IntelFreed Cybersecurity Intelligence Weather Report

LATEST

Aggregated cybersecurity reporting, advisories and research. 623 matching records.
AUTO-POLL // 2026-10-03 00:20 UTC
CYBER INTEL TEMPERATURE
TODAY'S AGGREGATED INTELLIGENCE
NO DATA
NO INTELLIGENCE AGGREGATED TODAY
7-DAY C.I.T. REPORT
CYBER CONDITIONS // DAILY C.I.T. READINGS
TODAY → 6 DAYS AGO
TODAY
Oct 3
NO DATA
--
NO INTEL
FRI
Oct 2

RANSOMWARE
P7
P7
COOL // 46 ARTICLES
THU
Oct 1

RANSOMWARE
P8
P8
COOL // 63 ARTICLES
WED
Sep 30

RANSOMWARE
P10
P10
WARM // 59 ARTICLES
TUE
Sep 29

RANSOMWARE
P4
P4
COOL // 68 ARTICLES
MON
Sep 28

RANSOMWARE
P7
P7
COOL // 52 ARTICLES
SUN
Sep 27

RANSOMWARE
P25
P25
ELEVATED // 15 ARTICLES
RESET
2026-09-14 20:52 UTC
Security Journalism

Microsoft releases emergency Windows updates to fix RDS failures

BleepingComputer · Lawrence Abrams · indexed 2026-09-14 20:55 UTC

Microsoft has released emergency out-of-band Windows updates to fix Remote Desktop Services failures caused by this month's security updates, along with Hyper-V and USB audio problems on some Windows versions. [...]

Microsoft
P5
2026-09-14 20:35 UTC
Other

ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up

Security Affairs · Pierluigi Paganini · indexed 2026-09-14 20:45 UTC

Frontier AI is compressing the attack lifecycle from vulnerability discovery to exploitation, forcing defenders to detect, patch and respond at machine speed. Cybersecurity has always been a race between attackers and defenders. ENISA’s latest assessment suggests that frontier AI is changing the speed of that race, and the gap between discovering a vulnerability and exploiting […]

MicrosoftVulnerabilities
P0
2026-09-14 18:01 UTC
Security Journalism

3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-14 19:45 UTC

An attacker was operating inside the network of 3BB, one of Thailand's largest broadband providers, and maintained remote control of internal machines using a legitimate management tool called MeshCentral, threat intelligence firm Hunt.io said. The company uncovered the intrusion by examining a server the attacker had left open on the internet, which held the attacker's own tools and a list of

MalwareMicrosoftThreat Intelligence
P0
2026-09-14 11:58 UTC
Security Journalism

AI Changed the Exposure Problem. Validation Needs to Change With It.

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-14 12:25 UTC

There's a lot of noise around AI and cybersecurity right now. What’s actually important is far simpler, if often lost in the hubbub. Vulnerability discovery is getting faster and happening at a much greater scale, while defenders still have to work out which findings actually deserve their action. In the first half of 2026, a whopping 35,853 CVEs were published, roughly 49% more than in the

MicrosoftVulnerabilities
P0
2026-09-14 07:57 UTC
Other

Smish. Click. Drained: Inside the Smishing Triad’s Phishing Cockpit

Group-IB · indexed 2026-09-14 08:30 UTC

A deep technical analysis of the Smishing Triad’s JWR phishing kit and Outsider operator cluster, revealing its real-time victim control, encrypted WebSocket communications, multi-stage credential theft, AES-256-CTR implementation, infrastructure, and actionable indicators for defenders.

MicrosoftPhishing
P0
2026-09-13 10:11 UTC
Security Journalism

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-13 10:25 UTC

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments. The first campaign, per the tech giant, involved sending over a million scam emails between August 3 and 5, 2026, by masquerading as chief executive officers

CybercrimeMicrosoftPhishingThreat Actors
P0
2026-09-11 13:35 UTC
Vendor Research

Metasploit Wrap Up: This One Goes to Sixteen!

Rapid7 · Brendan Watters · indexed 2026-09-11 14:05 UTC

This One Goes to Sixteen!Another banger from Metasploit with sixteen new modules, including ten exploit modules, with five on the CISA KEV list. Cisco, Papercut, Sonicwall, Jetbrains, and Langflow all have exploit modules, and not to be outdone, we even have a Metasploit scanner to watch the watchers!New module content (16)Elasticsearch ingest-attachment Apache Tika XFA XXE Local File ReadAuthors: Bourbon Offensive Security Services and Jean-Marie BourbonType: AuxiliaryPull request: #21739 cont…

LinuxMicrosoftNetwork SecurityVulnerabilitiesCVE-2025-54988CVE-2025-66516CVE-2026-19295CVE-2026-20079CVE-2026-20929CVE-2026-23744CVE-2026-48558CVE-2026-63077CVE-2026-81578CVE-2026-82078CVE-2026-83548CVE-2026-83549
P100
2026-09-11 07:14 UTC
Security Journalism

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-09-11 07:40 UTC

A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims' computers, security company Gen Digital said in research published Thursday. The attack started with a crafted link and ended with the attacker able to do anything the logged-in user could do. Tencent, which owns

MalwareMicrosoft
P0
2026-09-10 20:34 UTC
Security Journalism

September Windows Server updates break Remote Desktop Services

BleepingComputer · Lawrence Abrams · indexed 2026-09-10 20:45 UTC

Windows admins report that the September 2026 security updates are causing Remote Desktop Services (RDS) failures on Windows Server 2019, 2022, and 2025 servers, preventing users from connecting and, in some cases, requiring a hard reset to restore functionality. [...]

Microsoft
P5
2026-09-10 19:07 UTC
Security Journalism

Microsoft Excel KB5002914 update breaks copy and paste for some users

BleepingComputer · Lawrence Abrams · indexed 2026-09-10 19:15 UTC

Microsoft Excel users report that this week's KB5002914 Office security update is breaking copy-and-paste operations and formula dragging, with affected users saying that removing or rolling back the update restores normal functionality. [...]

Microsoft
P5
2026-09-10 17:23 UTC
Vendor Research

Protecting organizations from AI-assisted executive impersonation and invoice fraud

Microsoft Security Blog · Microsoft Security Research · indexed 2026-09-10 19:15 UTC

Microsoft examines an AI-assisted business email compromise campaign that used executive impersonation and fake invoices to target finance teams with ACH payment fraud. The post Protecting organizations from AI-assisted executive impersonation and invoice fraud appeared first on Microsoft Security Blog.

CybercrimeMicrosoftPhishing
P0
2026-09-10 16:00 UTC
Vendor Research

Detect and disrupt AI-themed attacks with Microsoft Defender

Microsoft Security Blog · Rob Lefferts · indexed 2026-09-10 18:15 UTC

See how Microsoft Defender detects and disrupts AI-themed phishing, malware, and multi-stage attacks across the attack chain. The post Detect and disrupt AI-themed attacks with Microsoft Defender appeared first on Microsoft Security Blog.

MalwareMicrosoftPhishing
P0
2026-09-10 08:08 UTC
Security Journalism

Microsoft fixes bug that wiped Windows desktop settings

BleepingComputer · Sergiu Gatlan · indexed 2026-09-10 08:15 UTC

Microsoft says the September 2026 Patch Tuesday updates fix a known issue causing desktop settings to be lost or reset on some Windows devices. [...]

Microsoft
P0
2026-09-10 08:06 UTC
Other

U.S. CISA adds Microsoft Windows, N-able N-central, and Adobe flaws to its Known Exploited Vulnerabilities catalog

Security Affairs · Pierluigi Paganini · indexed 2026-09-10 08:55 UTC

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Windows, N-able N-central, and Adobe flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2026-75650 (CVSS score of 10.0) is an Adobe Commerce and Magento improper neutralization of special elements in a […]

Cloud SecurityMicrosoftVulnerabilitiesCVE-2026-75650
P35
4 5 6 7 8