FreeIntelHub
Feed
Sources
The Hacker News Dark Reading BleepingComputer SecurityWeek Krebs on Security Help Net Security The CyberWire SC Media HackRead GBHackers CSO Online Cybersecurity Dive Information Security Buzz Security Affairs Graham Cluley SANS ISC WeLiveSecurity Google Security Blog Cisco Advisories Palo Alto Networks CISA Advisories US-CERT Alerts Microsoft Security Blog Mandiant Blog Recorded Future Talos Intelligence Unit 42 SentinelOne Blog CrowdStrike Blog Sophos News Threatpost Infosecurity Magazine Cyberscoop The Record SecurityTrails Blog Naked Security Schneier on Security Qualys Blog Rapid7 Blog Tenable Blog Fortinet Blog Trend Micro Research Kaspersky Securelist ESET Research Check Point Research Zscaler Blog Proofpoint Blog Elastic Security Labs Akamai Blog Cisco Talos Blog Volexity Blog NIST NVD Exploit Database Packet Storm Full Disclosure CERT-EU News Wordfence Blog Trail of Bits PortSwigger Research PortSwigger Daily Swig Hacker One Hacktivity Zero Day Initiative Google Project Zero AWS Security Blog Cloudflare Blog Mozilla Security Blog
View all sources
Vendors
Microsoft Google Apple Amazon Intel Cisco Fortinet Linux GitHub Check Point Cloudflare Oracle Rapid7 WordPress Palo Alto Networks
View all vendors
Threats
Data Breach Zero-Day Ransomware CVE Vulnerability Disclosure Advisory TTPs Campaigns Operational Technology Phishing Malware Supply Chain DDoS Insider Threat
View all types
Sectors
Financial Healthcare Defense Government Manufacturing Energy Telecommunications Retail Education Transportation Food & Beverages Technology Legal Media
View all sectors
Actors
Threat Groups Software & Malware Campaigns
Tools
Trending Threat Heatmap MITRE ATT&CK IOC Feed Bookmarks
RSS Feed API
Alerts

Vulnerability Disclosure

20 articles

SecurityWeek Vulnerability Disclosure Mar 31

CrewAI Vulnerabilities Expose Devices to Hacking

Attackers can exploit the bugs through prompt injection, chaining them together to escape the sandbox and execute arbitrary code. The post CrewAI Vulnerabili...

SecurityWeek →

The Hacker News Vulnerability Disclosure Google Palo Alto Networks Intel Mar 31

Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts

Cybersecurity researchers have disclosed a security "blind spot" in Google Cloud's Vertex AI platform that could allow artificial intelligence (AI) agents to...

The Hacker News →

Infosecurity Magazine Vulnerability Disclosure Check Point Mar 31

ChatGPT Security Issue Enabled Data Theft via Single Prompt

OpenAI has patched vulnerability, which Check Point said was because of a DNS loophole

T1041 T1598

Infosecurity Magazine →

SecurityWeek Vulnerability Disclosure Fortinet Mar 31

Exploitation of Critical Fortinet FortiClient EMS Flaw Begins

The SQL injection vulnerability allows unauthenticated attackers to execute arbitrary code remotely, via crafted HTTP requests. The post Exploitation of Crit...

SecurityWeek →

SecurityWeek Vulnerability Disclosure Mar 31

StrongSwan Flaw Allows Unauthenticated Attackers to Crash VPNs

Remotely exploitable, the integer underflow vulnerability impacts StrongSwan releases spanning 15 years. The post StrongSwan Flaw Allows Unauthenticated Atta...

SecurityWeek →

BleepingComputer Vulnerability Disclosure Citrix Mar 31

CISA orders feds to patch actively exploited Citrix flaw by Thursday

The U.S.

BleepingComputer →

SecurityWeek Vulnerability Disclosure GitHub Mar 31

Critical Vulnerability in OpenAI Codex Allowed GitHub Token Compromise 

Researchers found an OpenAI Codex vulnerability that could have been exploited to compromise GitHub tokens. The post Critical Vulnerability in OpenAI Codex A...

SecurityWeek →

GBHackers Vulnerability Disclosure Check Point Intel Mar 31

ChatGPT Vulnerability Enabled Silent Leakage of Prompts and Sensitive Information

Artificial intelligence assistants increasingly handle our most sensitive data, operating under the assumption that enclosed environments keep this informati...

GBHackers →

GBHackers Vulnerability Disclosure Mar 31

Notepad++ v8.9.3 Released With Fixes for cURL Security Flaw and Crash Bugs

Notepad++ rolled out version 8.9.

GBHackers →

HackRead Vulnerability Disclosure GitHub Mar 30

OpenAI Codex Vulnerability Allowed Attackers to Steal GitHub Tokens

OpenAI Codex vulnerability allowed attackers to steal GitHub tokens via malicious branch names using hidden Unicode command injection flaw.

T1059

HackRead →

SC Media Vulnerability Disclosure F5 Mar 30

F5 BIG-IP APM DoS bug exploited as an RCE, added to CISA list

Flaw upgraded to an actively exploited RCE, experts advise teams to patch right away.

SC Media →

The Hacker News Vulnerability Disclosure Check Point GitHub Mar 30

OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability

A previously unknown vulnerability in OpenAI ChatGPT allowed sensitive conversation data to be exfiltrated without user knowledge or consent, according to ne...

T1041

The Hacker News →

Qualys Blog Vulnerability Disclosure Qualys Mar 30

Optimizing Risk Discovery and Remediation with Qualys Gateway Service (QGS)

Unpatched vulnerabilities remain one of the largest drivers of cyber risk, accounting for nearly 60% of cyber compromises. Modern security programs are there...

T1598

Qualys Blog →

Infosecurity Magazine Vulnerability Disclosure Mar 30

Cybercriminals Exploit Tax Season With New Phishing Tactics

Tax-season phishing floods deliver RMM malware, credential theft, BEC and tax-form scams

T1566 T1078 T1598

Infosecurity Magazine →

SC Media Vulnerability Disclosure Mar 30

More than 447K compromised by Lloyds IT glitch

Major UK retail and commercial financial services provider had information from over 447,000 customers using its mobile banking apps inadvertently exposed by...

SC Media →

SecurityWeek Vulnerability Disclosure Apple Mar 30

Russian APT Star Blizzard Adopts DarkSword iOS Exploit Kit

The state-sponsored group’s campaign has targeted government, higher education, financial, and legal entities, as well as think tanks. The post Russian APT S...

T1588

SecurityWeek →

GBHackers Vulnerability Disclosure WordPress Mar 30

WordPress Plugin Flaw Exposes Sensitive Data Across 800,000+ Sites

A severe security flaw has been disclosed in Smart Slider 3, a highly popular WordPress plugin currently active on more than 800,000 websites. Discovered by ...

GBHackers →

BleepingComputer Vulnerability Disclosure F5 Mar 30

Hackers now exploit critical F5 BIG-IP flaw in attacks, patch now

F5 has reclassified a BIG-IP APM denial-of-service (DoS) vulnerability as a critical-severity remote code execution (RCE) flaw, warning that attackers are ex...

T1190

BleepingComputer →

SecurityWeek Vulnerability Disclosure Citrix Mar 30

Exploitation of Fresh Citrix NetScaler Vulnerability Begins

The critical-severity flaw leaks application memory and can be exploited to obtain authenticated administrative session IDs. The post Exploitation of Fresh C...

SecurityWeek →

GBHackers Vulnerability Disclosure Atlassian Mar 30

Stored XSS Vulnerability in Jira Work Management Could Enable Full Organization Takeover

Security researchers recently uncovered a critical stored Cross-Site Scripting (XSS) vulnerability within Atlassian’s Jira Work Management platform. This fla...

GBHackers →

« Prev 1 ... 5 6 7 8 9 ... 18 Next »
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA