IM
IronMonkey Threat Research
LIVE
|
Articles 27,186
|
CVEs 349,550
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 27,154 articles — Page 886 of 906
Cloud Threat Landscape ·

CrowdStrike uncovered a cryptojacking campaign targeting vulnerable Docker and Kubernetes infrastructure using an obscure domain from the payload, container escape attempt and anonymized...

Financial Services
Threatpost ·

2.5 million people were affected, in a breach that could spell more trouble down the line.

Financial Services Information Technology
Threatpost ·

Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.

TA423 Red Ladon Transportation Systems Energy
McAfee Labs | McAfee Blogs ·

Authored by Oliver Devane and Vallabh Chole September 9, 2022 Update: Since the original publication of this blog on August... The post Malicious Cookie Stuffing Chrome Extensions with 1.4 Million...

Financial Services Commercial Facilities
Threatpost ·

Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.

0ktapus Financial Services Information Technology
maxwelldulin ·

Visual Studio Code is a text editor from Microsoft with many awesome plugins. The authors decided to audit the Git plugins. Visual Studio Code has two URI handlers called deep links: vscode:// and...

maxwelldulin ·

nthLink VPN claims to be a VPN that doesn't allow the sniffing of internet traffic. They had two security audits: two from Cure53, where both were found to be secure. The author set out to dispute...

maxwelldulin ·

SSO providers are the main authentication scheme to login to platforms, such as Google. Besides this, there are many corporate products, such as Cisco Identity Services Engine, Oracle Access...

Information Technology
Threatpost ·

Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.

Financial Services Information Technology
Threatpost ·

Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.

Financial Services Information Technology
Threatpost ·

Twitter is blasted for security and privacy lapses by the company’s former head of security who alleges the social media giant’s actions amount to a national security risk.

Government Facilities
Threatpost ·

CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.

Government Facilities Information Technology
maxwelldulin ·

Joe Grand demonstrated a fault injection attack on the Trezor One hardware wallet in order to recover the key off the device. The original post is very dramatic but shy's area from some technical...

Financial Services
Threatpost ·

Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.

TA558 Commercial Facilities Financial Services
Cloud Threat Landscape ·

On 2022-08-22, a campaign was reported, involving APT29, gaining initial access via , while using Add attacker-controlled IdP via ADFS access, Disable logging, MFA enrollment, Auth token signing...

maxwelldulin ·

Superfluid.sol was the host contract of this whole infrastructure. Superfluid “agreements” are the rules that Super Tokens operate under. In order to have a trusted and shared state across...

Financial Services
Threatpost ·

Separate fixes to macOS and iOS patch respective flaws in the kernel and WebKit that can allow threat actors to take over devices and are under attack.

Financial Services Information Technology
Threatpost ·

An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arbitrary code execution and is under active attack.

Vulnerabilities – Threatpost ·

Mobile transactions could’ve been disabled, created and signed by attackers.

Financial Services Critical Manufacturing Mobile Security Vulnerabilities
Maxwell Dulin's Resources ·

Armour DeFi has a insurance coverage-like functionality. A user with coverage can make a claim after suffering some event covered under the policy. An ETH is worth 10^18 WEI. When dealing with...

Healthcare and Public Health
Cloud Threat Landscape ·

On 2022-08-16, a research was reported, involving , gaining initial access via Exposed secret, targeting GitHub to achieve Resp. disclosure.

Vulnerabilities – Threatpost ·

‘Summer Camp’ for hackers features a compromised satellite, a homecoming for hackers and cyberwarfare warnings.

Silicon Communications Commercial Facilities Black Hat Government
Vulnerabilities – Threatpost ·

The CISA has seen a resurgence of the malware targeting a range of verticals and critical infrastructure organizations by exploiting RDP, firewall vulnerabilities.

Healthcare and Public Health Information Technology Malware Vulnerabilities
Wiz Blog | RSS feed ·

How Wiz Research uncovered multiple related vulnerabilities in PostgreSQL-as-a-Service offerings from GCP, Azure, and others.

Information Technology
maxwelldulin ·

Before the internet, the Super Nintendo (SNES) had an online gaming community via the XBAND Video Game Modem. The goal of the author was to create complete emulation support for XBAND. XBAND...

Commercial Facilities Financial Services
maxwelldulin ·

While playing around with the GreatFET One, the author found that Xorg would crash with format string payloads. After an advisory from Xorg that related to "input devices" the author decided to...

Critical Manufacturing
maxwelldulin ·

The hacker has picked up a random IoT alarm from China. In parts 1 and 2, they dumped the firmware and figured out how it works. In this post, they decided to go through the reverse engineering of...

Communications
maxwelldulin ·

MicroTik recently added the ability to containerize application running on their routing. This is the functionality being targeted in this attack. An interesting feature is allowing for mount...

maxwelldulin ·

Cloudflare Email Routing was in a closed beta, with the author not being invited. A check in the UI was placed to allow access to the functionality or not; this could be bypassed via changing a...

Information Technology
maxwelldulin ·

Virtualization, especially with hypervisors in place, needs to ensure that no assets leak from one virtual machine to the other or from the hypervisor to the virtual machine. Failure to do so may...

Commercial Facilities