IM
IronMonkey Threat Research
LIVE
|
Articles 28,677
|
CVEs 366,632
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,645 articles — Page 127 of 955
BleepingComputer ·

GitHub has confirmed that roughly 3,800 internal repositories were breached after one of its employees installed a malicious VS Code extension. [...]

Information Technology Security
BleepingComputer ·

Microsoft has shared mitigations for YellowKey, a recently disclosed Windows BitLocker zero-day vulnerability that grants access to protected drives. [...]

Information Technology Microsoft Security
BleepingComputer ·

GitHub is investigating a breach of its internal repositories after the TeamPCP hacker group claimed to have accessed approximately 4,000 repositories containing private code. [...]

Information Technology Security
Cloud Threat Landscape ·

According to GitHub’s public statement, the company detected unauthorized access involving internal repositories and initiated an ongoing investigation into the scope and potential impact of the...

Information Technology
www.theregister.com - Articles ·

'Thousands' of US victims, including 12+ machines owned and operated by Redmond

Information Technology security
The Hacker News ·

Cybersecurity researchers have disclosed details of a new ad fraud and malvertising operation dubbed Trapdoor targeting Android device users. The activity, per HUMAN's Satori Threat Intelligence...

Financial Services Information Technology
Threats | CyberScoop ·

Verizon’s annual Data Breach Investigations Report uncovered a surge of exploited vulnerabilities, and a growing lack of critical defect remediation industrywide. The post Attackers hit...

Information Technology Cybercrime Cybersecurity
Alerts and advisories ·

Atlassian security advisory (AV26-483)

Information Technology
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser used to access the...

Government Facilities Information Technology
Alerts and advisories ·

Ubuntu security advisory (AV26-482)

Information Technology
The Hacker News ·

Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalation (LPE). Dubbed DirtyDecrypt (aka...

Information Technology
Alerts and advisories ·

Red Hat security advisory (AV26-481)

Information Technology
Alerts and advisories ·

Dell security advisory (AV26-480)

Information Technology
www.theregister.com - Articles ·

I wonder what's in 'external-secret-repo-creds.yaml' and 'AWS-Workspace-Firefox-Passwords.csv'?

Government Facilities Information Technology security
www.theregister.com - Articles ·

I wonder what's in 'external-secret-repo-creds.yaml' and 'AWS-Workspace-Firefox-Passwords.csv'?

Government Facilities Information Technology security
Alerts and advisories ·

IBM security advisory (AV26-479)

Information Technology
Alerts and advisories ·

Mozilla security advisory (AV26-478)

Information Technology
The Record from Recorded Future News ·

There is no evidence that the incident has recurred, but the flaw remains unexplained and has not been publicly acknowledged by the company.

Information Technology Communications Cybercrime Government
BleepingComputer ·

A max-severity vulnerability in the latest Python FastAPI version of the ChromaDB project allows unauthenticated attackers to run arbitrary code on exposed servers. [...]

Information Technology Security
www.theregister.com - Articles ·

The org’s staying mum on the details, but Wednesday’s fixes reach back to unsupported 8.9 branches

Information Technology patches
www.theregister.com - Articles ·

The org’s staying mum on the details, but Wednesday’s fixes reach back to unsupported 8.9 branches

Information Technology security
BleepingComputer ·

Microsoft says it has disrupted a malware-signing-as-a-service (MSaaS) operation that abused the company's Artifact Signing service to generate fraudulent code-signing certificates used by...

Information Technology Security
Wiz Blog | RSS feed ·

Discover the latest on malicious versions of the pypi package durabletask, matching TeamPCP tactics.

Information Technology Critical Manufacturing
The Hacker News ·

In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organizations across five countries. The...

Information Technology
BleepingComputer ·

Discord announced that all voice and video calls through the communication platform are now protected by default with end-to-end encryption (E2EE). [...]

Information Technology Communications Security
The Record from Recorded Future News ·

The company unsealed a legal case in U.S. District Court on Tuesday detailing the disruption of Fox Tempest — a popular service that has operated since May 2025 and provides cybercriminals with...

Information Technology Cybercrime News
Alerts and advisories ·

AL26-013 - Critical vulnerability affecting Cisco Catalyst SD-WAN - CVE-2026-20182

Information Technology Communications
Alerts and advisories ·

HPE security advisory (AV26-477)

Information Technology
The Hacker News ·

Drupal has issued an alert stating that it intends to release a "core security release" for all supported branches on May 20, 2026, from 5-9 p.m. UTC. "The Drupal Security Team urges you to...

Information Technology
//SCADAS.EC ·

May 11, 2026 Dawn Capelli from the Dragos OT CERT issued a Linked-In request for OT Insider Threat cases in industrial environments. Dawn said she keeps hearing that insider threats rank as a top...

Energy Water General Topic