In addition to dedicating time to introduce its first major design overhaul in over a decade—dubbed the...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
As previously rumored, Apple has officially confirmed that all of its operating systems will adopt a unified...
The GeoTools project, a popular open-source Java library used for geospatial data processing, has issued a critical...
A critical Privilege Escalation vulnerability has been disclosed in the RealHomes WordPress theme, a popular real estate...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited...
SentinelLABS has unveiled an extensive report detailing a wave of cyber-espionage activity that directly targeted SentinelOne and...
A stealthy Advanced Persistent Threat (APT) group tracked as Librarian Ghouls—also known by aliases Rare Werewolf and...
Security researcher Matt Palmer has uncovered a critical vulnerability in the Lovable low-code platform, now tracked as...
In its latest Advanced Persistent Threat (APT) campaign, Kimsuky, a North Korea-linked group, has returned with an...
Seqrite Labs APT-Team has uncovered a targeted campaign against China Mobile Tietong Co., Ltd., a prominent subsidiary...
KUNBUS has issued a critical security advisory for its RevPi Webstatus application following the discovery of an...
APT41—also known as BARIUM, Wicked Panda, and Brass Typhoon—is a well-known Chinese state-sponsored APT group notorious for...
Socket’s Threat Research Team has uncovered ‘imad213’, a credential-harvesting tool masquerading as an Instagram booster. Behind its...
In a detailed expose released by ESET, researchers unveiled a sophisticated and persistent cyberespionage campaign by an...
A new info-stealer malware named SoraAI.lnk is leveraging the popularity of OpenAI’s video model, Sora, to infect...
The Apache Kafka Project has released security advisories addressing three important vulnerabilities affecting various versions of the...
Akamai’s Security Intelligence and Response Team (SIRT) has uncovered active exploitation of CVE-2025-24016, a critical remote code...
As Apple is expected to unveil its next-generation operating systems at WWDC 2025—with speculation suggesting a unified...
ManageEngine’s Exchange Reporter Plus, a widely-used web-based monitoring and reporting tool for Microsoft Exchange, has been found...
A severe vulnerability in the PayU CommercePro plugin for WordPress, which has over 5,000 active installations, allows...