IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 4,780 matching records.
AUTO-POLL // 2026-10-11 11:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
ELEVATED
COOL WARM ELEVATED HOT CRITICAL
P30 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 11

ACTIVE EXPLOITATION
P30
P30
ELEVATED // 1 ARTICLE
SAT
Oct 10

RANSOMWARE
P1
P1
COOL // 11 ARTICLES
FRI
Oct 9

RANSOMWARE
P4
P4
COOL // 67 ARTICLES
THU
Oct 8

RANSOMWARE
P3
P3
COOL // 62 ARTICLES
WED
Oct 7

RANSOMWARE
P5
P5
COOL // 86 ARTICLES
TUE
Oct 6

RANSOMWARE
P3
P3
COOL // 61 ARTICLES
MON
Oct 5

RANSOMWARE
P5
P5
COOL // 48 ARTICLES
RESET
2026-08-03 15:00 UTC
Government

Cyber Brief 26-08 - July 2026

CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC

Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.

P0
2026-08-03 14:48 UTC
Vendor Research

Metasploit Pro 5.1 Released

Rapid7 · The Metasploit Team · indexed 2026-08-15 18:55 UTC

Today marks the release of Metasploit Pro 5.1 - building upon the foundation laid in 5.0, adding new evasion primitives for HTTP Meterpreter payloads, support for tracking service hierarchies, a deeper and more interactive Network Topology view, and continuing our commitment to a modern, consistent UI. This release is powered by Metasploit Framework 6.5.Malleable C2 ProfilesOne of the most requested capabilities in modern red-team engagements is the ability to blend Meterpreter's network traffi…

LinuxMicrosoftVulnerabilities
P0
2026-08-03 14:00 UTC
Security Journalism

Why App Control Fails Most Teams and How Managed ESPM Fixes It

Huntress · indexed 2026-09-07 17:30 UTC

App control works, but most solutions are built for enterprise budgets and headcount. See how Huntress Managed ESPM makes proactive endpoint hardening accessible for MSPs and small IT teams.

P0
2026-08-03 14:00 UTC
Security Journalism

Is There Really a Fix for CISO Fatigue?

Dark Reading · Dirk Schrader · indexed 2026-08-15 18:55 UTC

Accountability without any real authority is driving CISO burnout, and organizations need to take notice.

P0
2026-08-03 13:15 UTC
Other

3rd August – Threat Intelligence Report

Check Point Research · urias · indexed 2026-09-07 17:30 UTC

For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Minnesota IT Services has confirmed coordinated cyberattacks affecting more than 30 community water utilities across the state. The incidents briefly disrupted a treatment plant in Braham and affected industrial control systems. Officials reported […] The post 3rd August – Threat Intelligence Report appeared first on Check Point Research.

ICS / OTThreat Intelligence
P0
2026-08-03 10:00 UTC
Vendor Research

Pass the Passkey: A Novel Attack Surface in Passwordless Authentication

Palo Alto Networks Unit 42 · Arie Olshtein · indexed 2026-08-15 18:55 UTC

Explore how passkey implementation gaps undermine security when relying parties fail to validate the User Verified flag, reducing MFA to a single factor. The post Pass the Passkey: A Novel Attack Surface in Passwordless Authentication appeared first on Unit 42.

P0
2026-08-03 10:00 UTC
Vendor Research

30 days with Claude Mythos Preview: How Tenable adapted our security program, and why yours is next

Tenable Blog · Blake Kizer · indexed 2026-08-15 18:55 UTC

Tenable spent 30 days running frontier AI models against our own code. It didn’t just find bugs — it proved they’re real, with reproducible exploits. That fundamentally changes code security from ranking potential code defects to a much higher signal focused on the findings that matter. Read on to learn how it reshaped our security team's work, what it cost, and why your program is next.Key takeaways:Now code security starts with proof, not suspicions. Frontier AI instantly builds working explo…

AI SecurityCloud SecuritySecurity Research
P0
2026-08-03 08:00 UTC
Vendor Research

Rapid7 Expands UK and Ireland Channel Presence Through Strategic Partnership with Exclusive Networks

Rapid7 · Ross Baker · indexed 2026-08-15 18:55 UTC

Ross Baker is Senior Director, Northern Europe at Rapid7.As organizations across the United Kingdom and Ireland embrace AI, cloud technologies, and digital transformation in the name of enhancing customer experiences and accelerating business growth, the cybersecurity landscape must continue to evolve just as quickly.In this environment, business leaders still expect security to enable innovation, not slow it down. They're pushed to reduce risk, improve visibility across expanding attack surfac…

P0
2026-07-31 21:01 UTC
Vendor Research

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft

Microsoft Security Blog · Microsoft Threat Intelligence · indexed 2026-08-15 18:55 UTC

Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware to travelers and steal credentials in an operation we call CaptiveCrunch. The post CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft appeared first on Microsoft Security Blog.

MalwareMicrosoftPhishingThreat Actors
P0
2026-07-31 19:44 UTC
Vendor Research

HIPAA Security Rule on AWS – Technical Safeguards Implementation and Readiness Guidance

AWS Security Blog · Abdul Javid · indexed 2026-08-15 18:55 UTC

Today, we’re releasing the HIPAA Security Rule on AWS: Technical Safeguards Implementation and Readiness Guidance. This helps covered entities and business associates configure, implement, and evidence compliance with the HIPAA Security Rule Technical Safeguard requirements (45 CFR §164.312) when building healthcare workloads on AWS. The HIPAA Security Rule’s Technical Safeguards (§164.312) define five standards and […]

Cloud Security
P0
2026-07-31 18:13 UTC
Security Journalism

CISA Issues Fresh SBOM Guidance. Did They Get It Right?

Dark Reading · Nate Nelson · indexed 2026-08-15 18:55 UTC

A couple dozen changes to SBOM fields will make them more comprehensive, but some argue that the framework lacks real risk-management improvements.

P0
2026-07-31 13:19 UTC
Security Journalism

DROP Platform Lets Californians Reduce Digital Footprint

Dark Reading · Arielle Waldman · indexed 2026-08-15 18:55 UTC

Hundreds of thousands of California residents have already registered for the Delete Request and Opt-out Platform (DROP), which launches Aug. 1. Other states could follow if the process goes smoothly.

P0
2026-07-31 13:00 UTC
Security Journalism

USA Fencing Lunges Into the Hidden Identity Challenge in Amateur Sports

Dark Reading · Alexander Culafi · indexed 2026-08-15 18:55 UTC

The organization behind Team USA's Olympic/Paralympic fencing teams has automated identity verification to handle growing membership, cutting manual review time while ensuring athletes compete in the correct categories.

P0
2026-07-31 11:53 UTC
Vendor Research

Rapid7 at Black Hat USA 2026: See preemptive security in action

Rapid7 · Emma Burdett · indexed 2026-08-15 18:55 UTC

Black Hat USA returns to Mandalay Bay in Las Vegas this August, bringing together security practitioners, researchers, and leaders from around the world. Rapid7 will be there in the Business Hall, with new capabilities, live demonstrations, expert-led sessions, and two days of activities at the Border Grill.This year, our focus is preemptive security: helping security teams anticipate credible risk, respond at machine speed, and maintain an accurate view of their security and compliance posture…

AI SecurityCloud SecurityDFIRSecurity ResearchThreat IntelligenceVulnerabilities
P0
2026-07-31 10:00 UTC
Vendor Research

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

Palo Alto Networks Unit 42 · Adva Gabay and Noa Dekel · indexed 2026-08-15 18:55 UTC

Analysis of XCSSET v40 reveals a macOS malware targeting developers via Xcode. Unit 42 used advanced pattern matching and AI to decode its logic. The post The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version appeared first on Unit 42.

AppleMalware
P0
2026-07-31 09:34 UTC
Vendor Research

Influence Operations Bulletin Q2 2026

Google Security Blog · Trust & Safety · indexed 2026-08-15 18:55 UTC

This bulletin includes coordinated influence operation campaigns terminated on our platforms in Q2 2026. It was last updated on June 30, 2026.AprilWe terminated 13 YouTu…

P0
2026-07-30 21:49 UTC
Vendor Research

Balancing speed and safety: A control framework for AI coding agents

AWS Security Blog · Daniel Begimher · indexed 2026-08-15 18:55 UTC

AI coding agents are part of the developer toolchain. Tools like Kiro and Claude Code generate features, tests, and code refactors from natural-language prompts. A single agent can open dozens of pull requests (PRs) across your repositories in an afternoon. That productivity comes with a trade-off: agents optimize for task completion at machine speed with […]

P0
2026-07-30 21:16 UTC
Security Journalism

Minnesota Water Utility Attacks Expose Sector's Cyber-Risks

Dark Reading · Jai Vijayan · indexed 2026-08-15 18:55 UTC

A likely Iran-backed actor targeted more than 30 community water systems in Minnesota in a sobering reminder of rising threats to US critical infrastructure.

P0
2026-07-30 20:15 UTC
Vendor Research

What water utilities need to know about cybersecurity compliance

Tenable Blog · Kate Boronkay · indexed 2026-08-15 18:55 UTC

As federal enforcement tightens and states begin stepping in with their own cybersecurity mandates, water and wastewater utilities face a looming wave of hard compliance deadlines, compounded by recent cyber attacks on state water utilities.Key takeawaysWhile the EPA’s national sanitary-survey mandate stalled in court, the agency is aggressively using existing authority, technical guidance, and enforcement alerts to inspect cyber gaps. Community water systems serving 3,301 to 49,999 people, the…

DFIRThreat Intelligence
P0
2026-07-30 19:40 UTC
Security Journalism

AI Harnesses Burst With Potential Exploit Opps

Dark Reading · Robert Lemos · indexed 2026-08-15 18:55 UTC

A myriad of software makes up the typical AI harness, and trust issues between the components can create concerning attack vectors.

P0
2026-07-30 18:00 UTC
Vendor Research

You were onto something with “It’s the Climb,” Miley

Cisco Talos Intelligence Blog · Amy Ciminnisi · indexed 2026-08-15 14:33 UTC

Amy hikes Virginia’s most difficult trail and muses on the persistent challenges of cybersecurity. The two aren't dissimilar.

P0
2026-07-30 17:22 UTC
Vendor Research

Extend Amazon Inspector SBOM Generator with Plugins

AWS Security Blog · Michael Long · indexed 2026-08-15 18:55 UTC

Amazon Inspector is an automated vulnerability management service that continually scans Amazon Web Services (AWS) workloads for software vulnerabilities. The vulnerability management capabilities of Amazon Inspector are powered by an asset inventory engine known as the Amazon Inspector SBOM Generator (inspector-sbomgen), a standalone command-line tool that produces a software bill of materials (SBOM) from container […]

Cloud SecurityVulnerabilities
P0
97 98 99 100 101