Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

SC Media general Jul 26

How to Build Application Detection and Response

Application detection and response programs fail when they collect signals but cannot investigate with them

SC Media → Details

Security Affairs general Jul 26

Security Affairs newsletter Round 587 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box.

Security Affairs → Details

SC Media general Jul 26

How to Secure AI Applications in Production

AI application security programs collapse at three predictable control points: system prompt integrity, output handling and runtime visibility gaps

SC Media → Details

Help Net Security general ServiceNow Jul 26

Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: AI agents are still logging in as humans Most large compani...

T1190

Help Net Security → Details

BleepingComputer general Jul 25

Steam forum ClickFix attacks infect gamers with XMRig cryptominers

Steam discussion forums are being abused in ClickFix attacks that pretend to be fixes for game and computer problems but actually infect devices with cryptom...

BleepingComputer → Details

Security Affairs general Jul 25

Iran-Linked Actors Breach Are Targeting US Water and Energy Control Systems

US agencies warn Iran-linked actors are targeting internet-exposed water and energy control systems, risking disruption. Federal agencies updated their cyber...

Security Affairs → Details

The Hacker News general Microsoft Jul 25

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

A malvertising operation dubbed SourTrade is making victims' browsers build the final Windows executable themselves, using a legitimate Bun runtime as its ba...

T1189

The Hacker News → Details

Security Affairs general Jul 25

Australian energy provider Origin Energy disclosed a data breach impacting customer data

Origin Energy confirmed a data breach after a hacker claimed to have stolen data from 2 million customers and threatened to leak it. Origin Energy disclosed ...

Security Affairs → Details

BleepingComputer general Oracle Jul 25

Malicious sites use JavaScript to build malware in browser memory

A massive malvertising campaign is using fake Solana, Luno, and TradingView webpages with malicious JavaScript that instructs browsers to assemble malware di...

T1189

BleepingComputer → Details

BleepingComputer general Jul 25

ShinyHunters data leaks fuel $2,000 sextortion email scam

Threat actors are using email addresses exposed in data breaches leaked by the ShinyHunters extortion group to send sextortion emails demanding $2,000 in Bit...

BleepingComputer → Details

The Hacker News general Oracle Jul 25

Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba's JSON library for Java. In affected Spring Boot appli...

1 IOC

The Hacker News → Details

The Hacker News general Jul 25

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attack...

T1566

The Hacker News → Details

The Hacker News general Amazon Jul 25

Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed...

The Hacker News → Details

The Hacker News general Jul 25

DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloa...

T1588

The Hacker News → Details

BleepingComputer general Intel Jul 25

OpenAI confirms ChatGPT is down worldwide

ChatGPT, the famous artificial intelligence chatbot that allows users to converse with various personalities and topics, has connectivity issues worldwide. [.

BleepingComputer → Details

The Hacker News general GitLab Jul 25

Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes commands as git on an unpatched self-managed...

The Hacker News → Details

SecurityWeek general Amazon Jul 25

Rockwell Patches Code Execution Flaws in Arena Simulation Software

A researcher has explained how an attacker could exploit these vulnerabilities to target industrial organizations. The post Rockwell Patches Code Execution F...

SecurityWeek → Details

GBHackers general Jul 25

Hackers Use Stealer Logs to Bypass MFA and Launch Ransomware Attacks

Infostealer malware has now become the invisible thread linking petty credential theft to full-blown ransomware campaigns. Attackers no longer bother forcing...

T1078 T1598

GBHackers → Details

GBHackers general Google Intel Jul 25

Google Launches Unified Cryptonym-Based Naming System for Threat Actors

Google Threat Intelligence Group (GTIG) has introduced a unified cryptonym-based naming system for cyber threat actors, aiming to simplify attribution, impro...

GBHackers → Details

GBHackers general Oracle Jul 25

Phantom Stealer Campaign Uses JavaScript and PowerShell to Steal Browser Credentials

A sophisticated phishing campaign that disguises malware delivery inside routine business communications, ultimately deploying Phantom Stealer v3.5.

T1566

GBHackers → Details

«Previous page 1 ... 297 298 299 300 301 ... 330 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA