IM
IronMonkey Threat Research
LIVE
|
Articles 27,094
|
CVEs 349,153
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,064 articles — Page 848 of 903
Maxwell Dulin's Resources ·

This is part 3 of a series about IBC (interblockchain communication) token rate limiting. They have a nice dashboard that shows all of the rate limits on Osmosis. In this article, they attempt to...

Financial Services Transportation Systems
Cloud Threat Landscape ·

A backdoor has been identified in versions 5.6.0 and 5.6.1 of XZ Utils (assigned CVE-2024-3094), which under some conditions may allow SSH authentication bypass in specific versions of certain...

Critical Manufacturing Transportation Systems
Wiz Blog | RSS feed ·

Wiz SPM for version control systems helps you find and fix risks in your GitHub instance.

Critical Manufacturing
Blue Team Archives - Black Hills Information Security, Inc. ·

While social engineering attacks such as phishing are a great way to gain a foothold in a target environment, direct attacks against externally exploitable services are continuing to make...

Defense Industrial Base General InfoSec Tips & Tricks Incident Response
Threat Intelligence ·

Written by: Andrew Oliveau Over the last several years, the security community has witnessed an uptick in System Center Configuration Manager (SCCM)-related attacks. From extracting network access...

Information Technology Threat Intelligence
Threat Intelligence ·

Written by: Alden Wahlstrom, David Mainor, Daniel Kapellmann Zafra In June 2023, Russian businessman Yevgeniy Prigozhin and his private military company (PMC) “Wagner” carried out an armed mutiny...

Information Technology Government Facilities Threat Intelligence
Fox-IT International blog ·

Authored by Joshua Kamp Executive summary The authors behind Android banking malware Vultur have been spotted adding new technical features, which allow the malware operator to further remotely...

Financial Services Healthcare and Public Health Uncategorized
Fox-IT International blog ·

Authored by Joshua Kamp Executive summary The authors behind Android banking malware Vultur have been spotted adding new technical features, which allow the malware operator to further remotely...

Financial Services Information Technology Uncategorized
GreyNoise Labs ·

Introduction Hi there! I’m one of the researchers at Greynoise. While on the main blog I try to write formally, expect my blog posts in the Grimoire to be a little more off the cuff. Over the...

vulnerabilities disclosure
Threat Analysis Group (TAG) ·

Today, Google released its report “We’re All in this Together: A Year in Review of Zero-Days Exploited In-the-Wild in 2023.”

Commercial Facilities Financial Services
Threat Analysis Group (TAG) ·

Today, Google released its report “We’re All in this Together: A Year in Review of Zero-Days Exploited In-the-Wild in 2023.”

Financial Services Commercial Facilities Safety & Security Threat Analysis Group
Threat Intelligence ·

Written by: Maddie Stone, Jared Semrau, James Sadowski Combined data from Google’s Threat Analysis Group (TAG) and Mandiant shows 97 zero-day vulnerabilities were exploited in 2023; a big increase...

Information Technology Threat Intelligence
Maxwell Dulin's Resources ·

In part one, the author used a prototype pollution vulnerability to compromise the Renderer process. In part two, they uses another prototype pollution vulnerability from their privileged...

Maxwell Dulin's Resources ·

Browser exploitation is extremely complicated and difficult. Most of the bugs are memory corruption issues. Hence, there are multiple layers of exploitation required because of a large amount of...

Maxwell Dulin's Resources ·

Cronos is a Cosmos based chain that uses Ethermint as the smart contract runtime platform. They have the largest TVL within the Cosmos system. Reentrancy is a vulnerability class where a user can...

Healthcare and Public Health
Pulsedive Blog ·

In the first of our four-part series, learn why practitioners prioritize human-to-human sharing and its benefits.

Kaspersky ICS CERT ·

As the industrial landscape evolves, so do the threats that accompany it. While many industrial threats may be developing slowly from year to year, subtle changes are reaching a critical mass,...

Critical Manufacturing Events
Cloud Threat Landscape ·

Researchers observed the Agenda Ransomware group, identified as Qilin or Water Galura, has been spreading through VMware vCenter and ESXi servers. The group has been actively evolving and...

Wiz Blog | RSS feed ·

We’re excited to announce the release of a comprehensive guide to mastering Google Cloud Security.

Information Technology
Cloud Threat Landscape ·

On 2024-03-25, an incident was reported, involving an unknown actor, gaining initial access via End-user compromise, targeting GitHub to achieve Supply chain attack.

Critical Manufacturing
Maxwell Dulin's Resources ·

Different nodes in blockchain need to always come to the same state for a network to work. If the network is split in some way, then the network will not be able to come to consensus, taking the...

Financial Services Energy
Maxwell Dulin's Resources ·

FortiGate is an SSL VPN. Recently, they described a vulnerability in their firmware that could lead to RCE. So, the authors of this post diffed the two versions, found the bug and exploited it....

Nuclear Transportation Systems
Maxwell Dulin's Resources ·

Deri is a derivatives protocol on various EVM platform. Users can add/remove margin, trade and so other functionality through the Gateway contract. When removing margin, the users calls the...

Maxwell Dulin's Resources ·

Memory Tagging Extensions (MTE) is a memory corruption protection that was widely considered to be a killer of these types of bugs. The idea is to use the upper bits of a 64 bit pointer to give a...

Wiz Blog | RSS feed ·

We provide top takeaways from the NSA's recommended top ten cloud security mitigation strategies.

Safe Information Technology Government Facilities
Orange Cyberdefense ·

TL&DR – While on an assessment, I found an instance of ReCrystallize Server. It had many problems, some of which had to do with insufficient hardening on the client’s side while others were new...

Cloud Threat Landscape ·

On 2024-03-22, a campaign was reported, involving UNC5174, gaining initial access via 1-day vulnerability, while using Vulnerability exploitation, targeting ConnectWise ScreenConnect, F5 BIG IP,...

Threat Intelligence ·

Written by: Luke Jenkins, Dan Black Executive Summary In late February, APT29 used a new backdoor variant publicly tracked as WINELOADER to target German political parties with a CDU-themed lure....

Government Facilities Information Technology Threat Intelligence
Maxwell Dulin's Resources ·

Substrate is a framework for building application specific blockchains within the Polkadot ecosystem written in Rust. Each new chain inherits the security of the main chain, which is why it's a...

Transportation Systems Nuclear
Maxwell Dulin's Resources ·

The backstory on how vulnerabilities were discovered is always fascinating to me. To me, the vulnerability is cool but I want to be able to reproduce the research process to find my own bugs...

Information Technology