Researchers Learn from ITG18 Group’s OpSec Mistakes
A team of IBM X-Force security experts analyzed attackers' operational security mistakes to disclose the core details of how the...
A team of IBM X-Force security experts analyzed attackers' operational security mistakes to disclose the core details of how the...
Security Health Metrics For Open SourceMotivationA short motivational video clip to inspire us: https://youtu.be/rDMMYT3vkTk "You passed! All D's ... and...
Windows Feature Hunter (WFH) is a proof of concept python script that uses Frida, a dynamic instrumentation toolkit, to assist...
Insurance giant CNA notifies customers of a data breach after the Phoenix CryptoLocker ransomware attack suffered in March. US insurance...
Threat actors have devised a new trick to disable macro security warning that leverage non-malicious docs in malspam attacks. Most...
Microsoft confirmed that the emergency security updates (KB5005010) correctly address the PrintNightmare Print Spooler vulnerability (CVE-2021-34527). Microsoft says that the...
Cisco addresses high severity privilege escalation vulnerabilities in Business Process Automation (BPA) and Web Security Appliance (WSA) that expose users...
Rapid7 researchers discovered security vulnerabilities in the Sage X3 ERP product that could allow to take control of vulnerable systems. Researchers from...
The American multinational investment bank and financial services firm Morgan Stanley discloses a data breach caused by the hack of an Accellion FTA server...
Working oil pumps are seen against a sunset sky. Intezer uncovered a year-long spear-phishing campaign against energy companies. (Getty Images)An...
The Malwarebytes Threat Intelligence Team recently found a malicious spam campaign making the rounds and banking on the ransomware attack...
Software vendor Kaseya has been caught in the chaos of a supply-chain compromise by the REvil ransomware gang since Friday....
On Wednesday, the press secretary of the President of the Russian Federation Dmitry Peskov told reporters that the cyber attack...
Recently Indian officials have reported that China-based cybercriminals are targeting customers of the Indian National Bank State Bank of India...
An attacker leaked non-public information from GETTR, a social media platform made by former president Donald Trump's team in July...
A researcher at Positive Technologies has provided details about the CVE-2021-20026 command injection flaw that exploits SonicWall’s Network Security Manager...
Despite the development of security tools, the number of leaks of confidential information of companies and individuals is not decreasing....
Ipa-medit is a memory search and patch tool for resigned ipa without jailbreak. It was created for mobile game security...
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more...PreviewInstallationYou need...
The Tor Project has released Tor Browser 10.5 which enhances an anti-censorship feature and warns of V2 onion URL deprecation....
A threat actor has deposited 26.99 Bitcoins on one of the cybercrime forums, he aims at purchasing zero-day exploits from other forum members. A...
The emergency patch for the PrintNightmare vulnerability released by Microsoft is incomplete and still allows RCE. Yesterday, Microsoft has released an...
Wiregrass Electric Cooperative, a rural Alabama electric cooperative was hit by a ransomware attack. Wiregrass Electric Cooperative, a rural Alabama...
WildPressure APT is targeting industrial organizations in the Middle East since 2019 and was spotted using now a new malware...