IM
IronMonkey Threat Research
LIVE
|
Articles 25,664
|
CVEs 339,158
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,642 articles — Page 563 of 855
infosecurity-magazine ·

Microsoft has blocked fraud worth $4bn as threat actors ramp up AI use

Salt Typhoon Financial Services Information Technology
The Hacker News ·

Apple on Wednesday released security updates for iOS, iPadOS, macOS Sequoia, tvOS, and visionOS to address two security flaws that it said have come under active exploitation in the wild. The...

Information Technology Energy
WeLiveSecurity ·

Cybercriminals lure content creators with promises of cutting-edge AI wizardry, only to attempt to steal their data or hijack their devices instead

Financial Services Transportation Systems
infosecurity-magazine ·

MITRE will be able to keep running the CVE program for at least the next 11 months

Salt Typhoon Information Technology Financial Services
infosecurity-magazine ·

Sophos found that compromise of network edge devices, such as VPN appliances, accounted for 30% of incidents impacted SMBs in 2024

Salt Typhoon Healthcare and Public Health Information Technology
Securelist ·

MysterySnail RAT attributed to IronHusky APT group hasn’t been reported since 2021. Recently, Kaspersky GReAT detected new versions of this implant in government organizations in Mongolia and Russia.

IronHusky SideWinder Iron Nuclear Critical Manufacturing
infosecurity-magazine ·

A UK Law firm has been fined £60,000 after data stolen during a 2022 cyber-attack was published on the dark web

Salt Typhoon Information Technology Financial Services
BleepingComputer ·

On Wednesday, CISA warned of heightened breach risks after the compromise of legacy Oracle Cloud servers earlier this year and highlighted the significant threat to enterprise networks. [...]

Healthcare and Public Health Information Technology
Malpedia Library (Latest) ·

2025-04-16 • Sekoia • Sekoia TDR • elf.interlock, win.interlock Open article on Malpedia

BleepingComputer ·

Microsoft has released emergency Windows Server updates to address a known issue preventing Windows containers from launching. [...]

BleepingComputer ·

On Wednesday, CISA warned federal agencies to secure their SonicWall Secure Mobile Access (SMA) 100 series appliances against attacks exploiting a high-severity remote code execution vulnerability. [...]

Government Facilities
Recorded Future ·

Explore how Iran is leveraging AI for cyberwarfare, influence ops, military tech, and domestic surveillance. A deep dive into Tehran’s top-down AI strategy, partnerships with China and Russia, and...

Defense Industrial Base Financial Services
Cloud Threat Landscape ·

Researchers uncovered a supply chain attack carried out by a threat actor labeled MUT-1692. Initially detected via a suspicious npm package (argus3-test) mimicking a legitimate tool, the...

Critical Manufacturing Information Technology
Unit 42 ·

Agent Tesla, Remcos RAT and XLoader delivered via a complex phishing campaign. Learn how attackers are using multi-stage delivery to hinder analysis. The post Cascading Shadows: An Attack Chain...

Information Technology
The Hacker News ·

Cybersecurity researchers have detailed four different vulnerabilities in a core component of the Windows task scheduling service that could be exploited by local attackers to achieve privilege...

Information Technology Energy
Security News | TechCrunch ·

The former cybersecurity chief is the latest to push back on the Trump administration's targeting of critics and dissenters.

Financial Services Commercial Facilities
The Record from Recorded Future News ·

The Cybersecurity and Infrastructure Security Agency on Wednesday said that while the scope of the reported Oracle issue remains unconfirmed, it "presents potential risk to organizations and individuals."

Information Technology
Security Latest ·

The CVE Program is the primary way software vulnerabilities are tracked. Its long-term future remains in limbo even after a last-minute renewal of the US government contract that funds it.

Government Facilities Commercial Facilities
Latest stories for ZDNET in Security ·

Expired US government funding nearly disrupted this global security system. How can we prevent this from happening again in 11 months?

Commercial Facilities Information Technology
Security | TechRepublic ·

Slopsquatting and vibe coding are fueling a new wave of AI-driven cyberattacks, exposing developers to hidden risks through fake, hallucinated packages.

Critical Manufacturing
Industrial Cyber ·

In an eleventh-hour move, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) ensured that the Common Vulnerabilities and... The post US CISA extends MITRE CVE, CWE programs with...

Critical Manufacturing Energy
Security News | TechCrunch ·

One of the bugs was discovered by Google's security researchers who investigate government-backed cyberattacks.

Financial Services Commercial Facilities
The Hacker News ·

Google on Wednesday revealed that it suspended over 39.2 million advertiser accounts in 2024, with a majority of them identified and blocked by its systems before it could serve harmful ads to...

Information Technology Financial Services
Sharp insights on cybersecurity ·

Today, the cybersecurity community faced a critical juncture as the U.S. government's contract with MITRE Corporation to develop, operate and modernize the Common Vulnerabilities and Exposures...

Transportation Systems
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto ·

MITRE avoids CVE program shutdown with last-minute contract extension. Questions remain about long-term funding and the future of…

Financial Services Government Facilities
The Hacker News ·

Threat actors are leveraging an artificial intelligence (AI) powered presentation platform named Gamma in phishing attacks to direct unsuspecting users to spoofed Microsoft login pages. "Attackers...

The Hacker News ·

Introduction Cyber threats targeting supply chains have become a growing concern for businesses across industries. As companies continue to expand their reliance on third-party vendors,...

Financial Services Healthcare and Public Health
BleepingComputer ·

Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices. [...]

Orange Cyberdefense ·

tl;dr In this blog post, I will share insights I learned while researching the Flutter framework and the reFlutter tool. It will dive deep into Flutter’s architecture, some of its inner workings...

Information Technology
The Record from Recorded Future News ·

Car rental giant Hertz has been notifying state regulators of a data breach that occurred through third-party file sharing software. Tens of thousands of people are affected, but the company...

Financial Services Critical Manufacturing