IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 1,057 matching records.
AUTO-POLL // 2026-08-30 11:30 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
COOL
COOL WARM ELEVATED HOT CRITICAL
P5 / P100
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Aug 30

RANSOMWARE
P5
P5
COOL // 3 ARTICLES
SAT
Aug 29

RANSOMWARE
P9
P9
COOL // 8 ARTICLES
FRI
Aug 28

RANSOMWARE
P8
P8
COOL // 47 ARTICLES
THU
Aug 27

RANSOMWARE
P4
P4
COOL // 48 ARTICLES
WED
Aug 26

RANSOMWARE
P4
P4
COOL // 46 ARTICLES
TUE
Aug 25

ACTIVE EXPLOITATION
P4
P4
COOL // 40 ARTICLES
MON
Aug 24

RANSOMWARE
P4
P4
COOL // 34 ARTICLES
RESET
2026-08-26 05:47 UTC
Security Journalism

Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-26 07:10 UTC

Cybersecurity researchers have disclosed details of a phishing-as-a-service (PhaaS) platform built to strip Apple's Activation Lock from stolen devices, using rented AI voice agents that call theft victims posing as Apple Support and ask for their device passcode. SOCRadar Threat Research Unit (STRU) said the platform, which it tracks as AnonyMousKIT, is credit-metered and drives lures across

ApplePhishingSecurity Research
P0
2026-08-25 21:53 UTC
Vendor Research

Fast Track ISM-ready cloud environments and IRAP Assessments with Landing Zone Accelerator on AWS

AWS Security Blog · Kevin Donohue · indexed 2026-08-25 21:55 UTC

This post announces the availability of a new independent assessment report available on AWS Artifact analyzing how Landing Zone Accelerator on AWS (LZA) can automatically deploy multi-account environments in Amazon Web Services (AWS) with Australian Government Information Security Manual (ISM) security controls coverage at scale. The report includes findings from an independent third-party analysis conducted […]

Cloud Security
P0
2026-08-25 21:08 UTC
Security Journalism

Hidden Prompts Trick AI Into False Email Summaries

Dark Reading · Jai Vijayan · indexed 2026-08-25 21:20 UTC

With some simple HTML that's invisible to users, attackers can manipulate AI-powered email summarizers into producing malicious information.

P0
2026-08-25 20:33 UTC
Security Journalism

58 arrested in international cybercrime crackdown

The Record · indexed 2026-08-25 20:50 UTC

Interpol officials said it uncovered a crime-as-a-service network in Argentina run by 196 people that provided website domains and money laundering support to West African organized crime groups like Black Axe.

CybercrimeLaw Enforcement
P0
2026-08-25 19:09 UTC
Vendor Research

CVE-2026-78379 - Consent bypass in Strands Agents Tools python_repl tool

AWS Security Bulletins · aws@amazon.com · indexed 2026-08-25 19:30 UTC

Bulletin ID: 2026-089-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/25/2026 12:00 PM PDT Description: Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the python_repl tool, which executes Python code on the agent's host, and the batch tool, which invokes several other tools in a single call. Before executing code, python_repl prompts the ope…

AI SecurityCloud SecurityVulnerabilitiesCVE-2026-78379
P5
2026-08-25 18:17 UTC
Security Journalism

U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-25 19:20 UTC

The U.S. Department of the Treasury has announced fresh sanctions on Iranian cyber actors as part of what it called an "unprecedented, whole-of-government, economic campaign" against the nation and its enablers. "We are launching an economic onslaught against Iran's financial connections around the globe. Our objective is to sever every economic lifeline that sustains this tyrannical regime

P0
2026-08-25 17:51 UTC
Other

Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack

Security Affairs · Pierluigi Paganini · indexed 2026-08-25 18:30 UTC

Norway ’s shared government infrastructure suffered a third DDoS attack, disrupting digital services but showing no signs of data compromise. Norway ‘s shared digital government infrastructure has been hit by another distributed denial-of-service (DDoS) attack that disrupted services used by citizens, businesses and public agencies. The incident began at 03:38 CEST on Monday, August 24, […]

P0
2026-08-25 17:02 UTC
Other

When the Algorithm Fires You: Uber Faces €825M Fine

Security Affairs · Pierluigi Paganini · indexed 2026-08-25 17:30 UTC

Uber faces an €825M GDPR fine for automatically suspending drivers without human review, highlighting the risks of AI decisions affecting workers. The Dutch Data Protection Authority handed Uber its largest privacy fine yet, and this one isn’t about data transfers or cookie consent. The regulator imposed an 825 million euro penalty, roughly $964 million, over […]

P0
2026-08-25 16:43 UTC
Other

Two CVSS 9.8 Auth Bypasses in miniOrange SAML WordPress Plugin Were Exploited Before Any Database Even Listed the Paid Editions as Vulnerable

Security Affairs · Pierluigi Paganini · indexed 2026-08-25 17:30 UTC

Two CVSS 9.8 miniOrange SAML WordPress plugin auth bypasses were exploited while paid editions never appeared in any vulnerability database. Manual patch required. Two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On WordPress plugin, both rated CVSS 9.8, are under active exploitation. Both CVE-2026-61979 and CVE-2026-15981 allow an unauthenticated attacker to […]

VulnerabilitiesCVE-2026-15981CVE-2026-61979
P15
2026-08-25 16:00 UTC
Vendor Research

The patch window is collapsing: Why security needs a new control plane

Microsoft Security Blog · Igor Sakhnov · indexed 2026-08-25 17:25 UTC

Organizations need protection that operates in the gap between discovery and remediation. The post The patch window is collapsing: Why security needs a new control plane appeared first on Microsoft Security Blog.

Microsoft
P0
2026-08-25 15:52 UTC
Security Journalism

Massive DDoS attack disrupts Norway’s government digital services

BleepingComputer · Bill Toulas · indexed 2026-08-25 16:00 UTC

A large distributed denial-of-service (DDoS) attack has disrupted Norway's shared government digital infrastructure since Monday, affecting services used by the public sector. [...]

P0
2026-08-25 15:03 UTC
Community

Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)

SANS Internet Storm Center · indexed 2026-08-25 15:10 UTC

It is pretty obvious that hostnames can replace IP addresses. Pretty much any software accepting an IP address will also accept a hostname as an argument. Last week, I wrote about scans for the cloud metadata service listening at 169.254.169.254. These scans attempted to exploit Server Side Request Forgery (SSRF) vulnerability. One way to prevent these types of exploits is to filter requests that contain the string "169.254.169.254" or to add this IP to a blocklist of URLs that should not be ac…

Vulnerabilities
P0
2026-08-25 14:53 UTC
Security Journalism

Is Cyber Facing an Affordability Crisis?

Dark Reading · Arielle Waldman · indexed 2026-08-25 15:15 UTC

As breach costs reach record highs and defense spending nears $240 billion, small businesses are dangerously exposed, threatening supply chain security.

P0
2026-08-25 14:07 UTC
Security Journalism

A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-25 15:10 UTC

Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself. The findings were shared with The Hacker News ahead of publication, and the report says Oasis Security reported them to NVIDIA's Product Security Incident

AI Security
P0
2026-08-25 14:01 UTC
Security Journalism

From Fake Workers to Account Recovery: The Growing Identity Verification Risk

BleepingComputer · Sponsored by Specops Software · indexed 2026-08-25 14:15 UTC

Attackers are increasingly targeting the processes used to establish or recover identity rather than attacking the login itself. Specops explains how stronger identity verification can help organizations prevent fake workers and social engineering attacks from gaining legitimate access. [...]

P0
2026-08-25 14:00 UTC
Security Journalism

Ukraine to give Britain access to battlefield data to train AI

The Record · indexed 2026-08-25 14:15 UTC

Ukraine will give Britain access to a vast trove of battlefield data collected during the war with Russia, allowing U.K. companies and researchers to use it to train and test artificial intelligence systems.

AI Security
P0
2026-08-25 13:19 UTC
Security Journalism

WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-25 13:45 UTC

Meta on Tuesday announced a set of WhatsApp account security features, including support for multiple passkeys to a single account to help users with both iOS and Android devices sign into their accounts using the phishing-resistant method. The tech giant said more than 1 billion people use a passkey to log into WhatsApp. Support for passkeys was first introduced in Android in October 2023,

AppleMobile SecurityPhishing
P0
2026-08-25 13:00 UTC
Security Journalism

WhatsApp adds stronger two-step verification, multiple passkeys

BleepingComputer · Sergiu Gatlan · indexed 2026-08-25 13:20 UTC

WhatsApp has started rolling out several new account security features, including support for multiple passkeys and stronger two-step verification. [...]

P0
2026-08-25 12:45 UTC
Security Journalism

UK government seeks powers to secretly block risky tech suppliers

The Record · indexed 2026-08-25 12:50 UTC

The British government is seeking new powers to ban certain technology vendors from supplying companies working in the country’s critical sectors — and to potentially do so in secret.

P0
2026-08-25 12:43 UTC
Security Journalism

Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-25 13:45 UTC

Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model Context Protocol (MCP) command in a specially crafted notebook, according to VulnCheck's CVE Numbering Authority (CNA) record. The CNA record says the command can run as a local subprocess when the notebook is opened in edit mode. The vulnerability, tracked

Vulnerabilities
P0
2026-08-25 11:56 UTC
Security Journalism

Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-25 12:45 UTC

Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. According to ANY.RUN research, 48% of targeted email addresses were potentially compromised. Most of the affected companies are US-based. Mirage2FA Campaign

MicrosoftPhishing
P0
4 5 6 7 8