A pair of critical-severity vulnerabilities in the OpenPubkey authentication protocol and its companion tool, OPKSSH, could allow...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
On May 12, 2025, Xerox published Security Bulletin XRX25-009, announcing the release of its April 2025 Security...
The ReversingLabs research team has uncovered yet another software supply chain attack targeting the cryptocurrency ecosystem, this...
Microsoft recently announced a strategic organizational restructuring, which will result in a workforce reduction of approximately 3%,...
Before the official commencement of Google I/O 2025, Google unveiled several upcoming innovations through “The Android Show:...
The Australian Human Rights Commission (AHRC) has disclosed a significant data breach involving the unintended public exposure...
A sophisticated phishing campaign has exploited compromised Indiana state government accounts to distribute fraudulent toll collection messages...
Siemens has released a critical security advisory (SSA-047424) addressing two severe vulnerabilities—CVE-2025-26389 and CVE-2025-26390—affecting its OZW672 and...
Ivanti has released a critical security patch for its on-premises Neurons for ITSM platform, addressing a severe...
Varnish Software has disclosed a client-side desynchronization vulnerability, tracked as CVE-2025-47905, in both Varnish Cache and Varnish...
Zoom has released a security bulletin addressing multiple vulnerabilities across its Workplace Apps suite. The bulletin details...
A critical security vulnerability has been identified in the Bitnami Pgpool-II Docker image and the bitnami/postgres-ha Kubernetes...
In a recently disclosed campaign, TA406, a North Korean state-aligned threat actor, has expanded its cyber-espionage efforts...
Siemens ProductCERT released an urgent security advisory (SSA-301229) detailing multiple command injection vulnerabilities in its RUGGEDCOM ROX...
In the ever-expanding ecosystem of information stealers, a new and unusually sophisticated malware has entered the scene:...
rend Micro researchers have uncovered the full extent of an elaborate, multi-phase cyber-espionage operation attributed to Earth...
A newly disclosed vulnerability in Samsung’s MagicINFO Server, tracked as CVE-2025-4632, poses a severe risk to digital...
The Seqrite Labs APT-Team has uncovered a complex cyber-espionage operation dubbed Swan Vector, targeting educational institutions and...
In a recent disclosure by Wordfence, two serious vulnerabilities have been discovered in TheGem, a popular premium...
In a recent investigation, FortiGuard Labs has exposed a sophisticated phishing campaign distributing the Horabot malware family,...