IM
IronMonkey Threat Research
LIVE
|
Articles 25,421
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,389 articles — Page 739 of 847
Security Latest ·

Digital license plates sold by Reviver, already legal to buy in some states and drive with nationwide, can be hacked by their owners to evade traffic regulations or even law enforcement surveillance.

Transportation Systems
infosecurity-magazine ·

Over 200,000 YouTube creators have been targeted by malware-laden phishing emails with the aim of infecting their followers

Salt Typhoon Financial Services Transportation Systems
BleepingComputer ·

The Serbian government exploited Qualcomm zero-days to unlock and infect Android devices with a new spyware named 'NoviSpy,' used to spy on activists, journalists, and protestors. [...]

Critical Manufacturing Transportation Systems
WeLiveSecurity ·

A view of the H2 2024 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts

Financial Services
infosecurity-magazine ·

Ukrainian officials say Russian intelligence is using video games to trick children into helping the enemy

Armageddon Salt Typhoon Defense Industrial Base Energy
Security | TechRepublic ·

This Remote Access Checklist, created by Scott Matteson for TechRepublic Premium, should be used to ensure all employees have the requisite items, accounts, access, and instructions needed for...

Critical Manufacturing Financial Services
Check Point Research ·

For the latest discoveries in cyber research for the week of 16th December, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The Romanian National Cybersecurity...

Healthcare and Public Health Financial Services
Security News | TechCrunch ·

Amnesty said it found NoviSpy, an Android spyware linked to Serbian intelligence, on the phones of several members of Serbian civil society following police stops. © 2024 TechCrunch. All rights...

Hacking Team
Stories by RST Cloud on Medium ·

Last week, we analysed 56 cyber threat intelligence articles and summarised them along with the relevant metadata that was extracted. You can find below a short summary of 10 articles, related...

Maxwell Dulin's Resources ·

The Arc browser had just announced their bug bounty program. As a result, the author decided to search through for some low hanging fruit. Quickly, they found some interesting endpoints:...

Maxwell Dulin's Resources ·

Openwrt is open source router firmware. While the researcher was updating their router, they noticed that there was a service called attended sysupgrade that builds and hosts the firmware...

Information Technology
Cloud Threat Landscape ·

The Glutton backdoor, a modular PHP-based malware framework, has been observed targeting systems in China, the U.S., Cambodia, Pakistan, and South Africa. The malware, linked with moderate...

Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

Resecurity unveils AI-powered GSOC at NATO Edge 2024, integrating VR for advanced cybersecurity. Tailored for MSSPs, it enhances…

Defense Industrial Base Energy
Cyber Intelligence Insights ·

The Banner Pattern

BleepingComputer ·

The Clop ransomware gang has confirmed to BleepingComputer that they are behind the recent Cleo data-theft attacks, utilizing zero-day exploits to breach corporate networks and steal data. [...]

Critical Manufacturing Government Facilities
Wiz Blog | RSS feed ·

Discover the latest in LLM hijacking activity, including a dive into the JINX-2401 campaign targeting AWS environments with IAM privilege escalation tactics.

Defense Industrial Base
Security Latest ·

The security system that underlies the internet makes use of a curious fact: You can broadcast part of your encryption to make your information much more secure.

Government Communications Headquarters Government Facilities Defense Industrial Base
BleepingComputer ·

​The Chinese Winnti hacking group is using a new PHP backdoor named 'Glutton' in attacks on organizations in China and the U.S., and also in attacks on other cybercriminals. [...]

Salt Typhoon Communications Critical Manufacturing
Industrial Cyber ·

As the curtain closes on 2024, the critical infrastructure and OT (operational technology) sectors reflect upon a year... The post 2024 in retrospect: Lessons learned and cyber strategies shaping...

Volt Typhoon Critical Manufacturing Energy
Cloud Threat Landscape ·

On November 26, 2024, Wiz Threat Research identified JINX-2401, a threat actor attempting to hijack LLM models in multiple AWS environments using compromised IAM credentials. The attackers...

Commercial Facilities
Cloud Threat Landscape ·

Two critical vulnerabilities in Cleo file transfer software—CVE-2024-50623 and CVE-2024-55956—have been actively exploited, leading to unauthorized data access and system compromise. The Clop...

Security News | TechCrunch ·

State officials said hundreds of thousands of Rhode Island residents could be affected by a cyberattack on the state’s online portal for social services, with a “high probability” that personally...

Financial Services Commercial Facilities
The Hacker News ·

Germany's Federal Office of Information Security (BSI) has announced that it has disrupted a malware operation called BADBOX that came preloaded on at least 30,000 internet-connected devices sold...

Information Technology Communications
The Hacker News ·

Thai government officials have emerged as the target of a new campaign that leverages a technique called DLL side-loading to deliver a previously undocumented backdoor dubbed Yokai. "The target of...

Financial Services
Latest stories for ZDNET in Security ·

Bitdefender bundles antivirus and anti-malware with other digital privacy tools to keep you safer. Here's how it works.

Commercial Facilities Information Technology
Security Latest ·

Plus: The US indicts North Koreans in fake IT worker scheme, file-sharing firm Cleo warns customers to patch a vulnerability amid live attacks, and more.

Hermit Financial Services Defense Industrial Base
BleepingComputer ·

A threat actor tracked as MUT-1244 has stolen over 390,000 WordPress credentials in a large-scale, year-long campaign targeting other threat actors using a trojanized WordPress credentials checker. [...]

Critical Manufacturing Financial Services
The Hacker News ·

A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled the exfiltration of over 390,000...

Financial Services
Unit 42 ·

Analysis of packer-as-a-service (PaaS) HeartCrypt reveals its use in over 2k malicious payloads across 45 malware families since its early 2024 appearance. The post Crypted Hearts: Exposing the...

Security | TechRepublic ·

Australian IT pros are urged to strengthen defenses as Chinese cyber threats target critical infrastructure and sensitive data.

Salt Typhoon Communications Information Technology