Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

vendor

20 articles

Proofpoint Blog vendor Microsoft Jul 14

OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials

Proofpoint Blog → Details

Rapid7 Blog vendor Microsoft Rapid7 Jul 14

CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)

Overview Rapid7 Labs conducted a zero-day research project against Microsoft SharePoint, resulting in the discovery of two new vulnerabilities that, when cha...

T1190 T1556 1 IOC

Rapid7 Blog → Details

Cloudflare Blog vendor Jul 14

A broken DNSSEC rollover took down .al. Now 1.1.1.1 tells you when validation is bypassed

When a failed DNSSEC key rollover took down the .al TLD, we deployed a Negative Trust Anchor to restore resolution.

1 IOC

Cloudflare Blog → Details

Rapid7 Blog vendor Rapid7 Jul 14

Rapid7 and Mindshare Partner to Accelerate Cyber Resilience Across the Middle East

Gopan Sivasankaran is Regional Director, Middle East & Africa, at Rapid7 From AI adoption and cloud-first strategies to smart cities and critical infrastruct...

Rapid7 Blog → Details

CrowdStrike Blog vendor Microsoft Jul 14

July 2026 Patch Tuesday: Microsoft Patches 622 Vulnerabilities Including Two Exploited Zero-Days

CrowdStrike Blog → Details

Microsoft Security Blog vendor Microsoft Intel Jul 13

Defending SaaS-based applications against ShinyHunters OAuth abuse

Microsoft Threat Intelligence identified threat actor activity with overlapping tradecraft commonly associated with ShinyHunters, including voice phishing (v...

T1566

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Jul 13

Microsoft Entra ID security updates: Passkeys are the default authentication method in Entra ID

Microsoft Entra ID makes passkeys the default sign-in experience and introduces a new model for SMS and voice authentication. Read about how to prepare.

Microsoft Security Blog → Details

Tenable Blog vendor Jul 13

Why cloud security is mission-critical for federal civilian and defense agencies

Beyond IT compliance, cloud security is now the backbone of civilian agency resilience, national defense, and warfighter safety, as cloud environments become...

T1598

Tenable Blog → Details

Proofpoint Blog vendor Microsoft Jul 13

Hackers find a new trick to collect Microsoft Entra user data without raising red flags

Proofpoint Blog → Details

AWS Security Blog vendor Amazon Jul 13

New compliance guidance available: HITRUST i1 on AWS

We are pleased to announce the publication of a new AWS compliance implementation guidance: HITRUST i1 Compliance on AWS: Customer Implementation Guidance wi...

AWS Security Blog → Details

Cloudflare Blog vendor Jul 13

Introducing Precursor: detecting agentic behavior with continuous client-side signals

Precursor, our new continuous behavioral validation engine for bot management, offers visibility into how humans and bots actually interact across the full u...

Cloudflare Blog → Details

Rapid7 Blog vendor Apple Rapid7 Jul 11

Weekly Metasploit Update: Exploits for FlowiseAI CSV Agent and MacOS Package Kit

More AI, more software, more bugs! AI, it's all you hear about nowadays and everyone's got an opinion on it.

Rapid7 Blog → Details

AWS Security Blog vendor Amazon Jul 10

AWS designated as a critical third party to the UK financial sector

Amazon Web Services EMEA Sarl (AWS) has been designated as a critical third party (CTP) to the UK financial sector by HM Treasury.

AWS Security Blog → Details

Microsoft Security Blog vendor Microsoft Jul 10

Securing our future: July 2026 progress report on Microsoft’s Secure Future Initiative

Microsoft’s latest Secure Future Initiative report outlines progress on secure foundations, AI-powered defense, and future-ready cybersecurity. The post Secu...

Microsoft Security Blog → Details

Cloudflare Blog vendor Microsoft Google Amazon Oracle Jul 10

Improving Smart Tiered Cache for Public Cloud Regions

Smart Tiered Cache allows for precise upper tier selection for origins hosted on AWS, GCP, Azure, and Oracle Cloud with customer-provided cloud region hints.

Cloudflare Blog → Details

AWS Security Blog vendor Amazon Jul 9

Introducing OAuth Support for AWS MCP Server

You can now connect your agents to the AWS MCP Server using the same credentials and sign-in methods that you already use for connecting to the AWS Managemen...

AWS Security Blog → Details

Qualys Blog vendor Jul 9

How to Meet a 3-Day Remediation SLA & Comply with CISA BOD 26-04

Key Takeaways CISA BOD 26–04 mandates remediation of the publicly exposed, highest-risk, known-exploited vulnerabilities within 3 days. The directive applies...

Qualys Blog → Details

Wordfence Blog vendor Intel WordPress Jul 9

Wordfence Intelligence Weekly WordPress Vulnerability Report (June 29, 2026 to July 5, 2026)

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were that contributed to WordPres...

Wordfence Blog → Details

Microsoft Security Blog vendor Microsoft Jul 9

GigaWiper: Anatomy of a destructive backdoor assembled from multiple malware

GigaWiper, also tracked as BLUERABBIT, is a destructive backdoor that combines multiple wiping and ransomware-like capabilities into a single operational pla...

Microsoft Security Blog → Details

Cloudflare Blog vendor Jul 9

Why we cannot wait for better post-quantum signature algorithms

NIST is advancing nine new post-quantum signature algorithms as potential candidates for future standardization. We take a closer look at all of them, and ar...

Cloudflare Blog → Details

«Previous page 1 ... 12 13 14 15 16 ... 20 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA