IM
IronMonkey Threat Research
LIVE
|
Articles 28,672
|
CVEs 366,632
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 28,640 articles — Page 700 of 955
Lumen Blog ·

“We applaud Chairman Carr’s leadership in advancing common-sense regulatory reform. Modernizing these outdated rules will allow for greater investment in critical network infrastructure, ensuring...

Financial Services Commercial Facilities
CERT Polska ·

Incorrect Privilege Assignment vulnerability (CVE-2025-2098) has been found in Fast CAD Reader (Beijing Honghu Yuntu Technology) application.

CVE vulnerability
The Hacker News ·

When people think of cybersecurity threats, they often picture external hackers breaking into networks. However, some of the most damaging breaches stem from within organizations. Whether through...

Financial Services Healthcare and Public Health
SOC Prime Blog ·

APT groups from China were ranked among the top global cyber threats alongside North Korea, russia, and Iran, showcasing heightened offensive capabilities and posing significant challenges to the...

Earth Kasha MirrorFace Communications Transportation Systems
The Record from Recorded Future News ·

Colin Ahern sat down with Recorded Future News earlier this year to discuss New York’s efforts to protect local governments from ransomware and more.

Financial Services Government Facilities
Broadcom Software Blogs ·

AI tools will be used in your work—here’s how to make them safe

Financial Services Government Facilities
ASEC ·

ASEC Blog publishes Ransom & Dark Web Issues Week 4, March 2025 * New ransomware group Arkana Security claims attack on a US telecommunications company. * New ransomware group Frag claims attacks...

ASEC ·

Overview Mark of the Web (MoTW) is a Windows feature that identifies files downloaded from the Internet and displays a security warning, as well as restricts the files to be executed with a...

Malpedia Library (Latest) ·

2025-03-15 • Github (TheRavenFile) • Rakesh Krishnan • py.anubisbackdoor Open article on Malpedia

WeLiveSecurity ·

ESET researchers discover new ties between affiliates of RansomHub and of rival gangs Medusa, BianLian, and Play

Critical Manufacturing Healthcare and Public Health
WeLiveSecurity ·

ESET researchers uncover the toolset used by the FamousSparrow APT group, including two undocumented versions of the group’s signature backdoor, SparrowDoor

Salt Typhoon FamousSparrow Earth Estries Financial Services Commercial Facilities
BleepingComputer ·

Cloud-based streaming company StreamElements confirms it suffered a data breach at a third-party service provider after a threat actor leaked samples of stolen data on a hacking forum. [...]

The Hacker News ·

Threat actors are leveraging an e-crime tool called Atlantis AIO Multi-Checker to automate credential stuffing attacks, according to findings from Abnormal Security. Atlantis AIO "has emerged as a...

Financial Services Critical Manufacturing
Malpedia Library (Latest) ·

2025-03-17 • Cloudflare • Cloudflare • elf.blackbasta, win.blackbasta Open article on Malpedia

infosecurity-magazine ·

Threat actors are exploiting cloud platforms like Adobe and Dropbox to evade email gateways and steal credentials

Salt Typhoon Information Technology Financial Services
Malpedia Library (Latest) ·

2025-03-25 • SpyCloud • James • win.ghostsocks Open article on Malpedia

BleepingComputer ·

A new cybercrime platform named 'Atlantis AIO' provides an automated credential stuffing service against 140 online platforms, including email services, e-commerce sites, banks, and VPNs. [...]

Commercial Facilities Financial Services
infosecurity-magazine ·

A newly discovered malware campaign uses malicious npm packages to deploy reverse shells, compromising development environments

Salt Typhoon Information Technology Critical Manufacturing
Security Latest ·

Keep your logins locked down with our favorite password management apps for PC, Mac, Android, iPhone, and web browsers.

Financial Services Information Technology
Security News | TechCrunch ·

Kaspersky attributed the hacks to an espionage campaign targeting journalists and employees at educational institutions.

Food and Agriculture Financial Services
SpiderLabs Blog ·

Rising Cyber Threats in Healthcare – Discover the latest cybersecurity risks targeting healthcare organizations, from ransomware to third-party threats. Key Findings from the 2025 Trustwave Risk...

Healthcare and Public Health Financial Services
Google Online Security Blog ·

Posted by Christiaan Brand, Group Product ManagerWe’re excited to announce that starting today, Titan Security Keys are available for purchase in more than 10 new countries:IrelandPortugalThe...

SOC Prime Blog ·

Heads-up for Kubernetes admins! A batch of five critical vulnerabilities called “IngressNightmare” (CVE-2025-24513, CVE-2025-24514, CVE-2025-1097, CVE-2025-1098, and CVE-2025-1974) affecting...

Financial Services Information Technology
Industrial Cyber ·

The Office of the Director of National Intelligence (ODNI) identified in its 2025 Annual Threat Assessment of the... The post ODNI 2025 Threat Assessment notes threats from Russia, China, Iran,...

Volt Typhoon Salt Typhoon Defense Industrial Base Healthcare and Public Health
Industrial Cyber ·

RMC Global, a provider of risk management and industrial cybersecurity solutions for critical infrastructure and critical missions, announced... The post RMC Global acquires Shearer and...

Critical Manufacturing Defense Industrial Base
The Record from Recorded Future News ·

Online networks of teenage boys “dedicated to inflicting harm and committing a range of criminality” are among the most significant concerns for British law enforcement, officials announced this week.

Communications
BleepingComputer ·

Claude could be getting a ChatGPT-like Deep Research feature called Compass. You can tell Claude's Compass what you need, and the AI agent will take care of everything. [...]

CERT Polska ·

Incorrect Authorization vulnerability (CVE-2025-1542) has been found in Infonet Projekt SA OXARI ServiceDesk software.

CVE vulnerability
infosecurity-magazine ·

Standards body ETSI has defined a scheme for key encapsulation mechanisms with access control (KEMAC), enabling quantum-secure encryption

Salt Typhoon Information Technology Financial Services
BleepingComputer ·

230M stolen passwords met complexity requirements—and were still compromised. Passwords aren't going away for now, but there are new technologies that may increasingly replace them. Learn more...

Financial Services