Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-42271 (CVSS score: 8.7), is a command injection vulnerability that could allow any authenticated user to run arbitrary commands on the

    Read More LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCEContinue

  • Blog

    Windows Netlogon Remote Code Execution Vulnerability

    What is the Vulnerability? A critical vulnerability, CVE-2026-41089, affecting the Windows Netlogon service is now being actively exploited in the wild. The vulnerability was patched by Microsoft during the May 2026 Patch Tuesday release and was recently highlighted by the Centre for Cybersecurity Belgium (CCB) after observing active exploitation attempts targeting unpatched systems. Netlogon is…

    Read More Windows Netlogon Remote Code Execution VulnerabilityContinue

  • Blog

    Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability

    What is the Vulnerability? Cisco has disclosed a critical security vulnerability, CVE-2026-20245, affecting Cisco Catalyst SD-WAN Manager and confirmed that it is being actively exploited in the wild. The vulnerability resides in the platform’s command-line interface (CLI) and allows an authenticated attacker with netadmin privileges to execute arbitrary commands as root on the underlying operating…

    Read More Cisco Catalyst SD-WAN Manager Privilege Escalation VulnerabilityContinue

  • Blog

    Silent Ransom Group Hits US Law Firms in Escalating Extortion Attacks

    The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.

    Read More Silent Ransom Group Hits US Law Firms in Escalating Extortion AttacksContinue

  • Blog

    Check Point VPN Flaw Exploited Since Early May

    A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at least one incident.

    Read More Check Point VPN Flaw Exploited Since Early MayContinue

  • Blog

    Iran Signed a Ceasefire — Its Hackers Didn’t

    An extension of the Geneva Conventions could impose restrictions on cyberwarfare under ceasefire conditions and close a major loophole in international conflict.

    Read More Iran Signed a Ceasefire — Its Hackers Didn’tContinue

  • Blog

    Meta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt Order

    Meta on Monday said it detected and blocked spear-phishing attempts linked to Israeli spyware vendor NSO Group. In addition, the tech giant said it’s filing a federal court contempt order against the company for violating a permanent injunction that barred it from targeting WhatsApp and its users. “They tried to trick people into clicking on…

    Read More Meta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt OrderContinue

  • Blog

    ‘Hades’ Campaign Against PyPI Puts New Spin on Shai-Hulud

    The latest attacks, which hit 37 PyPI wheels and 19 code packages, show a continued evolution of the persistent software supply chain threat.

    Read More ‘Hades’ Campaign Against PyPI Puts New Spin on Shai-HuludContinue

  • Blog

    Critical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 Setups

    Check Point has warned of active exploitation of a critical vulnerability impacting Remote Access VPN and Mobile Access deployments that are configured to use the deprecated IKEv1 key exchange protocol. The vulnerability, tracked as CVE-2026-50751 (CVSS score: 9.3), is a case of a logic flow weakness in certificate validation that allows an unauthenticated remote attacker…

    Read More Critical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 SetupsContinue

  • Blog

    ⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and More

    Monday again. The weekend was meant to be quiet. It wasn’t. Last week had poisoned packages, a broken AI helper, and a worm tearing through repos. The ugly part: basic tricks still worked. A chatbot got fooled. A bot token got leaked inside the malware. The same old mistakes showed up again. And while everyone…

    Read More ⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and MoreContinue

Page navigation

Previous PagePrevious 1 … 11 12 13 14 15 … 499 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us