IM
IronMonkey Threat Research
LIVE
|
Articles 28,662
|
CVEs 366,425
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,632 articles — Page 433 of 955
The Record from Recorded Future News ·

Earlier in its European Council presidency, Denmark had brought back a draft law which would have required scanning of electronic messages, sparking an intense backlash.

Cloud Atlas Food and Agriculture Defense Industrial Base Government News
BleepingComputer ·

OpenAI confirmed that it shipped an update on October 5, which allows GPT-5 to better handle sensitive conversations, especially when a user is experiencing emotional or mental distress. [...]

Artificial Intelligence Technology
Cisco Talos Blog ·

Thor gets into the Halloween spirit, sharing new CVE trends, a “treat” for European Windows 10 users, and a reminder that patching is your best defense against zombie vulnerabilities.

CIA Hacking Team Government Facilities Threat Source newsletter
Threat Research – Sophos News ·

The threat group targeted a LANSCOPE zero-day vulnerability (CVE-2025-61932)

Bronze Butler Tick Threat Research BRONZE BUTLER
The Hacker News ·

Security doesn’t fail at the point of breach. It fails at the point of impact. That line set the tone for this year’s Picus Breach and Simulation (BAS) Summit, where researchers, practitioners,...

Energy Financial Services
The Citizen Lab ·

In many countries, laws against cybercrime are being weaponized to repress journalism. Speaking to the Columbia Journalism Review, Citizen Lab doctoral fellow Gabrielle Lim warns that democratic...

In the Media misinformation
Security Latest ·

A new ICE proposal outlines a 24/7 transport operation run by armed contractors—turning Texas into the logistical backbone of an industrialized deportation machine.

Transportation Systems Energy Security Security / National Security
The Register - Security ·

Windows Desktop installer also fixed after DLL hijack flaw rated 8.8 severity Docker Compose users are being strongly urged to upgrade their versions of the orchestration tool after a researcher...

Energy
The Hacker News ·

The comfort zone in cybersecurity is gone. Attackers are scaling down, focusing tighter, and squeezing more value from fewer, high-impact targets. At the same time, defenders face growing blind...

Cloud Atlas Energy Information Technology
The Record from Recorded Future News ·

Available on GitHub and promoted to professional penetration testers, the tool AdaptixC2 has been used to spread loader malware associated with Russian ransomware groups, researchers said.

Cloud Atlas Food and Agriculture Malware News
Spam – Graham Cluley ·

The UK Information Commissioner’s Office (ICO) has levied a fine of £200,000 against a sole trader who sent almost one million spam text messages to people across the country - many of whom were...

Energy Guest blog Law & order
BleepingComputer ·

Near-Field Communication (NFC) relay malware has grown massively popular in Eastern Europe, with researchers discovering over 760 malicious Android apps using the technique to steal people's...

Financial Services Energy Security Mobile
BleepingComputer ·

CISA has ordered federal agencies to patch a high-severity vulnerability in Broadcom's VMware Aria Operations and VMware Tools software, exploited by Chinese hackers since October 2024. [...]

Government Facilities Defense Industrial Base Security
The Hacker News ·

Cybersecurity researchers have uncovered yet another active software supply chain attack campaign targeting the npm registry with over 100 malicious packages that can steal authentication tokens,...

Critical Manufacturing Energy
BleepingComputer ·

Ribbon Communications, a provider of telecommunications services to the U.S. government and telecom companies worldwide, revealed that nation-state hackers breached its IT network as early as...

Salt Typhoon Communications Information Technology Security
The Citizen Lab ·

Canada’s Bill C-8 (formerly Bill C-26) is proposed cybersecurity legislation that would introduce broad information collection and sharing powers, including the warrantless collection of...

Emergency Services Communications News Transparency and Accountability
FortiGuard Labs Threat Research ·

FortiGuard IR analysis of H1 2025 shows financially motivated actors increasingly abusing valid accounts and legitimate remote access tools to bypass detection, emphasizing the need for...

Dams Financial Services
BleepingComputer ·

American business services giant Conduent has confirmed that a 2024 data breach has impacted over 10.5 million people, according to notifications filed with the US Attorney General's offices. [...]

Safe Healthcare and Public Health Financial Services Security
Cloud Threat Landscape ·

On 2010-01-12, an incident was reported, involving Storm-0558, gaining initial access via Unknown, to achieve Data exfiltration.

Cloud Threat Landscape ·

On 2011-08-31, an incident was reported, involving an unknown actor, gaining initial access via Unknown, to achieve Supply chain attack.

Critical Manufacturing
Cloud Threat Landscape ·

On 2013-05-07, a campaign was reported, involving an unknown actor, gaining initial access via Unknown, targeting Apache HTTP Server, NGINX, Lighttpd to achieve Resource hijacking. The following...

Cloud Threat Landscape ·

On 2014-03-18, a campaign was reported, involving Windigo operator, gaining initial access via Supply chain vector, while using Create SSH backdoor, to achieve Resource hijacking. The following...

Cloud Threat Landscape ·

On November 9, 2014, BrowserStack suffered a breach when a hacker accessed an old, unpatched prototype server via the shellshock vulnerability. The server contained AWS credentials, allowing the...

Financial Services
Cloud Threat Landscape ·

The Los Angeles Times website was covertly mining cryptocurrency on visitors' devices after hackers injected CoinHive's Monero-mining code. This happened due to an unprotected Amazon S3 storage...

Financial Services
Cloud Threat Landscape ·

On 2018-04-09, a research was reported, involving , gaining initial access via 1-day vulnerability, while using SSRF, IMDS abuse, targeting Confluence Server, Jira Server to achieve Resp. disclosure.

Defense Industrial Base
Cloud Threat Landscape ·

On 2018-09-12, a campaign was reported, involving an unknown actor, gaining initial access via 1-day vulnerability, targeting Redis, Apache CouchDB, Docker, Jenkins, Drupal, MODX to achieve...

Cloud Threat Landscape ·

An unknown threat actor compromised the Webmin build server, and inserted a backdoor RCE vulnerability into the Webmin source code that anyone could exploit if they were aware of its existence....

Critical Manufacturing
Cloud Threat Landscape ·

On 2019-10-16, a campaign was reported, involving an unknown actor, gaining initial access via Software misconfig, targeting Docker to achieve Resource hijacking. The following tools were...

Security Latest ·

The X-59 successfully completed its inaugural flight—a step toward developing quieter supersonic jets that could one day fly customers more than twice as fast as commercial airliners.

Transportation Systems Critical Manufacturing Science Security
The Register - Security ·

PhantomRaven slipped over a hundred credential-stealing packages into npm A new supply chain attack dubbed PhantomRaven has flooded the npm registry with malicious packages that steal credentials,...

Critical Manufacturing Information Technology