Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs

    A solo Russian-speaking threat actor known as “bandcampro” outsourced a chunk of their operations to Google’s open-source Gemini CLI artificial intelligence (AI) and commandeered a live botnet. The findings come from an analysis of 200 Gemini CLI session logs between March 19 and April 21, 2026, which found the threat actor using AI, among other…

    Read More Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCsContinue

  • Blog

    World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

    In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack perpetrated by an autonomous AI agent system. The company said it detected and responded to the incident targeting its production infrastructure earlier last week. “We identified unauthorized access to a limited set of internal datasets…

    Read More World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI AgentContinue

  • Blog

    SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

    Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with the end goal of serving additional payloads. The rogue gems are listed below – git_credential_manager (versions 2.8.0, 2.8.1, 2.8.2, 2.8.3) – Published on July 18, 2026 Dendreo (versions 1.1.3, 1.1.4)…

    Read More SleeperGem Uses Three Malicious RubyGems Packages to Target Developer MachinesContinue

  • Blog

    Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

    F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker process with crafted HTTP requests. CVE-2026-42533 was patched on July 15 in nginx 1.30.4 (stable) and 1.31.3 (mainline), and in NGINX Plus 37.0.3.1; anyone on an earlier build should upgrade. Triggering it…

    Read More Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code ExecutionContinue

  • Blog

    UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware

    Russian state-sponsored threat actors have been observed leveraging the infamous ClickFix strategy to trick Ukrainian targets into infecting their own machines with data-stealing malware. According to the Computer Emergency Response Team of Ukraine (CERT-UA), the activity has been attributed to UAC-0145, a sub-cluster within Sandworm, an advanced hacking unit affiliated with GRU, Russia’s

    Read More UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih MalwareContinue

  • Blog

    SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access

    A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances as zero-days prior their public disclosure since June 22, 2026. Cybersecurity company Volexity is tracking the activity under the moniker UTA0533. The discovery was made following an incident response investigation earlier this

    Read More SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root AccessContinue

  • Blog

    New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

    An anonymous HTTP request can run code on a WordPress site. The bug is in core, so a bare install with zero plugins is exploitable. Every 6.9 and 7.0 site was in range until Friday, when WordPress shipped 6.9.5 and 7.0.2 and enabled what it calls forced updates through its auto-update system. Adam Kues at…

    Read More New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeContinue

  • Blog

    OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests

    Eleven bytes will make an unpatched OpenSSL server set aside up to 131 KB of memory for a message that never arrives. On the glibc systems Okta tested, that memory is gone until the process restarts. OpenSSL shipped the HollowByte fix in June with no CVE, no advisory, and no changelog entry pointing at it….

    Read More OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS RequestsContinue

  • Blog

    Inc Ransomware Exploits SonicWall SMA Zero-Days

    When chained together, the two vulnerabilities allow threat actors to gain root-level capabilities on SonicWall’s mobile access appliances.

    Read More Inc Ransomware Exploits SonicWall SMA Zero-DaysContinue

  • Blog

    Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT

    Cybersecurity researchers have discovered a cluster of seven malicious npm packages targeting the Vite frontend tooling ecosystem as part of a software supply chain attack. The malicious package campaign, codenamed ViteVenom by Checkmarx, marks an expansion of ChainVeil, which was observed using an “unprecedented” four-tier blockchain-based command-and-control (C2) infrastructure spanning Tron,

    Read More Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RATContinue

Page navigation

Previous PagePrevious 1 … 66 67 68 69 70 … 597 Next PageNext
Terms & Conditions
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us