IM
IronMonkey Threat Research
LIVE
|
Articles 30,305
|
CVEs 370,538
|
APT Groups 581
|
Tools 2,196
|
Updated recently
Today Yesterday All 30,273 articles — Page 1001 of 1010
Ransomware – Hacker Combat ·

What Program, Released In 2013, Is an Example of Ransomware? The answer is a crypto locker. Ransomware is malevolent programming that scrambles documents on a contaminated PC, in this manner......

Government Facilities
Huntress Blog ·

At the end of this tunnel, we find some shady hackers using ngrok to gain remote control access to victim networks.

Group-IB Blog ·

Analysis of the E1RB JS sniffer family

Information Technology
McAfee Labs | McAfee Blogs ·

Overview For the March 2021 Patch Tuesday, Microsoft released a set of seven DNS vulnerabilities. Five of the vulnerabilities are... The post Seven Windows Wonders – Critical Vulnerabilities in...

Information Technology Financial Services
Huntress Blog ·

Hackers always try to cover up their tracks. In this blog, we step through layers of obfuscation to uncover the real intent of a .NET malware sample.

Information Technology
McAfee Labs | McAfee Blogs ·

0. Introduction John Lambert, a distinguished researcher specializing in threat intelligence at Microsoft, once said these words that changed perspectives:... The post McAfee ATR Thinks in Graphs...

Lazarus Group Energy Communications
Ransomware – Hacker Combat ·

Know How Does Ransomware Spread by reading complete article. Ransomware is malware that involves encrypting a company’s or individual’s valid data or blocking users from accessing their computer...

Financial Services
Kaspersky ICS CERT (English) ·

Solutions that use the OPC family of protocols are affected by multiple vulnerabilities that could lead to equipment failure, remote code execution or leaks of critical data

Publications
Huntress Blog ·

On-prem Microsoft Exchange Server vulnerabilities are being actively exploited in the wild. Read our blog for Huntress' most up-to-date research and IOCs.

Information Technology
Orange Cyberdefense ·

Introduction What seemed like a regular Cross-site Scripting (XSS) vulnerability on an HTTP 500 “Internal Server Error”-page, I managed to turn into a one-click account takeover on an assessment....

Information Technology Defense Industrial Base
Orange Cyberdefense ·

I just got off a call with a client, and realised we need to think about how we report binary protections a bit more. More specifically the ios info binary command in objection. They can be a pain...

Financial Services
Kaspersky ICS CERT (English) ·

Studio 5000 Logix Designer, RSLogix 5000 and Logix controllers use a hardcoded key to verify participants of communication.

Critical Manufacturing Transportation Systems Advisories
Huntress Blog ·

In this blog, we define what threat hunting is, the differences between human analysis and automation, plus an example of human-powered threat hunting.

Information Technology
Group-IB Blog ·

A deep dive into Classiscam: automated scam as a service designed to steal money and payment data

Kaspersky ICS CERT (English) ·

In mid-2020, we realized that Lazarus was launching attacks on the defense industry using the ThreatNeedle cluster, an advanced malware cluster of Manuscrypt (a.k.a. NukeSped). While investigating...

Publications
McAfee Labs | McAfee Blogs ·

Executive Summary Babuk ransomware is a new ransomware threat discovered in 2021 that has impacted at least five big enterprises,... The post Babuk Ransomware appeared first on McAfee Blog.

Financial Services Commercial Facilities
Huntress Blog ·

We unveil zero-day vulnerabilities we discovered in virtual event platforms used in MSP/Fortune 500 communities, plus some insight on supply chain attacks.

Information Technology
Report Feed ·

The year three report covers 2019 and aims to highlight the achievements and efforts made by the Active Cyber Defence programe.

Government Facilities
McAfee Labs | McAfee Blogs ·

On February 17th, 2021, McAfee disclosed findings based on a 10-month long disclosure process with major video conferencing vendor Agora,... The post Beyond Clubhouse: Vulnerable Agora SDKs Still...

Financial Services Commercial Facilities
McAfee Labs | McAfee Blogs ·

The McAfee Advanced Threat Research (ATR) team is committed to uncovering security issues in both software and hardware to help... The post Don’t Call Us We’ll Call You: McAfee ATR Finds...

Healthcare and Public Health Commercial Facilities
Huntress Blog ·

In cybersecurity, education and training are the key to winning. Read our blog to learn how you can grow your skills through continuous security education.

McAfee Labs | McAfee Blogs ·

The concept of a trail of breadcrumbs in the offensive security community is nothing new; for many years, researchers on... The post Researchers Follow the Breadcrumbs: The Latest Vulnerabilities...

Financial Services Commercial Facilities
Kaspersky ICS CERT (English) ·

The vendor has published an advisory on vulnerabilities in multifunctional gateway devices designed to integrate different types of sensors and PLCs into industrial environments

Publications
Cloud Threat Landscape ·

On 2021-02-09, a research was reported, involving , gaining initial access via Supply chain vector, while using Package dependency confusion, to achieve None.

Cloud Threat Landscape ·

On 2021-02-09, a campaign was reported, involving an unknown actor, gaining initial access via Software misconfig, while using Escape to host via cgroups release_agent, targeting Docker to achieve...

Huntress Blog ·

To avoid detection, hackers often turn a system’s own tools against itself. Here, we examine a malicious payload that was executed using PowerShell.

Information Technology
Orange Cyberdefense ·

Years ago I learnt docker basics because I just couldn’t get that $ruby_tool to install. The bits of progress I’d make usually left my host’s ruby install in shambles. With docker though, I had...

Kaspersky ICS CERT (English) ·

Vulnerabilities have been identified in the IPv6 component in the Treck TCP/IP stack implementation. It is recommended that vendors of IoT devices using that implementation issue security advisories.

Publications
Low-level adventures ·

This is a write-up for solving the devils-swapper RE challenge.‌‌ It was mostly intended for my personal archive, but since it may be interesting to all of you. This especially applies if you're...

Cloud Threat Landscape ·

On 2021-02-03, a campaign was reported, involving TeamTNT, gaining initial access via ,. The following tools were observed: Peirates, Hildegard.