IM
IronMonkey Threat Research
LIVE
|
Articles 30,918
|
CVEs 379,165
|
APT Groups 583
|
Tools 6,147
|
Updated recently
Today Yesterday All 30,886 articles — Page 870 of 1030
Tenable Blog ·

Fortinet patched a zero day authentication bypass vulnerability in FortiOS and FortiProxy that has been actively exploited in the wild as a zero-day since November 2024.BackgroundOn January 14,...

Information Technology Energy
infosecurity-magazine ·

Browser-based cyber-threats surged in 2024, with credential abuse and infostealers on the rise

Evil Corp Salt Typhoon Energy Healthcare and Public Health
ASEC ·

The following is the information on Yara and Snort rules (week 3, January 2025) collected and shared by the AhnLab TIP service. 5 YARA Rules Detection name Description Source...

Critical Manufacturing
The Hacker News ·

The Telegram-based online marketplace known as HuiOne Guarantee and its vendors have cumulatively received at least $24 billion in cryptocurrency, dwarfing the now-defunct Hydra to become the...

Financial Services Commercial Facilities
The Hacker News ·

Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet. "The campaign involved...

The Hacker News ·

Russia-linked threat actors have been attributed to an ongoing cyber espionage campaign targeting Kazakhstan as part of the Kremlin's efforts to gather economic and political intelligence in...

Fancy Bear Pawn Storm Iron Twilight Emergency Services Energy
The Record from Recorded Future News ·

In a recent Telegram statement, Roseltorg disclosed that it had been targeted by "an external attempt to destroy data and the entire infrastructure of electronic trading."

Government Facilities Communications
BleepingComputer ·

Microsoft has released the KB5049981 cumulative update for Windows 10 22H2 and Windows 10 21H2, which contains an updated Kernel driver blocklist to prevent Bring Your Own Vulnerable Driver...

Security Latest ·

It won’t solve all of your privacy problems, but a virtual private network can make you a less tempting target for hackers.

Communications Commercial Facilities
BleepingComputer ·

Today is Microsoft's January 2025 Patch Tuesday, which includes security updates for 159 flaws, including eight zero-day vulnerabilities, with three actively exploited in attacks. [...]

Information Technology
SpiderLabs Blog ·

In the world of malware, common ransomware schemes aim to take the data within databases (considered the "gold" in the vault of any organization) and hold them hostage, promising data recovery...

Financial Services
Threat Intelligence ·

Written by: Josh Triplett Executive Summary Backscatter is a tool developed by the Mandiant FLARE team that aims to automatically extract malware configurations. It relies on static signatures and...

Tenable Blog ·

10Critical147Important0Moderate0LowMicrosoft addresses 157 CVEs in the first Patch Tuesday release of 2025 and the largest Patch Tuesday update ever with three CVEs exploited in the wild, and five...

Information Technology Energy
BleepingComputer ·

Microsoft has released the Windows 11 KB5050009 and KB5050021 cumulative updates for versions 24H2 and 23H2 to fix security vulnerabilities and issues. [...]

Security News | TechCrunch ·

A joint international statement provides the first official confirmation that North Korea was behind the $235M hack of WazirX, India's largest cryptocurrency exchange. © 2024 TechCrunch. All...

Lazarus Group Financial Services Commercial Facilities
Security News | TechCrunch ·

The Home Office has proposed a 'targeted ban' on ransom payments following a wave a cyberattacks targeting the UK © 2024 TechCrunch. All rights reserved. For personal use only.

Government Facilities Healthcare and Public Health
Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

Cybercriminals exploit fake YouTube links to redirect users to phishing pages, stealing login credentials via URI manipulation and…

Industrial Cyber ·

Verizon Communications, an American telecommunications company, said that it has successfully contained the cyber incident, a fact confirmed... The post Verizon provides update on Salt Typhoon...

Flax Typhoon Salt Typhoon Critical Manufacturing Communications
Security | TechRepublic ·

We evaluate the features, performance, security, and pricing of Windscribe VPN to help you determine if it's a reliable VPN service for your needs.

Leviathan Communications Information Technology
Industrial Cyber ·

The World Economic Forum published Monday its Global Cybersecurity Outlook 2025 report that recognizes escalating geopolitical tensions and... The post WEF Global Cybersecurity Outlook 2025 report...

CIA Energy Critical Manufacturing
infosecurity-magazine ·

Barings Law is planning to sue the two tech giants over numerous alleged violations of data misuse, including for AI training

Salt Typhoon Healthcare and Public Health Information Technology
BleepingComputer ·

A weakness in Google's OAuth "Sign in with Google" feature could enable attackers that register domains of defunct startups to access sensitive data of former employee accounts linked to various...

Information Technology Financial Services
Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

The Halcyon RISE Team has identified a new Codefinger ransomware campaign targeting Amazon S3 buckets. This attack leverages…

Cozy Bear Financial Services Defense Industrial Base
infosecurity-magazine ·

A UK government consultation has proposed banning public sector and critical infrastructure organizations from making ransomware payments to disincentivize attackers from targeting these services

Healthcare and Public Health Government Facilities
BleepingComputer ·

​The U.S. Department of Justice announced today that the FBI has deleted Chinese PlugX malware from over 4,200 computers in networks across the United States. [...]

Silk Typhoon Mustang Panda Twill Typhoon Financial Services Communications
BleepingComputer ·

​The U.S. Department of Justice announced today that the FBI has deleted Chinese PlugX malware from over 4,200 computers in networks across the United States. [...]

Silk Typhoon Mustang Panda Twill Typhoon Financial Services Communications
Unit 42 ·

Graph neural networks aid in analyzing domains linked to known attack indicators, effectively uncovering new malicious domains and cybercrime campaigns. The post One Step Ahead in Cyber...

Financial Services Information Technology
BleepingComputer ·

Threat actors are utilizing the FastHTTP Go library to launch high-speed brute-force password attacks targeting Microsoft 365 accounts globally. [...]

Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

Prepare for the 2025 altcoin season: experts predict rising interest in altcoins like WorldCoin, driven by Web3, blockchain,…

Financial Services Energy
BleepingComputer ·

​Attackers are exploiting a new authentication bypass zero-day vulnerability in FortiOS and FortiProxy to hijack Fortinet firewalls and breach enterprise networks. [...]