Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Amazon

20 articles

GBHackers general Amazon Jul 24

Next.js Patches Nine Security Flaws Enabling SSRF, Middleware Bypass, DoS, and Internal Endpoint Disclosure

The Next.js team has released security updates that address nine vulnerabilities affecting the App Router, Server Actions, rewrites, image optimization, cach...

T1556

GBHackers → Details

AWS Security Blog vendor Amazon Jul 23

Enterprise security at machine speed: AWS Black Hat 2026 preview

Black Hat 2026 (Aug 1-6, 2026) brings together over 22,000 security practitioners, researchers, and CISOs who build, break, and defend enterprise infrastruct...

AWS Security Blog → Details

GBHackers general Amazon Jul 23

New Kimi K3 AI Agent Uncovers Redis Remote Code Execution Flaws in Just 27 Minutes

Moonshot AI’s newly unveiled Kimi K3 model is attracting considerable attention in the cybersecurity community after successfully demonstrating its ability t...

T1190

GBHackers → Details

GBHackers general Amazon GitHub Jul 23

Critical FreePBX Flaws Let Unauthenticated Attackers Execute Code and Take Over Administrator Accounts

Critical security vulnerabilities in FreePBX have been disclosed, exposing organizations to risks of unauthenticated remote code execution and the takeover o...

T1190

GBHackers → Details

Schneier on Security general Amazon Jul 23

End-to-End Encryption and “Going Dark”

New paper: “Encryption and Globalization 15 Years Later: End-to-End Encryption and the Third Round of the ‘Going Dark’ Debate“: Abstract: This Article update...

Schneier on Security → Details

The Hacker News general Amazon Red Hat Qualys Linux Jul 23

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS fi...

1 IOC

The Hacker News → Details

HackRead general Amazon Jul 22

OpenAI Models Breached Hugging Face During Internal Cyber Test

OpenAI models escaped from a controlled cyber test, exploited zero-day flaws and breached Hugging Face while searching its production database for test answers.

HackRead → Details

BleepingComputer general Amazon Jul 22

New InfraTrust report reveals infrastructure flaws admins should patch first

Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organizations prior...

BleepingComputer → Details

Security Affairs general Amazon WordPress Jul 22

U.S. CISA adds DD-WRT, Langflow and WordPress flaws to its Known Exploited Vulnerabilities catalog

U.S.

Security Affairs → Details

Security Affairs general Amazon Jul 21

Zimbra 10.1.20 patches multiple security issues, including a critical command injection bug

Zimbra patched nine flaws in version 10.1.

T1059

Security Affairs → Details

AWS Security Blog vendor Amazon Jul 21

Do more with AWS WAF labels using dynamic label interpolation

AWS WAF classifies web traffic by attaching metadata to each request it evaluates. Managed rule groups such as AWS WAF Bot Control and AWS WAF Fraud Control ...

AWS Security Blog → Details

The Hacker News general Amazon Jul 21

AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

Hidden text on a web page was enough to make Kiro, AWS's agentic coding IDE, rewrite its own configuration file and run an attacker's code on a developer's m...

T1190

The Hacker News → Details

The Hacker News general Amazon WordPress Jul 21

WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning

Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (RCE) an...

T1190 2 IOCs

The Hacker News → Details

AWS Security Blog vendor Amazon Jul 20

Introducing the Amazon GuardDuty investigation agent: on-demand AI-powered threat assessment

The new Amazon GuardDuty investigation agent (now in public preview) investigates security findings across your Amazon Web Services (AWS) environment, reduci...

AWS Security Blog → Details

AWS Security Blog vendor Amazon Jul 20

2026 ISO and CSA STAR certificates are now available with two additional services

Amazon Web Services (AWS) successfully completed an onboarding audit with no findings for ISO 9001:2015, 27001:2022, 27017:2015, 27018:2019, 27701:2019, 2000...

AWS Security Blog → Details

The Hacker News general Amazon WordPress Jul 17

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a persistent-object-cache condition has surfaced, and a workin...

The Hacker News → Details

The Hacker News general Amazon Intel Kubernetes Jul 17

New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens

A Go botnet called NadMesh turned up in early July hunting exposed AI services, and the operator's own dashboard claims 3,811 unique AWS keys. A Shodan harve...

The Hacker News → Details

Graham Cluley general Amazon Jul 16

Smashing Security podcast #476: Remote-control rickshaws and rogue book marketers

An app has appeared in India that lets anyone with a smartphone stop a passing e-rickshaw dead in its tracks - no login, no passwords, no permissions needed....

Graham Cluley → Details

Infosecurity Magazine general Amazon Jul 16

US Launches Gold Eagle to Coordinate AI-Driven Vulnerability Management

The White House announced Gold Eagle to help accelerate the discovery, prioritization and patching of flaws found by AI

Infosecurity Magazine → Details

Rapid7 Blog vendor Amazon Jul 15

Investigating Persistence Mechanisms in AWS

Overview In the cloud, your infrastructure may be short-lived, but an attacker’s persistence doesn't have to be. While your environment scales and changes in...

Rapid7 Blog → Details

«Previous page 1 ... 21 22 23 24 25 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA