A newly identified Chinese-speaking threat actor cluster, tracked as UAT-6382, is actively exploiting a zero-day vulnerability in...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Europol’s European Cybercrime Centre (EC3) and Microsoft’s Digital Crimes Unit (DCU) have successfully disrupted the Lumma Stealer,...
Cisco has released security updates addressing two privilege escalation vulnerabilities—CVE-2025-20113 and CVE-2025-20114—in its Unified Intelligence Center (UIC)...
Mitel has issued a security advisory warning of a high-severity path traversal vulnerability (CVE-2025-48026) in its OpenScape...
Google has released a Stable Channel update to version 137.0.7151.40/.41 for Windows and Mac as part of...
Versa Concerto, a popular SD-WAN and network orchestration platform used by large enterprises and governments, is under...
Cisco has published a security advisory for a high-severity vulnerability impacting its Identity Services Engine (ISE) product....
Grafana Labs issued an unscheduled security release—Grafana 12.0.0+security-01—alongside patches for all supported versions, addressing a high-severity cross-site...
GitLab announced the release of versions 18.0.1, 17.11.3, and 17.10.7 for both its Community Edition (CE) and...
Kaspersky Labs has uncovered a disturbing new malware campaign that turns exposed Docker containers into self-replicating Dero...
The U.S. National Institute of Standards and Technology (NIST) is proposing a metric to address one of...
Researchers have disclosed two critical vulnerabilities in Langroid, a popular Python framework designed for building large language...
As AI-powered browsing agents increasingly automate complex web tasks—from booking travel to managing emails—they’re becoming both indispensable...
In a newly disclosed advisory, the Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert...
Threat actors are now turning the very trust consumers place in legitimate e-commerce sites against them. A...
A new Joint Cybersecurity Advisory issued in May 2025 by a coalition of cybersecurity and intelligence agencies...
The Python Packaging Authority (PyPA) has patched a serious path traversal vulnerability in the widely-used setuptools project....
The Internet Systems Consortium (ISC) has issued a high-severity security advisory for BIND, one of the most...
Microsoft has previously announced plans to enhance administrator protection in Windows 11. Rooted in the principle of...
Google has previously experimented with integrating a feature in Chrome that enables the automatic modification of compromised...
In April 2025, South Korea’s leading telecommunications provider, SK Telecom, disclosed a major security incident. The company...