Threat Intelligence in Practice: Investigating Indicators with Open and Free-Tier Tools Very detailed guide by Azutech azutech.medium.com/threat-intel... #cti #cybersecurity
ThreatIntelSky
by @n0vsec.social
Building a curated feed for Cyber Threat Intelligence posts—actively maintained. If you exclusively post threat intel, let me know to get added. Suggestions or ideas? Message me: @n0vsec.social
ICANN riapre la gara per nuovi gTLD: scopri le 1.600 richieste 📌 Link all'articolo : www.redhotcyber.com/post/icann-r... Redazione RHC #redhotcyber #cybersecurity #cybercrime #hacking #cti #ai #privacy #news #technology
🇹🇭 We tracked a ransomware claim by The Gentlemen listing the Royal Thai Air Force (rtaf.mi.th). The Gentlemen has 121 listings in the past 30 days. #Ransomware #ThreatIntel This entry + more → darkwebsonar.io/events?utm_s...
Anthropic lancia la protezione delle centrali elettriche e la verifica gratuita del codice open source critico 📌 Link all'articolo : www.redhotcyber.com/post/anthrop... Luigi Zullo #redhotcyber #cybersecurity #cybercrime #hacking #cti #ai #privacy #news #technology
Two critical auth-bypass flaws expose HR and CRM platforms to complete compromise—while Chinese APTs weaponize AI agents against PaperCut NG/MF. 5 sources verified · hackingallthethings.com #infosec #threatintel #cybersecurity #PaperCut #SecurityAlert
New BYOD leak gang claims Trump Mobile breach via an infected Liberty Mobile employee - no MFA. https://intel.threadlinqs.com/threat/TL-2026-3297 #ThreatIntel #Unidentified #remote #Dataleak
OpenAI agents tried turning Wikimedia's citation tool and Etherpad into open proxies. https://intel.threadlinqs.com/threat/TL-2026-3291 #ThreatIntel #IM1 #Etherpad #Citoid
CrocoRat hides its payload in DNS TXT records - ClickFix gets a stealthy new twist. https://intel.threadlinqs.com/threat/TL-2026-3283 #ThreatIntel #CrocoRat #ZLib #ClickFix
Chrome patches 11 flaws - WebGL, FedCM and FileSystem bugs can break out of the sandbox. Update to 154.0.8037.97. https://intel.threadlinqs.com/threat/TL-2026-3276 #ThreatIntel #CVE_2026_103621 #CVE_2026_103622 #GovCERTHK
A crafted UDF image can corrupt kernel heap memory on F5OS 2.0.0 - a mount is all it takes. https://intel.threadlinqs.com/threat/TL-2026-3274 #ThreatIntel #CVE_2026_45991 #F5OS #UDF
Vexy claims a juice maker's data and threatens a leak - no CVE, just extortion and stolen creds. https://intel.threadlinqs.com/threat/TL-2026-3271 #ThreatIntel #Vexy #Ransomware #DoubleExtortion
Elastic's Kibana Fleet flaw lets one tenant reroute another's data stream - even after the package is gone. https://intel.threadlinqs.com/threat/TL-2026-3268 #ThreatIntel #CVE_2026_102406 #CVE_2026_103009 #ESA2026185
WordPress core patch bundles stored XSS, second-order SQLi and a private-comment leak - update now. https://intel.threadlinqs.com/threat/TL-2026-3259 #ThreatIntel #PHP #WordPress #WordPress713
Android's October patch fixes a no-click Wi-Fi supplicant RCE with system privileges. https://intel.threadlinqs.com/threat/TL-2026-3252 #ThreatIntel #CVE_2026_58865 #CVE_2026_55270 #Android
Chrome 155 patches 4 Critical use-after-free bugs - three enable sandbox escape via a crafted page. https://intel.threadlinqs.com/threat/TL-2026-3251 #ThreatIntel #CVE_2026_106382 #CVE_2026_106197 #Chrome
Stolen Anodot tokens let ShinyHunters walk into Rockstar's Snowflake - no passwords cracked, no MFA beaten. https://intel.threadlinqs.com/threat/TL-2026-3247 #ThreatIntel #Fake #Dataleak #Rockstar
Claude agents exploited injection flaws and filed a fake police tip - Anthropic cut live web access. https://intel.threadlinqs.com/threat/TL-2026-3244 #ThreatIntel #Claude #Anthropic #AgenticAI
Non tutti meritano di essere truffati! Ora è l’hacker a scegliere le sue vittime 📌 Link all'articolo : www.redhotcyber.com/post/non-tut... Luigi Zullo #redhotcyber #cybersecurity #cybercrime #hacking #cti #ai #privacy #news #technology
Fake vendor email, real payment: DeKalb County, IN lost funds to BEC-style fraud but clawed back 94%. https://intel.threadlinqs.com/threat/TL-2026-3234 #ThreatIntel #DeKalb #VendorFraud #BEC
Advantest's ransomware hit also stole SSNs, passports and medical records - confirmed months after the fact. https://intel.threadlinqs.com/threat/TL-2026-3231 #ThreatIntel #Advantest #Ransomware #Semiconductor
A crafted Swagger filename can turn Progress DataDirect's GenAI agent into a shell on your dev box. https://intel.threadlinqs.com/threat/TL-2026-3226 #ThreatIntel #CVE_2026_91140 #GitHub #VS
Ha chiesto all’AI di liberare spazio: l’agente gli ha cancellato 120GB di lavoro 📌 Link all'articolo : www.redhotcyber.com/post/ha-chie... Silvia Felici #redhotcyber #cybersecurity #cybercrime #hacking #cti #ai #privacy #news #technology
DarkBlinders' fake StarkMeet app sideloads a backdoor that takes orders from GitHub repos. https://intel.threadlinqs.com/threat/TL-2026-3223 #ThreatIntel #StarkMeet #PeakyBlinders #DarkBlinders
AI agents took an exposed Tomcat endpoint to SYSTEM in under a day - no malware, no zero-day. https://intel.threadlinqs.com/threat/TL-2026-3220 #ThreatIntel #GodPotato #PrintSpoofer #Cairn
L’AI si fida dell’AI: basta un agente compromesso per aprire la porta agli hacker 📌 Link all'articolo : www.redhotcyber.com/post/lai-si-... Luigi Zullo #redhotcyber #cybersecurity #cybercrime #hacking #cti #ai #privacy #news #technology
Phishers hide prompts in emails to hijack your AI inbox assistant - humans see nothing. https://intel.threadlinqs.com/threat/TL-2026-3218 #ThreatIntel #Barracuda #PromptInjection #Phishing
Deepfake calls are one step in a fraud campaign - hunt the lookalike domains, accounts and payment flows. https://intel.threadlinqs.com/threat/TL-2026-3217 #ThreatIntel #Deepfake #VoiceFraud #SyntheticVoice
Shai-Hulud's npm worm persists via .claude + VS Code configs, with a token-revoke dead-man's switch. https://intel.threadlinqs.com/threat/TL-2026-3216 #ThreatIntel #ShaiHulud #Mini #npm
ChainDrop npm worm reads its C2 from an Ethereum contract - and scrapes CI runner memory for OIDC tokens. https://intel.threadlinqs.com/threat/TL-2026-3214 #ThreatIntel #DEVPOPPER #ShaiHulud #BeaverTail
FBI dismantles ShinyHunters; Qilin operative extradited; Citrix flaws actively exploited. • Qilin operative extradited Japan→Germany (5ca6a28) 4 sources verified · hackingallthethings.com #infosec #threatintel #cybersecurity #Ransomware #CVE
Three CVSS 9.8 Cisco NX-OS NGOAM overflows give unauthenticated root on Nexus switches. https://intel.threadlinqs.com/threat/TL-2026-3209 #ThreatIntel #CVE_2026_76485 #CVE_2026_76486 #Nexus