IM
IronMonkey Threat Research
LIVE
|
Articles 28,704
|
CVEs 366,691
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,672 articles — Page 22 of 956
SentinelLabs - We are hunters, reversers, exploit developers, and tinkerers shedding light on the world of malware, exploits, APTs, and cybercrime across all platforms. ·

OpenAI, Anthropic and Meta disclosed agents reaching external systems. The tools didn't matter, and that changes the playbook for investigating intrusions.

Information Technology Frontier AI LLM
Check Point Research ·

For the past year, the ransomware conversation has centered on concentration: a handful of dominant RaaS operations controlling most of the damage, and a shrinking pool of active groups fighting...

Information Technology Check Point Research Publications Ransomware
BleepingComputer ·

A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access. [...]

Information Technology Security
The Hacker News ·

Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040...

Information Technology
BleepingComputer ·

Hardware wallet manufacturer Trezor disclosed a data breach affecting nearly 14,000 of its customers after ShipMonk, its shipping provider and logistics partner, got hacked. [...]

Transportation Systems Critical Manufacturing Security
Schneier on Security ·

This essay was written with Nathan E. Sanders, and originally appeared in Tech Policy Press. AI represents the first time we humans can do cognitive work outside of our bodies at scale. The only...

Information Technology Government Facilities Uncategorized AI
Have I Been Pwned latest breaches ·

In July 2026, the cloud-based business communications platform RingCentral was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they claimed was...

Information Technology
Cisco Talos Blog ·

Cisco Talos recently identified an undocumented phishing framework, internally branded "JWR" by its developer, built to convincingly impersonate checkout and login pages across major payment and...

Financial Services Information Technology Threat Spotlight phishing
BleepingComputer ·

AI coding tools can introduce unvetted or hallucinated open source dependencies faster than traditional security reviews can keep pace. ActiveState explains why organizations should govern...

Information Technology Security
SECURITY.COM ·

China-based hackers-for-hire group is breaking into government ministries across the Middle East and Asia from the same control panel it uses to run an industrial-scale cryptocurrency fraud business.

Earth Alux Information Technology Financial Services
BleepingComputer ·

A new White House memo signed by U.S. President Donald Trump instructs the National Coordination Center (NCC) to establish a program that would allow private security companies to apply for...

Government Facilities Information Technology Security
Security Latest ·

Records obtained by WIRED detail hundreds of allegations of Customs and Border Protection workers misusing internal tools to look up romantic interests and track colleagues’ cell phones.

Government Facilities Security Security / Privacy
www.theregister.com - Articles ·

Developer spotted hostname and credential string lurking in autocomplete

Information Technology security
WeLiveSecurity ·

The incident involving OpenAI models shows that autonomous hacks make human oversight more important, not less

Business Security
Securelist ·

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.

Smoke Sandstorm Cloud Atlas ToddyCat Government Facilities GReAT research APT reports
BleepingComputer ·

WhatsApp has begun rolling out a new optional "Scam Alert" feature, which uses a local machine learning model to warn users when scammers are targeting them. [...]

Communications Information Technology Security
www.theregister.com - Articles ·

Attackers could extract data, even working from inside a guest VM

Information Technology Critical Manufacturing security
Recorded Future ·

Insikt Group analyzes 24 threat actors selling malware crypting services. Learn about their evasion techniques, market dynamics, and how defenders can prioritize behavioral detection over static analysis.

Information Technology Research (Insikt)
www.theregister.com - Articles ·

Some say the world will end in fire, some say an agentic swarm

Government Facilities Energy security
The Hacker News ·

The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen...

Lazarus Group Defense Industrial Base Information Technology
www.theregister.com - Articles ·

Eight years on, we're still paying to hide the future glimpsed during speculative execution

Information Technology Critical Manufacturing security
www.theregister.com - Articles ·

Exploit Wednesday's back, baby

Information Technology security
The Hacker News ·

A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route...

Information Technology Communications
BleepingComputer ·

An ongoing data theft campaign uses custom tools to steal data exposed to anonymous users through Salesforce Experience Cloud and ServiceNow customer portals. [...]

Information Technology Communications Security
BleepingComputer ·

A new Android NFC relay malware called WindRelay is being used alongside the SpyNote remote administration tool (RAT) to steal live card data and send it to attackers in real time. [...]

Financial Services Information Technology Security Mobile
Alerts and advisories ·

Fortinet security advisory (AV26-812)

Information Technology
Alerts and advisories ·

[Control Systems] Phoenix Contact security advisory (AV26-811)

Information Technology Critical Manufacturing
The Hacker News ·

A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including...

Information Technology
The Hacker News ·

Enterprise defenses are tuned to catch the attacks that make noise. This year's data shows attackers winning by making none. According to Picus Labs' new Blue Report 2026, which measured more than...

Information Technology
Threats | CyberScoop ·

Israeli cyber firm Dream said the framework adapted mid-operation, corrected its mistakes and expanded as it went along. The post Researchers observe first ‘near-autonomous’ AI attack on...

Government Facilities Information Technology AI Geopolitics