IM
IronMonkey Threat Research
LIVE
|
Articles 28,665
|
CVEs 366,425
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,637 articles — Page 441 of 955
eCrime.ch Ransomware News | RSS ·

The new guidance helps organisations spot weaknesses in their supply chain before criminals do – setting out clear practical steps to check the security of key suppliers and safeguard against...

Commercial Facilities Financial Services
The Register - Security ·

Allows surveillance and cross-border evidence sharing, which worries human rights groups The United Nations on Saturday staged a signing ceremony for the Convention against Cybercrime, the world’s...

Commercial Facilities Communications
Securelist ·

Kaspersky researchers discovered previously unidentified commercial Dante spyware developed by Memento Labs (formerly Hacking Team) and linked it to the ForumTroll APT attacks.

Operation Triangulation Mysterious Elephant Hacking Team Critical Manufacturing Financial Services APT reports Malware Technologies
Have I Been Pwned latest breaches ·

In October 2025, the data of almost 4M MyVidster users was posted to a public hacking forum. Separate to the 2015 breach, this incident exposed usernames, email addresses and in a small number of...

Financial Services
Cisco Talos Blog ·

Cisco Talos investigated the Qilin ransomware group, uncovering its frequent attacks on the manufacturing sector, use of legitimate tools for credential theft and data exfiltration, and...

Critical Manufacturing Energy Threats
The Register - Security ·

PLUS: Judge spanks NSO; Mozilla requires data use disclosures; TARmageddon meets Rust; And more! Infosec In Brief Former basketball star Shaquille O'Neal is 7'1" (215 cm), and therefore uses car...

Commercial Facilities Critical Manufacturing
BleepingComputer ·

Attackers are using the open-source red-team tool RedTiger to build an infostealer that collects Discord account data and payment information. [...]

Financial Services Security
BleepingComputer ·

A new phishing technique dubbed 'CoPhish' weaponizes Microsoft Copilot Studio agents to deliver fraudulent OAuth consent requests via legitimate and trusted Microsoft domains. [...]

Security Artificial Intelligence
Security Latest ·

Plus: The Jaguar Land Rover hack sets an expensive new record, OpenAI’s new Atlas browser raises security fears, Starlink cuts off scam compounds, and more.

Nuclear Information Technology Security Security / Cyberattacks and Hacks
The Register - Security ·

Committee says Apple, Google, and Samsung could render stolen handsets worthless if compelled to act The UK's Home Secretary should use her powers to push the tech industry to deploy stronger...

Critical Manufacturing Information Technology
The Hacker News ·

The threat actors behind a large-scale, ongoing smishing campaign have been attributed to more than 194,000 malicious domains since January 1, 2024, targeting a broad range of services across the...

Financial Services Transportation Systems
Security Latest ·

US border patrol is asking companies to submit plans to turn standard 4x4 trucks into AI-powered watchtowers—combining radar, cameras, and autonomous tracking to extend surveillance on demand.

Defense Industrial Base Communications Security Security / National Security
The Hacker News ·

Microsoft on Thursday released out-of-band security updates to patch a critical-severity Windows Server Update Service (WSUS) vulnerability with a proof-of-concept (Poc) exploit publicly available...

Energy Information Technology
Wiz Blog | RSS feed ·

Bridge the gap between Platform and Security teams with unified inventory and network visibility across Kubernetes clusters.

Chemical Transportation Systems
Schneier on Security ·

There is a new cigar named “El Pulpo The Squid.” Yes, that means “The Octopus The Squid.” As usual, you can also use this squid post to talk about the security stories in the news that I haven’t...

Uncategorized squid
The Hacker News ·

A Pakistan-nexus threat actor has been observed targeting Indian government entities as part of spear-phishing attacks designed to deliver a Golang-based malware known as DeskRAT. The activity,...

Origami Elephant Mysterious Elephant Transparent Tribe Transportation Systems Defense Industrial Base
The Register - Security ·

Redmond says it's fixed this particular indirect prompt injection vuln updated Microsoft fixed a security hole in Microsoft 365 Copilot that allowed attackers to trick the AI assistant into...

The Record from Recorded Future News ·

House Oversight Committee Chairman James Comer wants the developer of the controversial dating-safety app TeaOnHer to explain if its privacy and content moderation practices adhere to federal law.

Food and Agriculture Technology Government
The Hacker News ·

Does your organization suffer from a cybersecurity perception gap? Findings from the Bitdefender 2025 Cybersecurity Assessment suggest the answer is probably “yes” — and many leaders may not even...

Energy Information Technology
Cybersecurity Blog | SentinelOne ·

Europol disrupts SIM-box fraudsters, Jingle Thief exploits cloud identities for gift card theft, and PhantomCaptcha targets Ukrainian NGOs.

Star Blizzard Government Facilities Commercial Facilities Company cyber
The Hacker News ·

A malicious network of YouTube accounts has been observed publishing and promoting videos that lead to malware downloads, essentially abusing the popularity and trust associated with the video...

Energy Information Technology
BleepingComputer ·

A widespread exploitation campaign is targeting WordPress websites with GutenKit and Hunk Companion plugins vulnerable to critical-severity, old security issues that can be used to achieve remote...

Security
Cyber Security Advisories - MS-ISAC ·

A vulnerability has been discovered in Microsoft Windows Server Update Services (WSUS) which could allow for remote code execution. WSUS is a tool that helps organizations manage and distribute...

Communications Information Technology
Cyble ·

Despite major changes in the leading ransomware groups, ransomware attacks have surged 50% in 2025, as cybercriminals have proven adept at finding new opportunities and exploiting vulnerabilities....

Safe Financial Services Healthcare and Public Health Threat Intelligence Threat Landscape Reports
Broadcom Software Blogs ·

The next cybersecurity arms race is already here, but it's not too late to get a head start

Information Technology Healthcare and Public Health
Blogs on Information Technology, Network & Cybersecurity | Seqrite ·

Introduction In August 2025, a Telegram channel named “Scattered LAPSUS$ Hunters” surfaced, linking itself to notorious cybercrime groups: Scattered Spider, ShinyHunters, and LAPSUS$. The group...

Scattered Spider ShinyHunters Commercial Facilities Financial Services Technical
The Hacker News ·

Cybersecurity researchers have discovered a self-propagating worm that spreads via Visual Studio Code (VS Code) extensions on the Open VSX Registry and the Microsoft Extension Marketplace,...

Critical Manufacturing Energy
BleepingComputer ·

Attackers are now exploiting a critical-severity Windows Server Update Service (WSUS) vulnerability, which already has publicly available proof-of-concept exploit code. [...]

Government Facilities Security Microsoft
The Register - Security ·

You didn't have plans, did you? Microsoft has released an out-of-band update to patch a critical vulnerability in Windows Server Update Services (WSUS).…

Financial Services
CERT Polska ·

SQL Injection vulnerability (CVE-2025-8536) has been found in Studio Fabryka DobryCMS software.

CVE vulnerability