IM
IronMonkey Threat Research
LIVE
|
Articles 25,534
|
CVEs 338,656
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,502 articles — Page 93 of 851
Cisco Talos Blog ·

The year was characterized by an unending beat-down on infrastructure that relied on older enmeshed dependencies (e.g., Log4j and PHPUnit), while React2Shell rocketed to the highest percentage of...

Information Technology 2025YiR Year In Review
Schneier on Security ·

According to a new law, the Hong Kong police can demand that you reveal the encryption keys protecting your computer, phone, hard drives, etc.—even if you are just transiting the airport. In a...

Government Facilities Information Technology Uncategorized encryption
WeLiveSecurity ·

Threat actors are using AI to supercharge tried-and-tested TTPs. When attacks move this fast, cyber-defenders need to rethink their own strategy.

Information Technology Business Security
eCrime.ch Ransomware News | RSS ·

The financially motivated cybercriminal actor tracked by Microsoft Threat Intelligence as Storm-1175 operates high-velocity ransomware campaigns that weaponize N-days, targeting vulnerable,...

Information Technology
The Register - Security ·

Customizations are causing pain so new cloud will stick to upstream cuts of the open source stack LY Corporation, the Japanese web giant that dominates messaging, e-commerce and payments in many...

Information Technology
DataBreaches.Net ·

One of the top-ranked law firms in the country confirmed today that it has suffered a data breach. Jones Day disclosed the breach after hackers known as Silent Ransom Group (SRG) posted the data...

Breach Incidents Business Sector
The Hacker News ·

An Iran-nexus threat actor is suspected to be behind a password-spraying campaign targeting Microsoft 365 environments in Israel and the U.A.E. amid ongoing conflict in the Middle East. The...

Peach Sandstorm Fox Kitten Information Technology Government Facilities
Cloud Threat Landscape ·

The attack originated reportedly from a security incident affecting Anodot, a SaaS analytics and anomaly detection platform that integrates with multiple cloud services (e.g., Snowflake, S3, and...

ShinyHunters Information Technology
The Register - Security ·

CUPS server shown spilling out remote code execution and root access In the latest chapter on leaky CUPS, a security researcher and his band of bug-hunting agents have found two flaws that can be...

Information Technology
Unit 42 ·

Unit 42 uncovers escalating Kubernetes attacks, detailing how threat actors exploit identities and critical vulnerabilities to compromise cloud environments. The post Understanding Current Threats...

Information Technology Malware Threat Research
The Hacker News ·

Threat actors likely associated with the Democratic People's Republic of Korea (DPRK) have been observed using GitHub as command-and-control (C2) infrastructure in multi-stage attacks targeting...

Kimsuky Information Technology
Threats | CyberScoop ·

Two critical defects in FortiClient EMS have been exploited in the past couple weeks. Experts push for users to apply an immediate hotfix. The post Fortinet customers confront actively exploited...

Information Technology Government Facilities Cybersecurity Research
DataBreaches.Net ·

A press release on April 6, 2026 from Maine House Democrats: On Thursday, the Maine House voted unanimously to advance a bill from Rep. Julie McCabe, D-Lewiston, that would help prevent...

Healthcare and Public Health Government Facilities Health Data Legislation
DataBreaches.Net ·

Sergiu Gatlan reports: Microsoft says that Storm-1175, a China-based financially motivated cybercriminal group known for deploying Medusa ransomware payloads, has been deploying n-day and zero-day...

Information Technology Commentaries and Analyses Malware
BleepingComputer ·

The Federal Police in Germany (BKA) has identified two Russian nationals as the leaders of GandCrab and REvil ransomware operations between 2019 and 2021. [...]

Information Technology Government Facilities Security Legal
BleepingComputer ·

The Federal Police in Germany (BKA) has identified two Russian nationals as the leaders of GandCrab and REvil ransomware operations between 2019 and 2021. [...]

Information Technology Government Facilities Security Legal
The Record from Recorded Future News ·

Microsoft, Google, Meta and Snapchat released a statement on Friday saying they “reaffirm their continued commitment to protecting children and preserving privacy, and will continue to take...

Information Technology Communications Government News
Schneier on Security ·

Mike Masnick points out that the recent New Mexico court ruling against Meta has some bad implications for end-to-end encryption, and security in general: If the “design choices create liability”...

Information Technology Communications Uncategorized children
The Hacker News ·

Your attack surface no longer lives on one operating system, and neither do the campaigns targeting it. In enterprise environments, attackers move across Windows endpoints, executive MacBooks,...

Information Technology
Security Latest ·

Nonprofits run out of US Border Patrol stations are also selling other “operation”-themed coins that include a phrase popularized by the Proud Boys, potentially in violation of government rules.

Government Facilities Security Security / National Security
The Hacker News ·

This week had real hits. The key software got tampered with. Active bugs showed up in the tools people use every day. Some attacks didn’t even need much effort because the path was already there....

Charming Kitten Void Blizzard Information Technology
The Register - Security ·

CISA added the flaw to KEV after Fortinet confirmed exploitation in the wild Fortinet released an emergency patch over the weekend for a critical FortiClient Enterprise Management Server (EMS) bug...

Information Technology Government Facilities
BleepingComputer ·

A new attack, dubbed GPUBreach, can induce Rowhammer bit-flips on GPU GDDR6 memories to escalate privileges and lead to a full system compromise. [...]

Information Technology Critical Manufacturing Security Hardware
Threats | CyberScoop ·

Bryan Fleming won’t face prison time for a count to which he pled guilty in January, in a rare case of a successful U.S. stalkerware prosecution. The post pcTattleTale stalkerware maker sentence...

Critical Manufacturing Information Technology Privacy Technology
The Hacker News ·

The most active piece of enterprise infrastructure in the company is the developer workstation. That laptop is where credentials are created, tested, cached, copied, and reused across services,...

Information Technology
DataBreaches.Net ·

On January 12, Valley Family Health Care (VFHC) notified HHS after learning that the TriZetto Provider Solutions (TPS) breach had affected 4,300 of their patients. The TPS breach, which began in...

Healthcare and Public Health Commentaries and Analyses Health Data
The Hacker News ·

Threat actors associated with Qilin and Warlock ransomware operations have been observed using the bring your own vulnerable driver (BYOVD) technique to silence security tools running on...

Information Technology
The Citizen Lab ·

In June 2023, the Citizen Lab submitted recommendations on combatting mercenary spyware risks to NSICOP. The post Submission to the National Security and Intelligence Committee of Parliamentarians...

Government Facilities Information Technology
BleepingComputer ·

Exploit code has been released for an unpatched Windows privilege escalation flaw reported privately to Microsoft, allowing attackers to gain SYSTEM or elevated administrator permissions. [...]

Information Technology Security Microsoft
BleepingComputer ·

Microsoft has resolved a known issue that was preventing some Classic Outlook users from sending emails via Outlook.com. [...]

Information Technology Microsoft