Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Attackers Pivot to SEMrush Spoof to Steal Google Credentials

    The attackers are taking an indirect approach to targeting SEO professionals and their Google credentials, using a fake digital marketing website.

    Read More Attackers Pivot to SEMrush Spoof to Steal Google CredentialsContinue

  • Blog

    Nation-State ‘Paragon’ Spyware Infections Target Civil Society

    Law enforcement entities in democratic states have been deploying top-of-the-line messaging app spyware against journalists and aid workers.

    Read More Nation-State ‘Paragon’ Spyware Infections Target Civil SocietyContinue

  • Blog

    Why Cyber Quality Is the Key to Security

    The time to secure foundations, empower teams, and make cyber resilience the standard is now — because the cost of waiting is far greater than the investment in proactive security.

    Read More Why Cyber Quality Is the Key to SecurityContinue

  • Blog

    UAT-5918 Targets Taiwan’s Critical Infrastructure Using Web Shells and Open-Source Tools

    Threat hunters have uncovered a new threat actor named UAT-5918 that has been attacking critical infrastructure entities in Taiwan since at least 2023. “UAT-5918, a threat actor believed to be motivated by establishing long-term access for information theft, uses a combination of web shells and open-sourced tooling to conduct post-compromise activities to establish persistence in…

    Read More UAT-5918 Targets Taiwan’s Critical Infrastructure Using Web Shells and Open-Source ToolsContinue

  • Blog

    Medusa Ransomware Uses Malicious Driver to Disable Anti-Malware with Stolen Certificates

    The threat actors behind the Medusa ransomware-as-a-service (RaaS) operation have been observed using a malicious driver dubbed ABYSSWORKER as part of a bring your own vulnerable driver (BYOVD) attack designed to disable anti-malware tools. Elastic Security Labs said it observed a Medusa ransomware attack that delivered the encryptor by means of a loader packed using…

    Read More Medusa Ransomware Uses Malicious Driver to Disable Anti-Malware with Stolen CertificatesContinue

  • Blog

    China-Linked APT Aquatic Panda: 10-Month Campaign, 7 Global Targets, 5 Malware Families

    The China-linked advanced persistent threat (APT) group. known as Aquatic Panda has been linked to a “global espionage campaign” that took place in 2022 targeting seven organizations. These entities include governments, catholic charities, non-governmental organizations (NGOs), and think tanks across Taiwan, Hungary, Turkey, Thailand, France, and the United States. The activity, which took place

    Read More China-Linked APT Aquatic Panda: 10-Month Campaign, 7 Global Targets, 5 Malware FamiliesContinue

  • Blog

    10 Critical Network Pentest Findings IT Teams Overlook

    After conducting over 10,000 automated internal network penetration tests last year, vPenTest has uncovered a troubling reality that many businesses still have critical security gaps that attackers can easily exploit. Organizations often assume that firewalls, endpoint protection, and SIEMs are enough to keep them secure. But how effective are these defenses when put to the…

    Read More 10 Critical Network Pentest Findings IT Teams OverlookContinue

  • Blog

    Kaspersky Links Head Mare to Twelve, Targeting Russian Entities via Shared C2 Servers

    Two known threat activity clusters codenamed Head Mare and Twelve have likely joined forces to target Russian entities, new findings from Kaspersky reveal. “Head Mare relied heavily on tools previously associated with Twelve. Additionally, Head Mare attacks utilized command-and-control (C2) servers exclusively linked to Twelve prior to these incidents,” the company said. “This suggests

    Read More Kaspersky Links Head Mare to Twelve, Targeting Russian Entities via Shared C2 ServersContinue

  • Blog

    Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing Utility

    Two now-patched security flaws impacting Cisco Smart Licensing Utility are seeing active exploitation attempts, according to SANS Internet Storm Center. The two critical-rated vulnerabilities in question are listed below –  CVE-2024-20439 (CVSS score: 9.8) – The presence of an undocumented static user credential for an administrative account that an attacker could exploit to log in…

    Read More Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing UtilityContinue

  • Blog

    VexTrio Using 20,000 Hacked WordPress Sites in Traffic Redirect Scheme

    A massive cybercrime network known as “VexTrio” is using thousands of compromised WordPress sites to funnel traffic through a complex redirection scheme.

    Read More VexTrio Using 20,000 Hacked WordPress Sites in Traffic Redirect SchemeContinue

Page navigation

Previous PagePrevious 1 … 432 433 434 435 436 … 496 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us