IM
IronMonkey Threat Research
LIVE
|
Articles 28,696
|
CVEs 366,691
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 41 articles on Sep 01, 2026
The Hacker News ·

Threat actors are exploiting a newly patched critical security flaw impacting JFrog Artifactory merely days after public disclosure, according to watchTowr. The vulnerability in question is...

Information Technology
www.theregister.com - Articles ·

Unauthenticated intruders can mint admin tokens, and exposed servers are already being hit

Information Technology security
The Hacker News ·

Brazilian financial services, retail, and e-commerce organizations have become the target of a financially motivated threat actor dubbed Breeze Comet (formerly UNC5669) since 2024. Google Threat...

Financial Services Information Technology
www.theregister.com - Articles ·

The model provider gave METR the credits for free. An actual customer would not have been so lucky

Information Technology security
www.theregister.com - Articles ·

Baked-in Firefox ad blocking on iOS begins rolling out slowly today, and is off by default

Information Technology security
Threats | CyberScoop ·

The ongoing social engineering threat, which dates back to late 2025, tricks victims into granting threat actors long-term access to their accounts. The post FBI raises alarm over deceptive...

Government Facilities Information Technology Cybersecurity Government
www.theregister.com - Articles ·

Security ... this time it will be different

Information Technology ai and ml
The Record from Recorded Future News ·

A hacking operation dubbed Fire Ant "didn’t just compromise systems," according to researchers. "It compromised the trust layer those systems depend on."

UNC3886 Fire Ant Volt Typhoon Information Technology Communications Technology News
Security Latest ·

The company will give select partners early access to its Astra AI model—so they have time to shore up their defenses.

Safe Business Business / Artificial Intelligence
The Hacker News ·

Cybersecurity researchers have identified a set of 13 malicious Composer theme packages on Packagist that are designed to inject JavaScript into Vietnamese movie and comic streaming sites that...

Information Technology Financial Services
Alerts and advisories ·

Erlang security advisory (AV26-870)

Information Technology Critical Manufacturing
Alerts and advisories ·

Rockwell Automation security advisory (AV26-869)

Critical Manufacturing Energy
The Hacker News ·

The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution of its toolset and likely expand its targeting...

Lazarus Group Information Technology
Alerts and advisories ·

Mozilla security advisory (AV26-868)

Information Technology
Alerts and advisories ·

JFrog security advisory (AV26-867)

Information Technology
Schneier on Security ·

To subscribe to my monthly email newsletter, you have to enter your information on the webpage, and then reply to an automatically generated email. This is, of course, to prevent people from...

Information Technology Communications Uncategorized scams
The Hacker News ·

The most common way into a company last year was to ask. A web page tells the visitor to prove they are not a robot. While they read the instructions, it quietly places a command on their...

Information Technology
BleepingComputer ·

Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control over victim computers and install the ScreenConnect remote support...

Information Technology Security
Schneier on Security ·

This is interesting: The records describe a force-generation mechanism for several General Staff components, including the GRU, Main Operational Directorate, and 8th Directorate, which is...

Sandworm Government Facilities Defense Industrial Base Uncategorized cybersecurity
BleepingComputer ·

Aesto LLC, operating as Aesto Health, disclosed that a data breach discovered recently affects more than 9.5 million individuals. [...]

Healthcare and Public Health Security Healthcare
The Hacker News ·

METR (short for Model Evaluation and Threat Research and pronounced "Meter"), a research non-profit that evaluates frontier artificial intelligence (AI) models for their ability to carry out...

Information Technology
www.theregister.com - Articles ·

Hosting software vendor tells customers to reset credentials and hunt for malicious packages

Information Technology security
The Hacker News ·

Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine with an aim to...

Government Facilities Information Technology
BleepingComputer ·

Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an open-source framework for building AI applications, to steal credentials,...

Information Technology Security
Alerts and advisories ·

WebPros security advisory (AV26-866)

Information Technology Communications
Alerts and advisories ·

WebPros security advisory (AV26-861)

Information Technology
The Hacker News ·

Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - CVE-2026-0768...

Information Technology
The Record from Recorded Future News ·

Andrew Bailey, chair of the Financial Stability Board, called on financial institutions and technology providers to “prepare for more severe scenarios involving simultaneous disruption across...

Financial Services Information Technology Government Industry
Security Latest ·

The US Army’s laser system is part of a new generation of directed-energy weapons capable of detecting, tracking, and destroying drones with a concentrated beam of light.

Energy Security Security / National Security
Wiz Blog | RSS feed ·

Detect exposure to new vulnerabilities the moment they are published with Wiz CVA

Information Technology
BleepingComputer ·

Hackers delivered malicious updates to the Virtualizor VPS management software after hijacking BGP routing for its update infrastructure and redirecting update requests to malicious servers. [...]

Information Technology Security
BleepingComputer ·

Healthtech company Novocure says the data of an undisclosed number of employees and more than 1,400 U.S. cancer patients has been exposed in a mid-August cyberattack. [...]

ShinyHunters Healthcare and Public Health Security Healthcare
BleepingComputer ·

Attackers can hide behind residential proxies, VPNs, and other infrastructure that makes malicious sessions appear legitimate to existing edge security controls. Spur explains how session...

Information Technology Security
Schneier on Security ·

Nathan E. Sanders and I are writing a series of essays on real-world examples of democratic technologies for The Renovator. I haven’t been posting the full text on the blog because they’re a bit...

Government Facilities Uncategorized AI
BleepingComputer ·

Nearly 22,000 Microsoft Exchange servers exposed online remain unpatched against a high-severity authentication bypass vulnerability that allows attackers to hijack all user mailboxes. [...]

Information Technology Security Microsoft
Securelist ·

Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.

Smoke Sandstorm Cloud Atlas Hacking Team GReAT research APT reports
BleepingComputer ·

Five Venezuelan nationals pleaded guilty to attempting to empty automated teller machines (ATMs) using malware in a series of ATM jackpotting attacks. [...]

Financial Services Security
Have I Been Pwned latest breaches ·

In August 2026, the French intellectual property software and services company Questel was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published an...

Commercial Facilities
BleepingComputer ·

Two security vulnerabilities in the PaperCut NG and MF print management software, patched last week after being exploited as zero-days, are now being abused in data theft attacks. [...]

Information Technology Security
www.theregister.com - Articles ·

McKesson admits breach as ShinyHunters demands $55.2M

ShinyHunters Healthcare and Public Health cyber-crime
Recorded Future ·

Experts from Recorded Future and Accenture offer perspectives on navigating the path to becoming an agentic SOC. Find out how to plan moving beyond “AI theater” by prioritizing measurable KPIs,...

Information Technology Blog