The eCrime group known as SCATTERED SPIDER has recently extended its focus beyond insurance and retail to...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
Apache APISIX, a high-performance and AI-ready API gateway trusted for managing traffic across microservices and LLM-based applications,...
The Wiz Research Team has uncovered a stealthy and rapidly executed exploitation chain leveraging a misconfigured Java...
A critical security flaw has been discovered in Lucee, the high-performance, open-source CFML (ColdFusion Markup Language) application...
In iOS 26, Apple continues to strengthen its child safety features. A newly introduced function automatically displays...
Last month, we reported that following multiple incidents involving device batteries overheating and causing fires, Google issued...
Following its debut at Google I/O 2025, Google’s highly anticipated AI-powered video generation tool, Veo 3,—frequently showcased...
Microsoft recently published a blog post highlighting its youngest security researcher to date—an individual who began collaborating...
At Google I/O 2025, Google unveiled its collaborative smart glasses project with XREAL, dubbed “Project Aura.” More...
Previously, startups were eligible to apply for up to $150,000 in Microsoft Azure credits, allowing them to...
Shortly after announcing a 3% reduction in its global workforce, Microsoft has once again revealed an expanded...
At the end of 2024, OpenAI unveiled its premium ChatGPT Pro subscription priced at $200 per month....
Before 2010, Industrial Control Systems (ICS) mostly operated within isolated Operational Technology (OT) networks and received little...
A newly discovered vulnerability in the Linux kernel has been assigned CVE-2025-38089, affecting systems running Network File...
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity vulnerability in Google Chrome...
The cybercrime landscape in 2025 has been dramatically reshaped by the geopolitical upheaval stemming from the Russia-Ukraine...
Grafana Labs has issued an urgent security advisory addressing four critical vulnerabilities affecting two of its key...
A sprawling network of fake e-commerce websites—masquerading as legitimate retailers like Apple, Brooks Brothers, and Nordstrom—has been...
Cisco has disclosed a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition...