Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

The Hacker News general Aug 20

New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data

Adversa AI has disclosed an attack technique that it says can cause xAI's Grok chatbot to send a user's name, approximate location, subscription tier, and th...

The Hacker News → Details

SC Media general Amazon Aug 20

Password spraying attacks surge 155x, exploiting legacy authentication flaws

The campaign, originating from an IPv6 range provided by LSHIY LLC, leveraged reused credentials and the legacy Resource Owner Password Credentials (ROPC) OA...

T1110

SC Media → Details

SecurityWeek general Aug 20

Surveillance – Everything You Wanted to Know, But Were Afraid to Ask

We all know they’re watching us. But we don’t know who they are, nor why nor how they are doing it.

SecurityWeek → Details

Infosecurity Magazine general Amazon Aug 20

JFrog Artifactory Flaws Enable Software Supply Chain Attacks

Two Artifactory flaws allowed attackers to poison package metadata across software repositories

T1195

Infosecurity Magazine → Details

SC Media general Aug 20

Kriminal AI service bypasses guardrails by renting legitimate AI models

Kriminal operates on the clearnet, offering various subscription tiers and pay-per-message options.

SC Media → Details

SC Media general Oracle WordPress Aug 20

New malware campaign combines social engineering with defense evasion

The campaign, observed in late July 2026, begins with compromised WordPress websites injected with obfuscated ErrTraffic JavaScript.

T1204

SC Media → Details

BleepingComputer general Aug 20

How MSPs can catch phishing attacks email filters miss

AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor iden...

T1566

BleepingComputer → Details

The Hacker News general Oracle GitHub Aug 20

Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE

Cybersecurity researchers have disclosed a critical security flaw in isolated-vm, a popular open-source sandbox with more than 2,900 stars and 190 forks on G...

The Hacker News → Details

SC Media general Amazon Aug 20

Harness launches AI agents to find and fix software vulnerabilities

The AI SAST agent identifies vulnerabilities, including logic flaws missed by traditional tools, and reduces false positives.

SC Media → Details

SC Media general Aug 20

Brazil's data authority orders halt to facial recognition in Paraná schools

The ANPD cited a failure by the Paraná State Department of Education to demonstrate an adequate legal basis for processing sensitive biometric data, nor suff...

SC Media → Details

The Hacker News general Amazon Citrix Aug 20

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentica...

T1556

The Hacker News → Details

Cyberscoop general Aug 20

The push to designate AI as the next critical infrastructure sector

The designation would unlock a range of federal services, tools and resources for an industry that policymakers view as increasingly tied to national and eco...

Cyberscoop → Details

GBHackers general Microsoft Apple Aug 20

MacSync Stealer Uses 30+ Rotating Domains to Steal macOS Credentials and Exfiltrate Data

MacSync Stealer is expanding its macOS-focused theft operation through a rotating network of more than 30 domains, using stable execution and network pattern...

T1041

GBHackers → Details

The Hacker News general Aug 20

Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code Execution

A now-patched security flaw impacting Zimbra Collaboration (ZCS) has come under active exploitation in the wild, according to the Polish Computer Emergency R...

T1190 T1059 1 IOC

The Hacker News → Details

SC Media general Aug 20

T-Mobile cybersecurity staff cut cable to expel Chinese hackers

The hacking group, identified as Salt Typhoon, compromised hundreds of companies, including major players like AT&T, Verizon, Viasat, Charter, and Windst...

SC Media → Details

GBHackers general Aug 20

New CRLF Desync Attack Lets Hackers Steal HTTPOnly Cookies and Hijack Accounts

Security researchers Tom Stacey from PortSwigger and Tobia Righi from TurtleSec have introduced a new category of HTTP request smuggling attacks known as “CR...

GBHackers → Details

SecurityWeek general Aug 20

Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia

Operation CameraSwarm targeted Dahua cameras across multiple countries, focusing on Russian and CIS telecom netblocks. The post Threat Actor Hacks 14,000 IP ...

SecurityWeek → Details

SC Media general Microsoft Aug 20

Microsoft Defender bug causing crashes resolved

The bug caused Windows Defender quick or full scans to fail, sometimes requiring the service to be restarted.

SC Media → Details

SC Media general Aug 20

Grandoreiro banking trojan resurfaces with new campaign targeting Latin America

The latest campaign, observed in May 2026, utilizes DLL sideloading to execute the banking trojan.

SC Media → Details

GBHackers general Linux Aug 20

New Zombie Card Attack Lets Expired Visa Cards Make Contactless Payments

Security researchers have demonstrated a “Zombie Card” attack that can reactivate certain expired Visa contactless cards, allowing them to be used for NFC pa...

GBHackers → Details

«Previous page 1 ... 197 198 199 200 201 ... 332 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA