IM
IronMonkey Threat Research
LIVE
|
Articles 27,278
|
CVEs 351,469
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,246 articles — Page 150 of 909
Schneier on Security ·

Google says that it will fully transition to post-quantum cryptography by 2029. I think this is a good move, not because I think we will have a useful quantum computer anywhere near that year, but...

Information Technology Government Facilities Uncategorized cryptography
BleepingComputer ·

Infostealers are harvesting credentials and session cookies at scale, bypassing traditional defenses. Lunar explains why simple breach monitoring alone can't keep up with modern credential-based...

Information Technology Financial Services Security
The Register - Security ·

Pay no attention to that code behind the curtain, says Anthropic as it scrambles to defend its IPO Kettle When it comes to circling up for this week's Kettle, what is there to discuss but...

Information Technology
The Hacker News ·

Drift has revealed that the April 1, 2026, attack that led to the theft of $285 million was the culmination of a months-long targeted and meticulously planned social engineering operation...

Lazarus Group Labyrinth Chollima Citrine Sleet Financial Services Information Technology
Articles – Threat Beat ·

The Iranian hacker group behind a massive wiper attack on a U.S. medical technology company and the breach of the FBI director’s personal email claimed today that they are poised to inflict water,...

Energy Water News
Articles – Threat Beat ·

FB-ISAO predicted that the "SEVERE" threat level will remain "for the foreseeable future" given the current domestic and geopolitical climate.

Government Facilities Information Technology News
BleepingComputer ·

Scammers are sending fake "Notice of Default" traffic violation text messages impersonating state courts across the U.S., pressuring recipients to scan a QR code that leads to a phishing site...

Government Facilities Information Technology Security
BleepingComputer ·

Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability that is actively exploited in attacks. [...]

Information Technology Government Facilities Security
DataBreaches.Net ·

We have probably all read recommendations that cyberattack victims should not pay ransom demands because it encourages more crime, and because criminals can’t be trusted to delete data they...

Scattered Spider Information Technology Government Facilities Commentaries and Analyses Miscellaneous
The Register - Security ·

True-crime tales of criminals making fools of themselves interview Cybercrime crews have become almost mystical entities, with security vendors assigning them names like Wizard Spider and Velvet Tempest.…

Wizard Spider Information Technology Energy
The Hacker News ·

Cybersecurity researchers have discovered 36 malicious packages in the npm registry that are disguised as Strapi CMS plugins but come with different payloads to facilitate Redis and PostgreSQL...

Information Technology
BleepingComputer ·

Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnerable Next.js apps. [...]

Information Technology Security
The Hacker News ·

Fortinet has released out-of-band patches for a critical security flaw impacting FortiClient EMS that it said has been exploited in the wild. The vulnerability, tracked as CVE-2026-35616 (CVSS...

Information Technology
Security Latest ·

When Syrian government accounts were hijacked in March, the breach looked chaotic. But it revealed something more troubling: a state struggling with the most basic layer of cybersecurity.

Government Facilities Information Technology Security Security / National Security
Industrial Cyber ·

The economics of industrial cybersecurity is no longer a straightforward matter of considering preventive expenses but a broader... The post Rising breach costs and operational downtime redefine...

Volt Typhoon Salt Typhoon Critical Manufacturing Energy Attacks and Vulnerabilities Control device security
DataBreaches.Net ·

Unauthorized access to Auger & Auger‘s network lasted all of 25 minutes on February 17, 2026. On March 30, the North Carolina personal injury law firm notified those affected and offered them 1...

Healthcare and Public Health Breach Incidents Business Sector
BleepingComputer ·

The maintainers of the popular Axios HTTP client have published a detailed post-mortem describing how one of its developers was targeted by a social engineering campaign believed to have been...

Information Technology Security
DataBreaches.Net ·

Edith Lin reports: Hong Kong’s privacy watchdog and police are investigating a large-scale data leak involving over 56,000 patients served by the Hospital Authority, which reported the...

Healthcare and Public Health Health Data Non-U.S.
DataBreaches.Net ·

Bill Toulas reports: Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar information-stealing malware. Claude Code is a...

Information Technology Artificial Intelligence Malware
DataBreaches.Net ·

Phil Tenser reports: A cybersecurity attack is affecting several Massachusetts towns that share a regional emergency communications center. The cyberattack affecting the Patriot Regional Emergency...

Information Technology Communications Miscellaneous U.S.
DataBreaches.Net ·

Robbie Meredith reports: An IT system used by schools across Northern Ireland has been targeted in a cyber attack, the Education Authority (EA) has said. On Thursday, schools received a message...

Government Facilities Education Sector Non-U.S.
DataBreaches.Net ·

Maxwell Zeff, Zoë Schiffer, and Lily Hay Newman report: Meta has paused all its work with the data contracting firm Mercor while it investigates a major security breach that impacted the startup,...

Information Technology Artificial Intelligence Business Sector
Articles – Threat Beat ·

The Education Authority (EA) of Northern Ireland has confirmed that a cyber attack has hit schools. On April 3, the EA said that the C2k network, which provides online and IT services to schools,...

Government Facilities News
Articles – Threat Beat ·

From smart cat feeders and robot vacuum cleaners to online chess, Russians have found new ways to communicate with loved ones as foreign messaging apps have been blacklisted. The Russian...

Information Technology Government Facilities News
Security Latest ·

Plus: The FBI says a recent hack of its wiretap tools poses a national security risk, attackers stole Cisco source code as part of an ongoing supply chain hacking spree, and more.

Salt Typhoon Information Technology Security Security / Cyberattacks and Hacks
Articles – Threat Beat ·

A series of malicious LNK files targeting users in South Korea has been detected using a multi-stage attack chain that uses GitHub as command and control (C2) infrastructure. The campaign relies...

Information Technology News
BleepingComputer ·

Device code phishing attacks that abuse the OAuth 2.0 Device Authorization Grant flow to hijack accounts have surged more than 37 times this year. [...]

Information Technology Security
Wiz Blog | RSS feed ·

After hackerbot-claw, another AI-powered campaign exploiting pull_request_target confirms the threat is here to stay. We trace the attacker back to three weeks before anyone noticed.

Information Technology
eCrime.ch Ransomware News | RSS ·

St. Joseph County officials acknowledged a cyber attack by an Iranian-backed hacker group called Handala earlier this week. County officials and council members held a news conference Thursday...

Government Facilities Information Technology
eCrime.ch Ransomware News | RSS ·

Omax Autos Limited has confirmed a ransomware attack on its IT infrastructure, first detected on March 26, 2026. The company stated that while IT systems were affected, its core operations and...

Critical Manufacturing Information Technology