IM
IronMonkey Threat Research
LIVE
|
Articles 25,421
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,389 articles — Page 350 of 847
BleepingComputer ·

Harvard University is investigating a data breach after the Clop ransomware gang listed the school on its data leak site, saying the alleged breach was likely caused by a recently disclosed...

Security
The Hacker News ·

Oracle on Saturday issued a security alert warning of a fresh security flaw impacting its E-Business Suite that it said could allow unauthorized access to sensitive data. The vulnerability,...

Energy
DataBreaches.Net ·

After days of endlessly urging Salesforce or companies to pay them so that their data would not be leaked, the deadline for Salesforce to pay came and went. And as it went, ScatteredLAPSUS$Hunters...

Information Technology Financial Services Breach Incidents Business Sector
BleepingComputer ·

An ongoing smishing campaign is targeting New Yorkers with text messages posing as the Department of Taxation and Finance, claiming to offer "Inflation Refunds" in an attempt to steal victims'...

Financial Services Security
The Hacker News ·

Cybersecurity company Huntress on Friday warned of "widespread compromise" of SonicWall SSL VPN devices to access multiple customer environments. "Threat actors are authenticating into multiple...

Information Technology Energy
DataBreaches.Net ·

In November 2021, when “g0retrance” defaced the website of the Massachusetts Interscholastic Athletic Association (MIAA) with a message saying “PWNED,” the hacker, who also used the moniker...

Government Facilities Communications Breach Incidents Business Sector
The Hacker News ·

Threat actors are abusing Velociraptor, an open-source digital forensics and incident response (DFIR) tool, in connection with ransomware attacks likely orchestrated by Storm-2603 (aka CL-CRI-1040...

Energy
DataBreaches.Net ·

Harvey Cashore, Eva Uguen-Csenge, and Mark Kelley report: Kelowna nurse Ashley Stone sits down at her kitchen table, opens a bulky blue folder containing a paper trail of 10 years of multiple...

Scattered Spider Healthcare and Public Health Government Facilities Government Sector Health Data
Security Latest ·

Plus: US government cybersecurity staffers get reassigned to do immigration work, a hack exposes sensitive age-verification data of Discord users, and more.

Scattered Spider Government Facilities Information Technology Security Security / Cyberattacks and Hacks
BleepingComputer ·

Spanish Guardia Civil have dismantled the "GXC Team" cybercrime syndicate and arrested its alleged leader, a 25-year-old Brazilian known as "GoogleXcoder." [...]

Financial Services Security Legal
Have I Been Pwned latest breaches ·

In October 2025, data stolen from the Salesforce instances of multiple companies by a hacking group calling itself "Scattered LAPSUS$ Hunters" was publicly released. Among the affected...

Transportation Systems Financial Services
DataBreaches.Net ·

On December 8, 2024, DataBreaches reported that Watsonville Community Hospital in California was continuing to respond to what they referred to as a cyberattack on November 29. No gang had claimed...

Healthcare and Public Health Government Facilities Breach Incidents Health Data
DataBreaches.Net ·

IT Security News reports: Telstra, one of Australia’s leading telecommunications companies, has denied claims made by the hacker group Scattered Spider that it suffered a massive data breach...

Scattered Spider Healthcare and Public Health Financial Services Business Sector Hack
Schneier on Security ·

Video. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy.

Defense Industrial Base Commercial Facilities Uncategorized squid
The Hacker News ·

Cybersecurity researchers have disclosed details of an active malware campaign called Stealit that has leveraged Node.js' Single Executable Application (SEA) feature as a way to distribute its...

Chromium Energy Financial Services
Threats | CyberScoop ·

The spyware poses as popular apps like TikTok, and may break free of Russian borders at some point, the researchers say. The post Russian spyware ClayRat is spreading, evolving quickly, according...

CIA Communications Geopolitics Threats
The Hacker News ·

A threat actor known as Storm-2657 has been observed hijacking employee accounts with the end goal of diverting salary payments to attacker-controlled accounts. "Storm-2657 is actively targeting a...

Information Technology Financial Services
The Hacker News ·

Fortra on Thursday revealed the results of its investigation into CVE-2025-10035, a critical security flaw in GoAnywhere Managed File Transfer (MFT) that's assessed to have come under active...

Energy
The Hacker News ·

The SOC of 2026 will no longer be a human-only battlefield. As organizations scale and threats evolve in sophistication and velocity, a new generation of AI-powered agents is reshaping how...

Lead Energy Nuclear
The Hacker News ·

Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign. The...

Safe Energy Information Technology
Threat Research – Sophos News ·

Counter Threat Unit™ (CTU) researchers are investigating multiple incidents in an ongoing campaign targeting users of the WhatsApp messaging platform. The campaign, which started on September 29,...

Financial Services Threat Research Brazil
Cybersecurity Blog | SentinelOne ·

Teens arrested for doxing children, Crimson Collective steals cloud data to extort victims, 5.5M Discord accounts face public leak threat.

Information Technology Government Facilities Company cyber
BleepingComputer ·

Microsoft has reminded customers again today that systems running Home and Pro editions of Windows 11 23H2 will stop receiving security updates next month. [...]

Transportation Systems Microsoft
BleepingComputer ·

Threat actors are exploiting a zero-day vulnerability (CVE-2025-11371) in Gladinet CentreStack and Triofox products, which allows a local attacker to access system files without authentication. [...]

Security
The Hacker News ·

Cybersecurity company Huntress said it has observed active in-the-wild exploitation of an unpatched security flaw impacting Gladinet CentreStack and TrioFox products. The zero-day vulnerability,...

Energy
BleepingComputer ·

In today's hyper-connected world, cyber threats are more sophisticated and frequent than ever - ransomware, data breaches, and social engineering scams, targeting everyone from individuals to...

Communications Security
BleepingComputer ·

Google is updating the Chrome web browser to automatically revoke notification permissions for websites that haven't been visited recently, to reduce alert overload. [...]

Google
FortiGuard Labs Threat Research ·

A new Stealit campaign uses Node.js Single Executable Application (SEA) to deliver obfuscated malware. FortiGuard Labs details tactics and defenses. Learn more.

Chromium Financial Services Transportation Systems
BleepingComputer ·

Apple is announcing a major expansion and redesign of its bug bounty program, doubling maximum payouts, adding new research categories, and introducing a more transparent reward structure. [...]

Communications Transportation Systems Security
The Hacker News ·

Dozens of organizations may have been impacted following the zero-day exploitation of a security flaw in Oracle's E-Business Suite (EBS) software since August 9, 2025, Google Threat Intelligence...

Graceful Spider FIN11 Energy Financial Services