Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets

    Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX’s artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security. The two independent analyses are based on exposed infrastructure associated with the Russian-speaking cybercrime group, leading to the discovery of its

    Read More Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 TargetsContinue

  • Blog

    Securing Claude Code: The New Compliance API, Local Visibility, and Identity Governance

    Claude Code reads files, runs shell commands, invokes MCP tools, and acts through the credentials available on a developer’s machine. Anthropic’s new Compliance API endpoints give security teams their clearest view yet into that activity. They also expose a larger problem: activity logs alone cannot tell you whether an agent’s access is legitimate. AI has…

    Read More Securing Claude Code: The New Compliance API, Local Visibility, and Identity GovernanceContinue

  • Blog

    China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

    A China-nexus cyber espionage actor tracked as Fire Ant has expanded a long-running campaign beyond VMware hypervisors to compromise Cisco IOS XR routers, Terminal Access Controller Access-Control System (TACACS) servers, and Linux management hosts used to route, authenticate, and manage high-value networks. Sygnia, the incident response firm that investigated the intrusion, said the actor

    Read More China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security LogsContinue

  • Blog

    DoJ Corrects China Hacking Claim, Says U.S. Agencies Were Targets, Not Victims

    The U.S. Department of Justice (DoJ) on Friday corrected a previously issued press statement that several of its agencies were victims of attacks carried out by Chinese threat actors, instead now pointing out that they were among those targeted. Last week, the DoJ said the National Aeronautics and Space Administration, Federal Reserve, Department of Energy,…

    Read More DoJ Corrects China Hacking Claim, Says U.S. Agencies Were Targets, Not VictimsContinue

  • Blog

    TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor

    Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a malicious command in Windows Terminal or PowerShell. “While traditional ClickFix campaigns direct victims to the Windows Run dialog, TerminalFix campaigns apply the same technique but direct users to Windows Terminal or PowerShell instead, increasing the likelihood…

    Read More TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel BackdoorContinue

  • Blog

    Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

    Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass, account takeover, and arbitrary code execution. The vulnerabilities, according to Wordfence and Patchstack, are listed below – CVE-2026-76581 (CVSS score: 9.8) – An authentication bypass flaw in

    Read More Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCEContinue

  • Blog

    Berlin Refuses to Pay Hackers Who Stole Data From the City’s State Network

    Berlin’s state government has confirmed that it is the target of an extortion attempt following the August compromise of the city’s state administrative network, and said it will not meet the extortionists’ demands. The same statement disclosed that forensic work had found further data outflows in the portfolio of the Senate Department for Mobility, Transport,…

    Read More Berlin Refuses to Pay Hackers Who Stole Data From the City’s State NetworkContinue

  • Blog

    Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable

    Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and August 25, 2026. The vulnerability, designated GHSA-7g4w-cg88-2cq2, is rated Critical by Cosmos Labs and was published without a CVE identifier, a weakness classification, or a CVSS score. Affected…

    Read More Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was VulnerableContinue

  • Blog

    Hundreds of OpenAI Agents Invaded Hugging Face Servers

    The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on a sophisticated, multistage attack.

    Read More Hundreds of OpenAI Agents Invaded Hugging Face ServersContinue

  • Blog

    Offensive Security Investments Surge as AI Threats Increase

    Omdia’s Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for penetration testing, red teaming, and other practices.

    Read More Offensive Security Investments Surge as AI Threats IncreaseContinue

Page navigation

Previous PagePrevious 1 … 19 20 21 22 23 … 596 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us