Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

SC Media general Google Aug 4

Researchers find ‘agent-to-agent’ privilege escalation in Google’s ADK for Python repo

A low-privileged agent triggered by a PR or issue could be led to manipulate a high-privileged agent.

T1548

SC Media → Details

SecurityWeek general Google Aug 4

Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering

A crafted prompt to a low-privilege Google ADK agent could be used to pass a malicious hand-off comment to a privileged agent. The post Gemini Agent-to-Agent...

SecurityWeek → Details

Help Net Security general Microsoft Intel Aug 4

Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware

Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at ...

Help Net Security → Details

The Hacker News general Aug 4

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cP...

1 IOC

The Hacker News → Details

Help Net Security general Amazon Intel Aug 4

Indusface SwyftComply AI enables autonomous virtual patching for AI-discovered flaws

Indusface has announced SwyftComply AI, an autonomous vulnerability remediation solution that virtually patches vulnerabilities surfaced by AI-assisted pente...

Help Net Security → Details

Schneier on Security general Google Aug 4

Some Claude Chats Are Searchable on Google

And it’s personal information (alternate link): The exposed data includes an AI-powered therapy app that someone appears to have vibe-coded, notes on meeting...

Schneier on Security → Details

Help Net Security general Aug 4

ESET introduces new AI capabilities for autonomous agent security

ESET is expanding its AI capabilities across threat detection, investigations, threat protection, and security operations, delivering added value to customer...

T1598

Help Net Security → Details

Infosecurity Magazine general Aug 4

AI Accounts for Over Half of Cybercrime in Africa, Says Interpol

Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling

Infosecurity Magazine → Details

Cyberscoop general Amazon Aug 4

How companies could share cyber risks without exposing their secrets

A cryptographic technique could let companies prove they're vulnerable to critical flaws without revealing the sensitive data that attackers could exploit. T...

Cyberscoop → Details

Help Net Security general Intel Aug 4

Joinable Labs unveils Joinable Security for threat intelligence and AI-driven response

Joinable Labs launched Joinable Security, the first domain on the Joinable platform, with two products: Joinable Threat Map, a free utility that lets the sec...

Help Net Security → Details

SecurityWeek general Aug 4

Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks

Over 24,000 internet-accessible server-management interfaces disclose authentication hashes before login. The post Decades-Old BMC Vulnerability Exposes Thou...

SecurityWeek → Details

Help Net Security general Microsoft Aug 4

Securonix enhances Unified Defense SIEM with AI agent detection and lower data costs

Securonix has announced expanded cybersecurity cost reduction, expanded Threat Analytics for Microsoft Sentinel, and new Governed AI Agent Detection and Resp...

Help Net Security → Details

GBHackers general Aug 4

Critical Gitea Flaw Lets Unauthenticated Attackers Read Server Files and Execute Code

A critical vulnerability in Gitea has been identified, potentially allowing unauthenticated remote attackers to read arbitrary files on vulnerable servers an...

T1190 2 IOCs

GBHackers → Details

GBHackers general Apple Aug 4

macOS CUPS Flaw Lets Local Attackers Write Arbitrary Files as Root

A recently disclosed privilege-related vulnerability in the Common UNIX Printing System (CUPS) on macOS could allow an unprivileged local user to create atta...

1 IOC

GBHackers → Details

Help Net Security general GitHub Docker Aug 4

Uptime Kuma 2.5.0 waits two weeks before trusting a new npm package

Uptime Kuma checks whether a website, a Docker container, a DNS record, or a Steam game server is still answering, and pushes a message to Telegram, Slack, o...

Help Net Security → Details

Help Net Security general Aug 4

Legit Security VibeGuard 2.0 brings endpoint security and real-time guardrails to AI coding agents

Legit Security has unveiled VibeGuard 2.0, bringing a new endpoint security capability that seamlessly discovers and integrates with coding agents, secures t...

Help Net Security → Details

GBHackers general Amazon Adobe Aug 4

Critical Adobe Campaign Flaws Let Unauthenticated Attackers Execute Arbitrary Code

Adobe has released an urgent security update for Adobe Campaign Classic, addressing multiple critical vulnerabilities that could allow remote attackers to ex...

GBHackers → Details

Help Net Security general Aug 4

Tanium expands autonomous security across AI, exposure management and SecOps

Tanium has announced a series of new autonomous security capabilities across the Tanium Autonomous IT Platform. Spanning agentic AI, exposure management and ...

Help Net Security → Details

GBHackers general GitHub Aug 4

Fake AI Tools Target Developers With Infostealers to Steal Credentials and Cloud Secrets

A large-scale malware campaign targeting developers and AI users has been uncovered ,revealing how attackers are weaponizing fake AI tools and cloned GitHub ...

T1204 T1041

GBHackers → Details

The Hacker News general Aug 4

DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT

A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims' browser cac...

The Hacker News → Details

«Previous page 1 ... 76 77 78 79 80 ... 147 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA