IM
IronMonkey Threat Research
LIVE
|
Articles 25,834
|
CVEs 339,903
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,802 articles — Page 494 of 861
The Hacker News ·

Microsoft and CrowdStrike have announced that they are teaming up to align their individual threat actor taxonomies by publishing a new joint threat actor mapping. "By mapping where our knowledge...

Cozy Bear The Dukes Iron Hemlock Chemical
Wiz Blog | RSS feed ·

Over 50% of Wiz customers have reduced their cloud risk by reaching Zero Critical Issues

Information Technology
SOC Prime Blog ·

As GenAI continues to shape modern cybersecurity with its powerful advantages for strengthening defense mechanisms, it simultaneously introduces new risks as threat actors increasingly exploit the...

Fancy Bear Government Facilities Information Technology
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto ·

Europol has identified over 2,000 extremist links exploiting minors, focusing on dismantling grooming, abuse, and online radicalization networks.

Transportation Systems
BleepingComputer ·

Microsoft is testing a dedicated page in Windows Settings for quick machine recovery, which will provide users with additional configuration options. [...]

Scattered Spider
BleepingComputer ·

Two malicious RubyGems packages posing as popular Fastlane CI/CD plugins redirect Telegram API requests to attacker-controlled servers to intercept and steal data. [...]

Scattered Spider Critical Manufacturing Energy
Malpedia Library (Latest) ·

2025-05-27 • Trend Micro • Joseph C Chen • win.cobalt_strike, win.juicy_potato, win.stowaway, win.vshell Open article on Malpedia

Earth Lamia
CyberScoop ·

The domino effect of CVE disruption is something all cybersecurity practitioners must be aware of, a Morphisec executive argues. The post Future-ready cybersecurity: Lessons from the MITRE CVE...

Energy Nuclear
Threats | CyberScoop ·

The domino effect of CVE disruption is something all cybersecurity practitioners must be aware of, a Morphisec executive argues. The post Future-ready cybersecurity: Lessons from the MITRE CVE...

Energy Nuclear
BleepingComputer ·

Mozilla has developed a new security feature for its add-on portal that helps block Firefox malicious extensions that drain cryptocurrency wallets. [...]

Scattered Spider Financial Services
BleepingComputer ·

Scattered Spider isn't one group — it's an identity-first threat model evolving fast. From vishing to AiTM phishing, they're exploiting MFA gaps to hijack the cloud. Watch the Push Security...

Scattered Spider Muddled Libra Scatter Swine Commercial Facilities Financial Services
Securelist ·

Kaspersky expert shares insights on how to determine whether an attack was first launched in a container or on the host itself when an organization’s logs lack container visibility.

Critical Manufacturing Transportation Systems
Unit 42 ·

We discovered an Azure OpenAI misconfiguration allowing shared domains, potentially leading to data leaks. Microsoft quickly resolved the issue. The post Lost in Resolution: Azure OpenAI's DNS...

Information Technology
CyberScoop ·

The 20-year bureau pro wants to see what it’s like to fight ransomware from the private sector. The post Top FBI cyber official Cynthia Kaiser exits for Halcyon appeared first on CyberScoop.

Salt Typhoon Government Facilities Communications
infosecurity-magazine ·

Abnormal AI found that engagement rates with VEC attacks globally is “worrisomely high”, overtaking BEC in the EMEA region

Financial Services Information Technology
BleepingComputer ·

CISA is alerting federal agencies in the U.S. of hackers exploiting a recently patched ScreenConnect vulnerability that could lead to executing remote code on the server. [...]

Government Facilities
The Hacker News ·

Google on Monday released out-of-band fixes to address three security issues in its Chrome browser, including one that it said has come under active exploitation in the wild. The high-severity...

BleepingComputer ·

Fashion retail giant Victoria's Secret has delayed its first quarter 2025 earnings release because of ongoing corporate system restoration efforts following a May 24 security incident. [...]

Scattered Spider Commercial Facilities
Tenable Blog ·

Crucial for applying Active Directory Group Policy Objects, client-side extensions (CSEs) are powerful but also present a significant, often overlooked, attack vector for persistent backdoors....

infosecurity-magazine ·

Risk Ledger found that 90% of UK professionals view supply chain cyber incidents as a top concern for 2025

Information Technology
BleepingComputer ·

Google has released an emergency security update to fix the third Chrome zero-day vulnerability exploited in attacks since the start of the year. [...]

Have I Been Pwned latest breaches ·

In May 2025, hosting provider ColoCrossing identified a data breach that impacted customers of their ColoCloud virtual server product. ColoCrossing advised the incident was isolated to their...

Financial Services
BleepingComputer ·

The latest version of the 'Crocodilus' Android malware has introduced a new mechanism that adds a fake contact on the infected device's contact list to deceive victims. [...]

Financial Services
Automation.com - Industrial Cybersecurity, Networks, and Connectivity ·

These multifaceted relay modules can reliably switch a multitude of small loads, decouple systems and multiply signals.

Commercial Facilities Energy
Automation.com - Industrial Cybersecurity, Networks, and Connectivity ·

The new SDK versions feature advanced elliptic curve cryptography (ECC) for improved data protection in industrial networks.

Commercial Facilities Energy
Automation.com - Industrial Cybersecurity, Networks, and Connectivity ·

It is the first web-based automation system to receive the ISASecure SSA Level 1 certification for its built-in cybersecurity approach.

Commercial Facilities Energy
Automation.com - Industrial Cybersecurity, Networks, and Connectivity ·

Software-Defined Automation blends IT agility with industrial strength–boosting flexibility, speed and efficiency at the edge. It’s the future of automation, redefined by code, not cables.

Critical Manufacturing Financial Services
Cloud Threat Landscape ·

Researchers discovered an active exploitation of a misconfigured Open WebUI instance—a self-hosted interface for large language models (LLMs)—that was exposed to the internet with administrator...

Unit 42 ·

We compare the effectiveness of content filtering guardrails across major GenAI platforms and identify common failure cases across different systems. The post How Good Are the LLM Guardrails on...

The Hacker News ·

Cybersecurity researchers have discovered a new cryptojacking campaign that's targeting publicly accessible DevOps web servers such as those associated with Docker, Gitea, and HashiCorp Consul and...

Information Technology Financial Services