IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 1,062 matching records.
AUTO-POLL // 2026-08-30 15:50 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P7 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Aug 30

RANSOMWARE
P7
P7
COOL // 8 ARTICLES
SAT
Aug 29

RANSOMWARE
P9
P9
COOL // 8 ARTICLES
FRI
Aug 28

RANSOMWARE
P8
P8
COOL // 47 ARTICLES
THU
Aug 27

RANSOMWARE
P4
P4
COOL // 48 ARTICLES
WED
Aug 26

RANSOMWARE
P4
P4
COOL // 46 ARTICLES
TUE
Aug 25

ACTIVE EXPLOITATION
P4
P4
COOL // 40 ARTICLES
MON
Aug 24

RANSOMWARE
P4
P4
COOL // 34 ARTICLES
RESET
2026-08-19 20:53 UTC
Security Journalism

Sakura Internet hack exposes data of up to 1.36 million accounts

BleepingComputer · Bill Toulas · indexed 2026-08-19 20:55 UTC

Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored. [...]

P0
2026-08-19 20:32 UTC
Security Journalism

No-Filter 'Kriminal' AI Platform Raises Cybercrime Concerns

Dark Reading · Alexander Culafi · indexed 2026-08-19 21:00 UTC

The AI company officially forbids illicit use, while offering guardrail-free social engineering, offensive cybercrime, and OSINT scanning to anyone with a bit of cryptocurrency.

Cybercrime
P0
2026-08-19 19:54 UTC
Security Journalism

Agentic AI Presents New Insider Threat Model for Orgs

Dark Reading · indexed 2026-08-20 11:10 UTC

Katie Moussouris of Luta Security talks with the Dark Reading News Desk about how enterprises will now need to monitor risks posed by their own agents in the wake of the recent Hugging Face attack.

P0
2026-08-19 19:02 UTC
Security Journalism

Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-19 19:55 UTC

Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) from a co-located Worker in the production environment at up to 12 bits per second, 360 times the rate of an earlier attack demonstrated in 2021. The end-to-end experiment used an attacker Worker and a victim Worker controlled by the researchers,

Security Research
P0
2026-08-19 18:10 UTC
Security Journalism

Electronic health record company CareCloud says 3.7 million people affected by breach

The Record · indexed 2026-08-19 18:15 UTC

Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.

P0
2026-08-19 18:09 UTC
Security Journalism

Hackers compromise 14,500 Dahua web cameras in 35-day campaign

BleepingComputer · Bill Toulas · indexed 2026-08-19 18:20 UTC

In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia. [...]

P0
2026-08-19 18:06 UTC
Security Journalism

OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-19 19:55 UTC

OpenAI on Tuesday revealed that it paused reinforcement learning (RL) training for its latest artificial intelligence (AI) models for two weeks while it shored up additional defenses and increased the scope of its monitoring to avert another Hugging Face-like incident. "As models become more capable, the risks associated with developing and testing them internally also grow," the AI company

AI Security
P0
2026-08-19 17:35 UTC
Other

Inside Operation CameraSwarm: How One Actor Took Over 14,000 Dahua Cameras

Security Affairs · Pierluigi Paganini · indexed 2026-08-19 17:40 UTC

An exposed operator directory reveals how one actor compromised 14,000+ Dahua cameras across Ukraine and Russia, no password needed for most. A researcher discovered an exposed directory containing the tools of an attacker who compromised more than 14,000 Dahua cameras between June 17 and July 22, 2026, mainly in Ukraine and Russia. Hunt.io reconstructed the […]

P0
2026-08-19 17:30 UTC
Vendor Research

Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026

Microsoft Security Blog · Ran Rosin · indexed 2026-08-19 18:05 UTC

Microsoft is named a visionary leader in the 2026 Frost Radar for Cloud Workload Protection Platforms, recognized for unified runtime security with Microsoft Defender for Cloud. The post Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026 appeared first on Microsoft Security Blog.

Microsoft
P0
2026-08-19 17:24 UTC
Vendor Research

Propagate user authorization context in AI agents with Amazon Bedrock AgentCore

AWS Security Blog · Anshu Bathla · indexed 2026-08-19 17:35 UTC

Many teams now deploy AI agents that pull from Amazon DynamoDB tables, document repositories, software as a service (SaaS) platforms, and internal knowledge bases to answer questions and automate workflows. A key risk in these deployments is that the agent has no awareness of who’s asking, so it might return data the user shouldn’t see. […]

AI Security
P0
2026-08-19 16:46 UTC
Vendor Research

CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway

Rapid7 · Rapid7 · indexed 2026-08-19 17:30 UTC

OverviewOn August 19, 2026, a security advisory was published for CVE-2026-19490, a critical authentication bypass vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway. The vulnerability carries a CVSS v4.0 base score of 9.3 and can be exploited remotely by an unauthenticated attacker over the network without user interaction or elevated privileges.NetScaler ADC and NetScaler Gateway are widely deployed enterprise networking products commonly positioned at or near the network peri…

Network SecurityThreat ActorsVulnerabilitiesCVE-2026-19490
P35
2026-08-19 16:13 UTC
Government

2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway

CERT-EU Security Advisories · indexed 2026-08-19 16:15 UTC

On 19 August 2026, Citrix published a security advisory addressing multiple critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends updating affected devices as soon as possible.

P0
2026-08-19 16:00 UTC
Vendor Research

Cisco Advance Notification for Publication of August 19, 2026, Security Advisories

Cisco Security Advisories · indexed 2026-08-15 14:33 UTC

On August 19, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security Advisory CVE ID Security Impact Rating CVSS Base Score Cisco Crosswork Security Hardening Release: August 2026 CVE-2026-20030CVE-2026-20357CVE-2026-20358CVE-2026-20359 Critical 10.0 Cisco Secure Workload Software Security Hardening Release: August 2026 CVE-2026-20231CVE-2026-20315CVE-2026-20317CVE-2026-20318CVE-2026-20319 Critical 10.0 Cisco BroadWorks Out-of-Band Bli…

DFIRNetwork SecurityVulnerabilitiesCVE-2026-20177CVE-2026-20232CVE-2026-20302CVE-2026-20314CVE-2026-20320CVE-2026-20327
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco Secure Workload Software Security Hardening Release: August 2026

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and to streamline the disclosure process, Cisco has grouped these issues …

VulnerabilitiesCVE-2026-20231CVE-2026-20315CVE-2026-20317CVE-2026-20318CVE-2026-20319
P30
2026-08-19 16:00 UTC
Vendor Research

Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit this vulnerability by injecting malicious code into specific pages of the interface. A success…

Network SecurityVulnerabilitiesCVE-2026-20232
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Server-Side Request Forgery Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact Center Enterprise (Unified CCE) could allow an authenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to send…

VulnerabilitiesCVE-2026-20314
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco Unified Intelligence Center SQL Injection Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to read the contents of the internal database of an affecte…

VulnerabilitiesCVE-2026-20327
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an unauthenticated, remote attacker to cause the device manager, SSH, or API to become inaccessible.This vulnerability is due to insufficient protection against management plane flooding attacks. An attacker could exploit this vulnerability by sending a high rate of ICMP, SSH, or HTTP traffic to an affected device. A successful exploit could allow the attacker to cause …

Network SecurityVulnerabilitiesCVE-2026-20177
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco RoomOS Stack Overflow Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with root privileges. This vulnerability is due to insufficient boundary checks for specific data that is provided through the USB driver. An attacker could exploit this vulnerability by connecting a malicious USB device to an affected device. A successful exploit could allow the attacker to cause a buffer overflow …

VulnerabilitiesCVE-2026-20302
P5
2026-08-19 16:00 UTC
Vendor Research

Cisco BroadWorks Out-of-Band Blind XML External Entity Injection Vulnerability

Cisco Security Advisories · indexed 2026-08-19 16:10 UTC

A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an unauthenticated, remote attacker to read sensitive configuration information on an affected system. This vulnerability exists because XML entries are improperly parsed due to external entity resolution being allowed by default. An attacker could exploit this vulnerability by sending a crafted XML message to the Open Client Interface – Provisioning (OCI-P) service. A successful exploit could allow th…

VulnerabilitiesCVE-2026-20320
P5
2026-08-19 15:56 UTC
Security Journalism

US charges Iranian hackers over $3.4 billion intellectual property theft

BleepingComputer · Bill Toulas · indexed 2026-08-19 16:10 UTC

The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations. [...]

P0
2026-08-19 14:24 UTC
Community

Simple Scans for Cloud Metadata Service, (Wed, Aug 19th)

SANS Internet Storm Center · indexed 2026-08-19 14:30 UTC

Cloud providers typically expose a REST API at 169.254.169.254 that allows code running on virtual machines to retrieve machine-specific data. Some of the data is more or less harmless, such as the region the machine is running in or its MAC and IP addresses. However, the service may also be used to retrieve credentials for IAM roles and service account tokens.

P0
2026-08-19 14:00 UTC
Security Journalism

Password spraying attacks surge 155x as hackers exploit MFA gaps

BleepingComputer · Sponsored by Huntress Labs · indexed 2026-08-19 14:05 UTC

Huntress observed a 155x increase in password spraying attacks in H1 2026, including a campaign that generated more than 81 million login attempts in two weeks. The attacks exploited legacy authentication and gaps in MFA policies that left some login flows unprotected. [...]

P0
2026-08-19 13:12 UTC
Security Journalism

SilkParasite Espionage Campaign Targets Central Asian Governments with Five New RATs

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-19 13:35 UTC

A previously unreported cyber espionage operation dubbed SilkParasite has been observed targeting government bodies in Central Asia. The intrusion set makes use of seven remote access tool (RAT) families, five of which have never been previously documented: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT. SilkParasite, first discovered in late 2025, is assessed to be a

APT / Nation-StateMicrosoft
P0
13 14 15 16 17