Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure
The Hacker News
Industry News

Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure

Marimo CVE-2026-39987 exploited within 10 hours of disclosure, enabling unauthenticated RCE and credential theft, emphasizing urgent patching needs.

The Hacker NewsApr 10, 20263m1
Microsoft Finds Vulnerability Exposing Millions of Android Crypto Wallet Users
SecurityWeek
Industry News

Microsoft Finds Vulnerability Exposing Millions of Android Crypto Wallet Users

The security hole affected an EngageLab SDK and it was reported by Microsoft to the vendor one year ago.

SecurityWeekApr 10, 20262m1
Vulnerabilities

Obfuscated JavaScript or Nothing, (Thu, Apr 9th)

SANS ISC
Vulnerabilities

Obfuscated JavaScript or Nothing, (Thu, Apr 9th)

I spotted an interesting piece of JavaScript code that was delivered via a phishing email in a RAR archive. The file was called “cbmjlzan.JS” (SHA256:a8ba9ba93b4509a86e3d7dd40fd0652c2743e32277760c5f7942b788b74c5285) and is only identified as malicious by 15 AV's on VirusTotal[1].

SANS ISCApr 10, 20261m2
Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers
The Hacker News
Industry News

Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers

Backdoored Smart Slider 3 Pro v3.5.1.35 update distributed for 6 hours via compromised infrastructure, enabling RCE and data theft.

The Hacker NewsApr 10, 20264m1
New ‘LucidRook’ malware used in targeted attacks on NGOs, universities
BleepingComputer
Malware & Threats

New ‘LucidRook’ malware used in targeted attacks on NGOs, universities

A new Lua-based malware, called LucidRook, is being used in spear-phishing campaigns targeting non-governmental organizations and universities in Taiwan.

BleepingComputerApr 9, 20263m2
New VENOM phishing attacks steal senior executives' Microsoft logins
BleepingComputer
Malware & Threats

New VENOM phishing attacks steal senior executives' Microsoft logins

Threat actors using a previously undocumented phishing-as-a-service (PhaaS) platform called "VENOM" are targeting credentials of C-suite executives across multiple industries.

BleepingComputerApr 9, 20263m2
Industry News

Russia's 'Fancy Bear' APT Continues Its Global Onslaught

Dark Reading
Industry News

Russia's 'Fancy Bear' APT Continues Its Global Onslaught

Victims don't need to match the cybercrime group's technical sophistication, experts say. But patching and some form of zero trust are now non-negotiable.

Dark ReadingApr 9, 20261m1
Industry News

'BlueHammer' Windows Zero-Day Exploit Signals Microsoft Bug Disclosure Issues

Dark Reading
Industry News

'BlueHammer' Windows Zero-Day Exploit Signals Microsoft Bug Disclosure Issues

Under the alias 'Chaotic Eclipse,' a researcher released a PoC exploit for a zero-day flaw that allows for system takeover by a local user, citing an undisclosed beef with Microsoft.

Dark ReadingApr 9, 20261m1
Healthcare IT solutions provider ChipSoft hit by ransomware attack
BleepingComputer
Malware & Threats

Healthcare IT solutions provider ChipSoft hit by ransomware attack

Dutch healthcare software vendor ChipSoft has been impacted by a ransomware attack that forced the company to take offline its website and digital services for patients and healthcare providers.

BleepingComputerApr 9, 20262m2
Google Chrome adds infostealer protection against session cookie theft
BleepingComputer
Malware & Threats

Google Chrome adds infostealer protection against session cookie theft

Google has rolled out Device Bound Session Credentials (DBSC) protection in Chrome 146 for Windows, designed to block info-stealing malware from harvesting session cookies.

BleepingComputerApr 9, 20263m2
Industry News

Do Ceasefires Slow Cyberattacks? History Suggests Not

Dark Reading
Industry News

Do Ceasefires Slow Cyberattacks? History Suggests Not

The cybersecurity community is waiting with bated breath to see if Iranian hackers will honor a ceasefire that doesn't actually name or directly involve them.

Dark ReadingApr 9, 20261m1
EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets
The Hacker News
Industry News

EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets

EngageLab SDK flaw exposed 50M+ Android installs after April 2025 disclosure, risking crypto wallet data until November 2025 patch.

The Hacker NewsApr 9, 20263m1