IM
IronMonkey Threat Research
LIVE
|
Articles 30,305
|
CVEs 370,538
|
APT Groups 581
|
Tools 2,196
|
Updated recently
Today Yesterday All 30,273 articles — Page 1003 of 1010
McAfee Labs | McAfee Blogs ·

Executive Summary There has been considerable focus on the recent disclosures associated with SolarWinds, and while existing analysis on the... The post Additional Analysis into the SUNBURST...

Lead Financial Services Government Facilities
Huntress Blog ·

Annual security awareness training is a waste of time. We discuss why an ongoing security awareness program is required to protect against cyber threats.

McAfee Labs | McAfee Blogs ·

Part I of II Situation In a blog post released 13 Dec 2020, FireEye disclosed that threat actors compromised SolarWinds’s... The post SUNBURST Malware and SolarWinds Supply Chain Compromise...

Financial Services Commercial Facilities
Huntress Blog ·

Huntress covers the breaking news about Solarwinds’ Orion platform being exploited as part of a coordinated attack to distribute malware.

Information Technology
Cloud Threat Landscape ·

What seemed to be at first a targeted attack against FireEye, turned out to be a much worse espionage campaign associated with APT29 that the United State has suffered from.The SolarWinds...

Wiz Blog | RSS feed ·

Today, we’re announcing a milestone in that journey: a $100M Series A funding round led by Index Ventures, Sequoia Capital, Insight Partners, and Cyberstarts.

Information Technology Financial Services
Group-IB Blog ·

A story about operators of JS-sniffer FakeSecurity distributing Raccoon stealer

Information Technology
Terrorism Archives - Security Affairs ·

The Islamic hacker Ardit Ferizi, who is serving 20 years for giving his support to Islamic State group has been granted compassionate release. Ardit Ferizi, aka Th3Dir3ctorY, is the hacker that...

Lotus Blossom Silk Typhoon Communications
Kaspersky ICS CERT (English) ·

We present our vision of what challenges industrial cybersecurity will soon be (or already is) facing, and what to expect from cybercriminals in 2021.

Publications
Huntress Blog ·

TrickBot has unleashed yet another module in its growing arsenal specifically targeting firmware vulnerabilities, named TrickBoot.

Information Technology
Kaspersky ICS CERT (English) ·

Kaspersky ICS CERT experts virtually provided ICS Training for Executives

Critical Manufacturing Events
Huntress Blog ·

Huntress CEO Kyle Hanslovan has a lot to be thankful for in 2020 — and it starts with the MSP community.

Kaspersky ICS CERT (English) ·

Kaspersky’s mission incorporates education on all levels, including collaborations with universities. As part of this mission, we have been working with the Deggendorf Institute of Technology...

Critical Manufacturing Transportation Systems Events
Huntress Blog ·

In this blog, we dissect a sample of malware that makes clever use of batch scripting obfuscation—turns out it was a launcher for TrickBot!

Information Technology
Orange Cyberdefense ·

Much like other events in 2020, our annual internal hackathon took a remote format this year, sporting over 120 hackers from across the globe. We had many challenges available during the...

Kaspersky ICS CERT (English) ·

After rigorous assessment, Kaspersky’s Industrial Systems Emergency Response Team (ICS CERT) has officially joined FIRST – the global Forum of Incident Response and Security Teams.

Publications
Kaspersky ICS CERT (English) ·

The European Union Agency for Cybersecurity (ENISA) has published its guidelines for securing the internet of things supply chain. Kaspersky ICS CERT experts were among the contributors to the...

Publications
Orange Cyberdefense ·

Ciao belli! On the 19th of November 2020, SONY finally released the new PlayStation 5 in the UK. A few days earlier in the US, Japan, and Canada. Of course, Play Station 5 came together with a new...

Communications
Group-IB Blog ·

Analysis of TTPs employed by Egregor operators

Information Technology
Kaspersky ICS CERT (English) ·

Attack by Ryuk ransomware disrupts nearly all municipal services in Canadian city of Saint John

Government Facilities Publications
Huntress Blog ·

Even the best cybersecurity tools won’t configure and sell themselves. That's why we're thrilled to introduce a new Huntress service: Partner Enablement!

Cloud Threat Landscape ·

On 2020-11-16, a campaign was reported, involving Abcbot operator, gaining initial access via , to achieve Resource hijacking. The following tools were observed: Loggerminer.

Orange Cyberdefense ·

When we finally decided on a date, sensecon 2020 was little over a month away. Unlike our public client events, internally sensecon is a three day conference filled with trainings, a hackathon and...

Energy
Threat Intelligence ·

Around the world, companies in every industry rely on our cloud services to run their businesses, and we take that responsibility seriously. That’s why we’re focused on providing industry-leading...

Information Technology Google Cloud Security & Identity
McAfee Labs | McAfee Blogs ·

CVSS Score: 9.8 Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C Overview Microsoft released a patch today for a critical vulnerability (CVE-2020-17051) in the Windows NFSv3...

Financial Services Commercial Facilities
Orange Cyberdefense ·

We have written a lot about SenseCon by now, but there is one more thing we can talk about! In this post I want to detail the Discord bot and associated challenges that we built. We were going to...

McAfee Labs | McAfee Blogs ·

Executive Summary It is rare to be provided an inside view on how major cyber espionage campaigns are conducted within... The post Operation North Star: Behind The Scenes appeared first on McAfee Blog.

Lead Defense Industrial Base Communications
McAfee Labs | McAfee Blogs ·

McAfee’s Advanced Threat Research (ATR) today released research that uncovers previously undiscovered information on how Operation North Star evaluated its... The post Operation North Star:...

Hidden Cobra Lead Defense Industrial Base Financial Services
Kaspersky ICS CERT ·

The attacks use remote administration utilities whose graphical user interface is hidden by the malware, enabling the attackers to control the infected system without the user’s knowledge.

Publications
Orange Cyberdefense ·

Something I have found myself doing more and more often is using Exchange Web Services (EWS) to bypass 2FA. I do this so that I could look through mail for accounts I have compromised. The 2FA...