IM
IronMonkey Threat Research
LIVE
|
Articles 28,672
|
CVEs 366,425
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,640 articles — Page 40 of 955
Securelist ·

Kaspersky experts dissect GenieLocker: new custom ransomware variants for Windows, Linux, and ESXi systems. We found this family in attacks by Toy Ghouls, a financially motivated extortion group.

Smoke Sandstorm Kimsuky Cloud Atlas Malware descriptions Malware Technologies
Vulnerabilities – The Cyber Express ·

WordPress has released security updates to address the wp2shell vulnerability, a critical flaw that allowed attackers to achieve remote code execution (RCE) on vulnerable sites using a single...

Information Technology Firewall Daily Vulnerabilities
Recorded Future ·

Combat AI-generated extortion and fake ransomware leaks. Learn how organizations can verify data authenticity using robust governance and threat intelligence.

Blog
Recorded Future ·

Explore the 2026 US violent extremism threat landscape. This report analyzes rising risks from HVEs, DVEs, and Iran-nexus actors to public and private sector entities.

Government Facilities Research (Insikt)
The Hacker News ·

Ruby on Rails has released fixes for a critical Active Storage vulnerability that could let unauthenticated attackers read arbitrary files from application servers through crafted image uploads....

Information Technology
Threats | CyberScoop ·

Amazon's threat intelligence team traced domain records from the open-source software hack to a smaller, earlier compromise by the same North Korean group. The post A little-known npm package was...

Stardust Chollima Sapphire Sleet Information Technology Financial Services Threats Amazon
The Hacker News ·

Cybersecurity researchers have flagged a maximum-severity security flaw in Ruflo, an open-source agent meta-harness for Anthropic Claude Code and OpenAI Codex, that could result in unauthenticated...

Information Technology
The Hacker News ·

Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of which have been designated as critical in severity. The...

Information Technology
www.theregister.com - Articles ·

"I'm sorry, Dave. I'm afraid I can't do that" is an effective sales pitch for open source

Information Technology ai and ml
SECURITY.COM ·

How independent analyst validation reinforces Symantec SSE’s approach to Zero Trust security

Information Technology
BleepingComputer ·

The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated...

Reaper Void Blizzard Laundry Bear Information Technology Government Facilities Security
LevelBlue SpiderLabs Blog ·

You have almost certainly interacted with Elasticsearch today. The search bar on your company's internal wiki. The autocomplete on the e-commerce site where you ordered lunch. The log aggregation...

Information Technology Vulnerabilities Threat Intelligence
The Hacker News ·

A coordinated cyberattack targeted operational technology at more than 30 Minnesota community water systems on July 26 and 27, triggering a statewide cybersecurity response. Braham, Plymouth,...

Water Government Facilities
The Hacker News ·

Cybersecurity researchers have disclosed details of a large-scale fraud campaign that involves creating lookalike websites of major Russian companies with an aim to siphon funds from international...

Financial Services Information Technology
www.theregister.com - Articles ·

Researcher says months of coordination with Microsoft have yet to produce a robust mitigation

Information Technology Financial Services security
The Hacker News ·

AI is compressing exploit timelines. The real question isn't whether your vulnerability management playbook needs to change, it's which part of it you've been getting wrong all along. The...

Information Technology
The Hacker News ·

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, the bug provides...

Information Technology
The Record from Recorded Future News ·

The four additional targeted organizations weren’t named. OpenAI said they were not affected as severely as Hugging Face.

Kimsuky Laundry Bear Information Technology Cybercrime News
Schneier on Security ·

This essay was written with Barath Raghavan, and originally appeared in The Guardian. In July, Hugging Face, a company that hosts much of the world’s AI software and open-source AI models, was...

Information Technology Uncategorized AI
The Hacker News ·

Most organizations have incident response plans, security tools, and technical teams in place. Yet new research suggests that many still lack the coordination, visibility, and executive alignment...

The Hacker News ·

The Federal Security Service of the Russian Federation (FSB) on Wednesday said it charged Telegram founder Pavel Durov for allegedly facilitating terrorist activities and for failing to remove...

Information Technology Government Facilities
Threats | CyberScoop ·

Unknown attackers broke into 92 unique SonicWall user accounts with legitimate credentials, researchers said. The post Huntress warns about attack spree that hit 30 SonicWall customers in 2 days...

Information Technology Cybersecurity Research
CERT Polska ·

Two vulnerabilities (CVE-2026-66723 and CVE-2026-66724) were found in CERT.PL MWDB Core software.

Information Technology CVE vulnerability
www.theregister.com - Articles ·

More than 30 facilities disrupted in 'coordinated cyberattack,' though officials have yet to name a culprit

Water Government Facilities security
CERT Polska ·

Plaintext Storage of a Password vulnerability (CVE-2026-50641) has been found in Streamsoft Business Intelligence software.

Information Technology CVE vulnerability
Alerts and advisories ·

Adobe security advisory (AV26-756)

Information Technology
The Hacker News ·

Cybersecurity researchers have shared additional technical details about a recently patched critical security flaw impacting Check Point Security Management Server and Multi-Domain Security...

Information Technology
Wiz Blog | RSS feed ·

Fast gets even faster: redefining security for the AI era and doubling down on our multicloud commit

Information Technology
Blue Team Archives - Black Hills Information Security, Inc. ·

by Dan “Haircutfish” Rearden | haircutfish.com | Guest Author Working in the SOC can be a grind. Whether triaging alerts, escalating to clients, or just trying to understand why users […] The post...

Information Technology Blue Team Guest Author
CERT Polska ·

SQL Injection vulnerability (CVE-2026-33385) has been found in OpenSolution Quick.CMS software.

Information Technology CVE vulnerability