Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

    Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in Israel. Russian cybersecurity company Kaspersky said its ongoing monitoring of the threat activity cluster since December 2025 has led to the discovery of previously unreported components that expand the

    Read More Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate TrafficContinue

  • Blog

    Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS

    The botnet adds exploitation modules, credential theft, and reverse SOCKS relays to turn compromised devices into persistent attacker infrastructure.

    Read More Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoSContinue

  • Blog

    ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

    The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain problems kept spreading farther than the original compromise. A lot of it came down to access that was already there and defenses that assumed…

    Read More ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and MoreContinue

  • Blog

    How MCP Servers Can Expose Enterprise Secrets

    MCP servers can expose enterprise secrets through plaintext configuration files, over-permissioned access and prompt injection, often before security teams even know the server is running. As more organizations adopt AI agents into their systems, that exposure can silently become a major gap in MCP server security. The Model Context Protocol (MCP) allows AI agents to…

    Read More How MCP Servers Can Expose Enterprise SecretsContinue

  • Blog

    Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access

    Security researchers at SSD Secure Disclosure have published a two-stage exploit chain that achieves full Android kernel access on devices running Unisoc modem firmware through a VoLTE video call, with no fix from the chipset maker. The advisory, published August 17, 2026, is the second stage of a chain that began in March 2026, when SSD…

    Read More Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel AccessContinue

  • Blog

    Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies

    Cybersecurity researchers have flagged a previously undocumented Linux botnet family dubbed Evooo1Bot that derives its core functionality from the Mirai botnet source code and is equipped to turn internet-facing devices into SOCKS proxies. “While the malware reuses the DDoS engine from the publicly leaked Mirai source code, it extends the original framework with numerous capabilities,…

    Read More Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 ProxiesContinue

  • Blog

    Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

    Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT). The attacks involve the exploitation of CVE-2026-59310 (CVSS score: 9.8), a severe directory-traversal vulnerability in the VMware vCenter server that could be weaponized by a malicious actor to execute arbitrary code

    Read More Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived RansomwareContinue

  • Blog

    SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch

    A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts. The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation. “SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit

    Read More SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After PatchContinue

  • Blog

    Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner

    A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC) has warned. The vulnerability in question is CVE-2026-65400 (CVSS score: 9.8), a critical authentication issue impacting the Screen Sharing component that could allow an attacker already on…

    Read More Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero MinerContinue

  • Blog

    Mission-Driven Security: Inside a Global Bank’s Defense

    In this video interview, Standard Chartered’s group CISO shares insights on transitioning from technical roles to strategic leadership, the importance of business-savvy security executives, and how AI is reshaping both defensive capabilities and adversarial tactics in banking.

    Read More Mission-Driven Security: Inside a Global Bank’s DefenseContinue

Page navigation

Previous PagePrevious 1 … 34 35 36 37 38 … 596 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us