IM
IronMonkey Threat Research
LIVE
|
Articles 28,630
|
CVEs 366,119
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,598 articles — Page 23 of 954
Alerts and advisories ·

SAP security advisory – August 2026 monthly rollup (AV26-798)

Critical Manufacturing Information Technology
BleepingComputer ·

Today is Microsoft's August 2026 Patch Tuesday, and with it comes security updates for a massive 400 flaws, including one actively exploited and two publicly disclosed zero-day vulnerabilities. [...]

Information Technology Microsoft Security
Alerts and advisories ·

HashiCorp security advisory (AV26-797)

Information Technology
Tenable Blog ·

42Critical355Important1Moderate0LowMicrosoft addresses 398 CVEs in the eighth Patch Tuesday of 2026, with three zero-days, including one that was exploited in the wild.Microsoft patched 398 CVEs...

Information Technology
Kaspersky ICS CERT EN (English) ·
Advisories
BleepingComputer ·

Microsoft has released Windows 11 KB5121003 and KB5120240 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add new features. [...]

Information Technology Microsoft Software
www.theregister.com - Articles ·

Audit logs found no unexpected visitors, but release verification still needs an update

Information Technology security
Alerts and advisories ·

Grafana security advisory (AV26-796)

Information Technology
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.Adobe ColdFusion is a commercial rapid web application...

Information Technology
Security Latest ·

Researchers say it took fewer than 20 prompts for a public AI tool to find a flaw (now fixed) allowing anyone on a Zoom call to hijack another participants’ device.

Information Technology Communications Security Security / Cyberattacks and Hacks
Siemens ProductCERT Security Advisories ·

Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a new version...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for additional...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the application or...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file with the...

Critical Manufacturing
Siemens ProductCERT Security Advisories ·

Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in PAR, PSM or DFT format. This could allow an attacker...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the...

Critical Manufacturing
Siemens ProductCERT Security Advisories ·

A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a...

Critical Manufacturing Energy
Siemens ProductCERT Security Advisories ·

Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

SIMATIC IoT2050 Advanced devices running Industrial OS with Node-RED installed contain a missing authentication vulnerability in the Node-RED HTTP interface that could allow an unauthenticated...

Critical Manufacturing Energy
The Hacker News ·

Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by coming in over the private cellular network the local grid operator uses to...

Energy
Securelist ·

Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver the PhantomCore and PhantomGraph backdoors to target systems by exploiting...

Information Technology Targeted attacks Zero-day vulnerabilities
BleepingComputer ·

Global supply chain and distribution giant Wesco has confirmed in a statement for BleepingComputer that it is investigating a cybersecurity incident. [...]

Information Technology Commercial Facilities Security
SECURITY.COM ·

For the 99.9% of organizations bracing for an era of endless Zero Days, it’s time to act—and fast

Information Technology
SECURITY.COM ·

The goal isn’t patching faster. It’s making vulnerabilities irrelevant.

Information Technology
www.theregister.com - Articles ·

Researchers find standards-compliant functionality can be abused to hijack modems, downgrade connections, and even execute code

Information Technology Communications security
The Hacker News ·

Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily...

Information Technology
Schneier on Security ·

Interesting empirical research: “Black Box Warfare: Human Judgment and Military Decision-Making in the Age of AI.” Abstract: How is AI transforming decision-making in modern conflict? This study...

Defense Industrial Base Government Facilities Uncategorized academic papers
Securelist ·

Project CAV3RN targets Israel with Google Apps Script C2 relays and DNS-based routing. Modular .NET NativeAOT framework blends C2 traffic with legitimate Google services to evade detection.

Smoke Sandstorm Kimsuky Cloud Atlas Information Technology GReAT research Malware descriptions
Unit 42 ·

Discover how Kimwolf v7 targets Android IoT devices with HTTP/2 DDoS fingerprinting, Ethereum ENS C2 resolution and Tor backup routing. The post Kimwolf v7: An Evolution of the Kimwolf Botnet...

Information Technology Communications Malware Threat Research