Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

SecurityWeek general Aug 10

Metabase Patches Vulnerability Exploited as Zero-Day

The security defect allows unauthenticated, remote attackers to gain administrative access to Metabase instances. The post Metabase Patches Vulnerability Exp...

SecurityWeek → Details

Schneier on Security general Aug 10

Python Now Has a Post-Quantum Encryption Library

This is good: Post-quantum cryptography is now one pip-install away for the entire Python ecosystem. With funding from the Sovereign Tech Agency, we implemen...

T1598

Schneier on Security → Details

GBHackers general Aug 10

Fake Solidity Pro Extensions Turn Trusted Developer Tooling Into Credential-Stealing Malware

Malicious “Solidity Pro” extensions are abusing the trust developers place in VS Code and Open VSX tooling, evolving from delayed payload droppers into broad...

T1027

GBHackers → Details

Infosecurity Magazine general Aug 10

“Ghostjacking” Exploits AI Agents’ Trusted Access to Evade Firewall Controls

Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports

Infosecurity Magazine → Details

GBHackers general Linux Aug 10

HP ThinPro TPM Flaw Lets Attackers Bypass Full Disk Encryption and Steal LUKS Keys

A security researcher has revealed a critical design flaw in HP ThinPro versions 8 and 9, which allows attackers with physical access to a thin client’s stor...

GBHackers → Details

GBHackers general Atlassian Aug 10

Atlassian Rovo AI Vulnerability Lets Attackers Steal Enterprise Data With a Single Click

RovoBlast is a recently disclosed vulnerability affecting Atlassian’s Rovo AI assistant that allows attackers to expose sensitive enterprise data through a s...

T1566.002

GBHackers → Details

GBHackers general Intel WordPress Aug 10

WordPress Supply Chain Attack Exploits BdThemes Plugins to Create Rogue Admin Accounts and Install Webshells

A supply chain compromise affecting multiple BdThemes WordPress plugins has allowed attackers to hijack administrator sessions, create unauthorized admin acc...

T1190 T1195

GBHackers → Details

SecurityWeek general Aug 10

Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility

CERT.PL said this appears to be the first instance of a private APN being used as an attack vector.

SecurityWeek → Details

Infosecurity Magazine general Apple Aug 10

Go-Based macOS Malware Steals Crypto and Secrets

A macOS malware variant has been detected stealing crypto, passwords and more

Infosecurity Magazine → Details

BleepingComputer general Aug 10

Critical Progress LoadMaster flaw now actively exploited in attacks

The U.S.

T1059

BleepingComputer → Details

GBHackers general Sophos Aug 10

Sophos Warns Unprotected Endpoints Let Interlock Credential Theft Go Undetected

Interlock ransomware incident that shows how unprotected endpoints can give attackers enough time to steal credentials, establish persistence, and reach a do...

T1078

GBHackers → Details

GBHackers general Apple Intel Aug 10

Apple Private Cloud Compute Path Traversal Flaw Lets Attackers Write Files as Root

Security researcher Drinor Selmanaj has disclosed a path traversal vulnerability (CVE-2026-20685) in Apple’s Private Cloud Compute (PCC) that allows a privil...

1 IOC

GBHackers → Details

SecurityWeek general Aug 10

CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability

The critical-severity flaw allows unauthenticated, remote attackers to execute arbitrary commands. The post CISA Urges Immediate Patching of Exploited Progre...

SecurityWeek → Details

GBHackers general Aug 10

Ransomware Attackers Compromise Multiple Employees Inside the Same Company

Ransomware operations are increasingly targeting the people behind critical business processes, not just privileged IT administrators. Over a one-month obser...

GBHackers → Details

Help Net Security general Aug 10

Anthropic to put AI in charge of reviewing Claude Code actions by default

Anthropic will make auto mode in Claude Code the default for new sessions on Pro, Max, and Team plans starting August 14. Users who previously selected a dif...

Help Net Security → Details

Infosecurity Magazine general Aug 10

US Sanctions Iranian $6bn Crypto “Exchange” Shelbit

TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange

Infosecurity Magazine → Details

SC Media general Aug 10

Three interviews: system fragility, operational clarity, and Identity for AI agents - Robin Macfarlane, Kyle Sandy, Todd Thiemann - ESW #471

SC Media → Details

SecurityWeek general Aug 10

Corporate Data Stolen in Levi Strauss Cyberattack

Using social engineering, a threat actor accessed the computers of three employees and exfiltrated data from them. The post Corporate Data Stolen in Levi Str...

T1204 T1041

SecurityWeek → Details

Security Affairs general GitHub Aug 10

A GitHub Misconfiguration Let Kimi K3 Cheat a Cybersecurity Benchmark

Kimi K3 bypassed a UK cybersecurity test by accessing GitHub, cloning the benchmark and reading its solutions instead of solving the challenge Sometimes the ...

Security Affairs → Details

GBHackers general Aug 10

Claude Opus 5 Most Resistant to Indirect Prompt Injection Attacks, With Just 2% Success Rate

Anthropic’s Claude Opus 5 has significantly reduced the likelihood of a successful indirect prompt injection (IPI) attack, bringing it down to 2% over 15 att...

GBHackers → Details

«Previous page 1 ... 54 55 56 57 58 ... 147 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA