IM
IronMonkey Threat Research
LIVE
|
Articles 25,819
|
CVEs 339,790
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,790 articles — Page 501 of 860
The Hacker News ·

Embedded Linux-based Internet of Things (IoT) devices have become the target of a new botnet dubbed PumaBot. Written in Go, the botnet is designed to conduct brute-force attacks against SSH...

Information Technology Financial Services
Krebs on Security ·

Authorities in Pakistan have arrested 21 individuals accused of operating "Heartsender," a once popular spam and malware dissemination service that operated for more than a decade. The main...

Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto ·

Mandiant Threat Defense uncovers a campaign where Vietnam-based group UNC6032 tricks users with malicious social media ads for…

Financial Services
The Hacker News ·

Stealer malware no longer just steals passwords. In 2025, it steals live sessions—and attackers are moving faster and more efficiently than ever. While many associate account takeovers with...

Information Technology
The Hacker News ·

A financially motivated threat actor has been observed exploiting a recently disclosed remote code execution flaw affecting the Craft Content Management System (CMS) to deploy multiple payloads,...

Information Technology Financial Services
BleepingComputer ·

A newly discovered Go-based Linux botnet malware named PumaBot is brute-forcing SSH credentials on embedded IoT devices to deploy malicious payloads. [...]

Laundry Bear
EclecticIQ Blog ·

Executive Summary On May 7, 2025, during the active military escalation between Pakistan and India—specifically in the context of India's military campaign 'Operation Sindoor'—, EclecticIQ...

Bitter TA397 Communications Defense Industrial Base Threat Intelligence Intelligence Research
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto ·

ReversingLabs discovers new malware hidden inside AI/ML models on PyPI, targeting Alibaba AI Labs users. Learn how attackers…

Financial Services Information Technology
infosecurity-magazine ·

Two NHS England trusts could see highly sensitive patient records exposed

Healthcare and Public Health Information Technology
The Hacker News ·

Would you expect an end user to log on to a cybercriminal’s computer, open their browser, and type in their usernames and passwords? Hopefully not! But that’s essentially what happens if they fall...

Financial Services
infosecurity-magazine ·

A spoofed Bitdefender site has been used in a malicious campaign distributing VenomRAT and other malware, according to DomainTools

Information Technology Financial Services
ASEC ·

ASEC Blog publishes Ransom & Dark Web Issues Week 5, May 2025 New ransomware group DATACARRY emerges: Victim companies in 8 countries disclosed 65,000 records of Korean individuals leaked on...

Latest stories for ZDNET in Security ·

Don't install that unknown extension until you've checked out its reputation. Here's how to do that.

Commercial Facilities Information Technology
The Hacker News ·

Cybersecurity researchers have disclosed details of a coordinated cloud-based scanning activity that targeted 75 distinct "exposure points" earlier this month. The activity, observed by GreyNoise...

Information Technology Communications
BleepingComputer ·

The Interlock ransomware gang is deploying a previously undocumented remote access trojan (RAT) named NodeSnake against educational institutes for persistent access to corporate networks. [...]

Laundry Bear Healthcare and Public Health
SOC Prime Blog ·

How It Works Uncoder AI processes threat reports like CERT-UA#14045 on DarkCrystal RAT and generates Carbon Black-compatible detection logic. This feature maps observed file hashes, execution...

Energy Information Technology
Security News | TechCrunch ·

The data collector said the stolen data includes Social Security numbers.

Financial Services Critical Manufacturing
Threat Intelligence ·

Written by: Patrick Whitsell Google Threat Intelligence Group’s (GTIG) mission is to protect Google’s billions of users and Google’s multitude of products and services. In late October 2024, GTIG...

Safe Transportation Systems Commercial Facilities
The Record from Recorded Future News ·

Estonia said a man is suspected of unlawfully accessing a customer card database managed by Allium UPI, the parent company of the Apotheka pharmacy chain, in February 2024.

Golden Chickens Healthcare and Public Health Defense Industrial Base
infosecurity-magazine ·

This is the first time Czech authorities have officially called out a nation-state over a cyber-attack

Judgment Panda Bronze Vinewood Information Technology Defense Industrial Base
infosecurity-magazine ·

A flaw in OneDrive File Picker has exposed millions to data overreach through excessive OAuth permissions

Information Technology Commercial Facilities
BleepingComputer ·

Over 9,000 ASUS routers are compromised by a novel botnet dubbed "AyySSHush" that was also observed targeting SOHO routers from Cisco, D-Link, and Linksys. [...]

Laundry Bear Critical Manufacturing
The Record from Recorded Future News ·

Hackers likely based in Vietnam advertised websites offering AI-powered video generation tools, according to Google's Mandiant unit, and then used the sites to spread infostealers and other malware.

Financial Services Transportation Systems
BleepingComputer ·

A sprawling network of fake AI, VPN, and crypto software download sites is being used by the "Dark Partner" threat actors to conduct a crypto theft attacks worldwide. [...]

Chromium Laundry Bear Financial Services
The Hacker News ·

Apple on Tuesday revealed that it prevented over $9 billion in fraudulent transactions in the last five years, including more than $2 billion in 2024 alone. The company said the App Store is...

Information Technology Financial Services
Project Zero ·

Posted by Mateusz Jurczyk, Google Project Zero In the previous blog post, we focused on the general security analysis of the registry and how to effectively approach finding vulnerabilities in it....

Communications Government Facilities
CERT Polska ·

Incorrect connection releasing causing pool exhaustion (CVE-2025-3864) has been found in hackney software.

CVE vulnerability
BleepingComputer ·

The Czech Republic says the Chinese-backed APT31 hacking group was behind cyberattacks targeting the country's Ministry of Foreign Affairs and critical infrastructure organizations. [...]

Shadow Brokers GCHQ Judgment Panda Defense Industrial Base
Securelist ·

A comprehensive historical breakdown of Zanubis' changes, including RC4 and AES encryption, credentials stealing and new targets in Peru, provided by Kaspersky GReAT experts.

Financial Services Critical Manufacturing
infosecurity-magazine ·

Adidas revealed that customer contact information, including names, emails and phone numbers were accessed by an unauthorized party

Scattered Spider Information Technology Commercial Facilities