Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell Tool

    The China-linked threat actor known as UNC5174 has been attributed to a new campaign that leverages a variant of a known malware dubbed SNOWLIGHT and a new open-source tool called VShell to infect Linux systems. “Threat actors are increasingly using open source tools in their arsenals for cost-effectiveness and obfuscation to save money and, in…

    Read More Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell ToolContinue

  • Blog

    Are We Prioritizing the Wrong Security Metrics?

    True security isn’t about meeting deadlines — it’s about mitigating risk in a way that aligns with business objectives while protecting against real-world threats.

    Read More Are We Prioritizing the Wrong Security Metrics?Continue

  • Blog

    China-Backed Threat Actor ‘UNC5174’ Using Open Source Tools in Stealthy Attacks

    Sysdig researchers detailed an ongoing campaign from China-backed threat actor UNC5174, which is using open source hacking tools to stay under the radar.

    Read More China-Backed Threat Actor ‘UNC5174’ Using Open Source Tools in Stealthy AttacksContinue

  • Blog

    Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence

    A critical security vulnerability has been disclosed in the Apache Roller open-source, Java-based blogging server software that could allow malicious actors to retain unauthorized access even after a password change. The flaw, assigned the CVE identifier CVE-2025-24859, carries a CVSS score of 10.0, indicating maximum severity. It affects all versions of Roller up to and…

    Read More Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session PersistenceContinue

  • Blog

    Malicious PyPI Package Targets MEXC Trading API to Steal Credentials and Redirect Orders

    Cybersecurity researchers have disclosed a malicious package uploaded to the Python Package Index (PyPI) repository that’s designed to reroute trading orders placed on the MEXC cryptocurrency exchange to a malicious server and steal tokens. The package, ccxt-mexc-futures, purports to be an extension built on top of a popular Python library named ccxt (short for CryptoCurrency…

    Read More Malicious PyPI Package Targets MEXC Trading API to Steal Credentials and Redirect OrdersContinue

  • Blog

    Majority of Browser Extensions Can Access Sensitive Enterprise Data, New Report Finds

    Everybody knows browser extensions are embedded into nearly every user’s daily workflow, from spell checkers to GenAI tools. What most IT and security people don’t know is that browser extensions’ excessive permissions are a growing risk to organizations. LayerX today announced the release of the Enterprise Browser Extension Security Report 2025, This report is the…

    Read More Majority of Browser Extensions Can Access Sensitive Enterprise Data, New Report FindsContinue

  • Blog

    Crypto Developers Targeted by Python Malware Disguised as Coding Challenges

    The North Korea-linked threat actor assessed to be behind the massive Bybit hack in February 2025 has been linked to a malicious campaign that targets developers to deliver new stealer malware under the guise of a coding assignment. The activity has been attributed by Palo Alto Networks Unit 42 to a hacking group it tracks…

    Read More Crypto Developers Targeted by Python Malware Disguised as Coding ChallengesContinue

  • Blog

    Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE Vulnerability

    A recently disclosed security flaw in Gladinet CentreStack also impacts its Triofox remote access and collaboration solution, according to Huntress, with seven different organizations compromised to date. Tracked as CVE-2025-30406 (CVSS score: 9.0), the vulnerability refers to the use of a hard-coded cryptographic key that could expose internet-accessible servers to remote code execution attacks

    Read More Gladinet’s Triofox and CentreStack Under Active Exploitation via Critical RCE VulnerabilityContinue

  • Blog

    Meta Resumes E.U. AI Training Using Public User Data After Regulator Approval

    Meta has announced that it will begin to train its artificial intelligence (AI) models using public data shared by adults across its platforms in the European Union, nearly a year after it paused its efforts due to data protection concerns from Irish regulators. “This training will better support millions of people and businesses in Europe,…

    Read More Meta Resumes E.U. AI Training Using Public User Data After Regulator ApprovalContinue

  • Blog

    AI Code Tools Widely Hallucinate Packages

    The hallucination problem is not just pervasive, it is persistent as well, according to new research.

    Read More AI Code Tools Widely Hallucinate PackagesContinue

Page navigation

Previous PagePrevious 1 … 458 459 460 461 462 … 549 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us