IM
IronMonkey Threat Research
LIVE
|
Articles 25,486
|
CVEs 338,519
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,454 articles — Page 782 of 849
Maxwell Dulin's Resources ·

In Cryptography a nonce (number used only once) is an important part of any encryption or signature algorithm. It's a big deal to not reuse nonces in cryptography but they are allowed to be public...

Communications Defense Industrial Base
Maxwell Dulin's Resources ·

Fuel Network is an Ethereum L2 with a custom language, bridge and VM. The contest had a reward pool of $1M. Some big-time vulnerabilities were found in it, which are explained in the article. In...

Energy Healthcare and Public Health
maxwelldulin ·

BananaGun is a telegram trading bot for Ethereum and Solana. From reading the documentation, the bot can be configured by the user to perform various actions automatically or directly from the...

Commercial Facilities
Wiz Blog | RSS feed ·

Critical severity vulnerability CVE-2024-0132 affecting NVIDIA Container Toolkit and GPU Operator presents high risk to AI workloads and environments.

Information Technology Critical Manufacturing
WeLiveSecurity ·

ESET Research has conducted a comprehensive technical analysis of Gamaredon’s toolset used to conduct its cyberespionage activities focused in Ukraine

Defense Industrial Base Communications
Kaspersky ICS CERT ·

In the second quarter of 2024, the percentage of ICS computers on which malicious objects were blocked decreased by 0.9 pp from the previous quarter to 23.5%. Compared to the second quarter of...

Critical Manufacturing Publications
Recorded Future ·

Insikt Group’s analysis of Rhadamanthys Stealer v0.7.0 reveals its growing capabilities, including AI-powered seed phrase extraction and MSI installer evasion tactics.

Cloud Threat Landscape ·

Storm-0501 has been observed conducting multi-staged attacks targeting hybrid cloud environments across various U.S. sectors, including government and manufacturing. These attacks involve lateral...

Critical Manufacturing
Cloud Threat Landscape ·

Microsoft sheds light on the activities of Storm-0501, a threat actor known for deploying ransomware attacks in hybrid cloud environments. The group has expanded its operations to target both...

maxwelldulin ·

Help Scout is a shared inbox, help center and live chat software to manage customer communications. Among other things, emails can be sent to customers from external email addresses proxied...

Wiz Blog | RSS feed ·

Enhance your security with Wiz’s new hybrid File Integrity Monitoring (FIM) solution, combining agentless and runtime capabilities for comprehensive file monitoring.

Healthcare and Public Health
Wiz Blog | RSS feed ·

Gain unified visibility into Snowflake security posture and threats with the same workflows as the rest of your cloud.

Information Technology Chemical
Fox-IT International blog ·

Authors: Boudewijn Meijer && Rick Veldhoven Introduction As defensive security products improve, attackers must refine their craft. Gone are the days of executing malicious binaries from disk,...

Commercial Facilities Information Technology Blog
Fox-IT International blog ·

Authors: Boudewijn Meijer && Rick Veldhoven Introduction As defensive security products improve, attackers must refine their craft. Gone are the days of executing malicious binaries from disk,...

Information Technology Blog
WeLiveSecurity ·

Keep your cool, arm yourself with the right knowledge, and other tips for staying unshaken by fraudsters’ scare tactics

Financial Services
WeLiveSecurity ·

Here’s what parents should know about Snapchat and why you should take some time to ensure your children can stay safe when using the app

Recorded Future ·

Explore the rise of political deepfakes targeting public figures in elections, with data on emerging tactics and their impact on global trust and reputations.

Wiz Blog | RSS feed ·

Strategies for tracking and defending against malicious activity and threats in the cloud using atomic indicators of compromise (IOCs).

Information Technology Financial Services
Infostealers Archives | InfoStealers ·

Sextortion schemes are about to take a much darker turn. With the rise of Infostealer malware, the game is changing. Hackers will no longer rely on fake threats or generic scare tactics like...

Financial Services Transportation Systems
Recorded Future ·

Learn how DORA enhances operational resilience for financial institutions in the EU, focusing on ICT risk management, third-party oversight, and more.

Financial Services Food and Agriculture
Cloud Threat Landscape ·

Datadog Security Research has uncovered a sophisticated cryptojacking campaign targeting microservice technologies, specifically Docker and Kubernetes. The threat actors exploit exposed Docker...

Financial Services
@BushidoToken Threat Intel ·

Introduction Based on feedback I have received from fellow CTI researchers, incident responders, and managed detection and response teams around my Ransomware Tool Matrix project, I decided to...

Cozy Bear Fancy Bear Financial Services Energy
@BushidoToken Threat Intel ·

Introduction Russian state-sponsored threat groups, such as Fancy Bear (APT28), Cozy Bear (APT29), Turla, and Sandworm, among others, are well-known for complex cyber-espionage operations,...

Sandworm Cozy Bear Fancy Bear Defense Industrial Base Communications
McAfee Labs | McAfee Blogs ·

Authored by Yashvi Shah and Aayush Tyagi Executive summary McAfee Labs recently observed an infection chain where fake CAPTCHA pages... The post Behind the CAPTCHA: A Clever Gateway of Malware...

Financial Services Commercial Facilities
WeLiveSecurity ·

With just weeks to go before the US presidential election, the FBI and the CISA are warning about attempts to sow distrust in the electoral process

Infostealers Archives | InfoStealers ·

German authorities recently took down 47 cryptocurrency exchanges used by ransomware groups, money launderers, and botnet operators. Although the domains have been seized, no arrests have been...

Financial Services
Cloud Threat Landscape ·

UNC1860 is an Iranian state-sponsored threat actor, likely affiliated with Iran's Ministry of Intelligence and Security (MOIS). This group specializes in gaining persistent access to high-priority...

UNC1860 Communications
Maxwell Dulin's Resources ·

The author found several weird quirks and behaviors that were not useful individually. By combining all of these together, they were able to steal files on Google Slides with YouTube. Google...

Maxwell Dulin's Resources ·

Simple Serialize (SSZ) is used by Ethereum clients in the consensus protocol and in P to P communication. The SSZ soundness depends on the involutive and injective property. The involutive...

Transportation Systems
Blue Team Archives - Black Hills Information Security, Inc. ·

Changes to the msds-KeyCredentialLink attribute are not audited/logged with standard audit configurations. This required serious investigations and a partner firm in infosec provided us the...

Blue Team Incident Response