Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    CISA Adds TP-Link and WhatsApp Flaws to KEV Catalog Amid Active Exploitation

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a high-severity security flaw impacting TP-Link TL-WA855RE Wi-Fi Ranger Extender products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, CVE-2020-24363 (CVSS score: 8.8), concerns a case of missing authentication that could be abused to obtain

    Read More CISA Adds TP-Link and WhatsApp Flaws to KEV Catalog Amid Active ExploitationContinue

  • Blog

    Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of Organizations

    Salesloft on Tuesday announced that it’s taking Drift temporarily offline “in the very near future,” as multiple companies have been ensnared in a far-reaching supply chain attack spree targeting the marketing software-as-a-service product, resulting in the mass theft of authentication tokens. “This will provide the fastest path forward to comprehensively review the application and build

    Read More Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of OrganizationsContinue

  • Blog

    Amazon Stymies APT29 Credential Theft Campaign

    A group linked to Russian intelligence services redirected victims to fake Cloudflare verification pages and exploited Microsoft’s device code authentication flow.

    Read More Amazon Stymies APT29 Credential Theft CampaignContinue

  • Blog

    WordPress Woes Continue Amid ClickFix Attacks, TDS Threats

    Vulnerable and malicious plug-ins are giving threat actors the ability to compromise WordPress sites and use them as a springboard to a variety of cyber threats and scams.

    Read More WordPress Woes Continue Amid ClickFix Attacks, TDS ThreatsContinue

  • Blog

    Zscaler, Palo Alto Networks Breached via Salesloft Drift

    Two major security firms suffered downstream compromises as part of a large-scale supply chain attack involving Salesloft Drift, a marketing SaaS application from Salesforce.

    Read More Zscaler, Palo Alto Networks Breached via Salesloft DriftContinue

  • Blog

    Jaguar Land Rover Shuts Down in Scramble to Secure ‘Cyber Incident’

    The luxury automaker said its retail and production activities have been “severely disrupted.”

    Read More Jaguar Land Rover Shuts Down in Scramble to Secure ‘Cyber Incident’Continue

  • Blog

    Lazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePE

    The North Korea-linked threat actor known as the Lazarus Group has been attributed to a social engineering campaign that distributes three different pieces of cross-platform malware called PondRAT, ThemeForestRAT, and RemotePE. The attack, observed by NCC Group’s Fox-IT in 2024, targeted an organization in the decentralized finance (DeFi) sector, ultimately leading to the compromise of…

    Read More Lazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePEContinue

  • Blog

    Researchers Warn of MystRodX Backdoor Using DNS and ICMP Triggers for Stealthy Control

    Cybersecurity researchers have disclosed a stealthy new backdoor called MystRodX that comes with a variety of features to capture sensitive data from compromised systems. “MystRodX is a typical backdoor implemented in C++, supporting features like file management, port forwarding, reverse shell, and socket management,” QiAnXin XLab said in a report published last week. “Compared to…

    Read More Researchers Warn of MystRodX Backdoor Using DNS and ICMP Triggers for Stealthy ControlContinue

  • Blog

    Hackers Are Sophisticated & Impatient — That Can Be Good

    You can’t negotiate with hackers from a place of fear — but you can turn their urgency against them with the right playbook, people, and preparation.

    Read More Hackers Are Sophisticated & Impatient — That Can Be GoodContinue

  • Blog

    NIST Enhances Security Controls for Improved Patching

    The US National Institute of Standards and Technology released Security and Privacy Control version 5.2.0 to help organizations be more proactive regarding patching.

    Read More NIST Enhances Security Controls for Improved PatchingContinue

Page navigation

Previous PagePrevious 1 … 173 174 175 176 177 … 414 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us