Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Microsoft Warns of ‘Payroll Pirates’ Hijacking HR SaaS Accounts to Steal Employee Salaries

    A threat actor known as Storm-2657 has been observed hijacking employee accounts with the end goal of diverting salary payments to attacker-controlled accounts. “Storm-2657 is actively targeting a range of U.S.-based organizations, particularly employees in sectors like higher education, to gain access to third-party human resources (HR) software as a service (SaaS) platforms like Workday,”…

    Read More Microsoft Warns of ‘Payroll Pirates’ Hijacking HR SaaS Accounts to Steal Employee SalariesContinue

  • Blog

    From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025-10035 Exploitation

    Fortra on Thursday revealed the results of its investigation into CVE-2025-10035, a critical security flaw in GoAnywhere Managed File Transfer (MFT) that’s assessed to have come under active exploitation since at least September 11, 2025. The company said it began its investigation on September 11 following a “potential vulnerability” reported by a customer, uncovering “potentially…

    Read More From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025-10035 ExploitationContinue

  • Blog

    The AI SOC Stack of 2026: What Sets Top-Tier Platforms Apart?

    The SOC of 2026 will no longer be a human-only battlefield. As organizations scale and threats evolve in sophistication and velocity, a new generation of AI-powered agents is reshaping how Security Operations Centers (SOCs) detect, respond, and adapt. But not all AI SOC platforms are created equal. From prompt-dependent copilots to autonomous, multi-agent systems, the…

    Read More The AI SOC Stack of 2026: What Sets Top-Tier Platforms Apart?Continue

  • Blog

    175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign

    Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign. The packages have been collectively downloaded 26,000 times, acting as an infrastructure for a widespread phishing campaign codenamed Beamglea targeting more than 135 industrial, technology,…

    Read More 175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing CampaignContinue

  • Blog

    From LFI to RCE: Active Exploitation Detected in Gladinet and TrioFox Vulnerability

    Cybersecurity company Huntress said it has observed active in-the-wild exploitation of an unpatched security flaw impacting Gladinet CentreStack and TrioFox products. The zero-day vulnerability, tracked as CVE-2025-11371 (CVSS score: 6.1), is an unauthenticated local file inclusion bug that allows unintended disclosure of system files. It impacts all versions of the software prior to and

    Read More From LFI to RCE: Active Exploitation Detected in Gladinet and TrioFox VulnerabilityContinue

  • Blog

    CL0P-Linked Hackers Breach Dozens of Organizations Through Oracle Software Flaw

    Dozens of organizations may have been impacted following the zero-day exploitation of a security flaw in Oracle’s E-Business Suite (EBS) software since August 9, 2025, Google Threat Intelligence Group (GTIG) and Mandiant said in a new report released Thursday. “We’re still assessing the scope of this incident, but we believe it affected dozens of organizations,”…

    Read More CL0P-Linked Hackers Breach Dozens of Organizations Through Oracle Software FlawContinue

  • Blog

    GitHub Copilot ‘CamoLeak’ AI Attack Exfiltrates Data

    While GitHub has advanced protections for its built-in AI agent, a researcher came up with a creative proof-of-concept (PoC) attack for exfiltrating code and secrets via Copilot.

    Read More GitHub Copilot ‘CamoLeak’ AI Attack Exfiltrates DataContinue

  • Blog

    SonicWall: 100% of Firewall Backups Were Breached

    SonicWall said a breach it disclosed last month affected firewall configuration files for all customers who have used SonicWall’s cloud backup service — up from its previous 5% estimate.

    Read More SonicWall: 100% of Firewall Backups Were BreachedContinue

  • Blog

    From HealthKick to GOVERSHELL: The Evolution of UTA0388’s Espionage Malware

    A China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known as GOVERSHELL. “The initially observed campaigns were tailored to the targets, and the messages purported to be sent by senior researchers and analysts from legitimate-sounding,…

    Read More From HealthKick to GOVERSHELL: The Evolution of UTA0388’s Espionage MalwareContinue

  • Blog

    Fastly CISO: Using Major Incidents as Career Catalysts

    Marshall Erwin shares how crisis leadership shaped his path from CIA analyst to the US Congress to protecting global Web traffic at Fastly.

    Read More Fastly CISO: Using Major Incidents as Career CatalystsContinue

Page navigation

Previous PagePrevious 1 … 318 319 320 321 322 … 596 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us