IM
IronMonkey Threat Research
LIVE
|
Articles 25,422
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,390 articles — Page 179 of 847
The Hacker News ·

A vulnerability in GitHub Codespaces could have been exploited by bad actors to seize control of repositories by injecting malicious Copilot instructions in a GitHub issue. The artificial...

Information Technology Critical Manufacturing
Security Latest ·

The US Justice Department disclosures give fresh clues about how tech companies handle government inquiries about your data.

Government Facilities Healthcare and Public Health Security Security / Privacy
DataBreaches.Net ·

Jai Vijayan reports: In 2025, cybercriminals needed less time to move from break-in to lateral movement across a network than it takes to watch a typical sitcom. An analysis by CrowdStrike of...

Healthcare and Public Health Commercial Facilities Commentaries and Analyses Hack
The Register - Security ·

Discovery is getting cheaper. Validation and patching aren’t What good is finding a hole if you can't fix it? Anthropic last week talked up Claude Code's improved ability to find software...

Alerts and advisories ·

SolarWinds security advisory (AV26-165)

Alerts and advisories ·

HPE security advisory (AV26-164)

Alerts and advisories ·

[Control systems] ABB security advisory (AV26-163)

The Register - Security ·

SolarWinds + file transfer software = what attackers' dreams are made of If you run SolarWinds’ Serv-U, you should patch promptly. Four critical vulnerabilities in the file transfer software can...

Defense Industrial Base Financial Services
The Hacker News ·

A Russia-aligned threat actor has been observed targeting a European financial institution as part of a social engineering attack to likely facilitate intelligence gathering or financial theft,...

Cozy Bear Midnight Blizzard Financial Services Defense Industrial Base
Alerts and advisories ·

VMware security advisory (AV26-162)

The Register - Security ·

New ransomware of choice, same critical targets North Korea’s Lazarus Group appears to have added another tool to its kit. It has begun using Medusa ransomware in extortion attacks targeting at...

Silent Chollima Onyx Sleet Lazarus Group Healthcare and Public Health Financial Services
Articles – Threat Beat ·

“Do not do any of these things. Especially do not cover your face and destroy the many, and largely unprotected, power stations and cell towers. Electricity is a ghost, but one you can catch and...

Energy Food and Agriculture News
The Hacker News ·

Most identity programs still prioritize work the way they prioritize IT tickets: by volume, loudness, or “what failed a control check.” That approach breaks the moment your environment stops being...

Chemical Information Technology
The Hacker News ·

The North Korea-linked Lazarus Group (aka Diamond Sleet and Pompilus) has been observed using Medusa ransomware in an attack targeting an unnamed entity in the Middle East, according to a new...

Moonstone Sleet Lazarus Group Diamond Sleet Healthcare and Public Health Information Technology
Wiz Blog | RSS feed ·

Bring Wiz cloud security insights into your Notion workspace with Custom Agents — enabling automated reporting, investigation, and security workflows where teams already work.

Information Technology
Alerts and advisories ·

SonicWall security advisory (AV26-161)

Alerts and advisories ·

Mozilla security advisory (AV26-160)

The Register - Security ·

When a one-line fix triggers thousands of PRs, something's off A Go library maintainer has urged developers to turn off GitHub's Dependabot, arguing that false positives from the...

Tenable Blog ·

Tenable Research investigated a malicious npm package with around 50,000 downloads in the public registry. We observed various detection-evasion techniques and saw it deploy multiple powerful...

Information Technology Financial Services
DataBreaches.Net ·

Greater Pittsburgh Orthopaedic Associates (GPOA) recently began notifying patients of a breach that occurred on or about August 10, 2025. Although their notification letter to patients does not...

Healthcare and Public Health Commercial Facilities Breach Incidents Health Data
CERT Polska ·

Use of Hard-coded Credentials vulnerability (CVE-2025-13776) has been found in Finka-FK, Finka-KPR, Finka-Płace, Finka-Faktura, Finka-Magazyn, Finka-STW applications.

CVE vulnerability
The Record from Recorded Future News ·

"Reddit was using children’s data unlawfully, potentially exposing them to inappropriate and harmful content,” British regulators said in announcing a fine against the platform.

Financial Services Critical Manufacturing Privacy Government
The Hacker News ·

The threat activity cluster known as UnsolicitedBooker has been observed targeting telecommunications companies in Kyrgyzstan and Tajikistan, marking a shift from prior attacks aimed at Saudi...

Space Pirates Angry Likho Panda Communications Energy
LevelBlue SpiderLabs Blog ·

If you have worked in enterprise IT for long enough, you have lived through the same movie more than once. A new capability arrives, it spreads faster than policy, and the first formal governance...

Energy Financial Services Emerging Threats Vulnerabilities
Articles – Threat Beat ·

Spanish authorities have arrested four alleged members of a hacktivist group believed to have carried out cyberattacks targeting government ministries, political parties and various public...

Energy Critical Manufacturing News
DataBreaches.Net ·

Anna Ribeiro reports: A joint investigation by the Symantec and Carbon Black Threat Hunter teams details evidence that operators linked to the Lazarus hacker group are deploying Medusa ransomware...

Lazarus Group Healthcare and Public Health Commercial Facilities Commentaries and Analyses Health Data
Articles – Threat Beat ·

The main airline serving the West African nation of Côte d’Ivoire was hit with a cyberattack earlier this month that forced it to institute business continuity plans. Air Côte d’Ivoire did not...

Energy Critical Manufacturing News
Articles – Threat Beat ·

In the current digital environment, supply chains are essential to national security, vital infrastructure and international trade. They have, however, also emerged as one of the most often used...

Defense Industrial Base Energy Insight
Alerts and advisories ·

Google Chrome security advisory (AV26-159)

Unit 42 ·

Unit 42 research reveals most OT attacks begin in IT. Learn how edge-driven defense stops threats early and turns dwell time into advantage. The post Bring the Fight to the Edge: Turning Time Into...

Critical Manufacturing Energy General Insights