FreeIntelHub
Feed
Sources
The Hacker News Dark Reading BleepingComputer SecurityWeek Krebs on Security Help Net Security The CyberWire SC Media HackRead GBHackers CSO Online Cybersecurity Dive Information Security Buzz Security Affairs Graham Cluley SANS ISC WeLiveSecurity Google Security Blog Cisco Advisories Palo Alto Networks CISA Advisories US-CERT Alerts Microsoft Security Blog Mandiant Blog Recorded Future Talos Intelligence Unit 42 SentinelOne Blog CrowdStrike Blog Sophos News Threatpost Infosecurity Magazine Cyberscoop The Record SecurityTrails Blog Naked Security Schneier on Security Qualys Blog Rapid7 Blog Tenable Blog Fortinet Blog Trend Micro Research Kaspersky Securelist ESET Research Check Point Research Zscaler Blog Proofpoint Blog Elastic Security Labs Akamai Blog Cisco Talos Blog Volexity Blog NIST NVD Exploit Database Packet Storm Full Disclosure CERT-EU News Wordfence Blog Trail of Bits PortSwigger Research PortSwigger Daily Swig Hacker One Hacktivity Zero Day Initiative Google Project Zero AWS Security Blog Cloudflare Blog Mozilla Security Blog
View all sources
Vendors
Microsoft Google Apple Amazon Intel Cisco Fortinet Linux GitHub Oracle Check Point Cloudflare Rapid7 WordPress Palo Alto Networks
View all vendors
Threats
Data Breach Zero-Day Ransomware CVE Vulnerability Disclosure Advisory TTPs Campaigns Operational Technology Phishing Malware Supply Chain DDoS Insider Threat
View all types
Sectors
Financial Healthcare Defense Government Manufacturing Energy Telecommunications Retail Education Transportation Food & Beverages Technology Legal Media
View all sectors
Actors
Threat Groups Software & Malware Campaigns
Tools
Trending Threat Heatmap MITRE ATT&CK IOC Feed Bookmarks
RSS Feed API
Alerts

CVE

20 articles

CSO Online CVE Docker NEW 4h ago

Old Docker authorization bypass pops up despite previous patch

Researchers warn about a new vulnerability that allows attackers to bypass authorization plug-ins in Docker Engine and gain root-level access to host systems...

1 IOC

CSO Online →

GBHackers CVE GitHub 10h ago

Hackers Exploit GitHub Copilot Flaw to Exfiltrate Sensitive Data

A high-severity flaw in GitHub Copilot Chat recently allowed attackers to silently steal sensitive data like API keys and private source code. Tracked as CVE...

T1041 1 IOC

GBHackers →

GBHackers CVE 14h ago

HPE Aruba Private 5G Vulnerability Opens Door to Credential Theft Attacks

A newly disclosed security flaw in HPE Aruba Networking Private 5G Core On-Prem is putting enterprise networks at severe risk of credential theft. Documented...

T1078 1 IOC

GBHackers →

The Hacker News CVE 15h ago

Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure

A critical security vulnerability in Marimo, an open-source Python notebook for data science and analysis, has been exploited within 10 hours of public discl...

T1190 1 IOC

The Hacker News →

GBHackers CVE 16h ago

New React Server Components Flaw Could Let Attackers Trigger DoS

A newly disclosed high-severity vulnerability in React Server Components could allow unauthenticated attackers to trigger a Denial of Service (DoS) condition...

T1498 T1598 1 IOC

GBHackers →

GBHackers CVE Juniper 16h ago

Juniper Networks Default Credential Vulnerability Allows Unauthorized Full Access

Juniper Networks has issued a critical security alert regarding a severe vulnerability in its Support Insights (JSI) Virtual Lightweight Collector (vLWC). Tr...

1 IOC

GBHackers →

SC Media CVE Trend Micro 1d ago

APT28 deploys PRISMEX malware in espionage campaign against Ukraine and allies

The campaign, uncovered by Trend Micro and attributed to APT28 (also known as Fancy Bear and Pawn Storm), exploits newly disclosed vulnerabilities, including...

2 IOCs

SC Media →

CISA Advisories CVE 1d ago

Contemporary Controls BASC 20T

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to enumerate the functionality of each component associated with the ...

T1592 1 IOC

CISA Advisories →

GBHackers CVE Cisco 1d ago

Technical Details Released for Critical Cisco SSM Command Execution Vulnerability

Security researchers have published technical details regarding a highly critical vulnerability in the Cisco Smart Software Manager On-Prem (SSM On-Prem). Tr...

1 IOC

GBHackers →

GBHackers CVE Ivanti 1d ago

CISA Issues Warning on Critical Ivanti EPMM Flaw Exploited in Ongoing Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a critical security flaw in Ivanti Endpoint Manager Mobile (...

1 IOC

GBHackers →

GBHackers CVE Microsoft Palo Alto Networks 1d ago

Palo Alto Cortex XSOAR Flaw in Microsoft Teams Integration Lets Attackers Access Data

Palo Alto Networks has released a high-priority security update to address a serious vulnerability in its Cortex XSOAR and Cortex XSIAM platforms. Tracked as...

1 IOC

GBHackers →

Security Affairs CVE Ivanti 2d ago

U.S. CISA adds a flaw in Ivanti EPMM to its Known Exploited Vulnerabilities catalog

The U.S.

1 IOC

Security Affairs →

Rapid7 Blog CVE Fortinet Rapid7 2d ago

FortiGate CVE-2025-59718 Exploitation: Incident Response Findings

Rapid7’s Incident Response (IR) team was engaged to investigate an incident involving exploitation of CVE-2025-59718 against a vulnerable FortiGate appliance...

1 IOC

Rapid7 Blog →

CISA Advisories CVE Ivanti 2d ago

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-1340 Ivanti End...

1 IOC

CISA Advisories →

GBHackers CVE Amazon 2d ago

Multiple OpenSSL Flaws Expose Sensitive Data in RSA KEM Handling

A newly disclosed flaw in OpenSSL could allow attackers to access sensitive data stored in application memory. Tracked as CVE-2026-31790, this moderate-sever...

1 IOC

GBHackers →

GBHackers CVE Docker 2d ago

Docker Authorization Bypass Flaw Exposed Hosts to Potential Attackers

A high-severity security vulnerability has been discovered in Docker Engine, exposing hosts to potential authorization bypass attacks. Tracked as CVE-2026-34...

1 IOC

GBHackers →

Help Net Security CVE Amazon Linux 2d ago

Flatpak 1.16.4 fixes sandbox escape and three other security flaws

Flatpak, a Linux application sandboxing and distribution framework, released version 1.16.

2 IOCs

Help Net Security →

GBHackers CVE Apache 2d ago

Claude Identifies Critical 13-Year-Old RCE Vulnerability in Apache ActiveMQ

An AI assistant recently uncovered a critical remote code execution (RCE) vulnerability in Apache ActiveMQ Classic that went unnoticed for 13 years. Tracked ...

T1190 1 IOC

GBHackers →

Help Net Security CVE 2d ago

OpenSSL 3.6.2 lands with eight CVE fixes

OpenSSL 3.6.

3 IOCs

Help Net Security →

SC Media CVE 3d ago

Active exploitation of max severity Flowise bug threatens broad compromise

More than 12,000 internet-exposed instances of open-source AI agent builder Flowise could be compromised by the ongoing exploitation of the maximum-severity ...

T1190 1 IOC

SC Media →

1 2 3 ... 19 Next »
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA