Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Amazon

20 articles

AWS Security Blog vendor Amazon Aug 25

Fast Track ISM-ready cloud environments and IRAP Assessments with Landing Zone Accelerator on AWS

This post announces the availability of a new independent assessment report available on AWS Artifact analyzing how Landing Zone Accelerator on AWS (LZA) can...

AWS Security Blog → Details

SC Media general Amazon Aug 25

Alabama attorney general subpoenas OpenAI over AI breach

The investigation by Alabama's Attorney General's office aims to determine if OpenAI's handling of the incident, which involved a powerful AI model accessing...

SC Media → Details

GBHackers general Amazon Zscaler Aug 25

Multiple Zscaler Client Connector Flaws Enable Remote Code Execution

Zscaler has addressed several vulnerabilities in its Client Connector endpoint application that could allow an unauthenticated, unprivileged attacker to exec...

T1190 1 IOC

GBHackers → Details

GBHackers general Amazon WordPress Aug 25

Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts

Two critical vulnerabilities have been identified in the miniOrange SAML 2.0 Single Sign-On WordPress plugin, which could allow unauthenticated attackers to ...

2 IOCs

GBHackers → Details

The Hacker News general Amazon WordPress Aug 25

Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access

Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that make i...

T1548 T1556 1 IOC

The Hacker News → Details

GBHackers general Amazon Aug 25

TP-Link Archer Command Injection Flaws Enable Root-Level Code Execution

TP-Link has released firmware updates for three Archer router models due to the discovery of multiple command injection vulnerabilities. These vulnerabilitie...

T1059

GBHackers → Details

Cyberscoop general Amazon Aug 24

SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules

The 6-3 decision dismisses one lawsuit brought by states, saying they have no standing to sue because the disputed sections “neither requires nor forbids any...

T1598

Cyberscoop → Details

SC Media general Amazon Aug 24

AWS patches flaw in 7 SDKs

The flaw allowed for the redirection of API calls by manipulating the region field within the SDK's hostname template.

SC Media → Details

Infosecurity Magazine general Amazon Aug 24

Researchers Uncover Thousands of Leaked AWS Keys

Truffle Security says it found over 9000 publicly accessible and active AWS key pairs

Infosecurity Magazine → Details

Security Affairs general Amazon Aug 24

TikTok Settles U.S. Child Privacy Case for $400 Million

TikTok will pay $400 million to settle U.S.

Security Affairs → Details

GBHackers general Amazon Aug 24

AWS Network Firewall Adds Rule Hit Counts to Identify Unused Security Rules

AWS has introduced a new capability for AWS Network Firewall that tracks rule hit counts, providing security teams with direct visibility into how often indi...

GBHackers → Details

Help Net Security general Amazon Aug 24

AWS makes it easier to spot firewall rules that have gone quiet

AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identi...

Help Net Security → Details

The Hacker News general Amazon Aug 22

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

The U.S.

The Hacker News → Details

GBHackers general Amazon Aug 22

768 Leaked AWS Keys Still Active With Full Admin Access to Corporate Accounts

A large-scale investigation has uncovered 768 publicly exposed AWS access keys that remain active and grant full administrative privileges to corporate cloud...

T1041

GBHackers → Details

SC Media general Amazon Aug 21

TrueConf flaws enabling attacks on meeting participants added to KEV catalog

The flaws have been used by the Head Mare APT hacktivist group to spread PhantomCore malware.

SC Media → Details

SC Media general Amazon Aug 21

Thousands of active AWS access keys remain publicly exposed

Truffle Security has been tracking this exposure for four years, finding that 817 of the exposed keys were linked to companies, with 526 being AWS root keys.

SC Media → Details

BleepingComputer general Amazon Aug 21

Hundreds of leaked AWS keys give full control over corporate accounts

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. [.

BleepingComputer → Details

Security Affairs general Amazon Cisco Aug 21

Six Maximum-Severity Flaws Found in Cisco Products

Cisco patched nine critical flaws, including six rated CVSS 10.0, found during internal testing.

Security Affairs → Details

BleepingComputer general Amazon Aug 21

CISA orders feds to patch actively exploited TrueConf Server flaws

The U.S.

BleepingComputer → Details

The Hacker News general Amazon Cisco Aug 21

Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0

Cisco has published another round of security updates for Crosswork platforms and Secure Workload Software as part of a continued comprehensive internal secu...

The Hacker News → Details

«Previous page 1 ... 8 9 10 11 12 ... 21 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA