Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

SC Media general Google Aug 25

Codex ClickFix installation lure spreads suspected AMOS infostealer

The attack uses iframes embedded in Google Sites to deliver malicious content from a trusted domain.

SC Media → Details

Infosecurity Magazine general Aug 25

Australia Warns of Active Exploitation of Critical TeamCity Server Flaw

Australian officials are urging TeamCity customers to patch an actively exploited critical flaw, which follows a similar warning from the US government

Infosecurity Magazine → Details

Schneier on Security general Aug 25

Black Hat State of Security Vendors

Andy Ellis has a roundup of the security vendors at Black Hat this year. Key Takeaways: We have entered into an AI world.

Schneier on Security → Details

BleepingComputer general Aug 25

Police arrests dozens of suspects in global cybercrime crackdown

Law enforcement agencies from 22 countries helped identify 263 suspects and arrested 58 individuals linked to cybercrime networks coordinated by African crim...

BleepingComputer → Details

Infosecurity Magazine general Aug 25

Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown

A threat actor keeps spreading the WeedHack malware to Minecraft players despite its original infrastructure taken down in July

Infosecurity Magazine → Details

GBHackers general Broadcom Aug 25

91 Spring CVEs Impact Over 209,000 Software Components Across the Supply Chain

Broadcom has disclosed 91 Common Vulnerabilities and Exposures (CVEs) affecting the Spring Framework and related projects, triggering a software supply chain...

T1195

GBHackers → Details

Help Net Security general Microsoft Google Aug 25

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks

At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, the Shadowserver Foundation shared on Monday. Ab...

1 IOC

Help Net Security → Details

SecurityWeek general Intel Aug 25

Silent Patches Don’t Stop Attackers—They Blind Defenders

Silent patches can become exploit intelligence for attackers while leaving defenders without the context needed to prioritize risk. The post Silent Patches D...

T1598

SecurityWeek → Details

GBHackers general Google Cloudflare Aug 25

PavinLoader Uses ClickFix and Fake Downloads to Deploy Amatera Stealer via Blockchain C2

PavinLoader, a multi-stage .NET malware loader, operating across ClickFix, fake software-download, and malicious game campaigns.

GBHackers → Details

Infosecurity Magazine general Aug 25

ReliaQuest Rejects Compromise Claims After ShinyHunters Incident

ReliaQuest has detailed a social engineering attack linked to ShinyHunters, denying reports that the threat actor successfully compromised its systems

T1204

Infosecurity Magazine → Details

Help Net Security general Aug 25

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack

Cybersecurity company ReliaQuest has confirmed that one of its own employees fell for a social engineering attack, handing attackers a password and a brief w...

T1204

Help Net Security → Details

Infosecurity Magazine general Aug 25

US Sanctions Mabna Institute Hackers for Iranian Cyber-Attacks

The US has sanctioned individuals connected to hacking-for-hire group the Mabna Institute

Infosecurity Magazine → Details

SC Media general Aug 25

Applying Zero Trust Principles to Agents - Kieran Human - ASW #397

SC Media → Details

Security Affairs general Oracle Aug 25

U.S. CISA adds maximum-severity Oracle flaw to its Known Exploited Vulnerabilities catalog

U.S.

1 IOC

Security Affairs → Details

GBHackers general Aug 25

Anthropic Expands Claude MCP Security With Enterprise-Managed Identity Controls

Anthropic has expanded Claude Enterprise’s Model Context Protocol (MCP) security capabilities with enterprise-managed authorization, allowing organizations t...

GBHackers → Details

GBHackers general Amazon WordPress Aug 25

Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts

Two critical vulnerabilities have been identified in the miniOrange SAML 2.0 Single Sign-On WordPress plugin, which could allow unauthenticated attackers to ...

2 IOCs

GBHackers → Details

The Hacker News general Amazon WordPress Aug 25

Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access

Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that make i...

T1548 T1556 1 IOC

The Hacker News → Details

SecurityWeek general NVIDIA Aug 25

Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff

AI infrastructure, including advanced semiconductors mostly made in Taiwan, has become a key point of competition between the U.S.

T1598

SecurityWeek → Details

GBHackers general Red Hat Aug 25

Critical Red Hat Keycloak Password Reset Flaw Enables Unauthenticated Account Takeover

Red Hat has disclosed a critical vulnerability in the Red Hat Build of Keycloak that allows an unauthenticated remote attacker to bypass a key safeguard in t...

1 IOC

GBHackers → Details

GBHackers general Google Apple Aug 25

Hackers Place Fake Codex Download Above Legitimate OpenAI Result to Infect Mac Users

Threat actors are using sponsored Google Search ads to place a fake OpenAI Codex download page above the legitimate result, steering macOS users into manuall...

GBHackers → Details

«Previous page 1 ... 183 184 185 186 187 ... 333 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA