Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing

    A malicious website can work out which sites you visit and which apps you open, using nothing but JavaScript and the timing of your SSD. The attack, called FROST, needs no native code, no extension, and no permission prompt. You open the page, leave the tab sitting there, and it watches the drive for contention…

    Read More New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD TimingContinue

  • Blog

    Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential Stealer

    The Miasma supply chain campaign has sparked a fresh attack wave called Hades, this time involving 37 malicious wheel artifacts across 19 packages in the Python Package Index (PyPI) registry, as the Mini Shai-Hulud-style attacks continue to be refined and splintered to target specific ecosystems. “The compromised releases shipped a *-setup.pth file that attempts to…

    Read More Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential StealerContinue

  • Blog

    LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-42271 (CVSS score: 8.7), is a command injection vulnerability that could allow any authenticated user to run arbitrary commands on the

    Read More LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCEContinue

  • Blog

    Windows Netlogon Remote Code Execution Vulnerability

    What is the Vulnerability? A critical vulnerability, CVE-2026-41089, affecting the Windows Netlogon service is now being actively exploited in the wild. The vulnerability was patched by Microsoft during the May 2026 Patch Tuesday release and was recently highlighted by the Centre for Cybersecurity Belgium (CCB) after observing active exploitation attempts targeting unpatched systems. Netlogon is…

    Read More Windows Netlogon Remote Code Execution VulnerabilityContinue

  • Blog

    Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability

    What is the Vulnerability? Cisco has disclosed a critical security vulnerability, CVE-2026-20245, affecting Cisco Catalyst SD-WAN Manager and confirmed that it is being actively exploited in the wild. The vulnerability resides in the platform’s command-line interface (CLI) and allows an authenticated attacker with netadmin privileges to execute arbitrary commands as root on the underlying operating…

    Read More Cisco Catalyst SD-WAN Manager Privilege Escalation VulnerabilityContinue

  • Blog

    Silent Ransom Group Hits US Law Firms in Escalating Extortion Attacks

    The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.

    Read More Silent Ransom Group Hits US Law Firms in Escalating Extortion AttacksContinue

  • Blog

    Check Point VPN Flaw Exploited Since Early May

    A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at least one incident.

    Read More Check Point VPN Flaw Exploited Since Early MayContinue

  • Blog

    Iran Signed a Ceasefire — Its Hackers Didn’t

    An extension of the Geneva Conventions could impose restrictions on cyberwarfare under ceasefire conditions and close a major loophole in international conflict.

    Read More Iran Signed a Ceasefire — Its Hackers Didn’tContinue

  • Blog

    Meta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt Order

    Meta on Monday said it detected and blocked spear-phishing attempts linked to Israeli spyware vendor NSO Group. In addition, the tech giant said it’s filing a federal court contempt order against the company for violating a permanent injunction that barred it from targeting WhatsApp and its users. “They tried to trick people into clicking on…

    Read More Meta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt OrderContinue

  • Blog

    ‘Hades’ Campaign Against PyPI Puts New Spin on Shai-Hulud

    The latest attacks, which hit 37 PyPI wheels and 19 code packages, show a continued evolution of the persistent software supply chain threat.

    Read More ‘Hades’ Campaign Against PyPI Puts New Spin on Shai-HuludContinue

Page navigation

Previous PagePrevious 1 … 58 59 60 61 62 … 546 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us