IM
IronMonkey Threat Research
LIVE
|
Articles 25,453
|
CVEs 337,950
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,421 articles — Page 828 of 848
maxwelldulin ·

The author found a vulnerability with the usage of Linux containers and permissions. The standard Linux permissions are read (r), write (w) and execute (x). These permissions are put onto the...

Information Technology
Cloud Threat Landscape ·

A hacker reportedly stole ~11mil records of customer PII (dated 2017) from Optus, an Australian telco company. The data was disclosed and put on sale in late September 22’. According to...

Wiz Blog | RSS feed ·

Before it was patched, #AttachMe could have allowed attackers to access and modify any other users' OCI storage volumes without authorization, thereby violating cloud isolation. Upon disclosure,...

Information Technology
Wiz Blog | RSS feed ·

Leonid Belkind, CTO of Torq, and Itay Arbel, PM at Wiz, explain how organizations can build a coherent Cyber Security Incident Response Plan using Wiz CDR to analyze cloud events and threat alerts...

Information Technology
Kaspersky ICS CERT (English) ·

Events in the cybersecurity world, including ICS, were intense in H1 2022.

Critical Manufacturing Publications
Kaspersky ICS CERT ·

The statistical data presented in the report was received from ICS computers protected by Kaspersky products that Kaspersky ICS CERT categorizes as part of the industrial infrastructure at organizations.

Critical Manufacturing Publications
Curated Intelligence ·

Community Feature - @cPeterrIn this blog post, Curated Intelligence member Chuong Dong shared his findings after reverse engineering the PLAY ransomware's code obfuscation and encryption...

Commercial Facilities Financial Services
Cloud Threat Landscape ·

Beginning in early September 2022, an unknown threat actor successfully compromised tens of thousands of websites mainly aimed at East Asian audiences, redirecting hundreds of thousands of their...

Cloud Threat Landscape ·

CrowdStrike uncovered a cryptojacking campaign targeting vulnerable Docker and Kubernetes infrastructure using an obscure domain from the payload, container escape attempt and anonymized...

Financial Services
Threatpost ·

2.5 million people were affected, in a breach that could spell more trouble down the line.

Financial Services Information Technology
Threatpost ·

Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.

TA423 Red Ladon Transportation Systems Energy
McAfee Labs | McAfee Blogs ·

Authored by Oliver Devane and Vallabh Chole September 9, 2022 Update: Since the original publication of this blog on August... The post Malicious Cookie Stuffing Chrome Extensions with 1.4 Million...

Financial Services Commercial Facilities
Threatpost ·

Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.

0ktapus Financial Services Information Technology
maxwelldulin ·

Visual Studio Code is a text editor from Microsoft with many awesome plugins. The authors decided to audit the Git plugins. Visual Studio Code has two URI handlers called deep links: vscode:// and...

maxwelldulin ·

nthLink VPN claims to be a VPN that doesn't allow the sniffing of internet traffic. They had two security audits: two from Cure53, where both were found to be secure. The author set out to dispute...

maxwelldulin ·

SSO providers are the main authentication scheme to login to platforms, such as Google. Besides this, there are many corporate products, such as Cisco Identity Services Engine, Oracle Access...

Information Technology
Threatpost ·

Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.

Financial Services Information Technology
Threatpost ·

Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.

Financial Services Information Technology
Threatpost ·

Twitter is blasted for security and privacy lapses by the company’s former head of security who alleges the social media giant’s actions amount to a national security risk.

Government Facilities
Threatpost ·

CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.

Government Facilities Information Technology
maxwelldulin ·

Joe Grand demonstrated a fault injection attack on the Trezor One hardware wallet in order to recover the key off the device. The original post is very dramatic but shy's area from some technical...

Financial Services
Threatpost ·

Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.

TA558 Commercial Facilities Financial Services
Cloud Threat Landscape ·

On 2022-08-22, a campaign was reported, involving APT29, gaining initial access via , while using Add attacker-controlled IdP via ADFS access, Disable logging, MFA enrollment, Auth token signing...

maxwelldulin ·

Superfluid.sol was the host contract of this whole infrastructure. Superfluid “agreements” are the rules that Super Tokens operate under. In order to have a trusted and shared state across...

Financial Services
Threatpost ·

Separate fixes to macOS and iOS patch respective flaws in the kernel and WebKit that can allow threat actors to take over devices and are under attack.

Financial Services Information Technology
Threatpost ·

An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arbitrary code execution and is under active attack.

Vulnerabilities – Threatpost ·

Mobile transactions could’ve been disabled, created and signed by attackers.

Financial Services Critical Manufacturing Mobile Security Vulnerabilities
Maxwell Dulin's Resources ·

Armour DeFi has a insurance coverage-like functionality. A user with coverage can make a claim after suffering some event covered under the policy. An ETH is worth 10^18 WEI. When dealing with...

Healthcare and Public Health
Cloud Threat Landscape ·

On 2022-08-16, a research was reported, involving , gaining initial access via Exposed secret, targeting GitHub to achieve Resp. disclosure.

Vulnerabilities – Threatpost ·

‘Summer Camp’ for hackers features a compromised satellite, a homecoming for hackers and cyberwarfare warnings.

Silicon Communications Commercial Facilities Black Hat Government