IM
IronMonkey Threat Research
LIVE
|
Articles 25,422
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,390 articles — Page 177 of 847
CERT Polska ·

Reflected XSS vulnerability (CVE-2026-1434) has been found in Omega-PSIR software.

CVE vulnerability
Articles – Threat Beat ·

During Tuesday night’s State of the Union address, President Donald Trump announced a new initiative to ensure data center owners and operators absorb surges in electricity costs associated with...

Energy Defense Industrial Base News
Articles – Threat Beat ·

Defense Secretary Pete Hegseth gave Anthropic CEO Dario Amodei until Friday evening to give the military unfettered access to its AI model or face harsh penalties. Hegseth told Amodei in a tense...

Energy Defense Industrial Base News
The Register - Security ·

Telegram posts promise up to $1,000 per call as gang refines IT helpdesk ruse Prolific cybercrime crew Scattered Lapsus$ Hunters (SLSH) is reportedly recruiting women in the hope of improving its...

Scattered Spider
Schneier on Security ·

LLMs are bad at generating passwords: There are strong noticeable patterns among these 50 passwords that can be seen easily: All of the passwords start with a letter, usually uppercase G, almost...

Uncategorized AI
CERT Polska ·

SQL Injection vulnerability (CVE-2026-1198) has been found in Simple.ERP software.

CVE vulnerability
The Hacker News ·

A newly disclosed maximum-severity security flaw in Cisco Catalyst SD-WAN Controller (formerly vSmart) and Catalyst SD-WAN Manager (formerly vManage) has come under active exploitation in the wild...

Government Facilities Information Technology
The Register - Security ·

A rare joint alert from all five spy agencies means serious business The Five Eyes intelligence alliance is urgently warning defenders to patch two Cisco Catalyst SD-WAN vulnerabilities used in attacks.…

Cyble ·

The European Union Agency for Cybersecurity (ENISA) released its updated cybersecurity exercise methodology, providing organizations and governments across Europe with a structured framework for...

Information Technology Transportation Systems Cyber news Cybersecurity
Cyble ·

The European Union Agency for Cybersecurity (ENISA) released its updated cybersecurity exercise methodology, providing organizations and governments across Europe with a structured framework for...

Information Technology Government Facilities Cyber news Cybersecurity
Cisco Talos Blog ·

Cisco Talos discovered an ongoing malicious campaign since at least as early as December 2025 by a threat actor we track as “UAT-10027,” delivering a previously undisclosed backdoor dubbed “Dohdoor.”

Lazarus Group Information Technology Financial Services Threat Spotlight Cisco Talos Antivirus
SECURITY.COM ·

Why they predict we’ll all be single in 2026

Information Technology Financial Services
Vulnerabilities – The Cyber Express ·

div]:bg-bg-000/50 [&_pre>div]:border-0.5 [&_pre>div]:border-border-400 [&_.ignore-pre-bg>div]:bg-transparent [&_.standard-markdown_:is(p,blockquote,h1,h2,h3,h4,h5,h6)]:pl-2...

Government Facilities Defense Industrial Base Vulnerability News Cyber Essentials
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Cisco Catalyst SD-WAN products, the most severe of which could allow for authentication bypass. Cisco Catalyst SD-WAN (formerly Viptela) is a...

Communications
The Register - Security ·

Anthropic fixed the flaws - but the AI-enabled attack surfaces remain Security vulnerabilities in Claude Code could have allowed attackers to remotely execute code on users' machines and steal API...

Recorded Future ·

Recorded Future is expanding its payment fraud prevention capabilities through a partnership with CYBERA, the industry leader in detecting and verifying data on scam-linked bank accounts.

Financial Services Transportation Systems Blog
Project Zero ·

In my previous blog post I mentioned the GetProcessHandleFromHwnd API. This was an API I didn’t know existed until I found a publicly disclosed UAC bypass using the Quick Assist UI Access...

Threats | CyberScoop ·

The global campaign marks the second series of multiple actively exploited zero-day vulnerabilities in Cisco edge technology since last spring. The similarities don’t end there. The post...

Salt Typhoon Healthcare and Public Health Government Facilities Cybersecurity Threats
The Hacker News ·

Google on Wednesday disclosed that it worked with industry partners to disrupt the infrastructure of a suspected China-nexus cyber espionage group tracked as UNC2814 that breached at least 53...

Information Technology Government Facilities
The Hacker News ·

Cybersecurity researchers have disclosed multiple security vulnerabilities in Anthropic's Claude Code, an artificial intelligence (AI)-powered coding assistant, that could result in remote code...

Information Technology
DataBreaches.Net ·

Or Hadar reports: Clalit Health Services, the largest health maintenance organization in Israel, said it is investigating a suspected cyberattack after an Iranian-linked hacking group claimed it...

Healthcare and Public Health Commercial Facilities cyberwar Health Data
The Register - Security ·

UNC2814 historically targets governments and telcos A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of...

Critical Manufacturing Communications
The Hacker News ·

The notorious cybercrime collective known as Scattered LAPSUS$ Hunters (SLH) has been observed offering financial incentives to recruit women to pull off social engineering attacks. The idea is to...

Scattered Spider Muddled Libra Information Technology
The Hacker News ·

Triage is supposed to make things simpler. In a lot of teams, it does the opposite. When you can’t reach a confident verdict early, alerts turn into repeat checks, back-and-forth, and “just...

Information Technology
The Hacker News ·

Cybersecurity researchers have discovered four malicious NuGet packages that are designed to target ASP.NET web application developers to steal sensitive data. The campaign, discovered by Socket,...

Information Technology
Maxwell Dulin's Resources ·

The LLM revolution has come and it's either time to get with the times or get kicked to the curb. Still, different people find different uses for it and it's adoption is different person to...

The Record from Recorded Future News ·

In responding to pushback about Discord's impending age verification policy, co-founder Stanislav Vishnevskiy said the platform "failed at our most basic job: clearly explaining what we're doing...

Healthcare and Public Health Financial Services Privacy Technology
The Record from Recorded Future News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an emergency directive warning of a “cyber threat actor’s ongoing exploitation of Cisco SD-WAN systems,” describing the...

Healthcare and Public Health Financial Services Cybercrime Government
The Register - Security ·

Come for the coding test, stay for the C2 traffic Next.js developers are once again in the crosshairs as hackers seed malicious repositories disguised as legitimate projects, according to...

Articles – Threat Beat ·

What can sound like a Hollywood plot is increasingly showing up in real-world incident reporting: Adversaries are blending traditional intrusion tradecraft with business-process manipulation to...

Defense Industrial Base Energy News