Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Vulnerabilities

An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)

SANS ISC
Vulnerabilities

An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)

[This is a Guest Diary by Eric Roldan, an ISC intern as part of the SANS.edu BACS program]

SANS ISC1d ago1m1
Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired
Graham Cluley
Industry News

Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired

Meta’s smart glasses promise privacy “designed for you” – but everything they record was being beamed off to workers in Nairobi to label by hand.

Graham Cluley1d ago56m1
Hackers abuse Google ads for GoDaddy ManageWP login phishing
BleepingComputer
Malware & Threats

Hackers abuse Google ads for GoDaddy ManageWP login phishing

A phishing campaign delivered through Google sponsored search results is targeting credentials for ManageWP, GoDaddy's platform for managing fleets of WordPress websites.

BleepingComputer1d ago3m1
Industry News

Yet Another Way to Bypass Google Chrome's Encryption Protection

Dark Reading
Industry News

Yet Another Way to Bypass Google Chrome's Encryption Protection

Authors of the VoidStealer Trojan uncovered a way to get around Google's App-Bound Encryption (ABE), opening the door to infostealers.

Dark Reading1d ago1m1
Industry News

Instructure Breach Exposes Schools' Vendor Dependence

Dark Reading
Industry News

Instructure Breach Exposes Schools' Vendor Dependence

ShinyHunters' attack on Instructure, which owns the widely used Canvas learning management system (LMS), carries big questions about the trust educational institutions put into their vendors.

Dark Reading1d ago1m1
Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks
The Hacker News
Industry News

Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks

xlabs_v1 botnet exploits ADB port 5555 to recruit IoT devices, enabling 21 DDoS methods and bandwidth-tiered attacks on gaming servers

The Hacker News1d ago4m1
Critical vm2 sandbox bug lets attackers execute code on hosts
BleepingComputer
Malware & Threats

Critical vm2 sandbox bug lets attackers execute code on hosts

A critical vulnerability in the popular Node.js sandboxing library vm2 allows escaping the sandbox and executing arbitrary code on the host system.

BleepingComputer1d ago3m1
New Cisco DoS flaw requires manual reboot to revive devices
BleepingComputer
Malware & Threats

New Cisco DoS flaw requires manual reboot to revive devices

Cisco patched a Crosswork Network Controller and Network Services Orchestrator denial-of-service vulnerability that requires manually rebooting targeted systems for recovery.

BleepingComputer1d ago3m1
DAEMON Tools devs confirm breach, release malware-free version
BleepingComputer
Malware & Threats

DAEMON Tools devs confirm breach, release malware-free version

Disc Soft Limited, the maker of DAEMON Tools Lite, confirmed that the software had been trojanized in a supply chain attack and released a new, malware-free version.

BleepingComputer1d ago3m1
Autonomous Offensive Security Firm XBOW Raises $35 Million
SecurityWeek
Industry News

Autonomous Offensive Security Firm XBOW Raises $35 Million

The company raised another $35 million as an extension to its previously announced Series C funding round.

SecurityWeek1d ago2m1
Why ransomware attacks succeed even when backups exist
BleepingComputer
Malware & Threats

Why ransomware attacks succeed even when backups exist

Backups don't fail because they're missing, they fail because attackers destroy them first. Acronis explains how ransomware targets backup systems before encryption, leaving no path to recovery.

BleepingComputer1d ago6m1
Herd Security Raises $3 Million for AI-Powered Training Platform
SecurityWeek
Industry News

Herd Security Raises $3 Million for AI-Powered Training Platform

The startup will invest in expanding its training categories, optimizing video generation, and growing its partnership ecosystem.

SecurityWeek1d ago2m1