Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting

    A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim’s project hijack the victim’s machine learning model upload and run code inside Google’s serving infrastructure. Palo Alto Networks Unit 42, which found and reported the bug through Google’s bug bounty program, calls the technique “Pickle…

    Read More Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket SquattingContinue

  • Blog

    SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection

    FishMonger, a China-nexus threat group, has deployed an undocumented version of the Linux backdoor against government targets in Honduras, Taiwan, Thailand, and Pakistan.

    Read More SprySOCKS Windows Variant Abuses Kernel Drivers to Evade DetectionContinue

  • Blog

    ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures

    Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively. Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations. “Earlier BabaDeda activity was known for

    Read More ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresContinue

  • Blog

    Rokarolla Android Trojan Levels Up to Full Device Control, Persistence

    The emerging malware, spread via fake TikTok and Chrome downloads, demonstrates an evolution by combining banking fraud with extensive device surveillance and remote control.

    Read More Rokarolla Android Trojan Levels Up to Full Device Control, PersistenceContinue

  • Blog

    ‘Lorem Ipsum’ Malware Pivots to ClickFix Delivery

    New analysis shows the campaign, which uses compromised WordPress sites, may be linked to the ransomware and data extortion group Vice Society.

    Read More ‘Lorem Ipsum’ Malware Pivots to ClickFix DeliveryContinue

  • Blog

    New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds

    Security researchers atĀ Zimperium’s zLabsĀ have documented a new Android banking trojan, Rokarolla, that targets 217 banking and cryptocurrency apps and packs 137 remote commands. Together, they give an operator near-total control of an infected phone: it lifts lock-screen PINs, reads and sends SMS, rewrites the clipboard to redirect crypto payments, and switches off Google Play

    Read More New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet FundsContinue

  • Blog

    Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive

    Security teams have never had more IP data at their disposal. Every day, analysts ingest enrichment feeds, geolocation data, reputation scores, telemetry, and threat intelligence from a growing ecosystem of vendors and platforms. Yet despite this abundance of information, many organizations continue to face a fundamental challenge: sifting through the noise to understand who is…

    Read More Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still ReactiveContinue

  • Blog

    Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week

    Bad actors are exploiting multiple security vulnerabilities in Fortinet FortiSandbox, according to threat intelligence firm Defused Cyber. In a post shared on X, the company said it has observed exploitation of CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089 over the past 24 hours. CVE-2026-39813 (CVSS score: 9.1) refers to a path traversal vulnerability in FortiSandbox JRPC API that…

    Read More Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekContinue

  • Blog

    China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth

    Cybersecurity researchers have flagged two previously undocumented Windows variants of what was believed to be a Linux-only backdoor called SprySOCKS. “The Windows variants discovered are internally marked as WIN_DRV and WIN_PLUS,” ESET said in a report shared with The Hacker News. “Both come with a hard-coded C&C [command-and-control] configuration and support communication over TCP, UDP,

    Read More China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based StealthContinue

  • Blog

    Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

    The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing messages impersonating Microsoft Account security notifications to deliver malware called NarwhalRAT. “The attack email contained a message impersonating an MS account security alert,” the Genians Security Center (GSC) said. “It was designed to create concern over possible

    Read More Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT MalwareContinue

Page navigation

1 2 3 … 495 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us