Abrams · indexed 2026-09-10 20:45 UTC

Windows admins report that the September 2026 security updates are causing Remote Desktop Services (RDS) failures on Windows Server 2019, 2022, and 2025 servers, preventing users from connecting and, in some cases, requiring a hard reset to restore functionality. [...]

Microsoft
P5
2026-09-10 20:30 UTC
Security Journalism

Mandiant Founder Kevin Mandia Joins Amazon Board

Security Week · Mike Lennon · indexed 2026-09-10 20:40 UTC

Mandiant founder and cybersecurity veteran brings more than 30 years of public and private sector experience to Amazon’s board. The post Mandiant Founder Kevin Mandia Joins Amazon Board appeared first on SecurityWeek.

P0
2026-09-10 19:07 UTC
Security Journalism

Microsoft Excel KB5002914 update breaks copy and paste for some users

BleepingComputer · Lawrence Abrams · indexed 2026-09-10 19:15 UTC

Microsoft Excel users report that this week's KB5002914 Office security update is breaking copy-and-paste operations and formula dragging, with affected users saying that removing or rolling back the update restores normal functionality. [...]

Microsoft
P5
2026-09-10 18:57 UTC
Other

U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog

Security Affairs · Pierluigi Paganini · indexed 2026-09-10 19:25 UTC

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2026-20079 (CVSS score of 10.0) is an authentication bypass issue. The flaw resides in Cisco Secure […]

Cloud SecurityNetwork SecurityVulnerabilitiesCVE-2026-20079
P45
2026-09-10 18:44 UTC
Vendor Research

CVE-2026-89049 - Server-side request forgery in the Session Manager port forwarding functionality in AWS Systems Manager Agent

AWS Security Bulletins · aws@amazon.com · indexed 2026-09-10 19:00 UTC

Bulletin ID: 2026-107-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/10/2026 11:30 AM PDT Description: AWS Systems Manager Agent (SSM Agent) is software that runs on managed nodes (EC2 instances, on-premises servers, and other supported machines) and processes requests from the AWS Systems Manager service, enabling capabilities including Session Manager port forwarding to remote hosts. We identified CVE-2026-89049, a server-side request forgery issue in the rem…

Cloud SecurityVulnerabilitiesCVE-2026-89049
P5
2026-09-10 18:00 UTC
Vendor Research

We've got one word for it, and it's usually the wrong one

Cisco Talos Intelligence Blog · Joe Marshall · indexed 2026-09-10 18:30 UTC

In this week's Threat Source newsletter, Joe explores why the word "burnout" often fails to capture the true toll of working in the cybersecurity industry and why we need better language to address it.

P0
2026-09-10 17:47 UTC
Security Journalism

ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-10 19:00 UTC

A lot of this week’s security news has the same awkward answer to one question: “Why was that allowed to work?” An extension asks for access and takes too much. A trusted service becomes part of a phishing chain. An old bug still gets results. An exposed system stays exposed. A package looks useful right up until it isn’t. Different stories, same basic problem: the path in was often already

Cloud SecurityMobile SecurityPhishing
P0
2026-09-10 17:23 UTC
Vendor Research

Protecting organizations from AI-assisted executive impersonation and invoice fraud

Microsoft Security Blog · Microsoft Security Research · indexed 2026-09-10 19:15 UTC

Microsoft examines an AI-assisted business email compromise campaign that used executive impersonation and fake invoices to target finance teams with ACH payment fraud. The post Protecting organizations from AI-assisted executive impersonation and invoice fraud appeared first on Microsoft Security Blog.

CybercrimeMicrosoftPhishing
P0
2026-09-10 17:13 UTC
Vendor Research

CVE-2026-85228 - Integer overflow in tensor buffer validation in Deep Java Library

AWS Security Bulletins · aws@amazon.com · indexed 2026-09-10 17:25 UTC

Bulletin ID: 2026-106-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/10/2026 10:00 AM PDT Description: Deep Java Library (DJL) is an open-source, engine-agnostic Java framework for deep learning, developed and maintained by Amazon. AWS identified CVE-2026-85228, an integer overflow in the tensor buffer validation component of DJL on all platforms. A crafted tensor payload declaring a shape whose computed byte size exceeds the 32-bit signed integer range causes …

Cloud SecurityVulnerabilitiesCVE-2026-85228
P5
2026-09-10 16:14 UTC
Security Journalism

Cybersecurity M&A Roundup: 33 Deals Announced in August 2026

Security Week · Eduard Kovacs · indexed 2026-09-10 16:25 UTC

Significant cybersecurity M&A deals announced by Brinqa, Cribl, Echo, Fortinet, Kiteworks, Palo Alto Networks, and Visa. The post Cybersecurity M&A Roundup: 33 Deals Announced in August 2026 appeared first on SecurityWeek.

Network Security
P0
2026-09-10 16:00 UTC
Vendor Research

Detect and disrupt AI-themed attacks with Microsoft Defender

Microsoft Security Blog · Rob Lefferts · indexed 2026-09-10 18:15 UTC

See how Microsoft Defender detects and disrupts AI-themed phishing, malware, and multi-stage attacks across the attack chain. The post Detect and disrupt AI-themed attacks with Microsoft Defender appeared first on Microsoft Security Blog.

MalwareMicrosoftPhishing
P0
2026-09-10 15:19 UTC
Other

More Capable AI, Not Enough Guardrails

Security Affairs · Pierluigi Paganini · indexed 2026-09-10 16:25 UTC

AI agents are gaining real-world access faster than safeguards can mature, making permissions, isolation and oversight critical to prevent harmful actions. Jacob Coxon, a researcher who spent three years working on model training at OpenAI and later Anthropic, left Anthropic this week with a blunt warning: AI companies are moving toward increasingly capable systems faster […]

AI Security
P0
2026-09-10 15:00 UTC
Security Journalism

Best Practices for Good Endpoint Hardening | Huntress

Huntress · indexed 2026-09-11 16:45 UTC

Learn what endpoint hardening is, why it matters, and best practices to reduce attack surface, control access, & stop common intrusion paths.

P0
2026-09-10 14:55 UTC
Security Journalism

IDScan confirms breach tied to 153 million stolen driver’s licenses

BleepingComputer · Lawrence Abrams · indexed 2026-09-10 15:00 UTC

Identity verification company IDScan has confirmed that hackers accessed customer data stored in its cloud platform, days after reports linked the company to a massive database containing more than 153 million driver's license scans. [...]

P0
49 50 51 52 53