IM
IronMonkey Threat Research
LIVE
|
Articles 25,567
|
CVEs 338,730
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,535 articles — Page 633 of 852
ICS Advisories ·

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 7.5 ATTENTION: Exploitable remotely/low attack complexity Vendor: Hitachi Energy Equipment: PCU400, PCULogger Vulnerabilities: Access of Resource Using...

Critical Manufacturing Energy
CERT Polska ·

CERT Polska has received a report about 3 vulnerabilities (from CVE-2024-13892 to CVE-2024-13894) found in Smartwares cameras.

CVE vulnerability
Unit 42 ·

A graph intelligence-based pipeline and WHOIS data are among the tools we used to identify this campaign, which introduced a variant of domain generation algorithms. The post The Next Level: Typo...

Information Technology
Cisco Talos Blog ·

Cisco Talos has discovered an active exploitation of CVE-2024-4577 by an attacker in order to gain access to the victim's machines and carry out post-exploitation activities.

Lotus Blossom Information Technology Commercial Facilities
Broadcom Software Blogs ·

Attacks using this ransomware have displayed consistent TTPs and grown steadily since 2023.

Healthcare and Public Health
Sharp insights on cybersecurity ·

Domain spoofing poses a significant threat to organizations everywhere — not just in terms of potential fraud, monetary and data loss, but in terms of damage to customer trust and brand reputation.

Government Facilities
BleepingComputer ·

Starting mid-March 2025, Microsoft will start prompting users of its Microsoft 365 apps for Windows to back up their files to OneDrive. [...]

infosecurity-magazine ·

Enisa identifies six sectors that it says must improve on NIS2 compliance

Silk Typhoon Salt Typhoon Silver Fox Information Technology Healthcare and Public Health
BleepingComputer ·

Over 37,000 internet-exposed VMware ESXi instances are vulnerable to CVE-2025-22224, a critical out-of-bounds write flaw that is actively exploited in the wild. [...]

Government Facilities Information Technology
Security News | TechCrunch ·

The UK is no longer recommending the use of encryption for at-risk groups following its iCloud backdoor demands © 2024 TechCrunch. All rights reserved. For personal use only.

Critical Manufacturing Defense Industrial Base
Firewall Daily – The Cyber Express ·

A new malware campaign named Phantom Goblin, identified and analyzed by Cyble, uses information-stealing malware that uses social engineering techniques to deceive victims and steal sensitive...

Healthcare and Public Health Defense Industrial Base
Orange Cyberdefense ·

Introduction

infosecurity-magazine ·

The DoJ has charged Chinese government and i-Soon employees for a series of for-profit data theft campaigns

Silk Typhoon Salt Typhoon Silver Fox Defense Industrial Base Information Technology
BleepingComputer ·

The vCISO Academy is a free learning platform to equip service providers with training needed to build and expand their vCISO offerings. Learn more from Cynomi on how the Academy helps you launch...

Securelist ·

Kaspersky experts have discovered campaigns distributing stealers, malicious PowerShell scripts, and backdoors through web pages mimicking the DeepSeek and Grok websites.

Angry Likho Cloud Atlas Critical Manufacturing Financial Services
bellingcat ·

H8Core is a Russian fashion brand that sells clothing items glorifying far-right ideology and the Russian mercenary group Wagner. Its products – which include t-shirts, caps and hoodies – have...

Defense Industrial Base Commercial Facilities
BleepingComputer ·

A newly devised "polymorphic" attack allows malicious Chrome extensions to morph into browser extensions, including password managers, crypto wallets, and banking apps, to steal sensitive...

Financial Services
Industrial Cyber ·

The European Union Agency for Cybersecurity (ENISA) published on Wednesday its initial NIS360 report, which identifies areas for... The post ENISA’s NIS360 report guides NIS2 Directive...

Energy Healthcare and Public Health
The CyberWire ·

In this episode of the Microsoft Threat Intelligence Podcast, host Sherrod DeGrippo is joined by Senior Microsoft Security Researcher Kajhon Soyini to explore the Luma Stealer cryptocurrency...

Financial Services
Industrial Cyber ·

Researchers from Cisco Talos have discovered multiple cyber espionage campaigns that target various sectors, including government, manufacturing, telecommunications,... The post Cisco Talos...

Lotus Blossom Spring Dragon Critical Manufacturing Communications
Industrial Cyber ·

Claroty, a cyber-physical systems (CPS) protection company, has announced a partnership with SealingTech, a Parsons Corporation subsidiary renowned... The post Claroty and SealingTech partner to...

Lotus Blossom Critical Manufacturing Transportation Systems
Research & Threat Intel News- Outpost24 Blog ·

EncryptHub, a rising cybercriminal entity, has recently caught the attention of multiple threat intelligence teams, including our own (Outpost24’s KrakenLabs). While other reports have begun to...

Financial Services
The CyberWire ·

The explosion of connected devices is creating new cybersecurity challenges. In this episode of Threat Vector, host David Moulton, Director of Thought Leadership at Unit 42, sits down with Hollie...

Critical Manufacturing
The CyberWire ·

On Hacking Humans, this week Dave Bittner is on vacation so our two hosts Joe Carrigan, and Maria Varmazis (also host of N2K's daily space podcast, T-Minus), are sharing the latest in social...

Cloud Threat Landscape ·

Researchers identified an ongoing attack campaign targeting organizations in Japan across sectors like technology, telecommunications, education, entertainment, and e-commerce. Active since at...

Commercial Facilities
Sharp insights on cybersecurity ·

Generative AI bots present unique challenges to businesses and website operators. Left unchecked, these bots will extract data, increase server load, and degrade the performance of web applications.

The CyberWire ·

US Treasury Department sanctions Iranian national accused of running the Nemesis criminal marketplace. Hunters International threatens to leak data stolen from Tata Technologies. Apple challenges...

Financial Services Communications
The Record from Recorded Future News ·

The organization also lost years of wildlife conservation research as a result of the January 2024 cyber incident.

Financial Services
The Hacker News ·

The China-lined threat actor behind the zero-day exploitation of security flaws in Microsoft Exchange servers in January 2021 has shifted its tactics to target the information technology (IT)...

Silk Typhoon Information Technology Energy
The CyberWire ·

Jamf to acquire Identity Automation for $215 million.

Financial Services Information Technology