IM
IronMonkey Threat Research
LIVE
|
Articles 29,370
|
CVEs 367,955
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 29,338 articles — Page 971 of 978
Kaspersky ICS CERT (English) ·

Solutions that use the OPC family of protocols are affected by multiple vulnerabilities that could lead to equipment failure, remote code execution or leaks of critical data

Publications
Orange Cyberdefense ·

Introduction What seemed like a regular Cross-site Scripting (XSS) vulnerability on an HTTP 500 “Internal Server Error”-page, I managed to turn into a one-click account takeover on an assessment....

Information Technology Defense Industrial Base
Orange Cyberdefense ·

I just got off a call with a client, and realised we need to think about how we report binary protections a bit more. More specifically the ios info binary command in objection. They can be a pain...

Financial Services
Kaspersky ICS CERT (English) ·

Studio 5000 Logix Designer, RSLogix 5000 and Logix controllers use a hardcoded key to verify participants of communication.

Critical Manufacturing Transportation Systems Advisories
Group-IB Blog ·

A deep dive into Classiscam: automated scam as a service designed to steal money and payment data

Kaspersky ICS CERT (English) ·

In mid-2020, we realized that Lazarus was launching attacks on the defense industry using the ThreatNeedle cluster, an advanced malware cluster of Manuscrypt (a.k.a. NukeSped). While investigating...

Publications
McAfee Labs | McAfee Blogs ·

Executive Summary Babuk ransomware is a new ransomware threat discovered in 2021 that has impacted at least five big enterprises,... The post Babuk Ransomware appeared first on McAfee Blog.

Financial Services Commercial Facilities
Report Feed ·

The year three report covers 2019 and aims to highlight the achievements and efforts made by the Active Cyber Defence programe.

Government Facilities
McAfee Labs | McAfee Blogs ·

On February 17th, 2021, McAfee disclosed findings based on a 10-month long disclosure process with major video conferencing vendor Agora,... The post Beyond Clubhouse: Vulnerable Agora SDKs Still...

Financial Services Commercial Facilities
McAfee Labs | McAfee Blogs ·

The McAfee Advanced Threat Research (ATR) team is committed to uncovering security issues in both software and hardware to help... The post Don’t Call Us We’ll Call You: McAfee ATR Finds...

Healthcare and Public Health Commercial Facilities
McAfee Labs | McAfee Blogs ·

The concept of a trail of breadcrumbs in the offensive security community is nothing new; for many years, researchers on... The post Researchers Follow the Breadcrumbs: The Latest Vulnerabilities...

Financial Services Commercial Facilities
Kaspersky ICS CERT (English) ·

The vendor has published an advisory on vulnerabilities in multifunctional gateway devices designed to integrate different types of sensors and PLCs into industrial environments

Publications
Cloud Threat Landscape ·

On 2021-02-09, a research was reported, involving , gaining initial access via Supply chain vector, while using Package dependency confusion, to achieve None.

Cloud Threat Landscape ·

On 2021-02-09, a campaign was reported, involving an unknown actor, gaining initial access via Software misconfig, while using Escape to host via cgroups release_agent, targeting Docker to achieve...

Orange Cyberdefense ·

Years ago I learnt docker basics because I just couldn’t get that $ruby_tool to install. The bits of progress I’d make usually left my host’s ruby install in shambles. With docker though, I had...

Kaspersky ICS CERT (English) ·

Vulnerabilities have been identified in the IPv6 component in the Treck TCP/IP stack implementation. It is recommended that vendors of IoT devices using that implementation issue security advisories.

Publications
Low-level adventures ·

This is a write-up for solving the devils-swapper RE challenge.‌‌ It was mostly intended for my personal archive, but since it may be interesting to all of you. This especially applies if you're...

Cloud Threat Landscape ·

On 2021-02-03, a campaign was reported, involving TeamTNT, gaining initial access via ,. The following tools were observed: Peirates, Hildegard.

Wiz Blog | RSS feed ·

Cloud identity permissions are complex. So complex that innocent looking permissions provided to 3rd party vendors can lead to unintended exposure of all of your data.

Critical Manufacturing Information Technology
Wiz Blog | RSS feed ·

With an estimated 90% of cloud workloads running Linux based OS, with sudo being common across distributions, many Linux cloud assets are at risk and may be affected. Versions released as far back...

Information Technology
Kaspersky ICS CERT ·

Siemens has released a security alert which describes some cases of SCALANCE X-200/X-200IRT/X-300 switches using hardcoded encryption keys, making them prone to man-in-the-middle attacks

Publications
Wiz Blog | RSS feed ·

SolarWinds attack explained by Wiz CTO Ami Luttwak

Information Technology Government Facilities
Orange Cyberdefense ·

In this post I want to share two things. First, a quick primer on how you would you go about navigating the source code when contributing to objection, and secondly an application specific proxy...

Healthcare and Public Health
Kaspersky ICS CERT ·

Weak implementation of cryptographic data protection allows various types of attacks and enables attackers to identify the key in captured traffic

Publications
Orange Cyberdefense ·

It’s too easy when hacking, to assume something is invulnerable and not interrogate it. This was the case for me when it came to Duo’s two-factor authentication solution. However, we were able to...

McAfee Labs | McAfee Blogs ·

McAfee’s Advanced Threat Research team just completed its second annual capture the flag (CTF) contest for internal employees. Based on tremendous... The post McAfee ATR Launches...

Financial Services Commercial Facilities
Kaspersky ICS CERT ·

Vulnerabilities in Schneider Electric’s low-voltage distribution system configuration software could enable attackers to upload arbitrary files defining electrical system parameters

Publications
Kaspersky ICS CERT ·

Sсhneider Electric has published an advisory on a critical vulnerability in the web server used in TM3 I/O expansion modules

Publications
Kaspersky ICS CERT ·

The vulnerability could cause a Windows local user privilege escalation when using EcoStruxure™ Operator Terminal Expert and Pro-face BLUE software and WinGP runtime environment by Schneider Electric.

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

DoS vulnerabilities have been disclosed in the integrated web server of Siemens SCALANCE X-200 / X-200IRT / X-300 switches. Measures proposed by the vendor do not prevent all possible attacks.

Publications