Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities
SecurityWeek
Industry News

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities

The vulnerabilities were reported to Meta through its bug bounty program and were patched with updates released earlier this year.

SecurityWeek2d ago3m1
Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API
The Hacker News
Industry News

Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API

CVE-2026-22679 exploited via debug endpoint in Weaver E-cology before 20260312, enabling RCE and system compromise.

The Hacker News3d ago2m1
Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries
The Hacker News
Industry News

Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries

Microsoft disclosed a credential theft campaign targeting 35,000+ users at 13,000+ organizations across 26 countries.

The Hacker News3d ago6m1
Vulnerabilities

ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)

SANS ISC
Vulnerabilities

ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)

No description available.

SANS ISC3d ago1m1
Weaver E-cology critical bug exploited in attacks since March
BleepingComputer
Malware & Threats

Weaver E-cology critical bug exploited in attacks since March

Hackers have been exploiting a critical vulnerability (CVE-2026-22679) in the Weaver E-cology office automation since mid-March to run discovery commands.

BleepingComputer3d ago3m1
Industry News

Physical Cargo Theft Gets a Boost From Cybercriminals

Dark Reading
Industry News

Physical Cargo Theft Gets a Boost From Cybercriminals

Cargo theft is no longer about small groups of criminals operating on the ground, but transnational cybercriminal syndicates using access to supply chain systems to reroute goods.

Dark Reading3d ago1m1
Industry News

RMM Tools Fuel Stealthy Phishing Campaign

Dark Reading
Industry News

RMM Tools Fuel Stealthy Phishing Campaign

Attackers are abusing two remote monitoring and management (RMM) tools to evade detection in a campaign that has impacted over 80 organizations so far.

Dark Reading3d ago1m1
Amazon SES increasingly abused in phishing to evade detection
BleepingComputer
Malware & Threats

Amazon SES increasingly abused in phishing to evade detection

The Amazon Simple Email Service (SES) is being increasingly abused to send convincing phishing emails that can bypass standard security filters and render reputation-based blocks ineffective.

BleepingComputer3d ago3m1
Researchers report Amazon SES abused in phishing to evade detection
BleepingComputer
Malware & Threats

Researchers report Amazon SES abused in phishing to evade detection

Cybersecurity firm Kaspersky reports that the Amazon Simple Email Service (SES) is being increasingly abused to send convincing phishing emails that can bypass standard security filters and render reputation-based blocks ineffective.

BleepingComputer3d ago3m1
Industry News

Exploit Cyber-Frenzy Threatens Millions via Critical cPanel Vulnerability

Dark Reading
Industry News

Exploit Cyber-Frenzy Threatens Millions via Critical cPanel Vulnerability

Shortly after the authentication-bypass flaw was disclosed multiple proof-of-concept exploits appeared, and one researcher claims there's been zero-day activity for at least a month.

Dark Reading3d ago1m1
Cisco Moves to Acquire Astrix Security to Tackle Non-Human Identity Risks
SecurityWeek
Industry News

Cisco Moves to Acquire Astrix Security to Tackle Non-Human Identity Risks

Cisco on Monday announced its intent to acquire Astrix Security, a startup focused on securing non-human identities (NHIs) such as API keys, service accounts, and OAuth tokens increasingly used by applications and AI agents. In a blog post, Cisco said the acquisition is aimed at extending zero tr...

SecurityWeek3d ago2m1
Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM Tools
The Hacker News
Industry News

Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM Tools

VENOMOUS#HELPER phishing campaign active since April 2025 has impacted 80+ organizations, mainly in the U.S., using SSA-themed lures.

The Hacker News3d ago3m1