Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Vulnerability Disclosure

20 articles

GBHackers Vulnerability Disclosure Google GitHub May 12

Claude Chrome Extension Flaw Lets Malicious Add-Ons Steal Gmail and Drive Data

A critical vulnerability dubbed “ClaudeBleed” has compromised Anthropic’s trusted AI assistant, potentially turning it into a backdoor. This severe design fl...

GBHackers →

The Hacker News Vulnerability Disclosure Intel May 12

OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch Validation

OpenAI has launched Daybreak, a new cybersecurity initiative that brings together frontier artificial intelligence (AI) model capabilities and Codex Security...

The Hacker News →

GBHackers Vulnerability Disclosure Google May 12

Magecart Hackers Exploit Google Tag Manager to Inject Credit Card Skimmers

Magecart-style attackers are once again abusing trusted web services, this time weaponizing Google Tag Manager (GTM) to inject credit card skimmers into ecom...

T1059 T1598 1 IOC

GBHackers →

Help Net Security Vulnerability Disclosure May 12

HEIDI: Free IDE security plugin for open-source vulnerability checks

Open-source dependencies make up a large percentage of the code in production applications, and most vulnerability checks still run late in the pipeline, ins...

Help Net Security →

BleepingComputer Vulnerability Disclosure May 11

Instructure confirms hackers used Canvas flaw to deface portals

Education technology giant Instructure has confirmed that a security vulnerability allowed hackers to modify Canvas login portals and leave an extortion mess...

BleepingComputer →

Mandiant Blog Vulnerability Disclosure Google Intel May 11

GTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access

Executive Summary Since our February 2026 report on AI-related threat activity, Google Threat Intelligence Group (GTIG) has continued to track a maturing tra...

Mandiant Blog →

Help Net Security Vulnerability Disclosure Linux May 11

Linux developers weigh emergency “killswitch” for vulnerable kernel functions

Linux kernel developers are reviewing a proposal for an emergency risk mitigation mechanism (“Killswitch”) that would allow administrators to disable vulnera...

T1548

Help Net Security →

HackRead Vulnerability Disclosure Linux May 11

9-Year-Old Dirty Frag Vulnerability Enables Root Access on Linux Systems

The Dirty Frag vulnerability affects Linux systems and allows root access escalation, while public PoC exploit code increases attack risks.

HackRead →

GBHackers Vulnerability Disclosure Amazon May 11

PHP SOAP Extension Flaw Could Let Attackers Execute Code Remotely

Recently disclosed vulnerabilities in PHP, particularly within its widely used SOAP extension, have raised significant alarms across the cybersecurity commun...

T1190

GBHackers →

CSO Online Vulnerability Disclosure Microsoft Linux May 11

New ‘Dirty Frag’ exploit targets Linux kernel for root access

A newly disclosed Linux privilege escalation issue dubbed “Dirty Frag” is giving attackers a cleaner path to post-compromise escalation to root privileges. A...

T1548

CSO Online →

HackRead Vulnerability Disclosure Microsoft May 11

Hackers Exploit Vercel GenAI to Mass-Produce Convincing Phishing Sites

Hackers are abusing Vercel GenAI to create convincing phishing sites that mimic major brands, including Microsoft, Adidas, and Nike, making scams harder to d...

T1566

HackRead →

Help Net Security Vulnerability Disclosure May 11

Security teams are turning to AI to survive alert overload

The World Economic Forum white paper “Empowering Defenders: AI for Cybersecurity” identified AI as the biggest driver of change in cybersecurity for 94% of s...

T1566

Help Net Security →

Security Affairs Vulnerability Disclosure Amazon May 10

New cPanel vulnerabilities could allow file access and remote code execution

cPanel fixed three flaws that could allow file reads, code execution, and privilege escalation. No active exploitation has been reported yet.

T1190 T1548

Security Affairs →

Elastic Security Labs Vulnerability Disclosure Linux May 9

Copy Fail and DirtyFrag: Linux Page Cache Bugs in the Wild

This research analyzes the Linux kernel privilege escalation vulnerabilities Copy Fail and DirtyFrag, which exploit subtle page cache corruption bugs to crea...

T1548

Elastic Security Labs →

SC Media Vulnerability Disclosure May 8

US military data exposed in leaky directory despite CISA notification

The exposed data, belonging to US government contractor CMI Management Inc., was found via an open directory listing vulnerability following a tip to Cybernews.

SC Media →

Rapid7 Blog Vulnerability Disclosure Rapid7 Linux May 8

Metasploit Wrap-Up 05/08/2026

Spring cleanup This week’s Metasploit updates focused on foundational improvements and expanded target reach. Key enhancements were made to the recently rele...

Rapid7 Blog →

Microsoft Security Blog Vulnerability Disclosure Microsoft Linux Docker May 8

Active attack: Dirty Frag Linux vulnerability expands post-compromise risk

Dirty Frag is a newly disclosed Linux local privilege escalation vulnerability affecting kernel networking and memory-fragment handling components including ...

T1190 T1548 T1068

Microsoft Security Blog →

SC Media Vulnerability Disclosure May 8

India's securities regulator warns of AI-driven cyberattack risks

The Indian regulator's advisory specifically addresses the risks posed by AI-driven vulnerability identification tools, such as Claude Mythos.

SC Media →

HackRead Vulnerability Disclosure Google May 8

ClaudeBleed Vulnerability Lets Hackers Hijack Claude Chrome Extension to Steal Data

The ClaudeBleed vulnerability allows hackers to bypass Claude for Chrome guardrails to exfiltrate private Google Drive and Gmail data.

T1041

HackRead →

Tenable Blog Vulnerability Disclosure May 8

Why the approaching flood of vulnerabilities changes everything — and what to do about it

AI-driven discovery, NIST’s retreat from universal enrichment, and the end of “good enough” vulnerability management Key takeaways AI-driven discovery tools ...

Tenable Blog →

«Previous page 1 ... 19 20 21 22 23 ... 32 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA