Two severe SonicWall NetExtender vulnerabilities impact Linux users today. These security flaws allow remote attackers to write...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
TL;DR Google shipped Chrome 152 to the stable channel on August 25, 2026. The Chrome 152 update...
TL;DR CISA disclosed 11 Ebyte NE2-D11 vulnerabilities on August 25, 2026. Four carry a critical 9.8 CVSS...
TL;DR Researchers published proof-of-concept exploit code for a Redis RCE vulnerability. The heap use-after-free lets a remote...
The Kaltura HTML5 Player Library contains two critical, unpatched vulnerabilities. These issues allow attackers to read local...
TL;DR OpenSSL shipped a security update on August 25, 2026, fixing nine vulnerabilities. Two rank as Moderate,...
TL;DR A critical flaw in TranslatePress lets unauthenticated attackers steal an administrator’s password reset link. Attackers can...
Security researchers have released full technical details and proof-of-concept exploit code for a critical SharePoint RCE vulnerability...
At a Glance Research BTR Reforged (Check Point Research) Component BTR.sys, the Windows Defender Boot-Time Removal driver...
Security researchers publicly disclosed a proof-of-concept exploit for CVE-2026-52923. This Linux kernel flaw carries a CVSS score...
The same fingerprinting and filtering techniques used by the Coruna exploit kit to avoid detection are appearing...
TYPO3 developers recently patched a critical TYPO3 Powermail RCE flaw that attackers are exploiting in the wild....
At a glance Actor / Group Suspected Russian influence operators Activity Type Covert influence operation, social media...
Weidmueller recently published a security advisory addressing a critical Weidmueller router flaw alongside a high-severity bypass vulnerability....
At a glance Malware family Custom Java web shell (unnamed implant) Threat actor Clop / Cl0p (highly...
At a glance Actor / group Core Werewolf (suspected cyberespionage cluster) Activity type Phishing, remote access trojan,...
At a glance Actor or group Mexico-based operator known as “balonx” and affiliates (alleged) Activity type Phishing-as-a-Service,...
Several ASUS Republic of Gamers (ROG) laptop owners recently discovered an extremely frustrating software conflict. Windows 11...
The cybersecurity landscape is currently facing a massive influx of fake AI PoCs polluting public code sharing...
At a glance Organization Multiple organizations worldwide Data Exposed AWS keys, Stripe secrets, GitHub tokens, internal records...
The gig economy relies heavily upon algorithmic platform management. However, technology companies now face increasingly rigorous scrutiny...
YouTube Premium subscribers across several European and Asian countries have recently received price-increase notifications from Google. According...