IM
IronMonkey Threat Research
LIVE
|
Articles 25,652
|
CVEs 339,047
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,620 articles — Page 264 of 854
Cyble ·

Last week’s reports from Cyble Research & Intelligence Labs (CRIL) to clients highlighted new flaws from December 03 through December 09, 2025, including newly disclosed IT vulnerabilities, ICS...

Critical Manufacturing Energy Vulnerability Vulnerability Management
Tenable Blog ·

Many EDR vendors are retrofitting their tools and slapping an “exposure management” label on them. Don’t be fooled. These offerings often conceal unexpected costs and create dangerous blind spots....

Information Technology Financial Services
The Register - Security ·

PwC supports clients across the full cyber lifecycle Sponsored Post Managing cybersecurity risk has never been simple, but in today's threat landscape it can also become a source of strength. PwC...

Information Technology
The Register - Security ·

Bum note for 20 percent of users whose data leaked Music hosting and streaming service SoundCloud has admitted it suffered a cyberattack.…

Project Zero ·

While on Project Zero, we aim for our research to be leading-edge, our blog design was … not so much. We welcome readers to our shiny new blog! For the occasion, we asked members of Project Zero...

Project Zero ·

Preface Hello from the future! This is a blogpost I originally drafted in early 2017. I wrote what I intended to be the first half of this post (about escaping from the VM to the VirtualBox host...

Project Zero ·

This post was originally written in 2016 for the Project Zero blog. However, in the end it was published separately in the journal PoC||GTFO issue #13 as well as in the second volume of the...

Maxwell Dulin's Resources ·

The Comet browser has an extension built in that lets an AI agent perform any browser tasks a user can. Of course, driven by prompts. Under the hood, Comet has an extension that runs in the...

The Register - Security ·

'Sustained focus on Western critical infrastructure' Russia's Main Intelligence Directorate (GRU) is behind a years-long campaign targeting energy, telecommunications, and tech providers, stealing...

Energy Communications
Maxwell Dulin's Resources ·

An AI browser agent architecture works by granting a privileged origin control of the browser through an agent interface. In the case of Atlas, the focus of this post, they relied on the Mojo IPC...

Chromium Transportation Systems
The Hacker News ·

A Google Chrome extension with a "Featured" badge and six million users has been observed silently gathering every prompt entered by users into artificial intelligence (AI)-powered chatbots like...

Information Technology
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Apple products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these...

Maxwell Dulin's Resources ·

Clickjacking is a classic attack in which an iframe is embedded within another website's content, transparently, to trick the user into interacting with that website. This article describes a...

Food and Agriculture
Maxwell Dulin's Resources ·

Inline cache is an optimization in the V8 browser engine that speeds up property access. When a function is invoked, Ignition compiles it into bytecode, collecting profiling and feedback each time...

Chromium Energy
Maxwell Dulin's Resources ·

Jane Street is a quantitative trading firm that takes code quality seriously. One of the significant ways to improve code quality is through tests, as they act as documentation, a reminder of...

Information Technology
The Hacker News ·

Multiple security vulnerabilities have been disclosed in the open-source private branch exchange (PBX) platform FreePBX, including a critical flaw that could result in an authentication bypass...

Information Technology
Maxwell Dulin's Resources ·

Web3 has three key steps that almost every serious project does: write good tests, get audits/contests on the codebase, and start a bug bounty program. This has substantially reduced the number of...

Financial Services
Threats | CyberScoop ·

The federal government contractor admits it made multiple mistakes in the hiring and firing of Muneeb and Sohaib Akhter. The post Opexus claims background checks missed red flags on twins accused...

Government Facilities Cybercrime Cybersecurity
SECURITY.COM ·

How scalable DLP data discovery accelerates compliance and reduces operational drag

Financial Services Information Technology
The Hacker News ·

If you use a smartphone, browse the web, or unzip files on your computer, you are in the crosshairs this week. Hackers are currently exploiting critical flaws in the daily software we all rely...

Salt Typhoon Transparent Tribe Information Technology Critical Manufacturing
The Register - Security ·

Who hasn't exploited this max-severity flaw? At least five more Chinese spy crews, Iran-linked goons, and financially motivated criminals are now attacking the React2Shell, a maximum-severity flaw...

Earth Lamia Critical Manufacturing Financial Services
The Hacker News ·

In early December 2025, security researchers exposed a cybercrime campaign that had quietly hijacked popular Chrome and Edge browser extensions on a massive scale. A threat group dubbed ShadyPanda...

Panda Information Technology Critical Manufacturing
The Hacker News ·

Cybersecurity researchers have disclosed details of an active phishing campaign that's targeting a wide range of sectors in Russia with phishing emails that deliver Phantom Stealer via malicious...

Defense Industrial Base Financial Services
eCrime.ch Ransomware News | RSS ·

On September 1, 2025, Prosper discovered unauthorized activity on our systems. We acted quickly to stop the activity and enhance our security measures, and we began working with a leading...

Financial Services Commercial Facilities
eCrime.ch Ransomware News | RSS ·

Data breach at credit check giant 700Credit affects at least 5.6 million At least 5.6 million people had their names, addresses, dates of birth, and Social Security numbers stolen in a data breach...

Financial Services Commercial Facilities
Articles – Threat Beat ·

The United States-Mexico-Canada Agreement (USMCA) review is the United States’ best opportunity to advance secure digital infrastructure and influence technological markets in Northern and Latin...

Energy Communications Insight
SentinelLabs - We are hunters, reversers, exploit developers, and tinkerers shedding light on the world of malware, exploits, APTs, and cybercrime across all platforms. ·

LLMs make competent ransomware crews faster and novices more dangerous. The risk is not superintelligent malware, but rather industrialized extortion.

Communications Healthcare and Public Health AI Crimeware
The Cloudflare Blog ·

We present our 6th annual review of Internet trends and patterns observed across the globe, revealing the disruptions, advances and metrics that defined 2025.

Communications Information Technology Year in Review Radar
The Register - Security ·

Watchdog links schedule change to replanning of UK payments system overhaul The European Central Bank's (ECB) decision to delay its move to a new messaging standard in 2022 ended up costing the...

Financial Services
The Register - Security ·

Automaker admits raid that crippled its factories in August led to the theft of sensitive info Jaguar Land Rover (JLR) has reportedly told staff the cyber raid that crippled its operations in...

Critical Manufacturing Financial Services