IM
IronMonkey Threat Research
LIVE
|
Articles 27,416
|
CVEs 352,583
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 43 articles on Jul 28, 2026
www.theregister.com - Articles ·

Secret to their success: Using the right model for the right security job

Information Technology security
The Hacker News ·

A new Mirai-derived botnet called Tengu can use a compromised Linux device's hardware watchdog to trigger a reboot when defenders kill its main process. If that happens, Tengu's other persistence...

Information Technology Communications
The Hacker News ·

Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing Intelligent Platform Management Interface (IPMI)...

Information Technology
The Hacker News ·

JFrog has confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory while trying to reach the open internet from a sealed evaluation environment. Artifactory is JFrog's software...

Information Technology
The Hacker News ·

OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of remotely triggerable flaws in network services enabled by default. The critical issue, tracked as...

Information Technology
Alerts and advisories ·

Progress Software security advisory (AV26-755)

Information Technology
www.theregister.com - Articles ·

More organizers prohibit camera-equipped specs, even with prescription lenses

Information Technology Commercial Facilities security
The Citizen Lab ·

The OCCRP found that the co-founder of NSO Group, which develops Pegasus spyware, travelled to Panama in 2013 on an Israeli diplomatic passport. The post Co-Founder of Controversial Spyware Firm...

Information Technology Government Facilities
www.theregister.com - Articles ·

VulnCheck says fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, casting doubt on claims frontier models are handing attackers a major advantage

Information Technology security
The Hacker News ·

The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks...

Smoke Sandstorm Information Technology Communications
Wiz Blog | RSS feed ·

How unauthenticated Model Context Protocol (MCP) servers are opening doors to sensitive cloud data, IAM, and command execution.

Information Technology
www.theregister.com - Articles ·

Customer funds safe, but 14,000 organizations may have to phone in time-sensitive payments

Financial Services Information Technology security
www.theregister.com - Articles ·

Customer funds safe, but 14,000 organizations may have to phone in time-sensitive payments

Financial Services Information Technology security
www.theregister.com - Articles ·

Customer funds safe, but 14,000 organizations may have to phone in time-sensitive payments

Financial Services Information Technology security
Threats | CyberScoop ·

Analysis from vulnerability intelligence firm VulnCheck shows AI-discovered flaws aren't being exploited any faster than traditional ones. The post AI-assisted security tools are finding more...

Scattered Spider Information Technology Cybersecurity Research
www.theregister.com - Articles ·

Washington rallies allies to shape next-generation networks after spending 18 months rattling them

Communications Information Technology networks
Alerts and advisories ·

Apache security advisory (AV26-749)

Information Technology
Alerts and advisories ·

Arista Networks security advisory (AV26-751)

Information Technology Government Facilities
Alerts and advisories ·

JetBrains security advisory (AV26-752)

Information Technology Government Facilities
Alerts and advisories ·

Apple security advisory (AV26-753)

Information Technology
Alerts and advisories ·

Vercel security advisory (AV26-754)

Information Technology
The Hacker News ·

JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version following the discovery of a critical security issue that could result in arbitrary code execution....

Information Technology
The Hacker News ·

STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the CentOS Stream 9 build it targeted. The flaw, tracked as CVE-2026-53264 (CVSS score: 7.8), is a...

Information Technology
Articles – Threat Beat ·

Silicon Valley leaders from Anthropic PBC’s Dario Amodei to Nvidia Corp.’s Jensen Huang warned against a U.S. crackdown on open-weight artificial intelligence systems, deepening a debate about how...

Information Technology Government Facilities News
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.Adobe Bridge is a powerful asset management tool that allows...

Government Facilities Information Technology
CERT Polska ·

Plaintext Storage of a Password vulnerability (CVE-2026-41874) has been found in OpenSolution Quick.Cart software.

Information Technology CVE vulnerability
Articles – Threat Beat ·

An Italian investigation into an alleged Russian intelligence network has turned the spotlight on one of the country’s most sensitive military cyber facilities: the Interforce Cyber Training...

Defense Industrial Base Government Facilities News
Articles – Threat Beat ·

Xi Jinping has made a consequential strategic choice. Faced with Kim Jong Un’s growing partnership with Vladimir Putin, Xi is rebuilding Chinese political and economic support for North Korea and...

Defense Industrial Base Government Facilities Insight
Articles – Threat Beat ·

North America accounts for the most internet-exposed industrial control systems (ICS) as of early 2026, with roughly 38% of all such devices located on the continent, according to the internet...

Information Technology Critical Manufacturing News
CERT Polska ·

CERT Polska has received a report about 3 vulnerabilities (from CVE-2026-63301 to CVE-2026-63303) found in OpenSolution Quick.CMS software.

Information Technology CVE vulnerability
Articles – Threat Beat ·

A fast-moving wildfire, one of many raging across Spain, bore down on the Madrid Deep Space Communications Complex on Friday, forcing an evacuation and temporarily suspending operations at one of...

Government Facilities Communications News
Articles – Threat Beat ·

A popular Vatican website and mobile app has been leaking hundreds of thousands of users’ names and email addresses. “Click to Pray” is the Vatican’s official prayer app. Users can sign up for...

Information Technology Communications News
Articles – Threat Beat ·

Cyberattacks targeting the Ministry of Foreign Affairs and its affiliated agencies nearly tripled in the first half of this year compared to the same period last year, data showed, raising fresh...

Government Facilities Information Technology News
The Hacker News ·

Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness. The company says MDASH, using MAI-Cyber-1-Flash...

Information Technology
www.theregister.com - Articles ·

Unauthenticated command injection scores perfect 10 and may expose managed Edge devices

Information Technology security
Schneier on Security ·

Governments are switching, but I’m not sure it makes a difference: …some municipalities, including Denver, Colorado, are ditching their Flock arrays. But keep in mind that if they’re only...

Government Facilities Information Technology Uncategorized cars
Wiz Blog | RSS feed ·

Wiz enables organizations to continuously assess environments against the CISA KEV catalog, automating risk prioritization, rapid remediation, and forensic triage workflows.

Information Technology Government Facilities
The Hacker News ·

A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812...

Information Technology
Cisco Talos Blog ·

Talos IR's Q2 report highlights a significant surge in phishing-based initial access and the weaponization of legitimate remote management tools. Learn how to sharpen your defenses.

Information Technology Talos IR trends CTIR trends
Cyber Security Advisories - MS-ISAC ·

A vulnerability has been discovered in VeloCloud Orchestrator (VCO) On-Prem that could allow for remote code execution. VeloCloud Orchestrator is a centralized management platform used to...

Government Facilities Information Technology
Securelist ·

Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.

Smoke Sandstorm UNC1549 Kimsuky Government Facilities GReAT research APT reports
Have I Been Pwned latest breaches ·

In June 2026, Houston City College was the target of a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from the college was later published publicly and included 832k unique...

Government Facilities
Security Latest ·

Researchers tested top image editing models on Hugging Face and found they could easily create explicit deepfakes—and 1,000 image editing prompts show how people use the software.

Security Security / Privacy