IM
IronMonkey Threat Research
LIVE
|
Articles 27,329
|
CVEs 351,955
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,297 articles — Page 860 of 910
Threat Analysis Group (TAG) ·

blue squares forming the abstract shape of an arrow set against a white background

Commercial Facilities Defense Industrial Base Safety & Security Threat Analysis Group
Cloud Threat Landscape ·

On 2024-02-14, a research was reported, involving , gaining initial access via Cloud native misconfig, while using Cloud key compromise, targeting Azure Storage to achieve Resp. disclosure.

Cloud Threat Landscape ·

On 2024-02-14, a research was reported, involving , gaining initial access via Software misconfig, targeting Ansible, NGINX to achieve Resp. disclosure.

Blog | Threat Intelligence & Memory Forensics | Volexity ·

Through its managed security services offerings, Volexity routinely identifies spear-phishing campaigns targeting its customers. One persistent threat actor, whose campaigns Volexity frequently...

Charming Kitten Mint Sandstorm CharmingCypress Critical Manufacturing
Cloud Threat Landscape ·

Water Hydra group (AKA DarkCasino), whose activity was first detected in 2021, is known for their cyberattacks targeting the financial industry globally, including banks, cryptocurrency platforms,...

Evilnum Water Hydra Financial Services
Cloud Threat Landscape ·

On 2024-02-13, an incident was reported, involving an unknown actor, gaining initial access via 1-day vulnerability, targeting Confluence Server to achieve Data exfiltration.

Cloud Threat Landscape ·

On 2024-02-13, a research was reported, involving , gaining initial access via Software misconfig, while using Cloud key compromise, to achieve Resp. disclosure.

Wiz Blog | RSS feed ·

Fortinet offers guidance to detect and mitigate CVE-2024-21762 and CVE-2024-23113, critical RCE vulnerabilities in FortiOS and FortiProxy, including guidance that organizations should patch urgently.

Wiz Blog | RSS feed ·

We explore how advancements in EKS Access Entries and Pod Identity have opened new attack vectors and offer examples of how adversaries could exploit them.

Cloud Threat Landscape ·

On 2024-02-09, a research was reported, involving , gaining initial access via Software misconfig, targeting MongoDB to achieve Resp. disclosure.

Cloud Threat Landscape ·

On 2024-02-09, a research was reported, involving , gaining initial access via Software misconfig, targeting Salesforce to achieve Resp. disclosure.

Bitdefender Labs ·

UPDATE: Following our initial release, we have been contacted by our fellow researchers at Jamf who were able to identify three more samples that act like first-stage payloads. They are...

Bitdefender Labs ·

UPDATE: Following our initial release, we have been contacted by our fellow researchers at Jamf who were able to identify three more samples that act like first-stage payloads. They are...

Wiz Blog | RSS feed ·

Get a detailed analysis of the entire attack chain of Microsoft's breach by Midnight Blizzard (APT29), as well as detection and mitigation recommendations.

Midnight Blizzard Chemical
Cybercrime Diaries ·

Chapter III. Exploring and comparing prominent Russian language cybercriminal forums. Welcome to the third part of this series of OSINT...

Financial Services Commercial Facilities
McAfee Labs | McAfee Blogs ·

Authored by Dexter Shin MoqHao is a well-known Android malware family associated with the Roaming Mantis threat actor group first... The post MoqHao evolution: New variants start automatically...

Roaming Mantis Financial Services Commercial Facilities
Cloud Threat Landscape ·

On 2024-02-08, an incident was reported, involving an unknown actor, gaining initial access via Unknown, to achieve Data exfiltration.

Cloud Threat Landscape ·

On 2024-02-08, an incident was reported, involving an unknown actor, gaining initial access via End-user compromise, to achieve Data exfiltration.

Cloud Threat Landscape ·

On 2024-02-08, a campaign was reported, involving an unknown actor, gaining initial access via 1-day vulnerability, while using Vulnerability exploitation, targeting Confluence Server to achieve...

McAfee Labs | McAfee Blogs ·

The explosive growth of Generative AI has sparked many questions and considerations not just within tech circles, but in mainstream... The post Generative AI: Cross the Stream Where it is...

Financial Services Commercial Facilities
Wiz Blog | RSS feed ·

Secure Microsoft Azure AI Services, including Azure OpenAI, with Wiz AI-SPM providing full visibility into AI pipelines and risks on the Wiz Security Graph

Energy Information Technology
Kaspersky ICS CERT ·

What UN Regulations 155 and 156 require from vehicle manufacturers in reality, and how to ensure compliance with requirements and prepare for certification if necessary

Publications
maxwelldulin ·

Hypervisor-Protected Code Integrity (HVCI) is a method of preventing compromise of various kernel parts even when an attacker has compromised part of the kernel itself. While creating a Windbg...

Information Technology
maxwelldulin ·

The Cosmos SDK is a blockchain development framework written in Golang. The security of this system is crucial. So, they have fuzzing integrated into the framework, which the author is going to...

Healthcare and Public Health
Maxwell Dulin's Resources ·

Aptos Roll is a secure instant randomness API. This is done with a bunch of pretty crazy cryptography schemes. Unlike Chainlink VRF, this is on-chain, which makes it faster and cheaper to use....

Wiz Blog | RSS feed ·

The Wiz research team unpacks the security implications of the new EKS access and identity management features and recommends best practices when using them.

Wiz Blog | RSS feed ·

Detect and mitigate CVE-2023-46805, CVE-2024-21887, CVE-2024-21888 and CVE-2024-21893, critical vulnerabilities in Ivanti VPN products. Organizations should patch urgently, and government agencies...

Government Facilities
Orange Cyberdefense ·

Sometimes you need to get in the way of a hardware device and its controller, and see what it has to say for itself. If you are lucky, the two parts are communicating using a serial port, and then...

Critical Manufacturing Defense Industrial Base
Threat Analysis Group (TAG) ·

a blue square that reads "Threat Analysis Group"

Commercial Facilities
Cloud Threat Landscape ·

On 2024-02-06, an incident was reported, involving an unknown actor, gaining initial access via End-user compromise, while using Azure Batch abuse, targeting Azure Batch to achieve Resource...