Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution
The Hacker News
Industry News

Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution

Cisco patches four CVEs up to CVSS 9.9 in ISE and Webex, preventing code execution and user impersonation risks.

The Hacker NewsApr 16, 20263m1
Microsoft Paid Out $2.3 Million at Zero Day Quest 2026 Hacking Contest
SecurityWeek
Industry News

Microsoft Paid Out $2.3 Million at Zero Day Quest 2026 Hacking Contest

Researchers found more than 80 high-impact cloud and AI vulnerabilities during the event, which had a $5 million prize pool.

SecurityWeekApr 16, 20262m1
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks
The Hacker News
Industry News

Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks

PHANTOMPULSE spreads via Obsidian plugin abuse in REF6598 campaign, targeting finance and crypto users, bypassing AV controls.

The Hacker NewsApr 16, 20264m1
NIST Prioritizes NVD Enrichment for CVEs in CISA KEV, Critical Software
SecurityWeek
Industry News

NIST Prioritizes NVD Enrichment for CVEs in CISA KEV, Critical Software

To optimize management of CVE volume, entries that do not meet specific criteria will not be automatically enriched.

SecurityWeekApr 16, 20263m1
Data breach at edtech giant McGraw Hill affects 13.5 million accounts
BleepingComputer
Malware & Threats

Data breach at edtech giant McGraw Hill affects 13.5 million accounts

The ShinyHunters extortion group has leaked data from 13.5 million McGraw Hill user accounts, stolen after breaching the company's Salesforce environment earlier this month.

BleepingComputerApr 16, 20263m2
Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu
The Hacker News
Industry News

Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu

Taboola pixel redirected logged-in banking users to Temu in February 2026 audit, exposing GDPR and PCI DSS risks.

The Hacker NewsApr 16, 20263m1
Cisco Patches Critical Vulnerabilities in Webex, ISE
SecurityWeek
Industry News

Cisco Patches Critical Vulnerabilities in Webex, ISE

The flaws can be exploited remotely to impersonate users or execute arbitrary commands on the underlying OS.

SecurityWeekApr 16, 20262m1
Ransomware Hits Automotive Data Expert Autovista
SecurityWeek
Industry News

Ransomware Hits Automotive Data Expert Autovista

The automotive analysis and data company is working with external experts to investigate the attack.

SecurityWeekApr 16, 20262m1
Claude Code, Gemini CLI, GitHub Copilot Agents Vulnerable to Prompt Injection via Comments
SecurityWeek
Industry News

Claude Code, Gemini CLI, GitHub Copilot Agents Vulnerable to Prompt Injection via Comments

A researcher has disclosed the details of the AI attack method he has named ‘Comment and Control’.

SecurityWeekApr 16, 20263m1
US nationals behind DPRK IT worker 'laptop farm' sent to prison
BleepingComputer
Malware & Threats

US nationals behind DPRK IT worker 'laptop farm' sent to prison

Two U.S. nationals have been sent to prison for helping North Korean remote information technology (IT) workers to pose as U.S. residents and get hired by over 100 companies across the country, including many Fortune 500 firms.

BleepingComputerApr 16, 20263m2
Microsoft: April Windows Server 2025 update may fail to install
BleepingComputer
Malware & Threats

Microsoft: April Windows Server 2025 update may fail to install

Microsoft is investigating an issue causing this month's KB5082063 security update to fail to install on some Windows Server 2025 systems.

BleepingComputerApr 16, 20262m2
UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign
The Hacker News
Industry News

UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign

CERT-UA reports UAC-0247 targeted clinics in March–April 2026, stealing browser and WhatsApp data, enabling lateral movement.

The Hacker NewsApr 16, 20263m1