Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

BleepingComputer general Jul 24

Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack

Slopsquatting, phantom squatting, and HalluSquatting all exploit the same late-binding attack pattern, where AI coding agents trust hallucinated package, rep...

BleepingComputer → Details

SC Media general Jul 24

The Cloud Shared Responsibility Model — Operationalized

Understanding which party can take which API actions — and which party is accountable for the resulting configuration state — determines where security contr...

SC Media → Details

SC Media general Jul 24

Risk Advisory: Filtering Known-Bad Messages Does Not Prove Detection Readiness

Block rate is not a proxy for detection coverage against these threats

SC Media → Details

SC Media general Jul 24

What Endpoint Security Actually Controls

Three questions can test whether endpoint control architecture is working

SC Media → Details

GBHackers general Jul 24

Foxit PDF Reader Flaw Lets Local Attackers Gain SYSTEM Privileges via DLL Sideloading

A recently disclosed vulnerability in Foxit PDF Reader may allow a local attacker with existing code execution to elevate their privileges to NT AUTHORITY\SY...

1 IOC

GBHackers → Details

GBHackers general Jul 24

Cl0p Targets Internet-Exposed Windchill Servers in Global Engineering Data-Theft Campaign

Cl0p ransomware affiliates are actively exploiting internet-exposed PTC Windchill and FlexPLM deployments in a global data-theft campaign targeting high-valu...

T1190 T1041

GBHackers → Details

Help Net Security general Jul 24

Meta takes on AI-generated accounts with free Facebook verification badge

Meta has introduced Facebook Verified, a free badge meant to show that a person behind a profile has completed identity verification through a selfie check. ...

Help Net Security → Details

SC Media general Kubernetes Jul 24

Kubernetes Runtime Threats Explained

Kubernetes clusters are commonly targeted for data and compute power theft

SC Media → Details

GBHackers general Jul 24

Illinois Man Pleads Guilty to Phishing 4,500 Snapchat Users to Steal Private Photos

An Illinois man has pleaded guilty to a phishing and account-compromise scheme that targeted thousands of Snapchat users, leading to the theft of private ima...

T1566

GBHackers → Details

BleepingComputer general Jul 24

Europol flags 4,340 URLs for removal in 'The Com' crackdown

Europol has flagged 4,340 URLs for removal during a multi-week operation targeting online content linked to "The Com," a loosely organized network of nihilis...

BleepingComputer → Details

SC Media general Jul 24

What Cloud, SaaS, and AI Data Security Actually Controls

The key is understanding where control assumptions break

SC Media → Details

Security Affairs general Jul 24

Thailand’s Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged

Hunt.io uncovered a cyber-espionage attack on Thailand’s Finance Ministry using Hermes AI agent and Hades malware for reconnaissance and persistence.

T1592 1 IOC

Security Affairs → Details

Help Net Security general Jul 24

Russian hackers exploit unpatched Zimbra servers to steal emails

Russian state-backed hacker group Laundry Bear has been breaking into government and commercial networks for at least a year by exploiting a vulnerability in...

Help Net Security → Details

SecurityWeek general Jul 24

AegisAI Raises $36 Million for AI-Powered Email Security

The company has raised a total of $49 million in funding, including from Battery Ventures, Accel and Foundation Capital. The post AegisAI Raises $36 Million ...

SecurityWeek → Details

Infosecurity Magazine general Jul 24

Hotel Wi-Fi Routers Compromised to Steal Corporate Login Credentials From Visitors

Researchers at ReliaQuest warned of widespread DNS poisoning attacks targeting the hospitality sector as part of a cyber espionage campaign

Infosecurity Magazine → Details

GBHackers general Jul 24

SectopRAT Gives Attackers Remote Access to Passwords, Credit Cards, Cookies and Corporate Files

SectopRAT is at the center of a highly targeted malvertising campaign abusing Anthropic’s Claude platform to deliver a stealthy, HVNC‑enabled RAT that gives ...

T1189

GBHackers → Details

The Hacker News general Intel Jul 24

ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link

Cybersecurity researchers have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents that could have allowed a single phishing link to stea...

T1566 T1566.002

The Hacker News → Details

The Hacker News general Microsoft Amazon Linux Jul 24

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers

A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITY\SYSTEM on Microsoft's production image-processing workers, and as root on the Lin...

1 IOC

The Hacker News → Details

The Hacker News general Jul 24

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do

AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we've collectively discovered is tha...

The Hacker News → Details

SecurityWeek general Jul 24

Industry Reactions to OpenAI Models Hacking Hugging Face: Feedback Friday

Industry professionals debate whether it represents a lab containment failure or an unprecedented agentic capability milestone. The post Industry Reactions t...

SecurityWeek → Details

«Previous page 1 ... 117 118 119 120 121 ... 147 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA