Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Manufacturing

20 articles

Elastic Security Labs General May 4

Elastic Conversational Entity Analytics: threat hunting in a single conversation

Conversational Entity Analytics delivers Entity Analytics features as rich inline attachments and Canvas previews into Agent Builder, so you don’t have to le...

Elastic Security Labs →

Unit 42 Malware May 2

The npm Threat Landscape: Attack Surface and Mitigations (Updated May 1)

Unit 42 analyzes npm supply chain evolution post-Shai Hulud. Discover wormable malware, CI/CD persistence, multi-stage attacks and more.

Unit 42 →

The Hacker News Vulnerability Disclosure GitHub May 1

Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential Theft

A new software supply chain attack campaign has been observed using sleeper packages as a conduit to subsequently push malicious payloads that enabled creden...

T1078 T1195

The Hacker News →

Elastic Security Labs General May 1

DFIR: From alert to root cause using Osquery without leaving Elastic Security

Learn how to perform distributed, real-time Digital Forensics and Incident Response (DFIR) using Osquery and Elastic to investigate threats at scale without ...

Elastic Security Labs →

The Hacker News Campaigns Apr 30

PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal Credentials

In yet another software supply chain attack, threat actors have managed to compromise the popular Python package Lightning to push two malicious versions to ...

T1078 T1195

The Hacker News →

Microsoft Security Blog TTPs Microsoft Apr 30

Email threat landscape: Q1 2026 trends and insights

In early 2026, email threats increased with a rise in credential phishing, QR code phishing, and CAPTCHA-gated campaigns, highlighted by Microsoft’s disrupti...

T1566 T1598

Microsoft Security Blog →

The Hacker News Campaigns Google SAP Apr 29

SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack

Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware.

T1195

The Hacker News →

Rapid7 Blog General Rapid7 Apr 29

Experts on Experts: The 2026 Threat Landscape is Moving Faster than Defenders Expect

This week on Experts on Experts, I’m joined by Christiaan Beek, Rapid7’s VP of Threat Analytics, to talk through what we’re seeing in the 2026 threat landsca...

Rapid7 Blog →

The Hacker News CVE GitHub Apr 28

Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE

Cybersecurity researchers have disclosed details of a critical security flaw impacting LeRobot, Hugging Face's open-source robotics platform with nearly 24,0...

T1190 1 IOC

The Hacker News →

Infosecurity Magazine General Apr 28

No Metrics Are Better Than Bad Metrics in the SOC, Says NCSC

The National Cyber Security Centre has warned against measuring SOCs with ticket-based metrics

Infosecurity Magazine →

Infosecurity Magazine Malware Apr 24

Npm Supply Chain Malware Attack Targets Developers With Worm-Like Propagation

Malicious npm packages spread via worm-like propagation and steal developer credentials

Infosecurity Magazine →

Rapid7 Blog Vulnerability Disclosure Rapid7 Apr 23

AI is Changing Vulnerability Discovery and your Software Supply Chain Strategy has to Change with it

Wade Woolwine is Senior Director, Product Security at Rapid7. The headlines around Glasswing have focused on how quickly AI can surface vulnerabilities, whic...

T1195

Rapid7 Blog →

CISA Advisories Advisory Apr 23

Defending Against China-Nexus Covert Networks of Compromised Devices

Defending against china-nexus covert networks of compromised devices executive summary Defending against China-nexus covert networks of compromised devices E...

CISA Advisories →

CISA Advisories CVE Apr 23

Carlson Software VASCO-B GNSS Receiver

View CSAF Summary Successful exploitation of this vulnerability could enable a remote attacker to alter critical system functions or disrupt device operation...

1 IOC

CISA Advisories →

Zero Day Initiative CVE Apr 23

ZDI-26-296: Delta Electronics ASDA-Soft PAR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics ASDA-Soft. User interaction is required t...

T1190 1 IOC

Zero Day Initiative →

Cloudflare Blog General Apr 22

Making Rust Workers reliable: panic and abort recovery in wasm‑bindgen

Panics in Rust Workers were historically fatal, poisoning the entire instance. By collaborating upstream on the wasm‑bindgen project, Rust Workers now suppor...

Cloudflare Blog →

Infosecurity Magazine General Apr 22

Researchers Uncover ProxySmart Software Powering 90+ SIM Farms

Infrawatch says ProxySmart platform enables SIM farm activity at “industrial scale”

Infosecurity Magazine →

Infosecurity Magazine Operational Technology Apr 20

ZionSiphon Malware Targets Water Infrastructure Systems

ZionSiphon malware targets OT water systems with sabotage and ICS scanning capabilities

Infosecurity Magazine →

ESET Research Supply Chain Apr 16

Supply chain dependencies: Have you checked your blind spot?

Your biggest risk may be a vendor you trust. How can SMBs map their third-party blind spots and build operational resilience?

ESET Research →

Kaspersky Securelist Malware Apr 15

Threat landscape for industrial automation systems in Q4 2025

The report contains industrial threat statistics for Q4 2025. It covers various infection vectors and malware types, as well as regional statistics and stati...

Kaspersky Securelist →

«Previous page 1 ... 11 12 13 14 15 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA