Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)

    OX Security recently analyzed 216 million security findings across 250 organizations over a 90-day period. The primary takeaway: while raw alert volume grew by 52% year-over-year, prioritized critical risk grew by nearly 400%. The surge in AI-assisted development is creating a “velocity gap” where the density of high-impact vulnerabilities is scaling faster than

    Read More Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)Continue

  • Blog

    108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 Users

    Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-and-control (C2) infrastructure with the goal of collecting user data and enabling browser-level abuse by injecting ads and arbitrary JavaScript code into every web page visited. According to Socket, the extensions are…

    Read More 108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 UsersContinue

  • Blog

    ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers

    A critical security vulnerability impacting ShowDoc, a document management and collaboration service popular in China, has come under active exploitation in the wild. The vulnerability in question is CVE-2025-0520 (aka CNVD-2020-26585), which carries a CVSS score of 9.4 out of 10.0. It relates to a case of unrestricted file upload that stems from improper validation of

    Read More ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched ServersContinue

  • Blog

    CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe Software

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added half a dozen security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The list of vulnerabilities is as follows – CVE-2026-21643 (CVSS score: 9.1) –  An SQL injection vulnerability in  Fortinet FortiClient EMS that could allow an unauthenticated attacker to

    Read More CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe SoftwareContinue

  • Blog

    CSA: CISOs Should Prepare for Post-Mythos Exploit Storm

    Security experts warn of an “AI vulnerability storm” triggered by the introduction of Anthropic’s Claude Mythos in a new paper from the Cloud Security Alliance (CSA).

    Read More CSA: CISOs Should Prepare for Post-Mythos Exploit StormContinue

  • Blog

    Adobe Patches Actively Exploited Zero-Day That Lingered for Months

    An attacker has been using maliciously crafted PDF files to exploit a zero-day in Adobe Acrobat and Reader for at least four months.

    Read More Adobe Patches Actively Exploited Zero-Day That Lingered for MonthsContinue

  • Blog

    Empty Attestations: OT Lacks the Tools for Cryptographic Readiness

    OT asset owners are being asked by regulators to attest to their post-quantum cryptographic readiness without the appropriate tooling, resulting in paperwork dressed up to look like genuine security.

    Read More Empty Attestations: OT Lacks the Tools for Cryptographic ReadinessContinue

  • Blog

    JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025

    Banks and financial institutions in Latin American countries like Brazil and Mexico have continued to be the target of a malware family called JanelaRAT. A modified version of BX RAT, JanelaRAT is known to steal financial and cryptocurrency data associated with specific financial entities, as well as track mouse inputs, log keystrokes, take screenshots, and…

    Read More JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025Continue

  • Blog

    APT41 Delivers ‘Zero-Detection’ Backdoor to Harvest Cloud Credentials

    The prolific China-backed threat group is targeting AWS, Google, Azure, and Alibaba cloud environments and using typosquatting to obscure C2 communication.

    Read More APT41 Delivers ‘Zero-Detection’ Backdoor to Harvest Cloud CredentialsContinue

  • Blog

    FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud Attempts

    The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims’ account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has&

    Read More FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud AttemptsContinue

Page navigation

Previous PagePrevious 1 … 52 53 54 55 56 … 491 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us