Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    CISA Adds Actively Exploited VMware vCenter Flaw CVE-2024-37079 to KEV Catalog

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw affecting Broadcom VMware vCenter Server that was patched in June 2024 to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability in question is CVE-2024-37079 (CVSS score: 9.8), which refers to a heap…

    Read More CISA Adds Actively Exploited VMware vCenter Flaw CVE-2024-37079 to KEV CatalogContinue

  • Blog

    2025 Was a Wake-Up Call to Protect Human Decisions, Not Just Systems

    Cybersecurity must shift from solely protecting systems to safeguarding human decision-making under uncertainty and system failures.

    Read More 2025 Was a Wake-Up Call to Protect Human Decisions, Not Just SystemsContinue

  • Blog

    Swipe, Plug-in, Pwned: Researchers Find New Ways to Hack Vehicles

    Security researchers exploited dozens of vulnerabilities in vehicle infotainment systems and EV chargers during the latest Pwn2Own contest at Automotive World 2026.

    Read More Swipe, Plug-in, Pwned: Researchers Find New Ways to Hack VehiclesContinue

  • Blog

    Exploited Zero-Day Flaw in Cisco UC Could Affect Millions

    Mass scanning is underway for CVE-2026-20045, which Cisco tagged as critical because successful exploitation could lead to a complete system takeover.

    Read More Exploited Zero-Day Flaw in Cisco UC Could Affect MillionsContinue

  • Blog

    Europe’s GCVE Raises Concerns Over Fragmentation in Vulnerability Databases

    GCVE would enhance global collaboration, flexibility, and efficiency in tracking security flaws. Duplicate entries and a decentralization policy may create more chaos for defenders.

    Read More Europe’s GCVE Raises Concerns Over Fragmentation in Vulnerability DatabasesContinue

  • Blog

    Healthy Security Cultures Thrive on Risk Reporting

    The signs of an effective security culture are shifting as companies call on CISOs and security teams to raise their hands unabashedly.

    Read More Healthy Security Cultures Thrive on Risk ReportingContinue

  • Blog

    CISA Updates KEV Catalog with Four Actively Exploited Software Vulnerabilities

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows – CVE-2025-68645 (CVSS score: 8.8) – A PHP remote file inclusion vulnerability in Synacor Zimbra Collaboration Suite (ZCS) that…

    Read More CISA Updates KEV Catalog with Four Actively Exploited Software VulnerabilitiesContinue

  • Blog

    Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls

    Fortinet has officially confirmed that it’s working to completely plug a FortiCloud SSO authentication bypass vulnerability following reports of fresh exploitation activity on fully-patched firewalls. “In the last 24 hours, we have identified a number of cases where the exploit was to a device that had been fully upgraded to the latest release at the…

    Read More Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate FirewallsContinue

  • Blog

    TikTok Forms U.S. Joint Venture to Continue Operations Under 2025 Executive Order

    TikTok on Friday officially announced that it formed a joint venture that will allow the hugely popular video-sharing application to continue operating in the U.S. The new venture, named TikTok USDS Joint Venture LLC, has been established in compliance with the Executive Order signed by U.S. President Donald Trump in September 2025, the platform said….

    Read More TikTok Forms U.S. Joint Venture to Continue Operations Under 2025 Executive OrderContinue

  • Blog

    Phishing Attack Uses Stolen Credentials to Install LogMeIn RMM for Persistent Access

    Cybersecurity researchers have disclosed details of a new dual-vector campaign that leverages stolen credentials to deploy legitimate Remote Monitoring and Management (RMM) software for persistent remote access to compromised hosts. “Instead of deploying custom viruses, attackers are bypassing security perimeters by weaponizing the necessary IT tools that administrators trust,” KnowBe4 Threat

    Read More Phishing Attack Uses Stolen Credentials to Install LogMeIn RMM for Persistent AccessContinue

Page navigation

Previous PagePrevious 1 … 172 173 174 175 176 … 539 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us