IM
IronMonkey Threat Research
LIVE
|
Articles 25,605
|
CVEs 338,787
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,574 articles — Page 236 of 853
WeLiveSecurity ·

The business social networking site is a vast, publicly accessible database of corporate information. Don’t believe everyone on the site is who they say they are.

Lazarus Group Defense Industrial Base Commercial Facilities Social Media
The Hacker News ·

A critical misconfiguration in Amazon Web Services (AWS) CodeBuild could have allowed complete takeover of the cloud service provider's own GitHub repositories, including its AWS JavaScript SDK,...

Critical Manufacturing Energy
Recorded Future ·

Understand the future of threat and vulnerability management (TVM). Learn what TVM is, why traditional tools fail, and how intelligence is essential in today’s landscape.

Information Technology Nuclear Blog
maxwelldulin ·

Facebook uses long-lived device identifiers to reduce friction for returning users to distinguish legitimate vs. illegitimate activity. A device that logs in repeatedly is considered trusted by...

maxwelldulin ·

The Meta Conversions API Gateway is a server-side mechanism for businesses to send web events to bypass browser-based tracking methods like the Facebook Pixel. Even if a user has cookies disabled,...

Energy Information Technology
The Register - Security ·

This is a threat to security - and to the weekend for some unlucky netadmins Cisco finally delivered a fix for a maximum-severity bug in AsyncOS that has been under attack for at least a month.…

The Citizen Lab ·

On January 14, Citizen Lab senior researcher Marcus Michaelsen testified on transnational repression in a hearing of the Human Rights Committee in the German parliament (Bundestag). In a...

The Register - Security ·

What's next for Venezuela? Click on the file and see What policy wonk wouldn't want to click on an attachment promising to unveil US plans for Venezuela? Chinese cyberspies used just such a lure...

Mustang Panda Twill Typhoon Defense Industrial Base Government Facilities
The Register - Security ·

Fix landed in July, but OEM firmware updates are required If you use virtual machines, there's reason to feel less-than-Zen about AMD's CPUs. Computer scientists affiliated with the CISPA...

Information Technology
The Hacker News ·

A maximum-severity security flaw in a WordPress plugin called Modular DS has come under active exploitation in the wild, according to Patchstack. The vulnerability, tracked as CVE-2026-23550 (CVSS...

Commercial Facilities Communications
The Hacker News ·

Cybersecurity researchers have disclosed details of a new attack method dubbed Reprompt that could allow bad actors to exfiltrate sensitive data from artificial intelligence (AI) chatbots like...

Communications Commercial Facilities
Security Latest ·

X has placed more restrictions on Grok's ability to generate explicit AI images, but tests show the updates have created a patchwork of limitations that fail to fully address the issue.

Information Technology Communications Security Security / Privacy
The Hacker News ·

The internet never stays quiet. Every week, new hacks, scams, and security problems show up somewhere. This week’s stories show how fast attackers change their tricks, how small mistakes turn into...

Communications Critical Manufacturing
The Register - Security ·

Office workers without AI experience warned to watch for prompt injection attacks - good luck with that Anthropic's tendency to wave off prompt-injection risks is rearing its head in the company's...

Commercial Facilities Transportation Systems
Cisco Talos Blog ·

In this week’s newsletter, Martin examines the evolving landscape for 2026, highlighting key threats, emerging trends like AI-driven risks, and the continued importance of addressing familiar...

Threat Source newsletter
Proofpoint News Feed ·

Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.

Security Latest ·

Over the past decade, US immigration agents have shot and killed more than two dozen people. Not a single agent appears to have faced criminal charges.

Government Facilities Defense Industrial Base Security Security / National Security
The Hacker News ·

As AI copilots and assistants become embedded in daily work, security teams are still focused on protecting the models themselves. But recent incidents suggest the bigger risk lies elsewhere: in...

Information Technology Commercial Facilities
The Hacker News ·

It’s 2026, yet many SOCs are still operating the way they did years ago, using tools and processes designed for a very different threat landscape. Given the growth in volumes and complexity of...

Commercial Facilities Communications
eCrime.ch Ransomware News | RSS ·

First spotted in July 2025, the DeadLock group has attacked a wide range of organizations while almost managing to stay under the radar. It abandons the usual double extortion approach in which...

The Hacker News ·

Microsoft on Wednesday announced that it has taken a "coordinated legal action" in the U.S. and the U.K. to disrupt a cybercrime subscription service called RedVDS that has allegedly fueled...

Financial Services Information Technology
The Register - Security ·

And it's 'not unique to AWS,' researcher tells The Reg A critical misconfiguration in AWS's CodeBuild service allowed complete takeover of the cloud provider's own GitHub repositories and put...

Information Technology Energy
LevelBlue SpiderLabs Blog ·

CVE-2026-21858 (Ni8mare) is a maximum-severity vulnerability in self-hosted n8n that can enable unauthenticated instance takeover, leading to remote code execution (RCE) when public webhook or...

Financial Services Commercial Facilities Vulnerabilities
LevelBlue SpiderLabs Blog ·

CVE-2026-21858 (Ni8mare) is a maximum-severity vulnerability in self-hosted n8n that can enable unauthenticated instance takeover, leading to remote code execution (RCE) when public webhook or...

Financial Services Commercial Facilities Vulnerabilities
Wiz Blog | RSS feed ·

Wiz Research discovered a critical supply chain vulnerability that abused a CodeBuild misconfiguration to take over key AWS GitHub repositories - including the JavaScript SDK powering the AWS Console.

Critical Manufacturing Energy
Research & Threat Intel News- Outpost24 Blog ·

Understand what happened in the recent Endesa data breach, with expert insight from Outpost24’s threat intelligence team. The post New attack analysis: What you need to know about the Endesa data...

Energy Information Technology Research & Threat Intel
Articles – Threat Beat ·

The Department of Homeland Security is finalizing plans for a new body that would replace the functions of the Critical Infrastructure Partnership Advisory Council (CIPAC) and serve as a...

Healthcare and Public Health Critical Manufacturing News
Threat Intelligence ·

Written by: Nic Losby Introduction Mandiant is publicly releasing a comprehensive dataset of Net-NTLMv1 rainbow tables to underscore the urgency of migrating away from this outdated protocol....

Threat Intelligence
Articles – Threat Beat ·

Federal lawmakers next week are expected to revive efforts to renew lapsed cybersecurity legislation aimed at fostering collaboration between Washington and private-sector companies in chasing...

Critical Manufacturing Healthcare and Public Health News
Articles – Threat Beat ·

The White House’s top technology and science official on Wednesday defended the Trump administration’s “hard decisions” to gut agency staff last year while simultaneously trumpeting the...

Critical Manufacturing Healthcare and Public Health News