Cybersecurity expert Kevin Beaumont has reported that over 15,000 FortiGate firewall configurations, including VPN credentials, have been...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Microsoft has addressed a critical vulnerability (CVE-2025-21298) in its latest 2025 Patch Tuesday update. This flaw, rated...
ECOVACS Robotics has addressed a critical remote code execution (RCE) vulnerability affecting its Deebot series robot vacuums....
A critical-severity vulnerability (CVE-2024-49375) has been identified in the popular open-source Rasa framework. This flaw, which carries...
As businesses depend more on cloud services and SaaS, they encounter new and changing security risks. According...
Gradio, a popular open-source Python library for creating machine learning demos and web applications, has recently patched...
A recently discovered security vulnerability, CVE-2024-9042, poses a significant risk to Kubernetes clusters running Windows worker nodes....
A recent vulnerability note from CERT/CC has exposed a significant security flaw in the Howyar Reloader UEFI...
A recent report from Infoblox Threat Intel highlights a sophisticated botnet operation leveraging a simple DNS misconfiguration...
JPCERT/CC has issued a warning regarding multiple vulnerabilities affecting STEALTHONE D220, D340, and D440 network storage servers,...
Over a million WordPress websites are at risk due to a high-severity vulnerability discovered in the popular...
In a recent revelation, EXPMON has reported a previously unknown “zero-day behavior” in certain PDF samples, leading...
Veeam, a prominent player in data management and backup solutions, has recently disclosed a critical vulnerability in...
Fortinet has issued patches to address a critical security vulnerability (CVE-2023-37936, CVSS 9.6) affecting its FortiSwitch product...
The United States, Japan, and the Republic of Korea have joined forces to issue a stark warning...
Rsync, a widely-used file synchronization tool, has been found to harbor six vulnerabilities affecting versions 3.3.0 and...
In a decisive move against Chinese state-sponsored cyber espionage, the U.S. Department of Justice (DOJ) and FBI,...
Ivanti has issued a security advisory addressing multiple critical and high-severity vulnerabilities in its Endpoint Manager (EPM)...
Zoom has released six security bulletin addressing several vulnerabilities across its product ecosystem, ranging in severity from...
A recent report by researchers at Socket reveals a concerning supply chain attack targeting popular Node.js libraries,...