Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

SecurityWeek general Aug 5

311,000 Impacted by Brown Health Medical Group-MA Data Breach

Hackers stole personal information, medical records, and financial information from the organization’s server. The post 311,000 Impacted by Brown Health Medi...

SecurityWeek → Details

Help Net Security general Palo Alto Networks Aug 5

Code review used to be the only way to catch these bugs

An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confir...

Help Net Security → Details

SecurityWeek general Aug 5

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data 

The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations. The post Cybersecurity Alliance Drafts SA...

SecurityWeek → Details

The Hacker News general Aug 5

Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup

An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.

1 IOC

The Hacker News → Details

Infosecurity Magazine general Aug 5

Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents

Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list

Infosecurity Magazine → Details

GBHackers general Amazon Aug 5

15 TP-Link Omada Flaws Exploit Zero-Touch Provisioning to Hijack Devices and Infiltrate Networks

Security researchers have disclosed 15 vulnerabilities in TP-Link’s Omada zero-touch provisioning (ZTP) ecosystem, which can be exploited to hijack devices, ...

GBHackers → Details

The Hacker News general GitHub Aug 5

Leaked n8n API Tokens Exposed Live Instances to Credential Theft

GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to ...

T1078

The Hacker News → Details

SecurityWeek general Aug 5

AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations

In one instance, an unsanctioned model attempted to inject malicious code into an open source repository. The post AI Security Institute Reports Anthropic an...

SecurityWeek → Details

HackRead general Aug 5

Brazil Health Surveillance Database Exposed 79GB of Sensitive Records

Brazil's SISVISA health surveillance system left 102,215 files totaling 79GB open online, including tax IDs and identity documents, without password protection.

HackRead → Details

Infosecurity Magazine general Aug 5

ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs

A new npm worm has compromised packages with over two billion monthly installs

Infosecurity Magazine → Details

SecurityWeek general Amazon Apache Aug 5

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-cent...

T1190 T1556

SecurityWeek → Details

Schneier on Security general Aug 5

Vulnerabilities in Car Anti-Theft Device

This is disturbing: …a team of security researchers at UC San Diego, who found that a model of aftermarket car alarm known as the KARR Security System, insta...

Schneier on Security → Details

GBHackers general Microsoft Salesforce AMD Aug 5

Fake Open VSX Extensions Hijack AMD, Azure, Salesforce and Government Namespaces

Fake Open VSX extensions have hijacked high‑trust namespaces like AMD, Azure, Salesforce, Hyperledger, and a U.S.

GBHackers → Details

Help Net Security general Aug 5

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic

TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a gues...

Help Net Security → Details

The Hacker News general Aug 5

Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data

A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the syst...

T1041

The Hacker News → Details

GBHackers general Microsoft Apple Aug 5

ScreenConnect Attackers Hide Windows, Delete Installers and Masquerade as Software Updates

ScreenConnect is being systematically weaponized in the SMOKE#SCREEN campaign, where attackers hide execution windows, delete installers, and disguise malici...

GBHackers → Details

SC Media general Aug 5

Say Easy, Do Hard - Performance Through People - Greg Hoffman - BSW #459

SC Media → Details

Cyberscoop general Aug 5

AI is getting better at election facts, but voters shouldn’t rely on it

AI chatbots are avoiding some of the obvious errors that plagued earlier models, but they still fall short giving voters the full picture compared to state a...

Cyberscoop → Details

SecurityWeek general GitHub Aug 5

Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials. The post Over 400 NPM Packages Infec...

T1041 T1195

SecurityWeek → Details

Infosecurity Magazine general Aug 5

Frontier Models Engage in Unsanctioned Behavior During Testing

Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests

Infosecurity Magazine → Details

«Previous page 1 ... 255 256 257 258 259 ... 332 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA