IM
IronMonkey Threat Research
LIVE
|
Articles 25,525
|
CVEs 338,561
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,494 articles — Page 82 of 850
BleepingComputer ·

Stolen credentials remain a top breach vector, often leading to unchecked privilege escalation. Specops explains how identity-first Zero Trust limits access, enforces device trust, and blocks...

Security
SECURITY.COM ·

Attackers assume strapped teams don’t have advanced protection—Symantec CBX is here to prove them wrong

Information Technology
Proofpoint News Feed ·

Analysis by cybersecurity company Proofpoint reveals that while most partners have implemented baseline email authentication, many are still not proactively blocking fraudulent emails that

Information Technology Financial Services
Siemens ProductCERT Security Advisories ·

SCALANCE W-700 IEEE 802.11n family before V6.6.0 are affected by multiple vulnerabilities. Siemens has released a new version for SCALANCE W-700 IEEE 802.11n family and recommends to update to the...

Information Technology Critical Manufacturing
Siemens ProductCERT Security Advisories ·

RUGGEDCOM CROSSBOW Station Access Controller (SAC) contains a vulnerability that could allow an attacker to achieve arbitrary code execution and to create a denial of service condition. Siemens...

Energy Transportation Systems
Siemens ProductCERT Security Advisories ·

SINEC NMS before V4.0 SP3 contains an Authorization Bypass vulnerability that could allow an attacker to bypass authorization checks, leading to the ability to reset the password of any arbitrary...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Industrial Edge Management contains an authorization bypass vulnerability that could be exploited by an unauthenticated remote attacker to circumvent authentication and to access connected...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

The products listed below contain a vulnerability that could allow an attacker to perform an out-of-bound read, potentially leading to information disclosure or denial of service of the TPM....

Critical Manufacturing Energy
Siemens ProductCERT Security Advisories ·

RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) contains a vulnerability that could allow an attacker to escalate their own privileges. Siemens has released a new version for RUGGEDCOM...

Energy Critical Manufacturing
Siemens ProductCERT Security Advisories ·

Siemens SINEC NMS when used with User Management Component (UMC) contains an authentication bypass vulnerability due to insufficient validation of user identity. This could allow an...

Critical Manufacturing Information Technology
Siemens ProductCERT Security Advisories ·

Multiple Siemens applications are affected by improper certificate validation in Siemens Analytics Toolkit. This could allow an unauthenticated remote attacker to perform man in the middle...

Critical Manufacturing Information Technology
TrustedSec ·

We put LLMs to the test—let's find out how good AI is at hacking! We walk through six simple challenges with intentionally naïve setups to test how capable each model is at single-step exploit validation.

Information Technology
Recorded Future ·

Iran War: Future Scenarios and Business Implications

Energy Research (Insikt)
Recorded Future ·

Recorded Future is rolling out new pricing and packaging that bundles its intelligence capabilities into four solutions and three tiered plans, with unlimited users and integrations included.

Information Technology Critical Manufacturing Blog
Recorded Future ·

Recorded Future is rolling out new pricing and packaging that bundles its intelligence capabilities into four solutions and three tiered plans, with unlimited users and integrations included.

Information Technology Critical Manufacturing Blog
Recorded Future ·

Iran War: Future Scenarios and Business Implications

Energy Research (Insikt)
The Hacker News ·

Banks and financial institutions in Latin American countries like Brazil and Mexico have continued to be the target of a malware family called JanelaRAT. A modified version of BX RAT, JanelaRAT is...

Financial Services
The Register - Security ·

One was patched almost 14 years ago Crooks are exploiting four Microsoft vulnerabilities - one patched 14 years ago and another tied to ransomware activity - according to America's lead...

Information Technology Government Facilities
Threats | CyberScoop ·

The company said a developer tool automatically retrieved a malicious version of the popular open-source library, but insists the integrity of its systems and software were not impacted. The post...

Information Technology AI Cybersecurity
The Hacker News ·

The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an...

Financial Services Government Facilities
Alerts and advisories ·

[Control systems] ABB security advisory (AV26-346)

Critical Manufacturing Energy
Alerts and advisories ·

Microsoft Edge security advisory (AV26-345)

Information Technology
The Register - Security ·

Google Sites lure leads to bogus root certificate Imagine getting asked to do something by a person in authority. An unknown malware slinger targeting open source software developers via Slack...

Information Technology
The Hacker News ·

Monday is back, and the weekend’s backlog of chaos is officially hitting the fan. We are tracking a critical zero-day that has been quietly living in your PDFs for months, plus some aggressive...

Pawn Storm Forest Blizzard Information Technology
BleepingComputer ·

Dutch fitness giant Basic-Fit announced that hackers breached its systems and gained access to information belonging to a million of its customers. [...]

Security
Alerts and advisories ·

wolfSSL security advisory (AV26-344)

Information Technology
Alerts and advisories ·

Dell security advisory (AV26-343)

Information Technology
The Hacker News ·

Anthropic restricted its Mythos Preview model last week after it autonomously found and exploited zero-day vulnerabilities in every major operating system and browser. Palo Alto Networks' Wendi...

Schneier on Security ·

The cybersecurity industry is obsessing over Anthropic’s new model, Claude Mythos Preview, and its effects on cybersecurity. Anthropic said that it is not releasing it to the general public...

Information Technology Uncategorized AI
BleepingComputer ·

Rockstar Games has suffered a data breach linked to a recent security incident at Anodot, with the ShinyHunters extortion gang now leaking the stolen data on its data leak site. [...]

ShinyHunters Commercial Facilities Security