IM
IronMonkey Threat Research
LIVE
|
Articles 28,672
|
CVEs 366,632
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,640 articles — Page 366 of 955
LevelBlue SpiderLabs Blog ·

Key Findings:

Energy Critical Manufacturing Emerging Threats Vulnerabilities
[DO NOT USE] SpiderLabs Blog ·

LevelBlue SpiderLabs is the threat intelligence unit of LevelBlue and includes a global team of threat researchers and data scientists who, combined with proprietary technology in data analytics...

Energy Critical Manufacturing News Vulnerabilities
Threat Intelligence ·

Written by: Aragorn Tseng, Robert Weiner, Casey Charrier, Zander Work, Genevieve Stark, Austin Larsen Introduction On Dec. 3, 2025, a critical unauthenticated remote code execution (RCE)...

Earth Lamia Financial Services Information Technology Threat Intelligence
Articles – Threat Beat ·

The Trump administration is seeking to challenge state laws regulating the artificial intelligence industry, according to an executive order the president signed on Thursday, The order directs the...

Government Facilities Transportation Systems News
Articles – Threat Beat ·

A bipartisan pair of House lawmakers plan to introduce legislation Wednesday that would require federal agencies and officials to label any AI-generated content published in official government...

Government Facilities Transportation Systems News
Articles – Threat Beat ·

NASA has lost contact with one of its three spacecraft orbiting Mars, the agency announced Tuesday. Meanwhile, a second Mars orbiter is perilously close to running out of fuel, and the third...

Government Facilities Transportation Systems News
The Register - Security ·

Critical vulnerabilities found in third-party applications eligible for award under 'in scope by default' move Microsoft is overhauling its bug bounty program to reward exploit hunters for finding...

Information Technology
Articles – Threat Beat ·

A cyberattack that forced Russia’s flagship airline to cancel dozens of flights this summer was linked to a little-known Moscow software developer that had maintained access to the carrier’s...

Transportation Systems Government Facilities News
Articles – Threat Beat ·

In the darkness of night on November 15, a massive explosion ripped through a stretch of the Warsaw-Lublin railway line close to Mika, Poland, severing a critical logistics route used to ship...

Transportation Systems Government Facilities News
The Register - Security ·

Justice Department alleges federal auditors were misled over compliance with FedRAMP and DoD requirements The US is suing a former senior manager at Accenture for allegedly misleading the...

Defense Industrial Base Information Technology
Articles – Threat Beat ·

The fusion of legitimate state power and organized criminal activity in the maritime domain creates a potent blend of hybrid threat activity and irregular warfare challenges that is as dangerous...

Transportation Systems Government Facilities News
The Register - Security ·

Rights groups say digital-only record is leaking data and courting trouble Civil society groups are urging the UK's data watchdog to investigate whether the Home Office's digital-only eVisa scheme...

Schneier on Security ·

The promise of personal AI assistants rests on a dangerous assumption: that we can trust systems we haven’t made trustworthy. We can’t. And today’s versions are failing us in predictable ways:...

Financial Services Uncategorized AI
The Register - Security ·

Wiz says React2Shell attacks accelerating, ranging from cryptominers to state-linked crews Half of the internet-facing systems vulnerable to a fast-moving React remote code execution flaw remain...

FalconForce - Medium ·

In the first blog of this series, we covered all the foundational concepts of detection engineering maintenance. Although that post leaned heavily on theory, it provided the solid groundwork...

Nuclear Energy security-operation-center detection-engineering
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting OSGeo GeoServer to its Known Exploited Vulnerabilities (KEV) catalog,...

Silver Fox Information Technology Financial Services
Project Zero ·

Posted by Benoît Sevens, Google Threat Intelligence GroupIntroductionBetween July 2024 and February 2025, 6 suspicious image files were uploaded to VirusTotal. Thanks to a lead from Meta, these...

Critical Manufacturing
Securelist ·

Kaspersky experts detail the journey of the victims' data after a phishing attack. We break down the use of email-based phishing kits, Telegram bots, and customized administration panels.

ToddyCat Hacking Team Financial Services Critical Manufacturing Research Spam and phishing
Tenable Blog ·

Check out the most critical threats to agentic AI applications, and then dive into the worst software weaknesses of 2025. Plus, learn about pro-Russia hacktivists’ attacks against critical...

Critical Manufacturing Information Technology
:: Orange Cyberdefense :: on Orange Cyberdefense ·

ok.. so im in my room finally catching up on sleep (or will be in a few minutes) while most people are finishing Microsofts booze at the PURE microsoft party.. BlackHat is over, which means...

:: Orange Cyberdefense :: on Orange Cyberdefense ·

Hey guys.. Our BlackHat/Defcon talk this year featured a few tools that we promised to release.. The first tool, or set of tools is reDuh which can be found [here]. reDuh is made up of 2 parts, a...

Orange Cyberdefense ·

This has probably been pondered, but something occurred to me whilst entering my new home.. The guard house grants access based on your fingerprint. The system works pretty sweetly.. Now.. because...

Financial Services
Orange Cyberdefense ·

Ok.. so we have an outside gate type thing that leads to our garden. Since we would probably get to the gate at random points of the day / week we figured a combination lock would make sense. Now...

Orange Cyberdefense ·

Ok.. so after many moons of making excuses for not making our internal blog public we have decided on a happy compromise.. Some of the “work-safe” posts from internal, will make its way out here.....

Orange Cyberdefense ·

Aaron Adams over at SYMANTEC, did a quick check on the version of Samba running on currently up to date OSX machines and found that the Macs were still running 3.0.10. He did a quick mod on the...

Orange Cyberdefense ·

[Yahoo pipes] looks like an awesome way for even non-programmers to create web mashups trivially. Aside from the fact that its interface is super-cool, it brings an interesting dimension to next...

Orange Cyberdefense ·

Ars Technica is reporting on the law suit filed in 2006 by Martin Bragg who accused Linden labs of wrongfully seizing his virtual land. -snip- Linden Lab filed two motions to dismiss the suit,...

Orange Cyberdefense ·

Jeremiah from WhiteHatSec has just written a quick piece on how to find your websites. Now Footprinting is obviously dear to our hearts, with 3 Blackhat talks on it (or applications of it)...

Communications
Orange Cyberdefense ·

Check out http://hongkong.langhamplacehotels.com/accom/technology.htm in Hong Kong. They provide Cisco IP phones in the rooms, but with a difference. According to an article I read in TIME the...

Commercial Facilities
Orange Cyberdefense ·

Scheduled tasks and services are often run as accounts with excessive privileges (HP Insight, backups etc) instead of limited service accounts. By exploring the tasks under c:\windows\tasks or the...