IM
IronMonkey Threat Research
LIVE
|
Articles 25,644
|
CVEs 338,787
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,613 articles — Page 600 of 854
The Hacker News ·

The threat actor known as EncryptHub exploited a recently-patched security vulnerability in Microsoft Windows as a zero-day to deliver a wide range of malware families, including backdoors and...

Critical Manufacturing
Firewall Daily – The Cyber Express ·

Morse Corp Inc., a Massachusetts-based defense contractor, has agreed to pay $4.6 million to resolve allegations of cybersecurity fraud under the False Claims Act. The U.S. Department of Justice...

Defense Industrial Base Healthcare and Public Health
The Hacker News ·

The Russian-speaking hacking group called RedCurl has been linked to a ransomware campaign for the first time, marking a departure in the threat actor's tradecraft. The activity, observed by...

RedCurl Red Wolf Earth Kapre Information Technology Critical Manufacturing
Security Latest ·

The Trump cabinet’s shocking leak of its plans to bomb Yemen raises myriad confidentiality and legal issues. The security of the encrypted messaging app Signal is not one of them.

Defense Industrial Base Government Facilities
Security | TechRepublic ·

CVE-2025-22230 is described as an "authentication bypass vulnerability" by Broadcom, allowing hackers to perform high-privilege operations without the necessary credentials.

Government Facilities
Security News | TechCrunch ·

One academic who reviewed the dataset said it was "clear evidence" that China, or its affiliates, wants to use AI to improve repression.

Defense Industrial Base Financial Services
Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

Security researchers at ReversingLabs have discovered a new malware campaign on the npm package repository, revealing a new…

Communications Financial Services
Latest stories for ZDNET in Security ·

Need serious privacy on a regular basis? Work with these distributions, and you'll leave no trace. There's even a Windows and MacOS option.

Commercial Facilities Information Technology
Sharp insights on cybersecurity ·

Are you backing up all of your applications and data types? Is your backup secure? World Backup Day is the perfect time for you to spend some time evaluating your data protection.

Critical Manufacturing Information Technology
The Hacker News ·

Cybersecurity researchers have discovered two malicious packages on the npm registry that are designed to infect another locally installed package, underscoring the continued evolution of software...

Critical Manufacturing Information Technology
The Hacker News ·

“A boxer derives the greatest advantage from his sparring partner…” — Epictetus, 50–135 AD Hands up. Chin tucked. Knees bent. The bell rings, and both boxers meet in the center and circle. Red...

Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News ·

Researchers have uncovered a critical vulnerability (CVE-2025-29927) in Next.js middleware, allowing authorization bypass. Learn about the exploit and fixes.

Communications Financial Services
infosecurity-magazine ·

In its 2025 Global Third-Party Breach Report, SecurityScorecard has found that 35.5% of all cyber breaches in 2024 were third-party related, up from 29% in 2023

Salt Typhoon Information Technology Commercial Facilities
Security News | TechCrunch ·

The proliferation of scarily realistic deepfakes is one of the more pernicious byproducts of the rise of AI, and falling victim to scams based on them is already costing companies millions of...

CIA Financial Services Commercial Facilities
BleepingComputer ·

Despite Oracle denying a breach of its Oracle Cloud federated SSO login servers and the theft of account data for 6 million people, BleepingComputer has confirmed with multiple companies that...

Threats | CyberScoop ·

Researchers aren’t aware of active exploitation in the wild, but they warn the risk for publicly exposed and unpatched Ingress Nginx controllers is extremely high. The post String of defects in...

Lazarus Group Water Communications
CyberScoop ·

Researchers aren’t aware of active exploitation in the wild, but they warn the risk for publicly exposed and unpatched Ingress Nginx controllers is extremely high. The post String of defects in...

Lazarus Group Water Communications
Lumen Blog ·

“We applaud Chairman Carr’s leadership in advancing common-sense regulatory reform. Modernizing these outdated rules will allow for greater investment in critical network infrastructure, ensuring...

Financial Services Commercial Facilities
CERT Polska ·

Incorrect Privilege Assignment vulnerability (CVE-2025-2098) has been found in Fast CAD Reader (Beijing Honghu Yuntu Technology) application.

CVE vulnerability
The Hacker News ·

When people think of cybersecurity threats, they often picture external hackers breaking into networks. However, some of the most damaging breaches stem from within organizations. Whether through...

Financial Services Healthcare and Public Health
SOC Prime Blog ·

APT groups from China were ranked among the top global cyber threats alongside North Korea, russia, and Iran, showcasing heightened offensive capabilities and posing significant challenges to the...

Earth Kasha MirrorFace Communications Transportation Systems
The Record from Recorded Future News ·

Colin Ahern sat down with Recorded Future News earlier this year to discuss New York’s efforts to protect local governments from ransomware and more.

Financial Services Government Facilities
Broadcom Software Blogs ·

AI tools will be used in your work—here’s how to make them safe

Financial Services Government Facilities
ASEC ·

ASEC Blog publishes Ransom & Dark Web Issues Week 4, March 2025 * New ransomware group Arkana Security claims attack on a US telecommunications company. * New ransomware group Frag claims attacks...

ASEC ·

Overview Mark of the Web (MoTW) is a Windows feature that identifies files downloaded from the Internet and displays a security warning, as well as restricts the files to be executed with a...

Malpedia Library (Latest) ·

2025-03-15 • Github (TheRavenFile) • Rakesh Krishnan • py.anubisbackdoor Open article on Malpedia

WeLiveSecurity ·

ESET researchers discover new ties between affiliates of RansomHub and of rival gangs Medusa, BianLian, and Play

Critical Manufacturing Healthcare and Public Health
WeLiveSecurity ·

ESET researchers uncover the toolset used by the FamousSparrow APT group, including two undocumented versions of the group’s signature backdoor, SparrowDoor

Salt Typhoon FamousSparrow Earth Estries Financial Services Commercial Facilities
BleepingComputer ·

Cloud-based streaming company StreamElements confirms it suffered a data breach at a third-party service provider after a threat actor leaked samples of stolen data on a hacking forum. [...]

The Hacker News ·

Threat actors are leveraging an e-crime tool called Atlantis AIO Multi-Checker to automate credential stuffing attacks, according to findings from Abnormal Security. Atlantis AIO "has emerged as a...

Financial Services Critical Manufacturing