Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware
The Hacker News
Industry News

Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware

Microsoft warns tax-season phishing hit 29,000 users via IRS lures, enabling credential theft and RMM-based access.

The Hacker NewsMar 23, 20266m1
Tycoon 2FA Fully Operational Despite Law Enforcement Takedown
SecurityWeek
Industry News

Tycoon 2FA Fully Operational Despite Law Enforcement Takedown

Attack volumes are back to pre-disruption levels, and the adversary tactics have remained unchanged.

SecurityWeekMar 23, 20263m1
FBI warns of Handala hackers using Telegram in malware attacks
BleepingComputer
Malware & Threats

FBI warns of Handala hackers using Telegram in malware attacks

The U.S. Federal Bureau of Investigation (FBI) warned network defenders that Iranian hackers linked to the country's Ministry of Intelligence and Security (MOIS) are using Telegram in malware attacks.

BleepingComputerMar 23, 20263m2
CISA orders feds to patch DarkSword iOS flaws exploited attacks
BleepingComputer
Critical
Malware & Threats
91/10

CISA orders feds to patch DarkSword iOS flaws exploited attacks

CISA ordered U.S. government agencies to patch three iOS vulnerabilities targeted in cryptocurrency theft and cyberespionage attacks using the DarkSword exploit kit.

UNC6353 (suspected Russian espionage group), UNC6748 (PARS Defense customer)GovernmentFinance
BleepingComputerMar 23, 20263m2
Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper
The Hacker News
Industry News

Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper

Trivy supply chain attack pushed malicious Docker images on March 22, enabling credential theft and worm spread, impacting cloud environments.

The Hacker NewsMar 23, 20264m1
New KB5085516 emergency update fixes Microsoft account sign-in
BleepingComputer
High
Malware & Threats
72/10

New KB5085516 emergency update fixes Microsoft account sign-in

Microsoft has released an emergency update to address a major issue that breaks sign-ins with Microsoft accounts across multiple Microsoft apps, including Teams and OneDrive.

TechnologyEnterprise
BleepingComputerMar 23, 20263m2
Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA Systems
The Hacker News
Industry News

Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA Systems

CVE-2025-32975 exploited since March 2026 on unpatched KACE SMA systems, enabling admin takeover and payload delivery.

The Hacker NewsMar 23, 20262m2
Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability
SecurityWeek
Industry News

Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability

CVE-2026-21992 can be used without authentication for remote code execution and it may have been exploited in the wild.

SecurityWeekMar 23, 20262m2
Vulnerabilities

ISC Stormcast For Monday, March 23rd, 2026 https://isc.sans.edu/podcastdetail/9860, (Mon, Mar 23rd)

SANS ISC
Vulnerabilities

ISC Stormcast For Monday, March 23rd, 2026 https://isc.sans.edu/podcastdetail/9860, (Mon, Mar 23rd)

No description available.

SANS ISCMar 23, 20261m2
VoidStealer malware steals Chrome master key via debugger trick
BleepingComputer
Malware & Threats

VoidStealer malware steals Chrome master key via debugger trick

An information stealer called VoidStealer uses a new approach to bypass Chrome's Application-Bound Encryption (ABE) and extract the master key for decrypting sensitive data stored in the browser.

BleepingComputerMar 22, 20263m2
Industry News

AI Dominates RSAC Innovation Sandbox

Dark Reading
Industry News

AI Dominates RSAC Innovation Sandbox

The 10 finalists will each have three minutes to make their case for being the most innovative, promising young security company of the year.

Dark ReadingMar 22, 20261m1
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions
BleepingComputer
Malware & Threats

Trivy vulnerability scanner breach pushed infostealer via GitHub Actions

The Trivy vulnerability scanner was compromised in a supply-chain attack by threat actors known as TeamPCP, which distributed credential-stealing malware through official releases and GitHub Actions.

BleepingComputerMar 21, 20266m2