IntelFreed Cybersecurity Intelligence Weather Report

HIGH PRIORITY

Aggregated cybersecurity reporting, advisories and research. 351 matching records.
AUTO-POLL // 2026-10-09 23:40 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P4 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
SUN
Oct 4

RANSOMWARE
P10
P10
WARM // 11 ARTICLES
SAT
Oct 3

RANSOMWARE
P4
P4
COOL // 14 ARTICLES
RESET
2026-10-09 08:27 UTC
Security Journalism

Citrix warns admins to patch new NetScaler RCE flaw immediately

BleepingComputer · Sergiu Gatlan · indexed 2026-10-09 08:40 UTC

Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions. [...]

Vulnerabilities
P25
2026-10-08 15:28 UTC
Security Journalism

Cisco Patches a Dozen Critical Vulnerabilities

Security Week · Ionut Arghire · indexed 2026-10-08 15:30 UTC

The security defects could lead to unauthorized access, information leaks, privilege escalation, DoS attacks, and remote code execution. The post Cisco Patches a Dozen Critical Vulnerabilities appeared first on SecurityWeek.

Vulnerabilities
P25
2026-10-01 08:26 UTC
Security Journalism

Cisco Patches Exploited Catalyst SD-WAN Zero-Day Vulnerability

Security Week · Ionut Arghire · indexed 2026-10-01 08:30 UTC

The flaw could allow remote, unauthenticated attackers to access vulnerable appliances with administrative privileges. The post Cisco Patches Exploited Catalyst SD-WAN Zero-Day Vulnerability appeared first on SecurityWeek.

Vulnerabilities
P25
2026-10-01 08:04 UTC
Other

AI Agent Chains Zammad Zero-Days To Take Over DIVD Systems in Seconds

Security Affairs · Pierluigi Paganini · indexed 2026-10-01 08:10 UTC

DIVD was breached through two Zammad zero-days that let an AI agent reach root in seconds, steal data and pivot to other services before being stopped. The Dutch Institute for Vulnerability Disclosure, a nonprofit organization of volunteer security researchers whose whole job is finding and responsibly disclosing vulnerabilities in other people’s software, just disclosed that […]

AI SecuritySecurity ResearchVulnerabilities
P25
2026-10-01 05:21 UTC
Security Journalism

Bitget Confirms Third-Party Zero-Day Behind $387.5 Million Cryptocurrency Theft

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-01 05:55 UTC

Cryptocurrency exchange Bitget on Wednesday confirmed that attackers who stole $387.5 million last week exploited a zero-day flaw in third-party security products, citing ongoing investigation findings from SlowMist. "Their investigation identified malicious activity involving third-party security products, including a zero-day vulnerability, and recovered a customized tool used by the attacker

DFIRMicrosoftVulnerabilities
P25
2026-09-30 19:49 UTC
Security Journalism

DIVD says Zammad zero-days enabled AI-driven network breach

BleepingComputer · Bill Toulas · indexed 2026-09-30 19:55 UTC

The Dutch Institute for Vulnerability Disclosure (DIVD) says that the breach of its network was possible by exploiting a chain of two zero-day vulnerabilities in the open-source Zammad ticketing system. [...]

Vulnerabilities
P25
2026-09-30 05:30 UTC
Security Journalism

Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-30 07:00 UTC

Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-88772 (CVSS score: 9.5), has been described as a memory overflow bug in the Datagram Transport Layer Security (DTLS) protocol handling that's rooted in the NetScaler

Security ResearchVulnerabilitiesCVE-2026-88772
P25
2026-09-28 16:19 UTC
Security Journalism

US, UK warn of exploited Citrix NetScaler zero-day bugs

The Record · indexed 2026-09-28 16:25 UTC

Incident responders began warning of potential vulnerabilities in NetScaler Gateway products on Saturday before cybersecurity agencies in the Netherlands, U.S. and U.K. released advisories on Sunday confirming vulnerabilities. Citrix itself confirmed eight new vulnerabilities.

Vulnerabilities
P25
2026-09-28 05:50 UTC
Other

Roundcube SQL injection CVE-2026-48842 is now being exploited in the wild

Security Affairs · Pierluigi Paganini · indexed 2026-09-28 06:30 UTC

Roundcube SQL injection CVE-2026-48842 is now being exploited in the wild, putting unpatched webmail servers at risk of database compromise. A Roundcube Webmail vulnerability, tracked as CVE-2026-48842 (CVSS score of 8.1) and patched four months ago, is now being exploited in the wild. The Canadian Centre for Cyber Security added the warning to its advisory […]

VulnerabilitiesCVE-2026-48842
P25
2026-09-23 14:35 UTC
Security Journalism

InfraTrust report warns network management systems under attack

BleepingComputer · Lawrence Abrams · indexed 2026-09-23 14:40 UTC

Attackers are increasingly targeting the management systems used to control enterprise infrastructure, with several critical vulnerabilities actively exploited before or shortly after vendors disclosed them. [...]

P25
2026-09-23 13:56 UTC
Other

ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack

Security Affairs · Pierluigi Paganini · indexed 2026-09-23 14:20 UTC

ShinyHunters claims FBI breach via PeopleSoft zero-day, steals staff data; FBI investigating, no confirmation yet. The popular cybercrime group ShinyHunters is claiming that it breached the U.S. Federal Bureau of Investigation (FBI) and stole sensitive information belonging to FBI employees and job applicants. The group says the operation was not financially motivated and was instead […]

CybercrimeDFIRLaw EnforcementVulnerabilities
P25
2026-09-23 08:33 UTC
Security Journalism

Arista Urges Immediate Patching of Exploited VCO Zero-Day

Security Week · Ionut Arghire · indexed 2026-09-23 08:50 UTC

Remote attackers could trigger the critical-severity flaw to access privileged internal functionality. The post Arista Urges Immediate Patching of Exploited VCO Zero-Day appeared first on SecurityWeek.

Vulnerabilities
P25
2026-09-23 06:14 UTC
Security Journalism

Check Point Patches Exploited Management Server Zero-Day

Security Week · Ionut Arghire · indexed 2026-09-23 06:15 UTC

The critical-severity flaw could allow unauthenticated attackers to upload and execute arbitrary scripts. The post Check Point Patches Exploited Management Server Zero-Day appeared first on SecurityWeek.

Vulnerabilities
P25
2026-09-22 16:14 UTC
Security Journalism

Researcher Drops BigDiskBuster Zero-Day PoC That Blocks Microsoft Defender Updates

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-22 17:55 UTC

A zero-day proof-of-concept tool that stops Microsoft Defender from installing platform and signature updates by filling all available disk space was published on GitHub on September 19. The tool, called BigDiskBuster, has no patch, no CVE, and no Microsoft advisory. Its author, Abdelhamid Naceri, is a former Microsoft security researcher whose earlier Defender exploits were used in

MicrosoftSecurity ResearchVulnerabilities
P25
2026-09-22 14:04 UTC
Other

Chaotic Eclipse Released BigDiskBuster, A PoC For Windows Defender Update DoS Zero-Day

Security Affairs · Pierluigi Paganini · indexed 2026-09-22 14:10 UTC

The researcher Chaotic Eclipse released BigDiskBuster, a PoC exploit for a Windows Defender Update DoS Zero-Day vulnerability. Security researcher Chaotic Eclipse, also known as INFINITE NIGHTMARE, MSNightmare and Nightmare-Eclipse, released a new zero-day exploit targeting Microsoft Defender. The researcher named the exploit BigDiskBuster, it triggers a Denial of Service Vulnerability in Windows Defender Update. The security researcher […]

MicrosoftSecurity ResearchVulnerabilities
P25
7 8 9 10 11