IM
IronMonkey Threat Research
LIVE
|
Articles 28,692
|
CVEs 366,691
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,660 articles — Page 20 of 956
BleepingComputer ·

Four cybercriminals were arrested in Brazil, and three others were charged in Europe over allegations that they exploited a vulnerability at a service provider, allowing them to withdraw funds...

Financial Services Information Technology Security Legal
The Hacker News ·

The China-linked threat actor known as Jewelbug has been observed carrying out cyber espionage operations targeting governments and militaries, while simultaneously engaging in cryptocurrency...

Alerts and advisories ·

Zimbra security advisory (AV26-816)

Information Technology
LevelBlue SpiderLabs Blog ·

We have access through port 9200. We have code execution through port 5601. Reconnaissance is complete, CVEs have been exploited, and Kibana has been compromised. Over the past three posts, we...

Information Technology Vulnerabilities Threat Intelligence
www.theregister.com - Articles ·

Even if your hardware is secure, quantum-ready, encrypted, and future-proof, no one is immune to a supplier letting the side down

Financial Services Information Technology security
Wiz Blog | RSS feed ·

AI is changing the context around data risk, making it critical to understand what’s connected, what’s exposed, and why.

Information Technology
Schneier on Security ·

This essay was written with Nathan E. Sanders, and originally appeared in The Guardian. OpenAI, and then Anthropic, were each formed by AI developers who feared unrestrained corporate AI...

Information Technology Uncategorized AI
BleepingComputer ·

The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...]

Information Technology Security Apple
www.theregister.com - Articles ·

Unnamed third party spotted suspicious activity, with names, roles, and email addresses potentially affected

Government Facilities Information Technology security
BleepingComputer ·

Google Workspace attacks do not always begin with phishing. Stolen OAuth tokens can provide another path into Gmail, Drive, and connected systems. Material Security explains why organizations need...

Information Technology Security
BleepingComputer ·

A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...]

Information Technology Financial Services Security
Securelist ·

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.

Smoke Sandstorm ToddyCat Mustang Panda Information Technology GReAT research APT reports
BleepingComputer ·

Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data. [...]

Energy Security
BleepingComputer ·

The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July, according to the data breach notification service Have I Been...

ShinyHunters Security
www.theregister.com - Articles ·

Intelligence Service says finding domestic threats is harder due to proliferation of toxic content online

Defense Industrial Base Government Facilities security
BleepingComputer ·

A former data analyst contractor for Brightly Software has been sentenced to two years in prison for targeting his employer in a $2.5 million extortion scheme. [...]

Security
www.theregister.com - Articles ·

'Computer History' records clicks and typing to build ChatGPT memories

Information Technology ai and ml
The Hacker News ·

A newly disclosed zero-day flaw in GeoServer is seeing active exploitation efforts, per watchTowr. The vulnerability, which has yet to be assigned a CVE identifier, is an SQL injection...

The Hacker News ·

Some weeks have one big security story. Others bring many smaller updates that are easy to miss but still matter. This week has plenty of them, covering cloud services, AI tools, malware, data...

Threats | CyberScoop ·

The “philosophical shift” that the memo authorizes raises legal, practical and moral questions, experts say. The post A bold new strategy or a dangerous precedent? Experts are divided on Trump’s...

Government Facilities Information Technology Cybercrime Geopolitics
Threats | CyberScoop ·

Cameron Curry stole corporate data and employee information, which he used to threaten the company as his six-month contract gig came to a close. He ultimately extorted the company for $7,540.92....

Scattered Spider Information Technology Cybercrime Cybersecurity
BleepingComputer ·

You're not alone if you just received an "Apple Threat Notification" saying it detected a "mercenary spyware attack targeted at your iPhone." [...]

Information Technology Communications Apple Security
The Hacker News ·

Afghan telecom providers and South Asian critical infrastructure organizations have emerged as the target of a new ongoing campaign that delivers a previously undocumented backdoor called...

Transparent Tribe Communications Information Technology
The Hacker News ·

Cybersecurity researchers have disclosed details of a new macOS-oriented, Rust-based information stealer called AmnesiaStealer that's capable of hijacking Chromium web browsers to steal session...

Information Technology
Cisco Talos Blog ·

In this edition of the Threat Source newsletter, William reflects on the “Make Hazel a Hacker” segment in Beers with Talos, and how cybersecurity is a field where questions can lead to multiple...

Information Technology Transportation Systems Threat Source newsletter
The Hacker News ·

A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) called SpyNote as part of...

Financial Services Information Technology
The Hacker News ·

Companies are used to thinking about attackers as outsiders trying to break in. North Korean IT workers flip that model. They apply for jobs, pass interviews, receive legitimate credentials, and...

Lazarus Group Government Facilities Information Technology
BleepingComputer ·

Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain access to bank accounts. [...]

Financial Services Information Technology Security
www.theregister.com - Articles ·

Contractors could surveil and disrupt foreign criminal networks, provided they follow strict rules and put up $1M

Government Facilities Information Technology security
www.theregister.com - Articles ·

SPONSORED FEATURE: Your M365 and Azure data might not be as safe as you think from ransomware; time for a reality check

Information Technology security