IM
IronMonkey Threat Research
LIVE
|
Articles 25,625
|
CVEs 338,787
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,597 articles — Page 241 of 854
Tenable Blog ·

8Critical105Important0Moderate0LowMicrosoft addresses 113 CVEs in the first Patch Tuesday of 2026, with two zero-days, including one that was exploited in the wild.Microsoft patched 113 CVEs in...

Information Technology Financial Services
The Register - Security ·

Git server flaw that attackers have been abusing for months has now caught the attention of US cyber cops CISA has ordered federal agencies to stop using Gogs or lock it down immediately after a...

Government Facilities Information Technology
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned of active exploitation of a high-severity security flaw impacting Gogs by adding it to its Known Exploited...

Commercial Facilities Communications
The Register - Security ·

AuraInspector automates the most common abuses and generates fixes for customers Mandiant has released an open source tool to help Salesforce admins detect misconfigurations that could expose...

Healthcare and Public Health Financial Services
The Register - Security ·

Dutchman fails to convince judges his trial was unfair because cops read his encrypted chats A Dutch appeals court has kept a seven-year prison sentence in place for a man who hacked port IT...

Transportation Systems
Schneier on Security ·

Forty years ago, The Mentor—Loyd Blankenship—published “The Conscience of a Hacker” in Phrack. You bet your ass we’re all alike… we’ve been spoon-fed baby food at school when we hungered for...

Uncategorized hacking
Unit 42 ·

We identified remote code execution vulnerabilities in open-source AI/ML libraries published by Apple, Salesforce and NVIDIA. The post Remote Code Execution With Modern AI/ML Formats and Libraries...

Threat Research Vulnerabilities
Security Latest ·

With federal agents storming the streets of American communities, there’s no single right way to approach this dangerous moment. But there are steps you can take to stay safe—and have an impact.

Defense Industrial Base Transportation Systems Security Security / National Security
The Register - Security ·

Project Nightfall aims to deliver a UK-built long-range strike capability at speed The British government is asking defense firms to rapidly produce a new ground-launched ballistic missile to aid...

Defense Industrial Base Commercial Facilities
WeLiveSecurity ·

If your data is on the dark web, it’s probably only a matter of time before it’s abused for fraud or account hijacking. Here’s what to do.

Financial Services Critical Manufacturing Privacy
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser used to access the...

Healthcare and Public Health Information Technology
eCrime.ch Ransomware News | RSS ·

Phishing attacks and cyber fraud have overtaken ransomware as the top cybersecurity concern of business leaders, according to the World Economic Forum’s (WEF) Global Cybersecurity Outlook for 2026.

Financial Services Information Technology
Cyble ·

Executive Summary deVixor is an actively developed Android banking malware campaign operating at scale, targeting Iranian users through phishing websites that masquerade as legitimate automotive...

Financial Services Information Technology Cyber news
The Register - Security ·

Government is fed up with bad actors using digi-cash to fund dodgy deeds India’s government has updated the regulations it imposes on cryptocurrency services providers, as part of its efforts to...

Financial Services
GreyNoise Labs ·

CVE-2025-52691 (an unauthenticated arbitrary file upload weakness enabling remote code execution on SmarterTools SmarterMail Email Gateways) landed on December 28, 2025, carrying a CVSS score of...

Energy Threat Signal Version Check
Recorded Future ·

December 2025 witnessed a dramatic 120% increase in high-impact vulnerabilities, with Recorded Future's Insikt Group® identifying 22 vulnerabilities requiring immediate remediation, up from 10 in...

Earth Lamia Communications Blog
Recorded Future ·

Stop ransomware before encryption begins. Learn how intelligence-driven detection tools can help identify precursor behaviors and reduce false positives for faster response.

Financial Services Information Technology Blog
Threats | CyberScoop ·

The criminal organization specialized in business email compromise scams and generated billions of dollars in criminal proceeds annually from many small-scale operations, officials said. The post...

Financial Services Cybercrime Cybersecurity
Security Latest ·

The state of Minnesota, along with the Twin Cities, have sued the US government and several officials to halt the flood of agents carrying out an Immigration and Customs Enforcement operation.

Government Facilities Emergency Services Security Security / National Security
The Register - Security ·

In SEC filings, Fortinet and Palo Alto show shrinking product margins taking hold. PCs and datacenters aren't the only devices that need DRAM. The global memory shortage is roiling the...

The Register - Security ·

Gang members 'systematically exploited children and young people,' cops say A 21-year-old Swedish man accused of being a key organizer of violence-as-a-service linked to the Foxtrot criminal...

Security Latest ·

The testimony also calls into question whether Ross failed to follow his training during the incident in which he reportedly shot and killed Minnesota citizen Renee Good.

Government Facilities Defense Industrial Base Security Security / National Security
The Hacker News ·

Threat actors have been observed uploading a set of eight packages on the npm registry that masqueraded as integrations targeting the n8n workflow automation platform to steal developers' OAuth...

Critical Manufacturing Communications
The Record from Recorded Future News ·

Several internet access monitors tracking the situation said the government has continued the total internet shutdown and plans to implement a whitelist of limited, approved sites, indicating the...

Energy Communications Government News
Maxwell Dulin's Resources ·

The IoT OWASP top 10 includes Insecure Default Settings. To the author, this means a configuration that is insecure by default, a setting that the user must explicitly change, or a setting that is...

Financial Services Commercial Facilities
The Hacker News ·

This week made one thing clear: small oversights can spiral fast. Tools meant to save time and reduce friction turned into easy entry points once basic safeguards were ignored. Attackers didn’t...

Communications Commercial Facilities
maxwelldulin ·

The failure of the penetration testing market is framed as a technical problem. According to this author, they feel that it's an economic incentives problem. It rewards the appearance of security...

Security Latest ·

The fundraiser for the ICE agent in the Renee Good killing has stayed online in seeming breach of GoFundMe’s own terms of service, prompting questions about selective enforcement.

Defense Industrial Base Financial Services Security Security / Security News
The Register - Security ·

Survey finds security checks nearly doubled in a year as leaders wise up The number of organizations that have implemented methods for identifying security risks in the AI tools they use has...

Critical Manufacturing
Maxwell Dulin's Resources ·

Solana forking doesn't really exist. This is an amazing innovation for writing proof of concepts locally.

Energy