Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

Schneier on Security general Aug 5

Vulnerabilities in Car Anti-Theft Device

This is disturbing: …a team of security researchers at UC San Diego, who found that a model of aftermarket car alarm known as the KARR Security System, insta...

Schneier on Security → Details

GBHackers general Microsoft Salesforce AMD Aug 5

Fake Open VSX Extensions Hijack AMD, Azure, Salesforce and Government Namespaces

Fake Open VSX extensions have hijacked high‑trust namespaces like AMD, Azure, Salesforce, Hyperledger, and a U.S.

GBHackers → Details

Help Net Security general Aug 5

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic

TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a gues...

Help Net Security → Details

The Hacker News general Aug 5

Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data

A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the syst...

T1041

The Hacker News → Details

GBHackers general Microsoft Apple Aug 5

ScreenConnect Attackers Hide Windows, Delete Installers and Masquerade as Software Updates

ScreenConnect is being systematically weaponized in the SMOKE#SCREEN campaign, where attackers hide execution windows, delete installers, and disguise malici...

GBHackers → Details

SC Media general Aug 5

Say Easy, Do Hard - Performance Through People - Greg Hoffman - BSW #459

SC Media → Details

Cyberscoop general Aug 5

AI is getting better at election facts, but voters shouldn’t rely on it

AI chatbots are avoiding some of the obvious errors that plagued earlier models, but they still fall short giving voters the full picture compared to state a...

Cyberscoop → Details

SecurityWeek general GitHub Aug 5

Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials. The post Over 400 NPM Packages Infec...

T1041 T1195

SecurityWeek → Details

Infosecurity Magazine general Aug 5

Frontier Models Engage in Unsanctioned Behavior During Testing

Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests

Infosecurity Magazine → Details

Help Net Security general Microsoft Aug 5

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and t...

T1566

Help Net Security → Details

GBHackers general Aug 5

Critical Veeam ONE Flaw Lets Unauthenticated Attackers Execute Code Remotely

Veeam has issued security updates to address multiple vulnerabilities in Veeam ONE, including a critical flaw that could enable an unauthenticated remote att...

1 IOC

GBHackers → Details

Infosecurity Magazine general Aug 5

Fake Bank of America Phishing Scam Installs Remote Access Malware

Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling re...

T1566 T1059

Infosecurity Magazine → Details

Help Net Security general Cloudflare Aug 5

Cloudflare gives AI agents wallets with built-in spending controls

Cloudflare’s Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their...

T1598

Help Net Security → Details

The Hacker News general Aug 5

Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself

An agent running Anthropic's Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation ...

The Hacker News → Details

GBHackers general Aug 5

Ransomware Hackers Are Hiding Malware Command Servers Inside Ethereum Smart Contracts

Ransomware operators are now abusing Ethereum smart contracts as stealthy command‑and‑control resolvers, with a Gentlemen ransomware affiliate using the Ethe...

T1053

GBHackers → Details

The Hacker News general Amazon Apache Aug 5

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

The U.S.

1 IOC

The Hacker News → Details

HackRead general Microsoft Aug 5

Kali365 Exploits Microsoft Device Login to Access US Corporate Data

Learn how Kali365 has been abusing Microsoft device login to gain OAuth tokens, targeting US firms, and how SOC teams can detect, hunt, and stop these phishi...

T1566

HackRead → Details

SecurityWeek general Aug 5

Water Sector Cyberattacks Reportedly Hit at Least 12 States

Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption. The post Water Sector Cyberattacks Reported...

SecurityWeek → Details

GBHackers general Amazon Aug 5

Django Flaws Let Attackers Trigger RCE, SSRF, DoS, and XSS Attacks

The Django project has released security updates, specifically Django 6.0.

T1190

GBHackers → Details

GBHackers general Microsoft Aug 5

7-Zip Default Setting Lets Extracted Files Bypass Windows SmartScreen

7-Zip’s default configuration allows files extracted from internet-delivered archives to shed the Mark of the Web (MotW), meaning Windows SmartScreen never r...

GBHackers → Details

«Previous page 1 ... 71 72 73 74 75 ... 147 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA