#ibmsecurity
#ICYMI, this article by me @forbes.comhas today been updated with further technical info from @0xBoku @IBMSecurity

#infosec

www.forbes.com/sites/daveyw...
Hackers Bypass Windows Defender Security—What You Need To Know
Elite hackers have bypassed Microsoft Windows Defender security controls that restrict application execution to trusted software.
www.forbes.com
March 30, 2025 at 2:34 PM
IBM Pin 2326 / IBM Corporate Security

This security sign looks like a shield / badge. It could have been worn by the security personel.

www.mypins.de/ibm
#ibmpinmuseum
#ibmpins
#ibmpin2326

#ibmsecurity
#ibmcorpatesecurity

#computerpins
#pinaddict
#pinlove
#pincollector
#pinoftheday
April 14, 2026 at 9:14 AM
⚠️ IBM Security is reporting a Incident since 13:58 UTC

"[GDSC] Risk Events experience delayed processing"

Affects: Risk Events

Live timeline → https://pingoru.io/providers/ibm-security/incidents/7644500

#IBMSecurity #IBMSecurityDown
August 1, 2026 at 2:06 PM
⚠️ IBM Security is reporting a Incident since 13:49 UTC

"GDSC Datamart processor performance degradation"

Affects: Data Management – Ingestion (Datamart)

Live timeline → https://pingoru.io/providers/ibm-security/incidents/6531206

#IBMSecurity #IBMSecurityDown
July 17, 2026 at 1:57 PM
.@Fireye “SIEM products not technology that finds sec problems” No love for your SIEM partners? @hpsecurity @IBMSecurity @LogRhythm @splunk
November 19, 2024 at 2:11 AM
Opening panel #cloudsec2017 with @ncsc @bt Security, @MicrosoftUK @IBMSecurity and @trainline_eu "Seperating Digital Bad from Digital Good"
November 18, 2024 at 2:29 PM
Security Intelligence? Security Intelligence is not relying on VirusTotal to tell whether a given vendor does or does not detect a given file! Looking at you @IBMSecurity "New Ransomware Strain Evades Detection by All but One Antivirus Engine"...
November 18, 2024 at 12:05 PM
Abu Dhabi Department of Economic Development Selects @IBMSecurity to Protect Private Customer Information via @maartencloud
November 13, 2024 at 3:03 AM
IBM Issues Critical Alert Over Authentication Bypass Flaw in API Connect Platform #APIconnect #AuthenticationBypass #IBMSecurity
IBM Issues Critical Alert Over Authentication Bypass Flaw in API Connect Platform
IBM has warned organizations using its API Connect platform about a severe security vulnerability that could allow unauthorized individuals to access applications remotely. The company has urged customers to apply security updates immediately to reduce the risk of exploitation. API Connect is an enterprise-level platform designed to help organizations create, manage, and secure application programming interfaces, commonly referred to as APIs. APIs act as digital connectors that allow different software systems to communicate securely. Because these interfaces often expose internal services to external applications, business partners, and developers, they play a crucial role in modern digital operations. IBM API Connect can be deployed in multiple environments, including on-premises infrastructure, cloud-based systems, and hybrid setups. Due to this flexibility, it is widely adopted across industries such as banking, healthcare, retail, and telecommunications, where secure data exchange is essential. The vulnerability, identified as CVE-2025-13915, has been assigned a severity score of 9.8 out of 10, placing it in the highest risk category. According to IBM, the flaw affects API Connect versions 10.0.11.0 and 10.0.8.0 through 10.0.8.5. At the core of the issue is a weakness in the platform’s authentication mechanism. Under certain conditions, an attacker could bypass login checks entirely and gain access to exposed applications without providing valid credentials. The attack does not require advanced technical skill or interaction from a legitimate user, which increases the potential risk. If successfully exploited, this vulnerability could allow threat actors to reach applications that rely on API Connect as a gateway, potentially exposing sensitive systems and data. Given the role of APIs in connecting backend services, such access could have serious operational and security consequences. IBM has released updated software versions that address the flaw and has strongly recommended that administrators upgrade affected systems as soon as possible. For organizations that are unable to deploy the updates immediately, IBM has outlined temporary mitigation steps. One key recommendation is disabling the self-service sign-up feature on the Developer Portal, which can reduce exposure until a full fix is applied. The company has also provided detailed guidance for installing the updates across different environments, including VMware, OpenShift Container Platform, and Kubernetes-based deployments. While IBM has not confirmed active exploitation of this specific vulnerability, U.S. cybersecurity authorities have previously flagged multiple IBM-related security flaws as being abused in real-world attacks. In recent years, several IBM vulnerabilities were added to the U.S. Cybersecurity and Infrastructure Security Agency’s catalog of known exploited vulnerabilities, requiring federal agencies to secure affected systems under Binding Operational Directive 22-01. Some of those previously listed flaws were later linked to ransomware activity, underscoring the importance of addressing high-severity vulnerabilities promptly. Security experts advise organizations using API Connect to verify their software versions, apply updates without delay, and monitor systems closely for unusual behavior. As APIs continue to form the backbone of digital services, maintaining strong authentication controls remains critical to reducing cyber risk.
dlvr.it
January 2, 2026 at 7:10 PM
December 28, 2025 at 10:34 PM
IBM Verify Identity Access Container (10.0 – 11.0.2) faces a CRITICAL flaw: local users can escalate to root. No patch yet — restrict access & monitor updates. https://radar.offseq.com/threat/cve-2026-1346-cwe-250-execution-with-unnecessary-p-0c7a9e3f #OffSeq #IBMSecurity #Vulnerability
CVE-2026-1346: CWE-250 Execution with Unnecessary Privileges in IBM Verify Ident
This vulnerability (CVE-2026-1346) affects IBM Verify Identity Access Container versions 11.0 through 11.0.2 and IBM Security Verify Access Container versions 10.0 through 10.0.9.1. It stems from execution with unnecessary privileges, allow
radar.offseq.com
April 8, 2026 at 1:30 AM
December 14, 2024 at 4:25 PM
Reading @IBM report on Cost of a Data Breach 2020 and found these numbers to be very interesting. If you have a IR team and test that IR team, you save how much? $2 MILLION!?!? Amazing! #purpleteam #adversaryemulation @IBMSecurity
November 27, 2024 at 10:15 AM
Trek10 is one of a few AWS Partners chosen to take IBM Security Guardium to SMB and provide an enterprise-level pathway to data security. Learn more https://trek10.io/ibm-vlog

#ibmsecurity #datasecurity #securityscare #securityblog #nevertrekalone
IBM Security Guardium | Trek10 - AWS Premier Partner
Leverage Trek10's AWS professional expertise to provide IBM enterprise-level data security. Stay vigilant and keep your data secure and compliant today!
www.trek10.com
January 20, 2025 at 1:35 PM
[#WomenInCybersecurity]🧐Découvrez le #témoignage de Aurore Ominetti, Promotion 2003 @TelecomSudParis @IMTFrance @IP_Paris_.

🚀Elle revient sur sa formation d'#ingénieure puis l'orientation commerciale de son #parcours jusqu'à sa #nomination à la tête d'@IBMSecurity France.
March 21, 2025 at 8:42 AM
Clémentine Bouvier, Consultante en cybersécurité, a fait un Double diplôme avec Georgia Institute of Technology (USA), @IBMSecurity
March 20, 2025 at 7:19 PM
⚠️ IBM Security is reporting a Incident since 21:09 UTC

"AI ChatBot might experience delayed…"

Affects: AI ChatBot (Chat with watsonx), AI ChatBot (Chat with watsonx)

Live timeline → https://pingoru.io/providers/ibm-security/incidents/5346068

#IBMSecurity #IBMSecurityDown
July 1, 2026 at 9:18 PM
⚠️ IBM Security is reporting a Incident since 20:45 UTC

"Datamart Ingestion processing slowness"

Affects: Data Management – Ingestion (Datamart), Outliers, Risk Events

Live timeline → https://pingoru.io/providers/ibm-security/incidents/4902707

#IBMSecurity #IBMSecurityDown
IBM Security: Datamart Ingestion processing slowness — June 25, 2026 · Pingoru
IBM Security incident on June 25, 2026: DataMart, Risk Events, and Outliers services are currently experiencing degraded performance, including slow ingestion processing. This may Started 8:45 PM UTC, resolved ongoing (● 8m). Affected: Data Management – Ingestion (Datamart), Outliers, Risk Events.
pingoru.io
June 25, 2026 at 8:54 PM
⚠️ IBM Security is reporting a Incident since 22:41 UTC

"Guardium Data Security Center (US) - Demo tenants provisioning"

Affects: Account Management

Live timeline → https://pingoru.io/providers/ibm-security/incidents/3640677

#IBMSecurity #IBMSecurityDown
IBM Security: Guardium Data Security Center (US) - Demo tenants provisioning — June 8, 2026 · Pingoru
IBM Security incident on June 8, 2026: We are currently experiencing issues affecting the provisioning of demo tenants. Users may encounter delays or failures during the setup pro Started 10:41 PM UTC, resolved ongoing (● 5m). Affected: Account Management.
pingoru.io
June 8, 2026 at 10:46 PM