Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password

    ClickLock Stealer, a new macOS infostealer, answers a victim’s refusal by killing their apps on a loop until they hand over the login password. It arrives as a command pasted into Terminal, asks for the password behind a fake system dialog, and when the victim cancels, installs two LaunchAgents and quietly exits. At the next…

    Read More New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their PasswordContinue

  • Blog

    20+ Hijacked Government Websites Became
an Attack Channel

    More than 20 Brazilian government websites were hijacked and turned into malware delivery channels in an active PhantomEnigma campaign uncovered by ANY.RUN, a leading provider of interactive malware analysis and threat intelligence solutions. The investigation revealed previously undocumented backdoor behavior, hidden infrastructure relationships, and multiple attack arms behind a campaign

    Read More 20+ Hijacked Government Websites Became
an Attack ChannelContinue

  • Blog

    New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands

    Ask an AI agent to summarize the reviews on a product page, and a single planted review can make it click “Buy Now” instead. Ask a coding assistant to apply a maintainer’s fix from a GitHub thread, and a fake comment can make it run a stranger’s command on your computer. Neither trick hijacks the…

    Read More New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsContinue

  • Blog

    Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor

    An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm, along with a previously unreported backdoor dubbed Stupig. Daxin (“srt64.sys”), as the kernel-mode rootkit is referred to, was first documented by Broadcom-owned Symantec in March 2022, with evidence indicating its use in targeted…

    Read More Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM BackdoorContinue

  • Blog

    AI Can Find Bugs, But Human Knowledge Still Proves Them

    Artificial intelligence (AI) is changing offensive security, but it has not changed the standard that matters most: a finding has to be proven before it becomes useful. AI-assisted tools can read code quickly, generate payloads, summarize attack surfaces, explain unfamiliar APIs, and run repetitive testing workflows at impressive speed. That is a real advantage for…

    Read More AI Can Find Bugs, But Human Knowledge Still Proves ThemContinue

  • Blog

    Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide

    Pull the certificate off the flash of a Shark RV2320EDUS robot vacuum, and you can run root commands on other people’s Shark vacuums across the same AWS region: watch the camera, drive the robot, read the map of the house, and take the Wi-Fi password in plaintext. A researcher publishing under the handle tokay0 put the…

    Read More Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-WideContinue

  • Blog

    OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol

    OpenAI has disclosed details of GPT-Red, an internal automated red-teaming model that scales prompt injection vulnerability discovery with an aim to fix issues before the tools are deployed widely. “GPT‑Red is a strong red-teamer, and our previous models are highly vulnerable to its prompt injection attacks,” the artificial intelligence (AI) company said. “We use GPT‑Red…

    Read More OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 SolContinue

  • Blog

    Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

    Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vulnerability, tracked as CVE-2026-53412 (CVSS score: 9.8), affects Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows. “Improper Input Validation in Zoom Desktop Client for Windows, Zoom…

    Read More Zoom Patches Critical Windows Flaw That Could Enable Account TakeoverContinue

  • Blog

    Police Disrupt a €140M Cyber Fraud Ring in Spain

    Iberian hackers carried out a variety of cyberattacks and laundered the winnings through complex financial networks.

    Read More Police Disrupt a €140M Cyber Fraud Ring in SpainContinue

  • Blog

    Forgotten Bootloaders Expose Secure Boot Blind Spot

    Nearly a dozen vulnerable and now revoked UEFI shim bootloaders remained trusted for years, giving attackers a path to bypass Secure Boot.

    Read More Forgotten Bootloaders Expose Secure Boot Blind SpotContinue

Page navigation

Previous PagePrevious 1 2 3 4 5 … 529 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us