A critical authentication bypass flaw in industrial cellular routers has transitioned into a full-blown mass exploitation campaign,...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
A brief but dangerous supply chain attack briefly hijacked the official Visual Studio Code marketplace, targeting over...
The PostgreSQL Global Development Group has issued a synchronized security update across all actively supported branches, eliminating...
A critical heap buffer overflow vulnerability lurking in PostgreSQL’s core cryptographic extension for over two decades has...
A severe vulnerability discovered in the popular open-source generative AI development platform Flowise allows authenticated users to...
A dangerous pair of critical authorization failures within the Portainer container management platform allows standard, restricted users...
A severe vulnerability discovered in Marten, a highly popular .NET transactional document store and event store library,...
Security researchers have exposed a highly stealthy attempted intrusion that weaponized an open-source framework into a potent...
A sprawling cybercriminal operation has been intercepted, but not before thousands of machines were quietly infected by...
A sophisticated new command-and-control (C2) technique has emerged, revealing threat actors who operate more like modern SaaS...
A massive internal data leak has blown the lid off “The Gentlemen,” a highly organized Ransomware-as-a-Service (RaaS)...
A new investigation has unmasked a relentless spearphishing campaign by the Russian-aligned threat actor Gamaredon, exposing their...
Microsoft plans to initiate a monumental recalibration of the Windows 11 user interface, seeking to address prolonged...
OpenAI has announced the debut of a pioneering personal wealth preview feature dubbed Finances, currently available exclusively...
A critical severity vulnerability, tracked as CVE-2026-35194, has been disclosed in Apache Flink, exposing the distributed processing...
A pair of severe vulnerabilities discovered in Strapi, the widely used open-source headless Content Management System (CMS),...
Welcome to your weekly vulnerability digest. If your security dashboards have been flashing red, your telemetry is...
Technical teams using the popular workflow automation platform n8n are facing a high-stakes security advisory after researchers...
Security researchers have unveiled a novel defensive bypass that allows any low-privileged domain user to lock down...
A ghost from Patch Tuesdays past has returned to haunt Microsoft. A security researcher operating under the...