IM
IronMonkey Threat Research
LIVE
|
Articles 28,713
|
CVEs 366,908
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,681 articles — Page 571 of 957
The Hacker News ·

Apple has disclosed that a now-patched security flaw present in its Messages app was actively exploited in the wild to target civil society members in sophisticated cyber attacks. The...

Transportation Systems
BleepingComputer ·

Hackers are hijacking expired or deleted Discord invite links to redirect users to malicious sites that deliver remote access trojans and information-stealing malware. [...]

Financial Services
Google Online Security Blog ·

Posted by Google GenAI Security TeamWith the rapid adoption of generative AI, a new wave of threats is emerging across the industry with the aim of manipulating the AI systems themselves. One such...

AI Security
infosecurity-magazine ·

This is the first forensic evidence that journalists’ devices have been infected with Paragon’s Graphite spyware

Scattered Spider Financial Services Information Technology
SOC Prime Blog ·

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert notifying about ransomware actors abusing unpatched vulnerabilities in SimpleHelp’s Remote Monitoring and Management...

Scattered Spider Fancy Bear Commercial Facilities Information Technology
Industrial Cyber ·

The European Commission announced Thursday it is allocating €145.5 million, or about US$170 million, to help public administrations... The post EU invests €145.5 million to strengthen...

Healthcare and Public Health Critical Manufacturing
Industrial Cyber ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published a cybersecurity advisory warning of ransomware hackers leveraging... The post CISA flags exploitation of SimpleHelp...

Critical Manufacturing Healthcare and Public Health
Industrial Cyber ·

Cyfirma researchers this week profiled MISSION2025, a Chinese state-sponsored threat group tied to APT41. Active since at least... The post MISSION2025 cyber campaign expands global targeting of...

Double Dragon Earth Baku Earth Longzhi Critical Manufacturing Communications
Industrial Cyber ·

Democratic members of the House Homeland Security Committee have asked the U.S. Government Accountability Office (GAO) to review... The post House Democrats call for GAO probe into CISA and NIST...

Critical Manufacturing Healthcare and Public Health
Unit 42 ·

Understand the mechanics of serverless authentication: three simulated attacks across major CSPs offer effective approaches for application developers. The post Serverless Tokens in the Cloud:...

Information Technology
infosecurity-magazine ·

A CISA advisory urged all software vendors and downstream customers to check if they are impacted by unpatched versions of the SimpleHelp RMM tool

Scattered Spider Financial Services Information Technology
Malpedia Library (Latest) ·

2025-06-06 • Seqrite • Sathwik Ram Prakki, Subhajeet Singha • win.vshell Open article on Malpedia

Communications
Malpedia Library (Latest) ·

2025-06-09 • Sentinel LABS • Aleksandar Milenkoski, Tom Hegel • elf.goreshell, elf.nimbo_c2, win.shadowpad Open article on Malpedia

BleepingComputer ·

Microsoft is investigating a known issue that triggers Secure Boot errors and prevents Surface Hub v1 devices from starting up. [...]

infosecurity-magazine ·

Researchers have found a flaw in Microsoft 365 Copilot that allows the exfiltration of sensitive corporate data with a simple email

Information Technology
Malpedia Library (Latest) ·

2025-06-10 • Check Point Research • Check Point Research Open article on Malpedia

Stealth Falcon
Tenable Blog ·

Check out NIST best practices for adopting a zero trust architecture. Plus, learn how OpenAI disrupted various attempts to abuse ChatGPT. In addition, find out what Tenable webinar attendees said...

Information Technology Energy
SOC Prime Blog ·

Linux Syscall Threat Detection in Splunk with Uncoder AI How It Works The detection logic here is built around monitoring use of the mknod syscall, which is rarely used in legitimate workflows but...

Fancy Bear Commercial Facilities Transportation Systems
BleepingComputer ·

Microsoft is investigating an ongoing incident that is causing users to experience errors with some Microsoft 365 authentication features. [...]

SOC Prime Blog ·

How It Works The Sigma rule shown is designed to detect Notepad opening files with names suggesting password storage, which may indicate unauthorized credential access or suspicious behavior on...

Fancy Bear Information Technology
SOC Prime Blog ·

Convert Sigma DNS Rules to Cortex XSIAM with Uncoder AI How It Works Uncoder AI reads a Sigma rule designed to detect DNS queries to malicious infrastructure used by Katz Stealer malware, and...

Fancy Bear Information Technology Transportation Systems
SOC Prime Blog ·

How It Works The showcased feature translates a Linux-based Sigma rule — specifically targeting the sysinfo system call — into Microsoft Sentinel KQL. This system call provides an attacker with...

Fancy Bear Information Technology
BleepingComputer ·

Victoria's Secret has restored all critical systems impacted by a May 24 security incident that forced it to shut down corporate systems and the e-commerce website. [...]

Scattered Spider Commercial Facilities
Have I Been Pwned latest breaches ·

In May 2025, the South American mobility services platform Ualabee had hundreds of thousands of records scraped from an interface on their platform. The data included 472k unique email addresses...

Financial Services
BleepingComputer ·

Cloudflare has confirmed that the massive service outage yesterday was not caused by a security incident and no data has been lost. [...]

Information Technology
Recorded Future ·

Insikt Group exposes GrayAlpha’s evolving infrastructure and infection methods—including PowerNet and MaskBat loaders, fake 7-Zip sites, and the undocumented TAG-124 network—linking the group to...

FIN7 GrayAlpha Commercial Facilities Communications
Automation.com - Industrial Cybersecurity, Networks, and Connectivity ·

Weidmuller Canada’s journey began in 1975, as Weidmuller Terminations Ltd., operating from a modest, warehouse-style office.

Energy Critical Manufacturing
The Hacker News ·

The threat actors behind the VexTrio Viper Traffic Distribution Service (TDS) have been linked to other TDS services like Help TDS and Disposable TDS, indicating that the sophisticated...

Information Technology Government Facilities
Krebs on Security ·

Late last year, security researchers made a startling discovery: Kremlin-backed disinformation campaigns were bypassing moderation on social media platforms by leveraging the same malicious...

Information Technology Communications
Sharp insights on cybersecurity ·

Google has issued a security update for Chrome desktop to address CVE-2025-5419, which has a CVSS score of 8.8. It is a critical zero-day flaw in the V8 JavaScript engine that is actively...