Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

general

20 articles

Infosecurity Magazine general Sep 22

CISOs Must Update Incident Response Playbooks for Multimodal Deepfakes, Gartner Warns

Gartner warns that CISOs must update incident response playbooks as AI-powered deepfakes make social engineering attacks more convincing and harder to detect

T1204

Infosecurity Magazine → Details

Security Affairs general Sep 22

U.S. CISA adds Zyxel flaw to its Known Exploited Vulnerabilities catalog

U.S.

1 IOC

Security Affairs → Details

GBHackers general Sep 22

Hackers Abuse Stolen BigCommerce App Key to Steal Master of Malt Customer Data

Master of Malt reported a customer data breach after attackers allegedly compromised an application key linked to Ribon, a third-party BigCommerce app manage...

GBHackers → Details

GBHackers general Microsoft Google Sep 22

Chinese APT Clones Legitimate Websites to Deliver Chrome and Windows Zero-Day Exploits

A third Chinese threat actor has been linked to phishing campaigns that cloned trusted websites and chained Chrome and Windows zero-day exploits to deploy a ...

T1566

GBHackers → Details

SC Media general Sep 22

Understanding Prompt Injection In Order to Contain It - Julie Brunias - ASW #401

SC Media → Details

GBHackers general SAP Sep 22

D-Link DIR-822A Router Vulnerability Scores CVSS 10.0 With Public PoC Available

D-Link has announced a critical stack-based buffer overflow vulnerability affecting the non-US DIR-822A router, identified as CVE-2026-86296. This vulnerabil...

1 IOC

GBHackers → Details

Help Net Security general Google Sep 22

Scammers use genuine Google sign-ins to sell costly, unverified AI subscriptions

Scammers are using a $249 website toolkit to sell unverified AI subscriptions worth up to $2,000 a year, and a genuine Google sign-in screen is what makes th...

Help Net Security → Details

BleepingComputer general Sep 22

CISA orders feds to patch Zyxel flaw exploited for data theft

​Attackers are now actively exploiting a high-severity vulnerability in Zyxel GS1900 series switches, according to the U.S.

T1041

BleepingComputer → Details

GBHackers general Sep 22

CISA Flags Actively Exploited Flaw in Zyxel GS1900 Switches

The U.S.

1 IOC

GBHackers → Details

SecurityWeek general Sep 22

Japan Dismantles First North Korean Laptop Farm as US and Allies Detail Wider Scheme

The US, Japan, Germany and Australia have published a joint report detailing the scope of North Korea’s WaterPlum campaign. The post Japan Dismantles First N...

SecurityWeek → Details

GBHackers general GitHub Sep 22

Hackers Compromise 65 GitHub Repositories and Poison npm Package With Hidden Backdoor

Threat actors have compromised at least 65 public GitHub repositories in a software supply-chain campaign that abused npm trusted publishing to distribute a ...

GBHackers → Details

The Hacker News general Sep 22

SideCopy Broadens India Targeting to Academia With ReverseRAT Spear-Phishing

The threat actor known as SideCopy has been observed using spear-phishing lures to target academic institutions in India, expanding their strategic focus bey...

T1566 T1059

The Hacker News → Details

Security Affairs general Intel Sep 22

Contagious Interview: 30,000 devices infected by a fake job interview

North Korea-linked WaterPlum runs the Contagious Interview campaign, infecting over 30,000 devices using a fake job interview. On September 18, Japan’s Natio...

Security Affairs → Details

GBHackers general WordPress Sep 22

Hackers Exploit WordPress CVE-2026-63030 and CVE-2026-60137 to Steal Government Data

A suspected Chinese-speaking threat actor has exploited the critical WordPress “wp2shell” vulnerability chain to compromise government and small-business tar...

2 IOCs

GBHackers → Details

GBHackers general Microsoft Sep 22

Windows 11 26H1 Security Update Expands Secure Boot Certificate Protection

Microsoft has released the cumulative security update for September 2026 for Windows 11 version 26H1. This update expands the range of systems that can autom...

GBHackers → Details

The Hacker News general Sep 22

One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor

Malware already running on a Mac can quietly take over Meta's Muse assistant and use the broad access its owner granted the app, security researcher Patrick ...

The Hacker News → Details

GBHackers general Microsoft Sep 22

Microsoft to Disable SMS as Primary Entra ID Sign-In Method in 2027

Microsoft will turn off SMS as a primary sign-in method for Microsoft Entra ID workforce tenants on February 1, 2027, accelerating its transition to phishing...

T1566

GBHackers → Details

Help Net Security general Sep 22

A cheap fake base station can still track 5G subscribers

Researchers from the i2CAT Foundation, the University of Murcia, and NEC Laboratories Europe built a low-cost tool called 5G-Shark that lures a target phone ...

Help Net Security → Details

The Hacker News general WordPress Sep 22

WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session

A new flaw in WordPress core let an anonymous visitor leave a comment that planted a hidden script on the page. If a logged-in administrator later opened tha...

1 IOC

The Hacker News → Details

GBHackers general Sep 22

Vidar Uses Custom Bytecode Interpreter and ARX Stream Ciphers for Per-Build String Obfuscation

Vidar information stealer has introduced a lightweight custom virtual machine and per-build stream-cipher variations to conceal its embedded strings, raising...

T1027

GBHackers → Details

«Previous page 1 ... 81 82 83 84 85 ... 332 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA