IM
IronMonkey Threat Research
LIVE
|
Articles 25,421
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,389 articles — Page 809 of 847
maxwelldulin ·

Tornado Cash is a smart contract cryptocurrency mixer. This allows users at one address to withdraw funds at another address without creating a traceable link between the two addresses. Seems...

Energy Financial Services
Wiz Blog | RSS feed ·

The integration of Wiz’s CNAPP and Google Cloud helps both cloud defenders and builders improve security and innovate faster.

Information Technology
maxwelldulin ·

Cypher is a protocol for lending, borrowing and trading using margin. Margin is the process of betting on assets using value that you are borrowing from somebody else. There are two types of...

maxwelldulin ·

The Content Security Policy (CSP) is used to restrict what can be done on a web page. This is useful for defense-in-depth on issues, like XSS, as well as framing. The origin of resources and the...

Financial Services Healthcare and Public Health
McAfee Labs | McAfee Blogs ·

Authored by Preksha Saxena McAfee labs observed a Remcos RAT campaign where malicious VBS files were delivered via phishing email.... The post Peeling Back the Layers of RemcosRat Malware appeared...

Financial Services Commercial Facilities
Cloud Threat Landscape ·

On 2023-08-29, a campaign was reported, involving Kinsing operator, gaining initial access via 1-day vulnerability, Software misconfig, while using Misconfigured PostgreSQL abuse, targeting...

Cloud Threat Landscape ·

On 2023-08-29, a campaign was reported, involving UNC4841, gaining initial access via 0-day vulnerability, targeting Barracuda ESG to achieve Data exfiltration.

Cloud Threat Landscape ·

On 2023-08-29, an incident was reported, involving an unknown actor, gaining initial access via End-user compromise, while using Spearphishing, to achieve Supply chain attack.

Critical Manufacturing
Maxwell Dulin's Resources ·

JS8 is a protocol for communicating over vast differences using radio. It's a text based protocol for chat. The protocol is operates at 7MHz-14MHz, which is extremely low. At these frequencies,...

Cloud Threat Landscape ·

A security researcher discovered an exposed cloud database that contained sensitive log records with references to Fatal Model, an escort service in Brazil. Additionally, the database contained...

McAfee Labs | McAfee Blogs ·

Authored by: Neil Tyagi Scam artists know no bounds—and that also applies to stealing your cryptocurrency. Crypto scams are like... The post Crypto Scam: SpaceX Tokens for Sale appeared first on...

Financial Services Commercial Facilities
Orange Cyberdefense ·

TL;DR This post is a summary of the contents of my talk in Defcon 31 AppSec Village last August 2023, and part of what I will explain in Canada at the SecTor conference on the 24th of October 2023...

Healthcare and Public Health Information Technology
nao_sec ·

This blog post is based on “GroundPeony: Crawling with Malice” that we presented at HITCON CMT 2023. We are grateful to HITCON for giving us the opportunity to present....

Government Facilities Communications
Wiz Blog | RSS feed ·

Ensure that your Docker and Kubernetes environments are secure and compliant with CIS benchmarks. Generate reports quickly and easily and remediate any issues with actionable insights.

Information Technology Energy
Maxwell Dulin's Resources ·

Zunami is a yield aggregator protocol for stablecoin staking. They lost 2.1M dollars in two transactions. How did this happen? The function calcTokenPrice() is used to determine the price of the...

Maxwell Dulin's Resources ·

Chainlink provides off-chain data to smart contracts in order for users to query them. Integrating with chainlink creates its own set of challenges. The oracles are updated periodically but must...

Financial Services
Cloud Threat Landscape ·

On 2023-08-17, a campaign was reported, involving Labrat operator, gaining initial access via 1-day vulnerability, while using Proxyjacking, Cloud compute cryptojacking, targeting GitLab to...

@BushidoToken Threat Intel ·

After tracking the cybercrime threat landscape on a day-to-day basis for over four years now, it’s not that often anymore that something surprises me. But the latest trend of a suspected...

Scattered Spider Financial Services Energy
Maxwell Dulin's Resources ·

Mocor OS is a proprietary OS from UNISOC. This OS is used in various phone vendros such as Nokia, TCL and others. During the initial boot up process, there is a user-lock password on the phone....

Critical Manufacturing Financial Services
maxwelldulin ·

On the web, the go to method for maintaining state in the stateless HTTP protocol is cookies. The .NET framework included a way of putting cookies into the URL for clients who couldn't support...

Energy
maxwelldulin ·

The original XBox was pwned hard very soon after its release through various methods. One method that was thrown out early on was the idea of using JTAG. This was a gold mine if possible though;...

Commercial Facilities Energy
Maxwell Dulin's Resources ·

VPNs are used in order to prevent snooping or internet tracking. In this article, the authors go over widespread issues they found with VPN apps. When a user joins a network, the subnet is set....

Information Technology Transportation Systems
Cloud Threat Landscape ·

On 2023-08-15, an incident was reported, involving an unknown actor, gaining initial access via 0-day vulnerability, while using SSM orchestration abuse, Cron persistence, IMDS abuse, targeting...

Cloud Threat Landscape ·

On 2023-08-15, an incident was reported, involving an unknown actor, gaining initial access via ,. The following tools were observed: linPEAS.

Cloud Threat Landscape ·

On 2023-08-15, a campaign was reported, involving 0ktapus, gaining initial access via Unknown, while using Azure Run Commands abuse, with unknown impact.

Blue Team Archives - Black Hills Information Security, Inc. ·

Patterson Cake // When it comes to M365 audit and investigation, the “Unified Audit Log” (UAL) is your friend. It can be surly, obstinate, and wholly inadequate, but your friend […] The post...

Healthcare and Public Health How-To Incident Response
Kaspersky ICS CERT (English) ·

In this part we present information on the four types of implants and two tools used during the last (third) stage of the attacks discovered.

Publications
Cloud Threat Landscape ·

On 2023-08-10, a campaign was reported, involving an unknown actor, gaining initial access via 1-day vulnerability, targeting SugarCRM. The following tools were observed: Pacu, ScoutSuite.

security – Ars Technica ·

Researchers also disclosed a separate bug called "Inception" for newer AMD CPUs.

Nuclear Communications
Wiz Blog | RSS feed ·

Wiz is the #1 cloud security company on the list and one of the biggest movers from last year, alongside OpenAI. What an honor!

Information Technology