IM
IronMonkey Threat Research
LIVE
|
Articles 25,519
|
CVEs 338,561
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,491 articles — Page 77 of 850
BleepingComputer ·

Hackers are exploiting a critical vulnerability in Marimo reactive Python notebook to deploy a new variant of NKAbuse malware hosted on Hugging Face Spaces. [...]

Information Technology Security
The Register - Security ·

Forged metadata made AI reviewer treat hostile changes as though they came from known maintainer Security boffins say Anthropic's Claude can be tricked into approving malicious code with just two...

Information Technology
Articles – Threat Beat ·

AI companies like OpenAI and Anthropic should play a bigger role in software vulnerability disclosures in the future, according to a leader of the world’s largest vulnerability disclosure scheme....

Information Technology Government Facilities News
WeLiveSecurity ·

Your biggest risk may be a vendor you trust. How can SMBs map their third-party blind spots and build operational resilience?

Information Technology Financial Services Business Security
The Hacker News ·

The Computer Emergencies Response Team of Ukraine (CERT-UA) has disclosed details of a new campaign that has targeted governments and municipal healthcare institutions, mainly clinics and...

The Register - Security ·

Publisher claims misconfigured Salesforce-hosted page leaked data Textbook giant McGraw Hill has landed on a ransomware crew's leak site after an alleged Salesforce-linked misconfiguration spilled...

ShinyHunters Information Technology Commercial Facilities
Kaspersky ICS CERT (English) ·

The permanent leader in the percentage of ICS computers on which threats from removable media were blocked.

Critical Manufacturing Energy Publications
BleepingComputer ·

Google says it is increasingly using its Gemini AI models to detect and block harmful ads on its advertising platforms, as scammers and threat actors continue to evolve their tactics to evade...

Information Technology Google Security
Proofpoint News Feed ·

Cargo-stealing hackers have a new trick up their sleeve: using a third-party code-signing service makes their remote management and monitoring software installers

Information Technology Financial Services
Cyber Security Advisories - MS-ISAC ·

Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these...

Government Facilities Information Technology
BleepingComputer ·

A new cybercrime platform called ATHR can harvest credentials via fully automated voice phishing attacks that use both human operators and AI agents for the social engineering phase. [...]

Information Technology Financial Services Security Artificial Intelligence
BleepingComputer ·

AI-powered SOC tools promise automation, but most only speed up triage instead of reducing real workload. Tines shows how real gains come from end-to-end workflows that execute actions across...

Information Technology Security
The Register - Security ·

Just migrate already, would you? But if you can't, Redmond will take your cash Microsoft will keep delivering security updates for old versions of Exchange Server and Skype for Business Server,...

Information Technology
Cisco Talos Blog ·

Cisco Talos discovered an ongoing malicious campaign, operating since at least December 2025, affecting a broader workforce in the Czech Republic with a previously undocumented botnet we call “PowMix.”

Financial Services Information Technology Threat Spotlight Cisco Talos Antivirus
Cisco Talos Blog ·

Wendy shares the unique challenges and rewards of bridging the gap between artistic expression and highly technical research.

Information Technology Humans of Talos
SECURITY.COM ·

AI agents are becoming a new class of enterprise identity—and most platforms weren’t built for them

Information Technology
Schneier on Security ·

Interesting research: “Humans expect rationality and cooperation from LLM opponents in strategic games.” Abstract: As Large Language Models (LLMs) integrate into our social and economic...

Information Technology Uncategorized academic papers
Industrial Cyber ·

The Information Technology Industry Council (ITIC) warns that the U.S. is entering a decisive phase in its pursuit... The post ITI warns US must move from quantum strategy to execution as...

Information Technology Transportation Systems Attacks and Vulnerabilities Control device security
Industrial Cyber ·

New data from GuidePoint Security highlights a ransomware landscape that is no longer spiking but settling into a... The post Ransomware reaches elevated ‘new normal’ as attack volumes hold steady...

Scattered Spider 0ktapus Critical Manufacturing Information Technology Attacks and Vulnerabilities Control device security
BleepingComputer ·

Cisco has released security updates to patch four critical vulnerabilities, including a fixed improper certificate validation flaw in the company's cloud-based Webex Services platform that...

Information Technology Communications Security
The Register - Security ·

Your cybersecurity is only as good as the physical security of the servers PWNED Welcome back to Pwned, the column where we immortalize the worst vulns that organizations opened up for themselves....

Transportation Systems
BleepingComputer ·

The ShinyHunters extortion group has leaked data from 13.5 million McGraw Hill user accounts, stolen after breaching the company's Salesforce environment earlier this month. [...]

ShinyHunters Information Technology Commercial Facilities Security Education
eCrime.ch Ransomware News | RSS ·

Two Ransomware Groups Tore Each Other Apart — Here’s What We Found Inside On April 13, 2026, a threat actor calling itself 0APT published the complete database of the Krybit ransomware operation —...

eCrime.ch Ransomware News | RSS ·

Two separate PlayCrypt intrusions against different organizations, both following the same textbook playbook: SonicWall VPN or RDP initial access, WinRAR staging with identical flags (-ep1 -scul...

BleepingComputer ·

Two U.S. nationals have been sent to prison for helping North Korean remote information technology (IT) workers to pose as U.S. residents and get hired by over 100 companies across the country,...

Information Technology Financial Services Security
Have I Been Pwned latest breaches ·

In April 2026, education company McGraw Hill confirmed a data breach following an extortion attempt. Attributed to a Salesforce misconfiguration, the company stated the incident exposed "a limited...

The Register - Security ·

Browser fingerprinting is everywhere Google markets its Chrome browser by citing its superior safety features, but according to privacy consultant Alexander Hanff, Chrome does not protect against...

Information Technology
Recorded Future ·

A deep dive into business impersonation fraud — from fake companies cashing stolen checks to AI-powered shopping scams — and why the same vulnerability enables both.

Financial Services Information Technology Blog
TrustedSec ·

Play Roll for Initiative. Hack the Planet.Dungeons & Daemons is a cybersecurity RPG that drops you into the boots of a Red Team operator on a live engagement. Your mission: infiltrate a corporate...

Information Technology
The Hacker News ·

Threat actors have been observed weaponizing n8n, a popular artificial intelligence (AI) workflow automation platform, to facilitate sophisticated phishing campaigns and deliver malicious payloads...

Information Technology