Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Fileless Phantom Stealer Targets Browser Credentials

    In addition to executing entirely in memory, the malware’s infection chain incorporates other anti-analysis techniques designed to frustrate detection.

    Read More Fileless Phantom Stealer Targets Browser CredentialsContinue

  • Blog

    Security Community Slams US Ban on Exporting Mythos, Fable

    An open letter signed by dozens of security experts asked the government to reverse export restrictions on Anthropic’s Claude Fable 5 and Mythos 5 models.

    Read More Security Community Slams US Ban on Exporting Mythos, FableContinue

  • Blog

    Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting

    A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim’s project hijack the victim’s machine learning model upload and run code inside Google’s serving infrastructure. Palo Alto Networks Unit 42, which found and reported the bug through Google’s bug bounty program, calls the technique “Pickle…

    Read More Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket SquattingContinue

  • Blog

    SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection

    FishMonger, a China-nexus threat group, has deployed an undocumented version of the Linux backdoor against government targets in Honduras, Taiwan, Thailand, and Pakistan.

    Read More SprySOCKS Windows Variant Abuses Kernel Drivers to Evade DetectionContinue

  • Blog

    ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures

    Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively. Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations. “Earlier BabaDeda activity was known for

    Read More ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresContinue

  • Blog

    Rokarolla Android Trojan Levels Up to Full Device Control, Persistence

    The emerging malware, spread via fake TikTok and Chrome downloads, demonstrates an evolution by combining banking fraud with extensive device surveillance and remote control.

    Read More Rokarolla Android Trojan Levels Up to Full Device Control, PersistenceContinue

  • Blog

    ‘Lorem Ipsum’ Malware Pivots to ClickFix Delivery

    New analysis shows the campaign, which uses compromised WordPress sites, may be linked to the ransomware and data extortion group Vice Society.

    Read More ‘Lorem Ipsum’ Malware Pivots to ClickFix DeliveryContinue

  • Blog

    New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds

    Security researchers atĀ Zimperium’s zLabsĀ have documented a new Android banking trojan, Rokarolla, that targets 217 banking and cryptocurrency apps and packs 137 remote commands. Together, they give an operator near-total control of an infected phone: it lifts lock-screen PINs, reads and sends SMS, rewrites the clipboard to redirect crypto payments, and switches off Google Play

    Read More New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet FundsContinue

  • Blog

    Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive

    Security teams have never had more IP data at their disposal. Every day, analysts ingest enrichment feeds, geolocation data, reputation scores, telemetry, and threat intelligence from a growing ecosystem of vendors and platforms. Yet despite this abundance of information, many organizations continue to face a fundamental challenge: sifting through the noise to understand who is…

    Read More Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still ReactiveContinue

  • Blog

    Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week

    Bad actors are exploiting multiple security vulnerabilities in Fortinet FortiSandbox, according to threat intelligence firm Defused Cyber. In a post shared on X, the company said it has observed exploitation of CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089 over the past 24 hours. CVE-2026-39813 (CVSS score: 9.1) refers to a path traversal vulnerability in FortiSandbox JRPC API that…

    Read More Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekContinue

Page navigation

Previous PagePrevious 1 … 50 51 52 53 54 … 546 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us