Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache Corruption

    Details have emerged about a new variant of the recent Dirty Frag Linux local privilege escalation (LPE) vulnerability that allows local attackers to gain root access, making it the third such bug to be identified in the kernel within a span of two weeks. Codenamed Fragnesia, the security vulnerability is tracked as CVE-2026-46300 (CVSS score:…

    Read More New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionContinue

  • Blog

    18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE

    Cybersecurity researchers have disclosed multiple security vulnerabilities impacting NGINX Plus and NGINX Open, including a critical flaw that remained undetected for 18 years. The vulnerability, discovered by depthfirst, is a heap buffer overflow issue impacting ngx_http_rewrite_module (CVE-2026-42945, CVSS v4 score: 9.2) that could allow an attacker to achieve remote code execution or cause a

    Read More 18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCEContinue

  • Blog

    Checkbox Assessments Aren’t Fit to Measure to Risk

    Security governance needs to be more than an annual compliance exercise. New companies are emerging to address risk-management gaps in current audit tools.

    Read More Checkbox Assessments Aren’t Fit to Measure to RiskContinue

  • Blog

    Attackers Weaponize RubyGems for Data Dead Drops

    Threat actors are publishing RubyGems packages that include scrapers targeting public-facing UK government servers, but with no clear objective.

    Read More Attackers Weaponize RubyGems for Data Dead DropsContinue

  • Blog

    Tables Turn on ‘The Gentlemen’ RaaS Gang With Data Leak

    An OPSEC failure provides a window into what helped the ransomware group rise: a generous affiliate model, opportunistic TTPs, and an effective organizational structure.

    Read More Tables Turn on ‘The Gentlemen’ RaaS Gang With Data LeakContinue

  • Blog

    Dark Reading Celebrates 20 Years as a Leading Authority on Cybersecurity, Highlighting the People, Events, Ideas, and Technologies Shaping the Modern Risk Landscape

    Informa TechTarget’s flagship cybersecurity media brand launches a special content series to mark two decades as a trusted source for cybersecurity professionals.

    Read More Dark Reading Celebrates 20 Years as a Leading Authority on Cybersecurity, Highlighting the People, Events, Ideas, and Technologies Shaping the Modern Risk LandscapeContinue

  • Blog

    Microsoft’s MDASH AI System Finds 16 Windows Flaws Fixed in Patch Tuesday

    Microsoft has unveiled a new multi-model artificial intelligence (AI)-driven system called MDASH to facilitate vulnerability discovery and remediation at scale, adding that it’s being tested by some customers as part of a limited private preview. MDASH, short for multi-model agentic scanning harness, is designed as a model-agnostic system that uses bespoke AI agents for different…

    Read More Microsoft’s MDASH AI System Finds 16 Windows Flaws Fixed in Patch TuesdayContinue

  • Blog

    Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange Exploitation

    A threat actor with affiliations to China has been linked to a “multi-wave intrusion” targeting an unnamed Azerbaijani oil and gas company between late December 2025 and late February 2026, marking an expansion of its targeting. The activity has been attributed by Bitdefender with moderate-to-high confidence to a hacking group known as FamousSparrow (aka UAT-9244),…

    Read More Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationContinue

  • Blog

    LatAm Vibe Hackers Generate Custom Hacking Tools on the Fly

    In the latest evolution of automated cyberattacks, two threat campaigns heavily leveraged AI agents to support attacks against entities in Mexico and Brazil.

    Read More LatAm Vibe Hackers Generate Custom Hacking Tools on the FlyContinue

  • Blog

    China’s ‘FamousSparrow’ APT Nests in South Caucasus Energy Firm

    The cyberthreat group targets an Azerbaijani oil and gas firm with repeated attacks, as the China-linked actors extend targeting beyond hospitality, telecom, and government sectors.

    Read More China’s ‘FamousSparrow’ APT Nests in South Caucasus Energy FirmContinue

Page navigation

1 2 3 … 464 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us