IM
IronMonkey Threat Research
LIVE
|
Articles 28,642
|
CVEs 366,199
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,612 articles — Page 31 of 954
The Hacker News ·

Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging...

Information Technology Communications
The Hacker News ·

Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence...

Information Technology
Security Latest ·

A lawsuit accuses Homeland Security of violating protesters’ free-speech rights—but the agency is using it to try to get access to the plaintiffs’ encrypted communications.

Government Facilities Information Technology Security Security / Privacy
The Hacker News ·

HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An...

Information Technology
Security Latest ·

Security researcher James Kettle tried to push the limit of AI’s hacking abilities—and discovered how effective it can be when combined with human expertise.

Information Technology Security Security / Cyberattacks and Hacks
The Hacker News ·

Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination...

Information Technology Financial Services
BleepingComputer ·

Maksim Silnikau, the creator and administrator of the Ransom Cartel ransomware operation, was sentenced to 16 years in prison for his role in ransomware attacks against at least 18 companies...

Information Technology Security
www.theregister.com - Articles ·

A critical Langflow flaw allowing RCE on default deployments is being exploited, says the CISA

Information Technology security
BleepingComputer ·

A Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing data from at least 165 organizations in a scheme to extort millions...

Information Technology Financial Services Security
Security Latest ·

Homeland Security told immigrants that leaving the US would wipe out fines it claims they owe. Now it wants private investigators to find them in their home countries and collect.

Government Facilities Security Security / Privacy
The Hacker News ·

A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with...

Information Technology
The Hacker News ·

Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on...

Information Technology Financial Services
The Hacker News ·

An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A...

Information Technology
Security Latest ·

More than 50 offending image and video ads were published across Facebook, Instagram, Messenger, or Threads, according to Meta’s ad library data. Some ran as recently as this week.

Information Technology Communications Security Security / Security News
The Hacker News ·

GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream...

Information Technology
BleepingComputer ·

Hackers exploited a SQL injection vulnerability to install a post-exploitation toolkit directly inside an Oracle database that was used to breach a corporate network. [...]

Information Technology Security
www.theregister.com - Articles ·

Met ordered to improve safeguards after two preventable data breaches

Government Facilities Communications security
LevelBlue SpiderLabs Blog ·

You are mid-engagement. Nmap finishes its sweep and port 9200 lights up on a host. Elasticsearch. You know it matters. You know the client's logging pipeline, search infrastructure, or analytics...

Information Technology Vulnerabilities Threat Intelligence
The Hacker News ·

A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the systems and development environments on...

Information Technology
BleepingComputer ·

A phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect...

Information Technology Financial Services Security
The Citizen Lab ·

Citizen Lab researchers write that restrictive immigration policies are incompatible with attempts to counter transnational repression. The post Immigration Policy: The Backdoor to Transnational...

Information Technology Government Facilities
The Hacker News ·

An agent running Anthropic's Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation by the UK's AI Security Institute. When...

Information Technology
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation...

Information Technology Government Facilities
www.theregister.com - Articles ·

Database backups likely stolen, potentially exposing donor, supporter, and service user details

Commercial Facilities security
The Record from Recorded Future News ·

An artificial intelligence agent built by Anthropic independently planted malicious code in a real software project and sent phishing emails to developers during a U.K. government security...

Laundry Bear Information Technology Government Facilities News Technology
Threats | CyberScoop ·

Oligo Security uncovered evidence of a long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools. The post Open-source software’s...

Information Technology Cybercrime Cybersecurity
BleepingComputer ·

The U.S. Cybersecurity and Infrastructure Security Agency is giving federal agencies three days to mitigate vulnerabilities in IBM Langflow, N-central, and Apache Tomcat, all actively exploited. [...]

Information Technology Government Facilities Security
The Hacker News ·

Cybersecurity researchers have disclosed what has been described as a "long-standing supply chain attack" on QuickFox, a virtual private network (VPN) and network acceleration tool designed for...

Mustang Panda Information Technology
BleepingComputer ·

Google has locked hundreds of Blogger websites after a false positive claimed they violated its "Malware and Similar Malicious Content" policy, with some sites deleted from the platform. [...]

Information Technology Google Security
BleepingComputer ·

AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains why browser-level, technique-based...

Information Technology Security