Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

    An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, re-poisoning the predictor after the defense has run. MIT CSAIL researchers DaniĆ«l Trujillo and Mengjia Yan named the technique INTERRUPT INJECTION. On an AMD Zen 2 machine running Linux…

    Read More New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUsContinue

  • Blog

    ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

    Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish the job. This week runs on cheap leverage: exposed servers, recycled bugs, poisoned agent instructions, remote-access tools dressed as support software, and trusted defaults doing attackers a favor….

    Read More ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More StoriesContinue

  • Blog

    Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities

    Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network. Its August 3 scan counted 4,407 exposed Rockwell controllers worldwide, including 2,844 in the United States, but Forescout could not confirm any were compromised. That figure counts exposed

    Read More Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack CitiesContinue

  • Blog

    CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps

    Coinspect has identified CryptoJS.lib.WordArray.random() as the weak random number generator behind the Ill Bloom wallet drains. Introduced in the JavaScript cryptography library 12 years ago, the function supplied weak entropy that affected wallet apps used to generate recovery phrases. Coinspect’s on-chain analysis puts the measured theft across two sweeps since late May at a lower…

    Read More CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet AppsContinue

  • Blog

    Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses

    Cybersecurity researchers have disclosed a security issue with Apple’s iCloud Private Relay tool that can expose a user’s real IP address. Introduced with iOS 15, iCloud Private Relay employs a dual-hop architecture to ensure users’ privacy by routing their Safari web traffic through two relays so that no single third-party, including Apple, can determine where…

    Read More Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy BypassesContinue

  • Blog

    AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory

    A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links. We observed production websites embedding hidden prompt injection payloads inside “Ask AI” buttons on marketing and competitor comparison…

    Read More AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM MemoryContinue

  • Blog

    Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

    Attackers broke into an organization’s Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle compile it into stored schema objects, and ran commands from inside the database engine. Huntress, which tracks…

    Read More Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM AccessContinue

  • Blog

    AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model

    Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent’s tools with no check that a model turn had authorized them. In several of the attack paths, the model never ran at all, so system prompts, content filters, and model-level guardrails never got a…

    Read More AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the ModelContinue

  • Blog

    Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells

    Cybersecurity researchers have disclosed details of a “factory-shipped backdoor” implanted in at least 20 Chinese router models from Zbtlink. According to a new report from VulnCheck, the implant appears in all 21 firmware images currently available from Zbtlink that span more than 2 years. The backdoors are designed such that they start automatically and attempt…

    Read More Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root ShellsContinue

  • Blog

    Ransom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-Service

    A federal judge in Alexandria, Virginia, sentenced Maksim Silnikau to 16 years in prison on August 5 for creating and running Ransom Cartel, the ransomware-as-a-service operation he stood up in 2021. Between 2021 and 2023, Ransom Cartel conspirators attacked at least 18 companies, including firms in California, New York and Nebraska, and others abroad, according…

    Read More Ransom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-ServiceContinue

Page navigation

Previous PagePrevious 1 … 44 45 46 47 48 … 597 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us