IM
IronMonkey Threat Research
LIVE
|
Articles 27,275
|
CVEs 351,367
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,243 articles — Page 133 of 909
BleepingComputer ·

A new cybercrime platform called ATHR can harvest credentials via fully automated voice phishing attacks that use both human operators and AI agents for the social engineering phase. [...]

Information Technology Financial Services Security Artificial Intelligence
BleepingComputer ·

AI-powered SOC tools promise automation, but most only speed up triage instead of reducing real workload. Tines shows how real gains come from end-to-end workflows that execute actions across...

Information Technology Security
The Register - Security ·

Just migrate already, would you? But if you can't, Redmond will take your cash Microsoft will keep delivering security updates for old versions of Exchange Server and Skype for Business Server,...

Information Technology
Cisco Talos Blog ·

Cisco Talos discovered an ongoing malicious campaign, operating since at least December 2025, affecting a broader workforce in the Czech Republic with a previously undocumented botnet we call “PowMix.”

Financial Services Information Technology Threat Spotlight Cisco Talos Antivirus
Cisco Talos Blog ·

Wendy shares the unique challenges and rewards of bridging the gap between artistic expression and highly technical research.

Information Technology Humans of Talos
SECURITY.COM ·

AI agents are becoming a new class of enterprise identity—and most platforms weren’t built for them

Information Technology
Schneier on Security ·

Interesting research: “Humans expect rationality and cooperation from LLM opponents in strategic games.” Abstract: As Large Language Models (LLMs) integrate into our social and economic...

Information Technology Uncategorized academic papers
Industrial Cyber ·

The Information Technology Industry Council (ITIC) warns that the U.S. is entering a decisive phase in its pursuit... The post ITI warns US must move from quantum strategy to execution as...

Information Technology Transportation Systems Attacks and Vulnerabilities Control device security
Industrial Cyber ·

New data from GuidePoint Security highlights a ransomware landscape that is no longer spiking but settling into a... The post Ransomware reaches elevated ‘new normal’ as attack volumes hold steady...

Scattered Spider 0ktapus Critical Manufacturing Information Technology Attacks and Vulnerabilities Control device security
BleepingComputer ·

Cisco has released security updates to patch four critical vulnerabilities, including a fixed improper certificate validation flaw in the company's cloud-based Webex Services platform that...

Information Technology Communications Security
The Register - Security ·

Your cybersecurity is only as good as the physical security of the servers PWNED Welcome back to Pwned, the column where we immortalize the worst vulns that organizations opened up for themselves....

Transportation Systems
BleepingComputer ·

The ShinyHunters extortion group has leaked data from 13.5 million McGraw Hill user accounts, stolen after breaching the company's Salesforce environment earlier this month. [...]

ShinyHunters Information Technology Commercial Facilities Security Education
eCrime.ch Ransomware News | RSS ·

Two Ransomware Groups Tore Each Other Apart — Here’s What We Found Inside On April 13, 2026, a threat actor calling itself 0APT published the complete database of the Krybit ransomware operation —...

eCrime.ch Ransomware News | RSS ·

Two separate PlayCrypt intrusions against different organizations, both following the same textbook playbook: SonicWall VPN or RDP initial access, WinRAR staging with identical flags (-ep1 -scul...

BleepingComputer ·

Two U.S. nationals have been sent to prison for helping North Korean remote information technology (IT) workers to pose as U.S. residents and get hired by over 100 companies across the country,...

Information Technology Financial Services Security
Have I Been Pwned latest breaches ·

In April 2026, education company McGraw Hill confirmed a data breach following an extortion attempt. Attributed to a Salesforce misconfiguration, the company stated the incident exposed "a limited...

The Register - Security ·

Browser fingerprinting is everywhere Google markets its Chrome browser by citing its superior safety features, but according to privacy consultant Alexander Hanff, Chrome does not protect against...

Information Technology
Recorded Future ·

A deep dive into business impersonation fraud — from fake companies cashing stolen checks to AI-powered shopping scams — and why the same vulnerability enables both.

Financial Services Information Technology Blog
TrustedSec ·

Play Roll for Initiative. Hack the Planet.Dungeons & Daemons is a cybersecurity RPG that drops you into the boots of a Red Team operator on a live engagement. Your mission: infiltrate a corporate...

Information Technology
The Hacker News ·

Threat actors have been observed weaponizing n8n, a popular artificial intelligence (AI) workflow automation platform, to facilitate sophisticated phishing campaigns and deliver malicious payloads...

Information Technology
The Register - Security ·

Like the majority of the companies participating, it remains a mystery Last week, Anthropic surprised the world by declaring that its latest model, Mythos, is so good at finding vulns that it...

Information Technology
Threats | CyberScoop ·

The National Vulnerability Database will now only analyze vulnerabilities in critical software, systems used in the federal government and those under active exploitation. The post NIST narrows...

Government Facilities Information Technology Cybersecurity Research
Alerts and advisories ·

Google Chrome security advisory (AV26-358)

Information Technology
BleepingComputer ·

A critical vulnerability in Nginx UI with Model Context Protocol (MCP) support is now being exploited in the wild for full server takeover without authentication. [...]

Information Technology Security
The Hacker News ·

A recently disclosed critical security flaw impacting nginx-ui, an open-source, web-based Nginx management tool, has come under active exploitation in the wild. The vulnerability in question is...

Information Technology
The Hacker News ·

A number of critical vulnerabilities impacting products from Adobe, Fortinet, Microsoft, and SAP have taken center stage in April's Patch Tuesday releases. Topping the list is an SQL injection...

Information Technology Critical Manufacturing
BleepingComputer ·

A new malware family named 'AgingFly' has been identified in attacks against local governments and hospitals that steal authentication data from Chromium-based browsers and WhatsApp messenger. [...]

Chromium Government Facilities Healthcare and Public Health Security
The Register - Security ·

No reports of active exploitation (yet) Watch out for more Fortinet vulns! Two critical bugs in Fortinet's sandbox could allow unauthenticated attackers to bypass authentication or execute...

Information Technology
Alerts and advisories ·

Cisco security advisory (AV26-357)

Information Technology Communications
Articles – Threat Beat ·

Early hacker culture is usually remembered for pranks, exploits and legal gray zones. But in a recent Cyber Focus conversation, journalist and author Joe Menn argued that its deeper legacy may be...

Information Technology Communications News