IM
IronMonkey Threat Research
LIVE
|
Articles 27,191
|
CVEs 350,872
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,159 articles — Page 38 of 906
The Hacker News ·

An unknown threat actor has been observed leveraging paid or promoted posts on legitimate news websites to drum up buzz for their warez, according to new findings from Check Point Research. The...

The Hacker News ·

Microsoft has formally disclosed that it's working to release a patch to address a Defender zero-day codenamed RoguePlanet. The vulnerability has now been assigned the CVE identifier...

Information Technology
The Hacker News ·

A French-speaking attacker broke into a small French automotive business, planted a keylogger, and stole banking and email credentials. Ordinary stuff, until one move near the end. Before his...

Scattered Spider Information Technology
The Hacker News ·

For security teams, the findings never stop, but confidence in knowing which ones matter is becoming harder to maintain. The problem is no longer visibility. It's validation. Security teams must...

www.theregister.com - Articles ·

Why are you even reading this?! Rotate your passwords!!

Information Technology cyber-crime
The Hacker News ·

Cybersecurity researchers have flagged a "coordinated malware campaign" on the JetBrains Marketplace that has published no less than 15 malicious plugins capable of exfiltrating artificial...

The Citizen Lab ·

Senior legal advisor Siena Anstis and senior researcher John Scott-Railton spoke with Forbes about the lagging safeguards that let spyware proliferate. The post How Freedom Tech Is Pushing Back...

Information Technology Government Facilities
LevelBlue SpiderLabs Blog ·

Following our previous research, LevelBlue SpiderLabs continued monitoring a series of Windows security component disclosures published under multiple online aliases, including Nightmare-Eclipse,...

Information Technology Emerging Threats
www.theregister.com - Articles ·

PARTNER CONTENT Europe wants control over its own technology, but what does that look like?

Information Technology Government Facilities security
The Hacker News ·

Breaches don't always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a previous attack. But when a vulnerability does drop — like MongoBleed earlier...

www.theregister.com - Articles ·

Updated at the time? No sweat. Check those logs, though

Information Technology Communications security
Threats | CyberScoop ·

Multiple firms have observed active exploitation of the FortiSandbox defects, and warn that the attacks originate from multiple sources, not a single campaign. The post Attackers hit pair of...

Evil Corp Information Technology Cybersecurity Research
www.theregister.com - Articles ·

Homebrew was "less vulnerable 10 years ago than npm is today," project lead tells us

Information Technology devops
Wiz Blog | RSS feed ·

Part 1: How the Red Agent uncovered a multi-step attack chain allowing SSRF-to-Local-File-Read on a GCP Cloud Run API

Information Technology
Wiz Blog | RSS feed ·

An inside look at how the Red Agent, our AI-Powered Attacker, uncovers complex, exploitable risks in the wild

Information Technology
Tenable Blog ·

CISA’s new directive officially ends federal agencies’ reliance on static vulnerability scores. Learn how Tenable One helps federal agencies pivot to dynamic asset exposure, threat validation, and...

Government Facilities Information Technology
DoublePulsar - Medium ·

FortiBleed — 75k Fortinet firewalls have admin passwords crackedAn interesting post popped up on LinkedIn at the weekend from Voldymyr Diachenko saying plain text passwords were found in the wild...

Information Technology Communications fortibleed cybersecurity-news
SECURITY.COM ·

How SE Labs reinforces our belief that security should be tested and proven in the real world

Information Technology
The Hacker News ·

As many as 145 npm packages associated with the Mastra namespace ("@mastra/*"), a popular open-source JavaScript and TypeScript framework for building artificial intelligence (AI) applications,...

Cybersecurity Blog | SentinelOne ·

SentinelOne’s Purple AI Agentic Investigation, now GA, solves the SOC investigation capacity gap with zero-click, machine-speed alert analysis.

Information Technology Company agentic investigation
www.theregister.com - Articles ·

15-year-old among six arrested after Dutch cops target suspected bank fraud call center

Financial Services cyber-crime
The Hacker News ·

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting Widget Factory Joomla Content Editor (JCE) to its Known Exploited...

Schneier on Security ·

On 14 April, the Trump administration quietly acknowledged the widespread use of AI to automate government processes. The office of management and budget (OMB) disclosed a staggering 3,611 active...

CIA Government Facilities Information Technology Uncategorized AI
WeLiveSecurity ·

Many manufacturing plants depend on OT systems that stay in service for many years. That long run can hide significant cybersecurity risks.

Energy Water Critical Infrastructure
www.theregister.com - Articles ·

Bitter harvest for Australia's Mackay Sugar, attacked in peak cane crushing season

cyber-crime
@BushidoToken Threat Intel ·

What HappenedThroughout May 2026, affiliates of the DragonForce ransomware-as-a-service (RaaS) platform claimed seven UK-based companies as its victims by posting them on their Tor data leak...

ALPHV Scattered Spider Healthcare and Public Health Commercial Facilities DragonForce ransomware
The Hacker News ·

A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim's project hijack the victim's machine learning model upload and run code inside Google's serving...

Recorded Future ·

Explore the state digital surveillance risk landscape. Learn how governments use spyware, AI, and network interception to monitor travelers and how to mitigate these risks.

Information Technology Communications Research (Insikt)
Cloud Threat Landscape ·

On 17 June 2026, attackers compromised a maintainer account associated with the Mastra npm organization and used it to republish 116 packages over a 27-minute period. Rather than modifying...

Information Technology
The Hacker News ·

Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from...