In a recent revelation, Socket’s Threat Research Team has uncovered a stealthy npm supply chain attack leveraging...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
From January to April 2025, Netskope Threat Labs uncovered a significant spike in phishing campaigns abusing the...
What if one fake login page could give an outsider access to your company’s most sensitive data?...
In a revealing analysis, the AhnLab Security Intelligence Center (ASEC) has uncovered a sophisticated, ongoing malware campaign...
Kaspersky’s latest “Exploits and vulnerabilities in Q1 2025” shows that attackers are doubling down on aging exploits,...
In a revealing investigation, French cybersecurity firm Intrinsec exposes the sprawling infrastructure of BtHoster, a bulletproof hosting...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning users of a critical...
The Cybersecurity and Infrastructure Security Agency (CISA) has added five new vulnerabilities to its Known Exploited Vulnerabilities...
A new ransomware strain dubbed Lyrix has been discovered by CYFIRMA’s research team while monitoring underground cybercriminal...
The ModSecurity project has issued a security advisory disclosing a new vulnerability—CVE-2025-48866—in its widely used open-source web...
Google has rolled out a critical security update for the Chrome browser in its Stable channel, bumping...
Samsung, which has previously maintained a close partnership with Google, is now reportedly in talks with Perplexity.ai...
In response to the U.S. Department of Justice’s directive that Google must divest and sell its Chrome...
Qualcomm has disclosed several critical security flaws in its latest June 2025 Security Bulletin, including multiple zero-day...
Axis Communications has issued critical and high-severity patches addressing three recently disclosed vulnerabilities in AXIS OS, the...
A newly disclosed vulnerability affecting Netcomm Wireless devices—now under Lantronix ownership—has been assigned CVE-2025-4010, and it poses...
The U.S. Department of Justice has announced the seizure of four domains and an associated server operated...
Red Hat has recently unveiled an open-source initiative named llm-d, designed to address the most critical demand...
In his “Power On” column, Bloomberg journalist Mark Gurman reported that some Apple employees have expressed a...
MediaTek, a leading global chipset manufacturer, has published its June 2025 Product Security Bulletin, disclosing one high-severity...
Roundcube Webmail, a widely-used browser-based IMAP client, has patched a critical security vulnerability, tracked as CVE-2025-49113 (CVSS...
Meta has taken down three covert influence campaigns (CIBs) originating from China, Iran, and Romania, according to...