MongoDB, the popular open-source NoSQL database, has released patches addressing three newly disclosed vulnerabilities that could expose...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
A Cross-Site Scripting (XSS) vulnerability has been identified in the Beego framework, a popular Go framework for...
The Gootloader malware has resurfaced with a fresh campaign that blends old-school social engineering with modern ad-based...
Originally discovered in 2023, HijackLoader—also known as IDAT Loader or GHOSTPULSE—has returned with a series of stealthy...
Security researcher Dylan has disclosed a set of eight previously unknown zero-day vulnerabilities affecting the Netgear WNR854T,...
A new report from Wiz Threat Research reveals a rapidly evolving malware campaign that has silently infected...
Apache Parquet, a widely used open-source, column-oriented data file format, has been found to contain a critical...
In a recent campaign targeting First Ukrainian International Bank (pumb[.]ua), G DATA security researchers uncovered a deeply...
IBM has issued a critical security bulletin warning that multiple versions of its App Connect Enterprise (ACE)...
In the complex tapestry of cloud infrastructure, seemingly minor permission oversights can sometimes unravel into significant security...
VMware has recently released patches to address a local privilege escalation vulnerability (CVE-2025-22231) affecting several of its...
Last week, Microsoft rolled out a new Windows 11 Insider Preview build 26120.3653 (KB5053658), and with this...
Anthropic recently unveiled the underlying mechanisms powering its AI model, Claude, offering insights into how the system...
In a recent interview with Nikkei, Microsoft CEO Satya Nadella revealed plans to invest in the development...
Google recently announced the launch of its artificial intelligence model, Gemini 2.5, initially releasing the experimental version,...
A new vulnerability in JumpServer (CVE-2025-27095) has been disclosed, exposing Kubernetes clusters to potential compromise through token...
Apple has released backported security patches for older versions of iOS, iPadOS, and macOS, addressing three zero-day...
In a critical update to its Known Exploited Vulnerabilities (KEV) Catalog, the Cybersecurity and Infrastructure Security Agency...
Researchers at Trend Micro detail a highly sophisticated cyber-espionage group actively targeting the Asia-Pacific and Latin American...
More than a year after first revealing a novel method for delivering malware via browser cache, researchers...
A recent report has uncovered a sophisticated phishing operation that uses DNS techniques to tailor content to...
Rockwell Automation has released a security advisory addressing a vulnerability in Verve Asset Manager. The advisory details...