Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Amazon

20 articles

Infosecurity Magazine general Amazon 11h ago

Researchers Uncover Thousands of Leaked AWS Keys

Truffle Security says it found over 9000 publicly accessible and active AWS key pairs

Infosecurity Magazine → Details

Security Affairs general Amazon 11h ago

TikTok Settles U.S. Child Privacy Case for $400 Million

TikTok will pay $400 million to settle U.S.

Security Affairs → Details

GBHackers general Amazon 12h ago

AWS Network Firewall Adds Rule Hit Counts to Identify Unused Security Rules

AWS has introduced a new capability for AWS Network Firewall that tracks rule hit counts, providing security teams with direct visibility into how often indi...

GBHackers → Details

Help Net Security general Amazon 15h ago

AWS makes it easier to spot firewall rules that have gone quiet

AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identi...

Help Net Security → Details

The Hacker News general Amazon 2d ago

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

The U.S.

The Hacker News → Details

GBHackers general Amazon 2d ago

768 Leaked AWS Keys Still Active With Full Admin Access to Corporate Accounts

A large-scale investigation has uncovered 768 publicly exposed AWS access keys that remain active and grant full administrative privileges to corporate cloud...

T1041

GBHackers → Details

SC Media general Amazon 2d ago

TrueConf flaws enabling attacks on meeting participants added to KEV catalog

The flaws have been used by the Head Mare APT hacktivist group to spread PhantomCore malware.

SC Media → Details

SC Media general Amazon 2d ago

Thousands of active AWS access keys remain publicly exposed

Truffle Security has been tracking this exposure for four years, finding that 817 of the exposed keys were linked to companies, with 526 being AWS root keys.

SC Media → Details

BleepingComputer general Amazon 3d ago

Hundreds of leaked AWS keys give full control over corporate accounts

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. [.

BleepingComputer → Details

Security Affairs general Amazon Cisco 3d ago

Six Maximum-Severity Flaws Found in Cisco Products

Cisco patched nine critical flaws, including six rated CVSS 10.0, found during internal testing.

Security Affairs → Details

BleepingComputer general Amazon 3d ago

CISA orders feds to patch actively exploited TrueConf Server flaws

The U.S.

BleepingComputer → Details

The Hacker News general Amazon Cisco 3d ago

Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0

Cisco has published another round of security updates for Crosswork platforms and Secure Workload Software as part of a continued comprehensive internal secu...

The Hacker News → Details

GBHackers general Amazon 3d ago

Head Mare APT Exploits TrueConf Server RCE Flaws to Deliver PhantomCore Malware

The Head Mare APT group has been linked to a supply chain compromise involving unpatched TrueConf Server instances, which enabled the delivery of PhantomCore...

T1195

GBHackers → Details

Security Affairs general Amazon 3d ago

U.S. CISA adds TrueConf Server flaws to its Known Exploited Vulnerabilities catalog

U.S.

Security Affairs → Details

AWS Security Blog vendor Amazon 4d ago

AWS Network Firewall now supports rule hit count

As firewall rule sets grow in complexity, security teams face a common challenge: manual log analysis is used to determine which rules are actively matching ...

AWS Security Blog → Details

SC Media general Amazon 4d ago

Operation CameraSwarm compromises over 14,500 Dahua devices

The campaign, primarily impacting devices in Ukraine and Russia, leveraged CVE-2021-33044 and CVE-2021-33045, two authentication-bypass flaws rated 9.8 CVSS ...

2 IOCs

SC Media → Details

SC Media general Amazon 4d ago

Password spraying attacks surge 155x, exploiting legacy authentication flaws

The campaign, originating from an IPv6 range provided by LSHIY LLC, leveraged reused credentials and the legacy Resource Owner Password Credentials (ROPC) OA...

T1110

SC Media → Details

Infosecurity Magazine general Amazon 4d ago

JFrog Artifactory Flaws Enable Software Supply Chain Attacks

Two Artifactory flaws allowed attackers to poison package metadata across software repositories

T1195

Infosecurity Magazine → Details

SC Media general Amazon 4d ago

Harness launches AI agents to find and fix software vulnerabilities

The AI SAST agent identifies vulnerabilities, including logic flaws missed by traditional tools, and reduces false positives.

SC Media → Details

The Hacker News general Amazon Citrix 4d ago

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentica...

T1556

The Hacker News → Details

1 2 3 ... 11 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA