Paxion Cybersecurity
banner
paxioncyber.bsky.social
Paxion Cybersecurity
@paxioncyber.bsky.social
Paxion (Pax-ee-on) is a full-purpose cybersecurity tech & services firm HQ’d in Madison, WI. Our flagship cybersecurity SaaS tech product - PAXIE.ai (Proprietary Artificial XDR Intelligence for Enterprise) has an expected GTM of mid 2026. MVP early 2026.
In remembrance of all the victims. 24 years ago today. Never forget 9/11.
September 11, 2025 at 2:10 PM
Hackers exploit trusted AI platforms to steal Microsoft 365 credentials.

👉A recent campaign used Simplified AI to host fake login portals, evading traditional defenses.

Would your team detect phishing from a “legitimate” AI tool?
#CyberSec #Phishing #Microsoft365 #AI #InfoSec
September 5, 2025 at 1:17 PM
Nevada cyber attack forced state offices to shut down, disrupted services, & led to personal data theft.

🔐 Gov’t systems remain high-value targets for attackers.

👉 Strengthen resilience with: paxioncyber.com
#CyberAttack #DataBreach #Ransomware #IncidentResponse
September 4, 2025 at 2:08 PM
A stealth #phishing campaign hid on Google Cloud & Cloudflare for 3+ years.

📌 48K+ hosts across 86 clusters
📌 Expired domains hijacked
📌 Brand clones tricking victims

👉 Lesson: Continuous monitoring & domain vigilance are non-negotiable.
#CyberSecurity #InfoSec #Cloud
September 3, 2025 at 3:23 PM
🚨 Palo Alto Networks confirms data breach!

Hackers exploited OAuth tokens in the Salesloft Drift–#Salesforce integration to steal:
🔹 Contact info
🔹 Sales data
🔹 Credentials for cloud services

👉 Lesson: 3rd-party risks are real.
#Cybersecurity #DataBreach #ZeroTrust
September 2, 2025 at 1:25 PM
September 1, 2025 at 8:24 PM
🚨 New Threat: AI Waifu RAT Malware 🚨

Disguised as an “AI companion tool,” it:
⚠️ Executes arbitrary commands
⚠️ Reads/exfiltrates files
⚠️ Disables antivirus

DM us and stay protected. paxioncyber.com
#CyberSecurity #Malware #RAT #AI #InfoSec #PaxionCyber
September 1, 2025 at 12:04 PM
Critical Nagios XI XSS flaw in Graph Explorer allows attackers to run malicious JavaScript in admin browsers.

⚠️ Risks: session hijacking, data theft, configuration tampering.
✅ Fixed in v2024R2.1 — patch now!

🔒At Paxion, we help orgs stay secure.
#Cyber #XSS #Nagios #InfoSec
August 29, 2025 at 1:18 PM
7,500 Instacart and Shipt gig worker accounts hacked.

Cyber awareness and strong defenses are crucial for gig workers and companies handling sensitive customer data.

⚠️ Always verify code requests!

🔒 Paxion Cyber: Simplify. Educate. Secure.
#CyberSecurity #PhishingAwareness
August 28, 2025 at 1:31 PM
New Chrome 0-Day (CVE-2025-9478)

Critical use-after-free flaw in Chrome’s ANGLE library allows arbitrary code execution. Full system compromise is possible.

✅ Update Chrome to v139.0.7258.154/.155+
🔐 Use EDR, browser isolation, and CSP.
#CyberSecurity #Chrome #0day #InfoSec
August 27, 2025 at 3:13 PM
⚠️ New AI risk: Prompt Insertion Attacks.

Hackers can embed malicious instructions in an OpenAI account name, bypassing filters and exposing system prompts.

#AI #CybersecurityNews #LLM #Prompts #PaxionCyber

🔗 cybersecuritynews.com/openai-name-...
August 26, 2025 at 2:29 PM
Ransomware Strikes Drug Research Firm Inotiv

Don’t let a cyberattack derail your mission. Visit paxioncyber.com to learn how we can secure your future.

#Cybersecurity #PaxionCyber #CyberResilience #InfoSec #DataProtection
August 25, 2025 at 2:43 PM
UAC-0057 hackers weaponize PDF "invitation" files to deploy shell scripts & spy on Ukraine/Poland orgs.

📊 XLS macros → DLL implants → persistent access.

🔐 #Paxion defends with MDR & layered defenses.

📰 cybersecuritynews.com/uac-0057-hac...

#Cybersecurity #ThreatDetection #Malware
August 22, 2025 at 1:53 PM
Group UNC5518 hacks real websites to inject fake CAPTCHAs that trick users into running malware.

➡️ One click = malicious PowerShell command
➡️ Payload = CORNFLAKE.V3 backdoor

🔒Stay sharp. Stay secure. Stay Paxion.
#CyberSecurity #Malware #ClickFix #Paxion #FakeCAPTCHA
August 21, 2025 at 12:36 PM
RingReaper malware targets Linux servers, using io_uring to evade EDR solutions.

⚠️ Capabilities:
🔹 Process & network discovery
🔹 Privilege escalation
🔹 Self-destructs to hide traces

Our proactive defenses catch what others miss.
#RingReaper #LinuxMalware
August 20, 2025 at 12:51 PM
Pirated games are a new cyber weapon.

Attackers spread HijackLoader malware via trusted piracy sites, bypassing SmartScreen + Adblockers.

Paxion offers proactive defense against evolving threats.

🔒 Stay protected. Don’t take risks.
#CyberSecurity #HijackLoader #PiratedGames
August 19, 2025 at 1:29 PM
⚠️ Researchers warn: FIDO isn’t bulletproof.

Attackers are using “phishlet” kits to downgrade passkeys → weaker MFA, exposing accounts to takeover.

👉 Paxion Cyber helps orgs close downgrade gaps & monitor AiTM threats in real time.
#CyberSecurity #FIDO #MFA #Authentication
August 18, 2025 at 2:18 PM
WinRAR Zero-Day (CVE-2025-8088) Exploited!

📂 Malicious RAR files bypass paths to drop malware in Windows Startup folders.

🎯 Targets:
⚠️Finance
⚠️Manufacturing
⚠️Defense
⚠️Logistics

🔐 At Paxion, your safety is our priority.
#WinRAR #ZeroDay #PatchNow #CVE20258088
August 15, 2025 at 10:20 AM
#ShinyHunters + Scattered Spider?

New campaign targets Salesforce with vishing, fake "connected apps," and data exfiltration. High-profile victims in retail, aviation, and insurance.

🔒Your Salesforce data deserves better protection.
#Phishing #Salesforce #PhishingAttack
August 14, 2025 at 1:49 PM
⚠️ Charon Ransomware Alert ⚠️

Targeting Middle East public sector & aviation with DLL sideloading, selective encryption, & anti-EDR.

⚡ Act quickly to counter threats.
Prevent “OopsCharonHere” in your network.
#CyberSecurity #Ransomware #PaxionCyber #CharonRansomware #Infosec
August 13, 2025 at 1:41 PM
📢 Car Hacking Is Real

A flaw in a carmaker’s portal allowed hackers to register as dealers, gain admin access, & remotely unlock/start vehicles. 🚗💻

If attackers can control cars, imagine what they can do to your systems.

💡 Don’t wait until it’s too late.
#CarHacking #CyberSecurity
August 12, 2025 at 2:34 PM
Xerox FreeFlow Core v8.0.4 has 2 critical flaws:
🛑 CVE-2025-8355 → SSRF
🛑 CVE-2025-8356 → Path Traversal → RCE

💡 Fix: Update to v8.0.5 now!

Paxion Cybersecurity helps organizations stay ahead of threats like these.
#CyberSecurity #Xerox #Infosec #RCE #SSRF
August 11, 2025 at 1:26 PM
🚨 GreedyBear Attack: $1M Stolen 🚨

A cybercrime group executed a major crypto scam, using AI and 650 tools to steal over $1M.

🎯Your crypto isn’t just money. It’s a target.

DM us to protect your crypto & your credentials.
#CyberSecurity #CryptoTheft #GreedyBear #AI #Crypto
August 8, 2025 at 12:30 PM
1.2M healthcare devices exposed online, including MRIs, blood test systems, & X-rays.

❌Many use default passwords like "admin" or "123456."
📂Names, scans, & PHI are accessible to anyone.

DM us to secure your digital care environment.
#Cybersecurity #Healthcare #HIPAA #Infosec
August 7, 2025 at 12:17 PM
Akira ransomware uses legitimate Windows drivers to bypass AV/EDR tools, targeting SonicWall VPNs.

🛡️ Paxion Cyber detects BYOVD threats and strengthens VPN security. Act now.

🔗 cybersecuritynews.com/akira-ransom...

#AkiraRansomware #SonicWall #CyberSecurity #BYOVD #MDR #PaxionCyber
August 6, 2025 at 1:07 PM