Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Traffic violation scams switch to QR codes in new phishing texts
BleepingComputer
Malware & Threats

Traffic violation scams switch to QR codes in new phishing texts

Scammers are sending fake "Notice of Default" traffic violation text messages impersonating state courts across the U.S., pressuring recipients to scan a QR code that leads to a phishing site demanding a $6.99 payment while stealing personal and financial information.

BleepingComputerApr 5, 20263m2
New FortiClient EMS flaw exploited in attacks, emergency patch released
BleepingComputer
Malware & Threats

New FortiClient EMS flaw exploited in attacks, emergency patch released

Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability that is actively exploited in attacks.

BleepingComputerApr 5, 20262m2
$285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation
The Hacker News
Industry News

$285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation

$285M stolen after six-month DPRK social engineering campaign began fall 2025, exposing Drift’s contributors and cloud assets.

The Hacker NewsApr 5, 20268m1
Hackers exploit React2Shell in automated credential theft campaign
BleepingComputer
Malware & Threats

Hackers exploit React2Shell in automated credential theft campaign

Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnerable Next.js apps.

BleepingComputerApr 5, 20263m2
36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants
The Hacker News
Industry News

36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants

36 npm packages disguised as Strapi plugins exploit Redis and PostgreSQL via postinstall scripts, enabling persistent access and data theft.

The Hacker NewsApr 5, 20267m1
Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS
The Hacker News
Industry News

Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS

CVE-2026-35616 (CVSS 9.1) exploited since March 31, 2026, affects FortiClient EMS 7.4.5–7.4.6, enabling privilege escalation.

The Hacker NewsApr 5, 20263m1
Axios npm hack used fake Teams error fix to hijack maintainer account
BleepingComputer
Malware & Threats

Axios npm hack used fake Teams error fix to hijack maintainer account

The maintainers of the popular Axios HTTP client have published a detailed post-mortem describing how one of its developers was targeted by a social engineering campaign believed to have been conducted by North Korean threat actors.

BleepingComputerApr 4, 20266m2
Device code phishing attacks surge 37x as new kits spread online
BleepingComputer
Malware & Threats

Device code phishing attacks surge 37x as new kits spread online

Device code phishing attacks that abuse the OAuth 2.0 Device Authorization Grant flow to hijack accounts have surged more than 37 times this year.

BleepingComputerApr 4, 20264m2
European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack
SecurityWeek
Industry News

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack

Hackers stole over 300GB of data from the Commission’s AWS environment, including personal information.

SecurityWeekApr 4, 20263m1
Industry News

Inconsistent Privacy Labels Don't Tell Users What They Are Getting

Dark Reading
Industry News

Inconsistent Privacy Labels Don't Tell Users What They Are Getting

Data privacy labels are a great idea for mobile apps, but the current versions just aren't good enough.

Dark ReadingApr 3, 20261m1
LinkedIn secretly scans for 6,000+ Chrome extensions, collects data
BleepingComputer
Malware & Threats

LinkedIn secretly scans for 6,000+ Chrome extensions, collects data

A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data.

BleepingComputerApr 3, 20265m2
LinkedIn secretely scans for 6,000+ Chrome extensions, collects data
BleepingComputer
Malware & Threats

LinkedIn secretely scans for 6,000+ Chrome extensions, collects data

A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data.

BleepingComputerApr 3, 20265m2