Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

    Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s JSON library for Java. In affected Spring Boot applications, a malicious JSON request can execute code without authentication, with the privileges of the Java process. Tracked as CVE-2026-16723, the vulnerability carries an Alibaba-assigned CVSS score of 9.0. The confirmed chain…

    Read More Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableContinue

  • Blog

    CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

    For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts were compromised later when an opportunity arose. That model is changing. Recent investigations into insurance-focused phishing operations reveal a more immediate approach. Instead of harvesting

    Read More CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account HijackingContinue

  • Blog

    Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

    Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed PTC Windmill and FlexPLM deployments as part of a new data extortion campaign. “Attackers chain a pre-authentication information disclosure in the FlexPLM WSDL endpoint with a server-side flaw in the Windchill login servlet,…

    Read More Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEContinue

  • Blog

    DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

    The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to victims. Swiss cybersecurity company PRODAFT is tracking the centrally administered RaaS operation under the name Funky Mantis. “The portal combined build generation, finance,

    Read More DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate PayoutsContinue

  • Blog

    Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

    Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes commands as git on an unpatched self-managed GitLab 18.11.3 server. An ordinary authenticated user triggers it by committing two crafted Jupyter notebooks and requesting their diff. The chain needs no administrator rights, continuous integration (CI) runner access, victim interaction

    Read More Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitContinue

  • Blog

    CISOs vs. Boards: Myth or Misunderstanding?

    Escalating threats are forcing boards to prioritize security, but communication gaps persist. Boards and security teams each say they need more support to bridge the divide.

    Read More CISOs vs. Boards: Myth or Misunderstanding?Continue

  • Blog

    Escape Artists: ‘Incorrigible’ AI Models Resist Rehabilitation

    The hacking of Hugging Face by a rogue OpenAI agent is significant, but unsurprising — and preventing the next AI model escape will be difficult, at best.

    Read More Escape Artists: ‘Incorrigible’ AI Models Resist RehabilitationContinue

  • Blog

    BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery

    The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found to operate an active phishing kit to impersonate the videoconferencing platforms in social engineering campaigns designed to deliver malware. “BlueNoroff has operationalised trust abuse by combining compromised industry contacts, social engineering, wallet

    Read More BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware DeliveryContinue

  • Blog

    Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller

    Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a certificate for a Domain Controller and authenticate as that machine. They codenamed the flaw Certighost. Because Domain Controller accounts carry directory replication rights, the resulting Kerberos credential can retrieve the krbtgt secret through DCSync.

    Read More Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain ControllerContinue

  • Blog

    Vatican’s Official Prayer App Leaks 700K+ Global Users’ PII

    A porous API endpoint exposes, names, email addresses, location, and site status, all of which can be easily gleaned by anyone with a browser.

    Read More Vatican’s Official Prayer App Leaks 700K+ Global Users’ PIIContinue

Page navigation

1 2 3 … 538 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us