Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    SmarterTools SmarterMail RCE

    An actively targeted vulnerability has been identified in SmarterTools SmarterMail, tracked as CVE-2025-52691, with a CVSS score of 10.0 (Critical). The flaw allows unauthenticated attackers to upload arbitrary files to any location on the mail server, potentially resulting in remote code execution (RCE).

    Read More SmarterTools SmarterMail RCEContinue

  • Blog

    Google Disrupts IPIDEA — One of the World’s Largest Residential Proxy Networks

    Google on Wednesday announced that it worked together with other partners to disrupt IPIDEA, which it described as one of the largest residential proxy networks in the world. To that end, the company said it took legal action to take down dozens of domains used to control devices and proxy traffic through them. As of…

    Read More Google Disrupts IPIDEA — One of the World’s Largest Residential Proxy NetworksContinue

  • Blog

    How Can CISOs Respond to Ransomware Getting More Violent?

    Ransomware defense requires focusing on business resilience. This means patching issues promptly, improving user education, and deploying multifactor authentication.

    Read More How Can CISOs Respond to Ransomware Getting More Violent?Continue

  • Blog

    Months After Patch, WinRAR Bug Poised to Hit SMBs Hardest

    Russian and Chinese nation-state attackers are exploiting a months-old WinRAR vulnerability, despite a patch that came out last July.

    Read More Months After Patch, WinRAR Bug Poised to Hit SMBs HardestContinue

  • Blog

    Fortinet Confirms New Zero-Day Behind Malicious SSO Logins

    To stop the ongoing attacks, the cybersecurity vendor took the drastic step of temporarily disabling FortiCloud single sign-on (SSO) authentication for all devices.

    Read More Fortinet Confirms New Zero-Day Behind Malicious SSO LoginsContinue

  • Blog

    Consumers Reluctant to Shop at Stores That Don’t Take Security Seriously

    The retail sector must adapt as consumers become more cybersecurity-conscious. Increased attack transparency is a good place to start.

    Read More Consumers Reluctant to Shop at Stores That Don’t Take Security SeriouslyContinue

  • Blog

    Fake Moltbot AI Coding Assistant on VS Code Marketplace Drops Malware

    Cybersecurity researchers have flagged a new malicious Microsoft Visual Studio Code (VS Code) extension for Moltbot (formerly Clawdbot) on the official Extension Marketplace that claims to be a free artificial intelligence (AI) coding assistant, but stealthily drops a malicious payload on compromised hosts. The extension, named “ClawdBot Agent – AI Coding Assistant” (“clawdbot.clawdbot-agent”)

    Read More Fake Moltbot AI Coding Assistant on VS Code Marketplace Drops MalwareContinue

  • Blog

    China-Backed ‘PeckBirdy’ Takes Flight for Cross-Platform Attacks

    In two separate campaigns, attackers used the JScript C2 framework to target Chinese gambling websites and Asian government entities with new backdoors.

    Read More China-Backed ‘PeckBirdy’ Takes Flight for Cross-Platform AttacksContinue

  • Blog

    Russian ELECTRUM Tied to December 2025 Cyber Attack on Polish Power Grid

    The “coordinated” cyber attack targeting multiple sites across the Polish power grid has been attributed with medium confidence to a Russian state-sponsored hacking crew known as ELECTRUM. Operational technology (OT) cybersecurity company Dragos, in a new intelligence brief published Tuesday, described the late December 2025 activity as the first major cyber attack targeting distributed energy

    Read More Russian ELECTRUM Tied to December 2025 Cyber Attack on Polish Power GridContinue

  • Blog

    Critical vm2 Node.js Flaw Allows Sandbox Escape and Arbitrary Code Execution

    A critical sandbox escape vulnerability has been disclosed in the popular vm2 Node.js library that, if successfully exploited, could allow attackers to run arbitrary code on the underlying operating system. The vulnerability, tracked as CVE-2026-22709, carries a CVSS score of 9.8 out of 10.0 on the CVSS scoring system. “In vm2 for version 3.10.0, Promise.prototype.then…

    Read More Critical vm2 Node.js Flaw Allows Sandbox Escape and Arbitrary Code ExecutionContinue

Page navigation

Previous PagePrevious 1 … 45 46 47 48 49 … 416 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us