IM
IronMonkey Threat Research
LIVE
|
Articles 25,712
|
CVEs 339,158
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,681 articles — Page 293 of 857
Cybersecurity Blog | SentinelOne ·

As the React2Shell flaw threatens React & Next.js apps, learn how SentinelOne detects, validates, and protects vulnerable workloads.

Earth Lamia Information Technology Government Facilities Company next.js
The Register - Security ·

Proof of life? Or an active social media presence? Criminals are altering social media and other publicly available images of people to use as fake proof of life photos in "virtual kidnapping" and...

The Hacker News ·

A new agentic browser attack targeting Perplexity's Comet browser that's capable of turning a seemingly innocuous email into a destructive action that wipes a user's entire Google Drive contents,...

Information Technology Government Facilities
Threats | CyberScoop ·

A debate over actual exploitation is muddying response efforts. Multiple researchers say they’ve observed working proof of concepts while others assert evidence of attacks is lacking. The post...

Salt Typhoon Earth Lamia Government Facilities Communications Cybercrime Cybersecurity
Schneier on Security ·

The vampire squid (Vampyroteuthis infernalis) has the largest cephalopod genome ever sequenced: more than 11 billion base pairs. That’s more than twice as large as the biggest squid genomes. It’s...

Uncategorized squid
The Register - Security ·

Who needs JavaScript? Security researcher Lyra Rebane has devised a novel clickjacking attack that relies on Scalable Vector Graphics (SVG) and Cascading Style Sheets (CSS).…

The Hacker News ·

A critical security flaw has been disclosed in Apache Tika that could result in an XML external entity (XXE) injection attack. The vulnerability, tracked as CVE-2025-66516, is rated 10.0 on the...

Information Technology
The Register - Security ·

Security community needs to rally and share more info faster, one researcher says Amid new reports of attackers pummeling a maximum security hole (CVE-2025-55182) in the React JavaScript library,...

Earth Lamia
DataBreaches.Net ·

Akshaya Asokan reports: The U.K. government is considering amending its three-decade-old hacking law to include a “statutory defense” cover for security researchers, Security Minister Dan Jarvis...

Legislation Non-U.S.
DataBreaches.Net ·

Islam Uddin reports: Japanese authorities have issued an arrest warrant against a teenager suspected of a cyberattack while using artificial intelligence, local media reported on Thursday. The...

Financial Services Government Facilities Artificial Intelligence Business Sector
The Hacker News ·

Two hacking groups with ties to China have been observed weaponizing the newly disclosed security flaw in React Server Components (RSC) within hours of it becoming public knowledge. The...

Operation ChattyGoblin Earth Lamia Information Technology Critical Manufacturing
Blog ·

Cybereason is continuing to investigate. Check the Cybereason blog for additional updates. KEY TAKEAWAYS Critical vulnerability discovered on December 3, 2025 in React that could allow for...

Information Technology
The Hacker News ·

A human rights lawyer from Pakistan's Balochistan province received a suspicious link on WhatsApp from an unknown number, marking the first time a civil society member in the country was targeted...

Communications Information Technology
Cyber Security Advisories - MS-ISAC ·

A vulnerability in the React Server Components (RSC) implementation has been discovered that could allow for remote code execution. Specifically, it could allow for unauthenticated remote code...

Communications
Cybersecurity Blog | SentinelOne ·

Authorities seize a major crypto mixer, researchers expose DPRK remote identity theft scheme, and critical React2Shell flaw allows RCE.

Operation Contagious Interview Government Facilities Critical Manufacturing Company cyber
The Hacker News ·

Most MSPs and MSSPs know how to deliver effective security. The challenge is helping prospects understand why it matters in business terms. Too often, sales conversations stall because prospects...

Information Technology Transportation Systems
The Record from Recorded Future News ·

The bug, tagged as CVE-2025-55182 and referred to colloquially as React2Shell, was reported to Meta by researcher Lachlan Davidson on November 29 and publicly disclosed on Wednesday, when a fix...

Earth Lamia Financial Services Commercial Facilities Cybercrime Government
The Register - Security ·

Laptop maker says a vendor breach exposed some phone camera code, but not its own systems Asus has admitted that a third-party supplier was popped by cybercrims after the Everest ransomware gang...

Energy
The Register - Security ·

State-backed attackers started poking flaw as soon as it dropped – anyone still unpatched is on borrowed time Amazon has warned that China-nexus hacking crews began hammering the critical React...

Earth Lamia Information Technology
The Record from Recorded Future News ·

X's paid "blue checkmark" system for verifying users and other aspects of the platform violate the EU's Digital Services Act, the European Commission said in fining the company €120 million ($139 million).

Government Facilities Defense Industrial Base Technology News
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday released details of a backdoor named BRICKSTORM that has been put to use by state-sponsored threat actors from the...

UNC5221 Information Technology Government Facilities
DataBreaches.Net ·

As seen on Cybernews: The average hacker is not a teen – it’s more likely to be their dad New data compiled by Orange Cyberdefense, as part of its Security Navigator 2026 threat landscape...

Financial Services Government Facilities Commentaries and Analyses
Threat Research – Sophos News ·

Updates include novel abuse of recruitment platforms, modified infection chains, and expansion into a hybrid operation that combines data theft and ransomware deployment

RedCurl Earth Kapre Healthcare and Public Health Commercial Facilities Threat Research Canada
Articles – Threat Beat ·

One of the biggest goals in 2026 for the Space Force’s Program Executive Office for Operational Test and Training Infrastructure (PEO OTTI) is to create the final requirements for its main...

Salt Typhoon Defense Industrial Base Communications News
Articles – Threat Beat ·

The Pentagon plans to purchase more than 200,000 industry-made drones by 2027 — with forthcoming orders for 30,000 of those unmanned assets to be delivered by July 2026 — via its new Drone...

Salt Typhoon Defense Industrial Base Communications News
Articles – Threat Beat ·

The National Security Agency recently achieved its goals to shed around 2,000 people from its workforce this year, according to three people familiar with the spy agency’s posture. The people...

Salt Typhoon Defense Industrial Base Communications News
Articles – Threat Beat ·

When news broke approximately a year ago that Chinese hackers had systemically penetrated at least nine major U.S. communications networks, the level of alarm from policymakers was clear. At a...

Salt Typhoon Communications Defense Industrial Base News
Articles – Threat Beat ·

During the nearly four years since Russia invaded Ukraine, satellite constellations have been a lifeline for Ukrainian forces, keeping the Internet and the military connected despite ongoing...

Salt Typhoon Communications Defense Industrial Base News
DoublePulsar - Medium ·

A few days ago, CVE-2025–55182 was revealed alongside an excellent write up: https://react.dev/blog/2025/12/03/critical-security-vulnerability-in-react-server-componentsThe disclosure write up is...

security-vulnerabilities react
The Register - Security ·

Plan would create statutory powers for police use of biometrics, prompting warnings of mass surveillance The UK government has kicked off plans to ramp up police use of facial recognition,...

Commercial Facilities Financial Services