IM
IronMonkey Threat Research
LIVE
|
Articles 25,463
|
CVEs 337,950
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,432 articles — Page 30 of 848
eCrime.ch Ransomware News | RSS ·

Check Point Software has released a report showing that ransomware accounted for 58% of recorded cyber incidents in Singapore. The findings are based on more than 130 major incidents logged in...

BleepingComputer ·

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrary code via cross-site scripting (XSS)...

Information Technology Government Facilities Microsoft Security
www.theregister.com - Articles ·

Other than Instructure execs - maybe?

cyber-crime
Recorded Future ·

In April 2026, Insikt Group® identified 37 high-impact vulnerabilities that should be prioritized for remediation, 35 of which had a Very Critical Recorded Future Risk Score. This represents a 19%...

Information Technology Government Facilities Blog
The Hacker News ·

Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it said has been exploited in limited attacks. The vulnerability, tracked as...

Information Technology Communications
The Hacker News ·

Cybersecurity researchers are sounding the alarm about what has been described as "malicious activity" in newly published versions of node-ipc. According to Socket and StepSecurity, three...

Information Technology
The Hacker News ·

Everything is still on fire. This week feels dumb in the worst way — bad links, weak checks, fake help desks, shady forum posts, and people turning supply chain attacks into some cursed little...

Tenable Blog ·

Multiple critical authentication bypass vulnerabilities in Cisco Catalyst SD-WAN Controller and Manager are under active exploitation by multiple threat clusters, including CVE-2026-20182, which...

Information Technology Communications
Alerts and advisories ·

Tenable security advisory (AV26-472)

Information Technology
The Record from Recorded Future News ·

The actions are being taken in light of an expanding supply chain campaign impacting the popular open-source library TanStack and additional npm and PyPI packages tied to several AI companies.

Information Technology Cybercrime News
eCrime.ch Ransomware News | RSS ·

CMD Organization is an emerging ransomware group that first posted victims to their public leak site in early April 2026. CMD Organization’s operating model appears similar to other ransomware...

The Citizen Lab ·

Senior research associate Kate Robertson says Bill C-22 could lead to the rollout of forced metadata collection for messaging apps. The post Signal Warns It Would Pull Out of Canada if Made to...

Information Technology Government Facilities
The Hacker News ·

The Belarus-aligned threat group known as Ghostwriter has been attributed to a fresh set of attacks targeting governmental organizations in Ukraine. Active since at least 2016, Ghostwriter has...

White Lynx Energy Government Facilities
BleepingComputer ·

The TeamPCP hacker group is threatening to leak source code from the Mistral AI project unless a buyer is found for the data. [...]

Information Technology Security
Alerts and advisories ·

Cisco security advisory (AV26-471)

Information Technology Communications
Cisco Talos Blog ·

In this week’s newsletter, Martin reflects on what the next iteration of AI tools means for vulnerability discovery and our ability to manage large-scale patch releases.

Information Technology Threat Source newsletter
Tenable Blog ·

Tenable Hexa AI eliminates “zombie” cloud infrastructure, helping you reduce risk and make a “killing” on cost reduction.Key takeawaysAs AI accelerates cloud growth, zombie cloud assets multiply...

Information Technology
The Hacker News ·

Threat actors have been observed attempting to exploit a recently disclosed security vulnerability in PraisonAI, an open-source multi-agent orchestration framework, within four hours of public...

Information Technology
BleepingComputer ·

Hackers are leveraging a critical authentication bypass vulnerability in the WordPress plugin Burst Statistics to obtain admin-level access to websites. [...]

Information Technology Security
The Hacker News ·

AI hallucinations are introducing serious security risks into critical infrastructure decision-making by exploiting human trust through highly confident yet incorrect outputs. When an AI model...

Information Technology
BleepingComputer ·

Cisco is warning that a critical Catalyst SD-WAN Controller authentication bypass flaw, tracked as CVE-2026-20182, was actively exploited in zero-day attacks that allowed attackers to gain...

Communications Information Technology Security
Alerts and advisories ·

PostgreSQL security advisory (AV26-470)

Information Technology
Cisco Talos Blog ·

Cisco Talos is tracking the active exploitation of CVE-2026-20182, an authentication bypass vulnerability in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN...

Information Technology Communications Threat Advisory Cisco Talos Antivirus
Schneier on Security ·

This is a current list of where and when I am scheduled to speak: I’m giving a virtual talk on “The Security of Trust in the Age of AI,” hosted by the Financial Women’s Association of New York, at...

Financial Services Information Technology Uncategorized Schneier news
Alerts and advisories ·

Broadcom VMware security advisory (AV26-469)

Information Technology
Alerts and advisories ·

MongoDB security advisory (AV26-468)

Information Technology
Tenable Blog ·

A new Linux kernel local privilege escalation exploit with a public proof-of-concept targets the same subsystem as Dirty Frag but requires a separate patch.Key TakeawaysCVE-2026-46300 (Fragnesia)...

Information Technology
BleepingComputer ·

OpenAI says two employees' devices were breached in the recent TanStack supply chain attack that impacted hundreds of npm and PyPI packages, causing the company to rotate code-signing certificates...

Information Technology Security Education
CERT Polska ·

Cross-site Scripting vulnerability (CVE-2026-21730) has been found in Verba software.

Information Technology CVE vulnerability
The Hacker News ·

An anonymous cybersecurity researcher who disclosed three Microsoft Defender vulnerabilities has returned with two more zero-days involving a BitLocker bypass and a privilege escalation impacting...

Information Technology