CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Threat Intelligence
Intel Feed

cyberintel.kalymoon.com  ·  1245 articles  ·  updated every 4 hours · grows forever

1245Total
1198Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
◉ Threat Intelligence May 27, 2026
Africa Relinquishes Cyberattack Lead to Latin America — For Now - Dark Reading

Africa Relinquishes Cyberattack Lead to Latin America — For Now Dark Reading

Dark Reading Read →
◉ Threat Intelligence May 27, 2026
Google announces Sec-Gemini v1, a new experimental cybersecurity model - blog.google

Google announces Sec-Gemini v1, a new experimental cybersecurity model blog.google

blog.google Read →
◉ Threat Intelligence May 27, 2026
ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th)
SANS ISC Read →
◉ Threat Intelligence May 27, 2026
From poisoned search results to GPU mining: A cryptojacking campaign abusing ScreenConnect and Microsoft .NET utilities

Microsoft exposes a cryptojacking campaign using SEO poisoning and ScreenConnect to target high-performance PCs, with malicious sites also surfaced through AI chatbots. The post From poisoned search r…

Microsoft Security Read →
◉ Threat Intelligence May 27, 2026
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
CrowdStrike Read →
◉ Threat Intelligence May 27, 2026
CrowdStrike Named a Leader in Identity Threat Detection and Response
CrowdStrike Read →
◉ Threat Intelligence May 26, 2026
Cyble Blaze AI: Unified Enterprise Threat Intelligence - Cyble

Cyble Blaze AI: Unified Enterprise Threat Intelligence Cyble

Cyble Read →
◉ Threat Intelligence May 26, 2026
AI Threat Landscape Digest March-April 2026

Executive Summary During the March–April 2026 reporting period, AI use in offensive operations advanced from development and planning to real-time operational deployment. Multiple independent cases, i…

Check Point Research Read →
◉ Threat Intelligence May 26, 2026
Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)

Introduction

SANS ISC Read →
◉ Threat Intelligence May 26, 2026
ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)
SANS ISC Read →
◉ Threat Intelligence May 26, 2026
TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)

TeamPCP now operates across three package ecosystems in parallel, it reached GitHub&#;x26;#;39;s own internal codebase, it trojanized an officially Microsoft-published Python SDK, and it appears to ha…

SANS ISC Read →
◉ Threat Intelligence May 26, 2026
TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)

TeamPCP now operates across three package ecosystems in parallel, it reached GitHub&#;x26;#;39;s own internal codebase, it trojanized an officially Microsoft-published Python SDK, and it appears to ha…

SANS ISC Read →
◉ Threat Intelligence May 26, 2026
Microsoft Access VBA, (Mon, May 25th)

Microsoft Access files (Microsoft Office&#;x26;#;39;s Database) can contain VBA code.

SANS ISC Read →
◉ Threat Intelligence May 25, 2026
25th May – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 25th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES 7-Eleven, the global convenience store chain, confirme…

Check Point Research Read →
◉ Threat Intelligence May 25, 2026
Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks

Authorities in the Netherlands have arrested the co-owners of two related Internet hosting companies for operating IT infrastructure used by Russia to carry out cyberattacks, influence operations and …

Krebs on Security Read →
◉ Threat Intelligence May 25, 2026
Exploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability

Written by: Takahiro Sugiyama, Peter Revelant, Mathew Potaczek Introduction In late 2025, Mandiant responded to a security incident involving a compromised web server running KnowledgeDeliver . Knowle…

Mandiant Read →
◉ Threat Intelligence May 25, 2026
2 PhaaS 2 Furious: The Evolution of Chinese-language Phishing Services

Written by: Jamie Collier While Russian-speaking threat actors have historically dominated the phishing-as-a-service (PhaaS) landscape, a rival ecosystem is rapidly growing within the Chinese-language…

Mandiant Read →
◉ Threat Intelligence May 24, 2026
Wireshark 4.6.6 Released, (Sun, May 24th)

Wireshark release 4.6.6 fixes 1 vulnerability and 11 bugs.

SANS ISC Read →
◉ Threat Intelligence May 24, 2026
Hackers claiming ties to Clop launch wide extortion campaign targeting corporate executives - Cybersecurity Dive

Hackers claiming ties to Clop launch wide extortion campaign targeting corporate executives Cybersecurity Dive

Cybersecurity Dive Read →
◉ Threat Intelligence May 23, 2026
Measuring AI-Enabled Success: 3 KPIs Leaders Should Track
CrowdStrike Read →
◉ Threat Intelligence May 23, 2026
An Example of Stack String in High Level Language, (Sat, May 23rd)

This week, I'm attending the SEC670[1] training (“Red Teaming Tools - Developing Windows Implants, Shellcode, Command and Control”). From my point of view, this training fits perfectly with FOR610…

SANS ISC Read →
◉ Threat Intelligence May 23, 2026
The Trucking Industry’s Threat Intelligence Gap - Heavy Duty Trucking

The Trucking Industry’s Threat Intelligence Gap Heavy Duty Trucking

Heavy Duty Trucking Read →
◉ Threat Intelligence May 22, 2026
Microsoft Security success stories: How St. Luke’s and ManpowerGroup are securing AI foundations

How Frontier firms secure AI at scale: read how Microsoft customers embed governance, identity, and cloud security to make protection an enabler of AI growth. The post Microsoft Security success stori…

Microsoft Security Read →
◉ Threat Intelligence May 22, 2026
From edge appliance to enterprise compromise: Multi-stage Linux intrusion via F5 and Confluence

A multi-stage attack on Linux devices began with an exposed F5 BIG-IP edge appliance and pivoted to an internal Confluence server for credential theft and identity compromise. Learn how the threat act…

Microsoft Security Read →
← Prev 9 / 52 Next →