Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    What It Took to Reach 1 Billion Build Manifests

    In the last six months, Chainguard doubled its output from 500 million to more than 1 billion container build manifests. We also surpassed 3,000 unique container images and 675,000 image versions in our catalog. Those are the headline numbers, but I want to share what’s actually behind them. The number itself is less interesting than…

    Read More What It Took to Reach 1 Billion Build ManifestsContinue

  • Blog

    FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

    A flaw in FreeIPA lets a client that has never logged in create a Kerberos identity of its own choosing in the directory and end up in the administrators group, Red Hat says. FreeIPA is the system that determines who may log in across a Linux domain and maintains all identities in a 389 Directory…

    Read More FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator CredentialsContinue

  • Blog

    Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

    Adobe on Monday released security patches to address a maximum-severity flaw impacting Adobe Commerce and Magento Open Source that has come under active exploitation in the wild. The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by Sansec, which discovered zero-day exploitation starting September 4, 2026. “This update resolves a critical

    Read More Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web ShellContinue

  • Blog

    BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams

    Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves the way for malware deployment and tech support scams. The campaign, discovered by the DFIR Report in March 2026, has been codenamed BengalSEO. It has operated out of the Indian state of Rajasthan since at least 2015, driven by…

    Read More BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support ScamsContinue

  • Blog

    Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing

    Online dating app Grindr has opted to pay £26 million ($35.1 million) to settle a lawsuit in the U.K. over allegations that it shared users’ personal information, including their HIV status, with third-parties. Grindr, which is the largest LGBTQ+ dating app, was sued in April 2024, accusing it of violating U.K. privacy laws by sharing…

    Read More Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data SharingContinue

  • Blog

    PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

    Cybersecurity researchers have disclosed details of a complex Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser. “Requiring prior administrative or code execution access, its installer injects the extension directly into Chrome/Edge profiles, bypassing Web Store checks and user prompts by forging Chromium’s own Secure Preferences

    Read More PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command ExecutionContinue

  • Blog

    Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

    Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that’s targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. The activity, which mainly singles out directors, vice presidents, and other executive staff

    Read More Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion AttacksContinue

  • Blog

    ⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More

    Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, but an annoying one if that was a precaution you were counting on. Elsewhere, a trusted software source delivered code that…

    Read More ⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and MoreContinue

  • Blog

    Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

    If managing security across multiple cloud providers wasn’t hard enough, each one fails in a different way. For the 2026 Cloud Security Index, Intruder analyzed misconfiguration data from 3,000 organizations across AWS, Azure, and Google Cloud and found that risk profiles across providers have almost nothing in common. Here’s what the data looks like. How…

    Read More Your Cloud Security Checklist Doesn’t Work the Way You Think It DoesContinue

  • Blog

    Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

    Cybersecurity researchers have disclosed details of worm-like activity that abuses ConnectWise ScreenConnect to distribute a malicious Visual Basic Script (VBScript) payload to newly connected systems. According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake

    Read More Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected HostsContinue

Page navigation

Previous PagePrevious 1 … 11 12 13 14 15 … 596 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us