IM
IronMonkey Threat Research
LIVE
|
Articles 28,696
|
CVEs 366,691
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,669 articles — Page 334 of 956
The Register - Security ·

ACME validation had a challenge-request hole Cloudflare has fixed a flaw in its web application firewall (WAF) that allowed attackers to bypass security rules and directly access origin servers,...

Information Technology
The Citizen Lab ·

Chasing Shadows, the best-selling book by Citizen Lab director Ron Deibert, is now out in paperback form on the one-year anniversary of its launch. This edition includes a new afterword describing...

GitHub Security Lab Archives - The GitHub Blog ·

Learn how we are using the newly released GitHub Security Lab Taskflow Agent to triage categories of vulnerabilities in GitHub Actions and JavaScript projects. The post AI-supported vulnerability...

AI & ML Open Source
The Hacker News ·

A set of three security vulnerabilities has been disclosed in mcp-server-git, the official Git Model Context Protocol (MCP) server maintained by Anthropic, that could be exploited to read or...

Critical Manufacturing Financial Services
The Hacker News ·

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads, likely with the intent to deploy a remote access...

Critical Manufacturing Financial Services
Security Latest ·

Internal ICE planning documents propose spending up to $50 million on a privately run network capable of shipping immigrants in custody hundreds of miles across the Upper Midwest.

Energy Government Facilities Security Security / National Security
The Register - Security ·

AI + skilled malware developers = security threat VoidLink, the newly spotted Linux malware that targets victims' clouds with 37 evil plugins, was generated "almost entirely by artificial...

Information Technology
The Hacker News ·

The Problem: The Identities Left Behind As organizations grow and evolve, employees, contractors, services, and systems come and go - but their accounts often remain. These abandoned or “orphan”...

Critical Manufacturing Energy
Unit 42 ·

We've identified an aspect of Azure’s Private Endpoint architecture that could expose Azure resources to denial of service (DoS) attacks. The post DNS OverDoS: Are Private Endpoints Too Private?...

Information Technology Cloud Cybersecurity Research DNS
SECURITY.COM ·

Introducing new-era DLP with an eye for secure visibility

Information Technology Financial Services
The Hacker News ·

Cybersecurity researchers have disclosed details of a malware campaign that's targeting software developers with a new information stealer called Evelyn Stealer by weaponizing the Microsoft Visual...

Financial Services Information Technology
Tenable Blog ·

Oracle addresses 158 CVEs in its first quarterly update of 2026 with 337 patches, including 27 critical updates.Key takeaways:The first Critical Patch Update (CPU) for 2026, contains fixes for 158...

Information Technology Financial Services
The Hacker News ·

Cloudflare has addressed a security vulnerability impacting its Automatic Certificate Management Environment (ACME) validation logic that made it possible to bypass security controls and access...

Critical Manufacturing Information Technology
The Hacker News ·

Leaked API keys are no longer unusual, nor are the breaches that follow. So why are sensitive tokens still being so easily exposed? To find out, Intruder’s research team looked at what traditional...

Critical Manufacturing Financial Services
The Citizen Lab ·

Senior researcher Noura Aljizawi speaks with Nalah Ayed from CBC Ideas about her personal experience of returning to Syria to grieve for the first time in 13 years following the fall of the...

Tenable Blog ·

Tenable Research has discovered a server-side request forgery (SSRF) vulnerability in Java’s handling of client certificates during a TLS handshake. In certain configurations, this can be abused...

Information Technology Financial Services
Articles – Threat Beat ·

Picture this: You’re a utility executive. It’s August 2029. A heat wave grips 10% of the country, and your regional transmission organization is red-lining. Community concerns around rolling...

Information Technology Energy Insight
Articles – Threat Beat ·

The United States’ attack on Venezuela has raised questions about domestic checks on power and signaled a challenge to international law and longstanding norms of sovereignty and the use of force....

Energy Information Technology Insight
Articles – Threat Beat ·

Transport Canberra has launched a new investigation into its fleet of Chinese-made electric buses amid growing cybersecurity concerns. British media have reported that the UK’s National Cyber...

Energy Information Technology News
Articles – Threat Beat ·

Uptake by European Union member countries of a measure intended to beef up continental cybersecurity has hardly been enthusiastic. 15 months after EU nation-states were supposed to have...

Energy Information Technology News
Articles – Threat Beat ·

The Department of Homeland Security would need to follow stricter guidelines when using mobile biometric applications under legislation introduced Thursday by the ranking member of the...

Energy Information Technology News
Wiz Blog | RSS feed ·

The Wiz JetBrains IDE plugin is now generally available, enabling developers to fix risks before code leaves their local environment.

Information Technology Energy
The Register - Security ·

Update Chainlit to the latest version ASAP Two "easy-to-exploit" vulnerabilities in the popular open-source AI framework Chainlit put major enterprises' cloud environments at risk of leaking data...

Energy Financial Services
SentinelLabs - We are hunters, reversers, exploit developers, and tinkerers shedding light on the world of malware, exploits, APTs, and cybercrime across all platforms. ·

LLM cybersecurity benchmarks fail to measure what defenders need: faster detection, reduced containment time, and better decisions under pressure.

Energy Financial Services AI
FortiGuard Labs Threat Research ·

FortiGuard Labs analysis of a multi-stage Windows malware campaign that abuses trusted platforms to disable defenses, deploy RATs, and deliver ransomware.

Critical Manufacturing Financial Services
Articles – Threat Beat ·

A strange charge appears on a bank account. An email claims a package is on the way. A social media account stops accepting a password that worked yesterday. When these moments hit, many people do...

Energy Information Technology News
Articles – Threat Beat ·

AI poses substantial threats and opportunities for democracy in an important year ahead for global democracy. Despite the threats, AI technologies can also improve representative politics, citizen...

Energy Information Technology Insight
Articles – Threat Beat ·

Global LLM use is growing rapidly; site visits to major LLM platforms increased threefold from April 2024 to August 2025, rising from an estimated 2.4 billion to nearly 8.2 billion monthly visits....

Energy Information Technology Insight
Articles – Threat Beat ·

The UK’s National Cyber Security Centre (NCSC) is once again warning that pro-Russia hacktivists are a threat to critical services operators. The cyber arm of the UK’s sigint specialists at GCHQ...

Energy Information Technology News
Articles – Threat Beat ·

Cyberattacks cost the global economy over £7 trillion a year — more than double the UK’s gross domestic product. The annual hit to the country alone is £27 billion. But one prediction that can be...

Energy Information Technology Insight