Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange Exploitation

    A threat actor with affiliations to China has been linked to a “multi-wave intrusion” targeting an unnamed Azerbaijani oil and gas company between late December 2025 and late February 2026, marking an expansion of its targeting. The activity has been attributed by Bitdefender with moderate-to-high confidence to a hacking group known as FamousSparrow (aka UAT-9244),…

    Read More Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationContinue

  • Blog

    LatAm Vibe Hackers Generate Custom Hacking Tools on the Fly

    In the latest evolution of automated cyberattacks, two threat campaigns heavily leveraged AI agents to support attacks against entities in Mexico and Brazil.

    Read More LatAm Vibe Hackers Generate Custom Hacking Tools on the FlyContinue

  • Blog

    China’s ‘FamousSparrow’ APT Nests in South Caucasus Energy Firm

    The cyberthreat group targets an Azerbaijani oil and gas firm with repeated attacks, as the China-linked actors extend targeting beyond hospitality, telecom, and government sectors.

    Read More China’s ‘FamousSparrow’ APT Nests in South Caucasus Energy FirmContinue

  • Blog

    [Webinar] Why Your AppSec Tools Miss the “Lethal Path” (and How to Fix It)

    TL;DR: Stop chasing thousands of “toast” alerts. Join experts from Wiz and Okta/GitLab to learn how hackers connect tiny flaws to build a “Lethal Chain” to your data—and how to break it. Register for the Strategic Briefing Here. Most security tools work like a smoke alarm that goes off every time you burn a piece…

    Read More [Webinar] Why Your AppSec Tools Miss the “Lethal Path” (and How to Fix It)Continue

  • Blog

    Most Remediation Programs Never Confirm the Fix Actually Worked

    Security teams have never had better visibility into their environments and never been worse at confirming what they fix stays fixed. Mandiant’s M-Trends 2026 report puts the mean time to exploit at an estimated negative seven days. The Verizon 2025 DBIR puts median time to remediate edge device vulnerabilities at 32 days. These numbers have…

    Read More Most Remediation Programs Never Confirm the Fix Actually WorkedContinue

  • Blog

    Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE Flaws

    Microsoft on Tuesday released patches for 138 security vulnerabilities spanning its product portfolio, although none of them have been listed as publicly known or under active attack. Of the 138 flaws, 30 are rated Critical, 104 are rated Important, three are rated Moderate, and one is rated Low in severity. As many as 61 vulnerabilities…

    Read More Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE FlawsContinue

  • Blog

    GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal Data

    Cybersecurity researchers are calling attention to a new campaign dubbed GemStuffer that has targeted the RubyGems repository with more than 150 gems that use the registry as a data exfiltration channel rather than for malware distribution. “The packages do not appear designed for mass developer compromise,” Socket said. “Many have little or no download activity,…

    Read More GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataContinue

  • Blog

    Android Adds Intrusion Logging for Sophisticated Spyware Forensics

    Google on Tuesday unveiled a new opt-in Android feature called Intrusion Logging for storing forensic logs to better analyze sophisticated spyware attacks. Intrusion Logging, available as part of Advanced Protection Mode, enables “persistent and privacy-preserving forensics logging to allow for investigation of devices in the event of a suspected compromise,” the company said. The feature,…

    Read More Android Adds Intrusion Logging for Sophisticated Spyware ForensicsContinue

  • Blog

    It’s Patch Tuesday for Microsoft and Not a Zero-Day In Sight

    It’s the first time in two years with no zero-days. But with 137 flaws to patch, including nine critical ones, admins still have plenty of work to do.

    Read More It’s Patch Tuesday for Microsoft and Not a Zero-Day In SightContinue

  • Blog

    New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code Execution

    Exim has released security updates to address a severe security issue affecting certain configurations that could enable memory corruption and potential code execution. Exim is an open-source Mail Transfer Agent (MTA) designed for Unix-like systems to receive, route, and deliver email. The vulnerability, tracked as CVE-2026-45185, aka Dead.Letter, has been described as a use-after-free

    Read More New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code ExecutionContinue

Page navigation

Previous PagePrevious 1 … 81 82 83 84 85 … 545 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us