IM
IronMonkey Threat Research
LIVE
|
Articles 28,654
|
CVEs 366,199
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,627 articles — Page 133 of 955
Industrial Cyber ·

Operational Technology (OT), which has widespread deployment across sectors, is increasingly coming under attack as the trend of... The post NCC Group warns ransomware attacks on OT-heavy...

Critical Manufacturing Energy News Vendors
www.theregister.com - Articles ·

Attackers stole a limited amount of internal credential material after malware hidden in poisoned packages reached two staff machines

Information Technology security
BleepingComputer ·

Two vulnerabilities in the Avada Builder plugin for WordPress, with an estimated one million active installations, allow hackers to read arbitrary files and extract sensitive information from the...

Information Technology Security
CERT Polska ·

Unrestricted Upload of File with Dangerous Type vulnerability (CVE-2026-44088) has been found in SzafirHost software.

Information Technology CVE vulnerability
The Hacker News ·

Microsoft has disclosed a new security vulnerability impacting on-premise versions of Exchange Server that it said has come under active exploitation in the wild. The vulnerability, tracked as...

Information Technology Government Facilities
Schneier on Security ·

Some AI-based video age-verification checks can be fooled with a fake mustache.

Information Technology Communications Uncategorized AI
The Hacker News ·

The U.S.Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly disclosed vulnerability impacting Cisco Catalyst SD-WAN Controller to its Known Exploited Vulnerabilities...

Information Technology Communications
BleepingComputer ·

Microsoft is updating the Edge web browser to ensure it no longer loads saved passwords into process memory in clear text at startup. [...]

Information Technology Microsoft Security
www.theregister.com - Articles ·

Parliamentary committee tells ministers the current online safety regime is failing children and warns 'no action is not an option'

Information Technology Communications security
BleepingComputer ·

Stolen browser sessions and authentication tokens are becoming more valuable than stolen passwords. Flare explains how the REMUS infostealer evolved around session theft and operational scalability. [...]

Information Technology Security
Unit 42 ·

Unit 42 analyzes the evolution of Gremlin stealer. This variant uses advanced obfuscation, crypto clipping and session hijacking to compromise data. The post Gremlin Stealer's Evolved Tactics:...

Information Technology Malware Threat Research
WeLiveSecurity ·

Conflict is a boon for opportunistic fraudsters. Look out for their ploys.

Financial Services Government Facilities Digital Security
BleepingComputer ·

Microsoft is introducing a new Windows Update capability that will allow it to remotely roll back problematic Windows drivers delivered through Windows Update. [...]

Information Technology Microsoft
eCrime.ch Ransomware News | RSS ·

Fifty-eight percent of cybersecurity leaders would consider paying cybercriminals to end a ransomware attack, with 46 percent ranking operational downtime as the most significant impact ransomware...

Information Technology
eCrime.ch Ransomware News | RSS ·

Check Point Software has released a report showing that ransomware accounted for 58% of recorded cyber incidents in Singapore. The findings are based on more than 130 major incidents logged in...

BleepingComputer ·

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrary code via cross-site scripting (XSS)...

Information Technology Government Facilities Microsoft Security
www.theregister.com - Articles ·

Other than Instructure execs - maybe?

cyber-crime
Recorded Future ·

In April 2026, Insikt Group® identified 37 high-impact vulnerabilities that should be prioritized for remediation, 35 of which had a Very Critical Recorded Future Risk Score. This represents a 19%...

Information Technology Government Facilities Blog
The Hacker News ·

Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it said has been exploited in limited attacks. The vulnerability, tracked as...

Information Technology Communications
The Hacker News ·

Cybersecurity researchers are sounding the alarm about what has been described as "malicious activity" in newly published versions of node-ipc. According to Socket and StepSecurity, three...

Information Technology
The Hacker News ·

Everything is still on fire. This week feels dumb in the worst way — bad links, weak checks, fake help desks, shady forum posts, and people turning supply chain attacks into some cursed little...

Tenable Blog ·

Multiple critical authentication bypass vulnerabilities in Cisco Catalyst SD-WAN Controller and Manager are under active exploitation by multiple threat clusters, including CVE-2026-20182, which...

Information Technology Communications
Alerts and advisories ·

Tenable security advisory (AV26-472)

Information Technology
The Record from Recorded Future News ·

The actions are being taken in light of an expanding supply chain campaign impacting the popular open-source library TanStack and additional npm and PyPI packages tied to several AI companies.

Information Technology Cybercrime News
eCrime.ch Ransomware News | RSS ·

CMD Organization is an emerging ransomware group that first posted victims to their public leak site in early April 2026. CMD Organization’s operating model appears similar to other ransomware...

The Citizen Lab ·

Senior research associate Kate Robertson says Bill C-22 could lead to the rollout of forced metadata collection for messaging apps. The post Signal Warns It Would Pull Out of Canada if Made to...

Information Technology Government Facilities
The Hacker News ·

The Belarus-aligned threat group known as Ghostwriter has been attributed to a fresh set of attacks targeting governmental organizations in Ukraine. Active since at least 2016, Ghostwriter has...

White Lynx Energy Government Facilities
BleepingComputer ·

The TeamPCP hacker group is threatening to leak source code from the Mistral AI project unless a buyer is found for the data. [...]

Information Technology Security
Alerts and advisories ·

Cisco security advisory (AV26-471)

Information Technology Communications
Cisco Talos Blog ·

In this week’s newsletter, Martin reflects on what the next iteration of AI tools means for vulnerability discovery and our ability to manage large-scale patch releases.

Information Technology Threat Source newsletter