IM
IronMonkey Threat Research
LIVE
|
Articles 25,418
|
CVEs 337,764
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,386 articles — Page 240 of 847
The Register - Security ·

They also hallucinate when writing ransomware code Interview With everyone from would-be developers to six-year-old kids jumping on the vibe coding bandwagon, it shouldn't be surprising that...

Cisco Talos Blog ·

Talos assesses with high confidence that UAT-7290 is a sophisticated threat actor falling under the China-nexus of Advanced Persistent Threat actors (APTs). UAT-7290 primarily targets...

Purple Typhoon Communications Defense Industrial Base APT malware
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security flaws impacting Microsoft Office and Hewlett Packard Enterprise (HPE) OneView to its Known...

Financial Services Information Technology
WeLiveSecurity ·

Reusing passwords may feel like a harmless shortcut – until a single breach opens the door to multiple accounts

Commercial Facilities Financial Services Digital Security
The Register - Security ·

Company says it dropped the ball, apologizes for wasting people's time Logitech says an expired developer certificate is to blame after swaths of customers were left infuriated when their mice...

Communications
The Register - Security ·

Suggests rotten routing, not evidence of a cyber-strike before kinetic action Cloudflare has poured cold water on a theory that the USA’s incursion into Venezuela coincided with a cyberattack on...

Information Technology Communications
Threats | CyberScoop ·

Roughly 100,000 servers running the automated workflow platform for AI and other enterprise tools are potentially exposed to exploitation. The post Researchers rush to warn defenders of...

Energy Cybersecurity Research
The Hacker News ·

A cybercrime gang known as Black Cat has been attributed to a search engine optimization (SEO) poisoning campaign that employs fraudulent sites advertising popular software to trick users into...

Financial Services Emergency Services
The Register - Security ·

Prompt injection lets risky commands slip past guardrails IBM describes its coding agent thus: "Bob is your AI software development partner that understands your intent, repo, and security...

Security Latest ·

A WIRED review of outputs hosted on Grok’s official website shows it’s being used to create violent sexual images and videos, as well as content that includes apparent minors.

Critical Manufacturing Transportation Systems Security artificial intelligence
The Citizen Lab ·

About us: The Citizen Lab is a public-interest research group based at the Munk School of Global Affairs & Public Policy, University of Toronto, focused on investigating novel threats to...

News
The Hacker News ·

Cybersecurity researchers have disclosed details of yet another maximum-severity security flaw in n8n, a popular workflow automation platform, that allows an unauthenticated remote attacker to...

Financial Services Information Technology
The Register - Security ·

Two weeks, two major data leaks … not a good look for the European Space Agency exclusive The European Space Agency on Wednesday confirmed yet another massive security breach, and told The...

Communications Commercial Facilities
The Register - Security ·

pcTattletale boss Bryan Fleming faces up to 15 years in prison when sentenced later this year The US government has secured a guilty plea from a stalkerware maker in federal court, marking just...

The Hacker News ·

Security teams are still catching malware. The problem is what they're not catching. More attacks today don't arrive as files. They don't drop binaries. They don't trigger classic alerts. Instead,...

Information Technology Financial Services
The Hacker News ·

Open-source workflow automation platform n8n has warned of a maximum-severity security flaw that, if successfully exploited, could result in authenticated remote code execution (RCE). The...

Financial Services Information Technology
The Hacker News ·

Non-human employees are becoming the future of cybersecurity, and enterprises need to prepare accordingly. As organizations scale Artificial Intelligence (AI) and cloud automation, there is...

Information Technology Financial Services
The Hacker News ·

Veeam has released security updates to address multiple flaws in its Backup & Replication software, including a "critical" issue that could result in remote code execution (RCE). The...

Financial Services Information Technology
The Register - Security ·

Negative feedback sinks Redmond's plan to cap outbound email recipients Microsoft has backed away from planned changes to Exchange Online after customers objected to limits designed to curb...

The Hacker News ·

Threat actors engaging in phishing attacks are exploiting routing scenarios and misconfigured spoof protections to impersonate organizations' domains and distribute emails that appear as if they...

Financial Services Information Technology
Blue Team Archives - Black Hills Information Security, Inc. ·

Deceptive-Auditing is a tool that deploys Active Directory honeypots and automatically enables auditing for those honeypots. The post Deceptive-Auditing: An Active Directory Honeypots Tool...

Blue Team Tools How-To
Articles – Threat Beat ·

By 2026, the biggest threat to your organization may not be a stolen password, but a call from a CEO who isn’t actually there. As the U.S. government shifts toward a more aggressive, offensive...

Volt Typhoon Salt Typhoon Energy Defense Industrial Base News
Articles – Threat Beat ·

On Nov. 13, Anthropic announced it had disrupted the “first AI-orchestrated cyber espionage campaign,” conducted by Chinese cyber actors using its agentic Claude Code model. Discussed in depth at...

Volt Typhoon Defense Industrial Base Energy News
Articles – Threat Beat ·

At the onset of the Israel-Iran conflict, news websites warned the public of the possible collateral damage the Israel-Iran fight could generate in cyberspace. The ominous warnings about the...

Volt Typhoon Defense Industrial Base Energy News
Articles – Threat Beat ·

The Pentagon is looking to launch a new Enterprise Command and Control Program Office in a move that would consolidate and refresh its long-standing efforts to provide common operating panes and...

Volt Typhoon Defense Industrial Base Energy News
SECURITY.COM ·

Put your hands up if you’re ready for unified endpoint and network security

Information Technology Commercial Facilities
Articles – Threat Beat ·

In an unusually candid admission on Tuesday, the British government acknowledged that its years-long approach to its own cybersecurity was flawed and warned it will be impossible to meet a...

Volt Typhoon Defense Industrial Base Energy News
Articles – Threat Beat ·

President Donald Trump and Joint Chiefs Chair Gen. Dan Caine suggested that the U.S. used its cyber might to plunge Caracas into darkness during the capture of Venezuela’s leader Nicolás Maduro on...

Volt Typhoon Defense Industrial Base Energy News
The Register - Security ·

High-risk system compromised long before intrusion was finally spotted The UK's Ministry of Justice spent £50 million ($67 million) on cybersecurity improvements at the Legal Aid Agency (LAA)...

Financial Services
Schneier on Security ·

The New York City Wegman’s is collecting biometric information about customers.

Uncategorized biometrics