IM
IronMonkey Threat Research
LIVE
|
Articles 25,892
|
CVEs 340,195
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,860 articles — Page 429 of 862
Google Online Security Blog ·

Posted by Matthew Suozzo, Google Open Source Security Team (GOSST)Today we're excited to announce OSS Rebuild, a new project to strengthen trust in open source package ecosystems by reproducing...

maxwelldulin ·

The Thermomix TM5 is a multifunctional kitchen appliance. In previous research, Jean-Michel Besnard found a directory traversal flaw in BusyBox's tar implementation. This article describes a lot...

BleepingComputer ·

The Clear Linux OS team has announced the shutdown of the project, marking the end of its 10-year existence in the open-source ecosystem. [...]

Information Technology Security Linux
BleepingComputer ·

Ring is warning that a backend update bug is responsible for customers seeing a surge in unauthorized devices logged into their account on May 28th. [...]

Security
The Record from Recorded Future News ·

Researchers from the cybersecurity firm Lookout detected the latest version of DCHSpy one week after Israel’s June bombing campaign targeting Iran’s nuclear program began. DCHSpy was first...

Transportation Systems Defense Industrial Base Cybercrime Government
maxwelldulin ·

TLS allows for a lot of configuration. Which encryption algorithms and key exchanges that can be used, hashing algorithms and more. The author of this post asks if this is the proper user...

maxwelldulin ·

Browsers need to be fast - I mean, really fast. So, running JavaScript isn't always fast enough. Modern browsers perform Just-in-Time (JIT) compilations of JavaScript to native code, making it...

Maxwell Dulin's Resources ·

The Web3 space is innovative yet financially risky at the same time, due to attackers' ability to directly steal money. This innovative aspect has led to many hard-won lessons in security that...

Healthcare and Public Health
Maxwell Dulin's Resources ·

Halo2 is a zero-knowledge (ZK) proof framework based on the PLONK protocol that was originally used for Zcash. Circuits, the flow of operations and verification in a ZK proof, are structured as...

Transportation Systems
Maxwell Dulin's Resources ·

GMX is a very large decentralized trading platform. Although it has a $5M bug bounty, it was exploited for $42M after over 2 years of being live and multiple audits. There are several reasons this...

Financial Services Energy
Maxwell Dulin's Resources ·

This report is an in the wild story of attackers compromising many contracts in a subtle way. The name says it all: Clandestine Proxy In the Middle of Proxy (CPIMP). Smart contract deployment of...

Financial Services
Maxwell Dulin's Resources ·

While browsing Shodan one day, they noticed a subdomain associated with Microsoft - guest.microsoft.com. Once logged in via a phone number, no information was given. This seemed like it wasn't...

Commercial Facilities
maxwelldulin ·

McHire is a chatbot recruitment platform used by most of McDonald's franchisees. Employees chat with a bot named Olivia to collect information, conduct personality tests and more that is owned by...

Commercial Facilities
Threats | CyberScoop ·

Attackers have already used the exploit dubbed “ToolShell” to intrude hundreds of organizations globally, including private companies and government agencies. The post Mass attack spree hits...

Government Facilities Cybersecurity Research
Threats | CyberScoop ·

The U.S. is stepping into a new cyber era, and it comes not a moment too soon. With the Trump administration’s sweeping $1 billion cyber initiative in the “Big Beautiful Bill” and growing...

Volt Typhoon Salt Typhoon Defense Industrial Base Energy Commentary Geopolitics
BleepingComputer ·

ExpressVPN has fixed a flaw in its Windows client that caused Remote Desktop Protocol (RDP) traffic to bypass the virtual private network (VPN) tunnel, exposing the users' real IP addresses. [...]

Information Technology Communications Security Software
Zero-Day Archives - Cyber Security News ·

CISA has issued an urgent warning about a critical zero-day remote code execution vulnerability affecting Microsoft SharePoint Server on-premises installations that threat actors are actively...

Government Facilities Information Technology Cyber Security Cyber Security News
BleepingComputer ·

Veeam warned customers today that a recently released Recovery Orchestrator version blocks Web UI logins after enabling multi-factor authentication (MFA). [...]

Technology
The Record from Recorded Future News ·

Microsoft has issued an urgent patch for most SharePoint servers after cybersecurity researchers found threat actors globally exploiting a zero-day vulnerability in the products.

Government Facilities Healthcare and Public Health Technology Industry
BleepingComputer ·

The House of Dior (Dior) is sending data breach notifications to U.S. customers informing them that a May cybersecurity incident compromised their personal information. [...]

ShinyHunters Financial Services Security
CERT Polska ·

CERT Polska has received a report about Hard-coded Credentials vulnerability (CVE-2025-4049) found in SIGNUM-NET FARA software.

CVE vulnerability
Broadcom Software Blogs ·

Symantec products already block CVE-2025-53770 exploit attempts.

BleepingComputer ·

Over 1,000 CrushFTP instances currently exposed online are vulnerable to hijack attacks that exploit a critical security bug, providing admin access to the web interface. [...]

Security
BleepingComputer ·

Learning a new language doesn't have to mean night classes, bulky textbooks, or boring apps. With Babbel, you can pick up real-world conversation skills through short, fun, and practical lessons....

Security
BleepingComputer ·

A newly rebranded extortion gang known as "World Leaks" breached one of Dell's product demonstration platforms earlier this month and is now trying to extort the company into paying a ransom. [...]

Healthcare and Public Health Security
BleepingComputer ·

Microsoft has released emergency SharePoint security updates for two zero-day vulnerabilities tracked as CVE-2025-53770 and CVE-2025-53771 that have compromised services worldwide in "ToolShell"...

Information Technology Microsoft Security
RSS Feed ·

The solution is designed for processes producing ultra-thin aluminum, copper and steel foil.

Commercial Facilities Energy
RSS Feed ·

As the industry moves toward more AI-enabled digitization, connected workers are stepping up to the plate to merge human expertise with technological progress.

Critical Manufacturing Commercial Facilities
RSS Feed ·

13 Experts Discuss Autonomous Mobile Robots examines how Texas Instruments helps its customers build next-generation mobile robotics with innovative products.

Commercial Facilities Energy
RSS Feed ·

Critical Manufacturing was named a Representative Vendor in Gartner’s May 2025 MES Market Guide.

Critical Manufacturing Healthcare and Public Health