IM
IronMonkey Threat Research
LIVE
|
Articles 25,427
|
CVEs 337,897
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,396 articles — Page 846 of 847
Kaspersky ICS CERT (English) ·

The vulnerabilities could allow attackers to remotely compromise hosts, cause denial-of-service conditions or elevate their privileges

Publications
Kaspersky ICS CERT (English) ·

Israeli authorities have warned of possible attacks on SCADA systems of wastewater treatment, water pumping and sewerage facilities

Water Publications
Kaspersky ICS CERT (English) ·

The attackers use PoetRAT, a new RAT Trojan distributed via Microsoft Word documents

Publications
Orange Cyberdefense ·

On the 27th of April 2020 SensePost created a CTF challenge (https://challenge.sensepost.com) for the public. The names of those who managed to capture flags would be placed in a draw for a seat...

Kaspersky ICS CERT (English) ·

The statistical data presented in the report was received from ICS computers protected by Kaspersky products that Kaspersky ICS CERT categorizes as part of the industrial infrastructure at organizations.

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

This section presents an overview of threats related to ransomware activity against municipal institutions, industrial enterprises and critical infrastructure facilities.

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

Overview of APT attacks on industrial enterprises information on which was published in 2019.

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

The analysis of vulnerabilities was performed based on vendor advisories, publicly available information from open vulnerability databases (US ICS-CERT, CVE, Siemens Product CERT), as well as the...

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

Malicious objects were blocked on 46.6% and ransomware on 1.0% of ICS computers. Kaspersky ICS CERT identified 103 vulnerabilities in industrial systems, IIoT/IoT systems, and other types of solutions.

Critical Manufacturing Publications
Orange Cyberdefense ·

I’ve been spending some time building new content for our Introduction to Red Teaming course, which has been great for diving into AV/EDR bypass techniques again. In this blog post, I will...

Government Facilities
Blog ·

In my previous blog post I dug into a general overview of the KASAN implementation in XNU. This post goes more in depth in detecting kernel uninitialized information leaks using it (no 0days...

Apple XNU
Kaspersky ICS CERT (English) ·

Siemens industrial solutions are affected by SegmentSmack and FragmentSmack vulnerabilities, which could lead to device denial of service

Publications
Kaspersky ICS CERT (English) ·

In new ransomware attacks, victims face the choice between paying the ransom and seeing their sensitive data published by the attackers

Publications
Kaspersky ICS CERT ·

If exploited, the vulnerabilities could lead to arbitrary code execution, file manipulations, denial of service and the creation of an admin account

Publications
McAfee Labs | McAfee Blogs ·

Authored by: Sang Ryol Ryu and Chanung Pak McAfee Mobile Research team has found another variant of MalBus on an... The post MalBus Actor Changed Market from Google Play to ONE Store appeared...

Financial Services Commercial Facilities
Blog ·

In order to learn about serverless architecture, I experimented with implementing a quick proof of concept crash triaging tool using AWS Lambda Functions. There are many benefits of serverless...

Lambda Serverless
Cloud Threat Landscape ·

On 2020-04-08, a campaign was reported, involving an unknown actor, gaining initial access via , targeting Kubernetes to achieve Resource hijacking.

Financial Services
McAfee Labs | McAfee Blogs ·

While not a new practice, the sheer volume of people required to adhere to social distancing best practices means we... The post Transitioning to a Mass Remote Workforce – We Must Verify Before...

Financial Services Commercial Facilities
McAfee Labs | McAfee Blogs ·

Although the use of global events as a vehicle to drive digital crime is hardly surprising, the current outbreak of... The post COVID-19 Threat Update – now includes Blood for Sale appeared first...

Lead Financial Services Commercial Facilities
Kaspersky ICS CERT ·

In the past month, 10 more hospitals have fallen victim to Ryuk attacks in the US

Healthcare and Public Health Publications
Blog ·

Recently Apple patched a vulnerability (CVE-2020-3919) in IOHIDFamily in their security update 10.15.4 which may allow a malicious application to execute arbitrary code with kernel privileges. It...

Apple XNU
Orange Cyberdefense ·

Introduction Recently, I encountered a fully password-less environment. Every employee in this company had their own smart card that they used to login into their computers, emails, internal...

Kaspersky ICS CERT ·

We found just three almost unique samples, all in one country. So we consider the attacks to be targeted and have currently named this operation WildPressure.

Publications
Kaspersky ICS CERT ·

LibVNC client code contains heap buffer overflow vulnerability in commit prior to 6073771eed1caf72f196e410182471e0dfd32149. This could possible result into remote code execution. This attack...

Advisories
Kaspersky ICS CERT ·

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of...

Advisories
Kaspersky ICS CERT (English) ·

TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which occurs in TightDecoder::FilterGradient. Exploitation of this vulnerability could potentially result into remote code...

Advisories
Kaspersky ICS CERT (English) ·

TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow. Vulnerability could be triggered from CopyRectDecoder due to incorrect value checks. Exploitation of this vulnerability...

Advisories
Kaspersky ICS CERT (English) ·

TigerVNC version prior to 1.10.1 is vulnerable to stack use-after-return, which occurs due to incorrect usage of stack memory in ZRLEDecoder. If decoding routine would throw an exception,...

Advisories
Kaspersky ICS CERT (English) ·

TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which could be triggered from DecodeManager::decodeRect. Vulnerability occurs due to the signdness error in processing...

Advisories
Kaspersky ICS CERT (English) ·

A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server version 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterprise 3.1...

Critical Manufacturing Advisories