Security researcher Jerry Gamblin has released his annual CVE data review. 2024 saw an unprecedented surge in...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Imagine browsing a seemingly legitimate e-commerce site, entering your payment details, and confidently completing a purchase, only...
Kaspersky Labs has uncovered a sophisticated cyberespionage campaign deploying the EAGERBEE backdoor to infiltrate internet service providers...
The Free Software Foundation (FSF) is fresh off a successful International Day Against DRM (IDAD), held on...
Security researchers published the technical details and a proof-of-concept (PoC) exploit code for CVE-2024-43452 (CVSS 7.5), a...
Moxa, a leading provider of industrial networking and communication solutions, has issued a security advisory warning of...
The NonEuclid Remote Access Trojan (RAT), detailed in a report by CYFIRMA, represents a significant evolution in...
CryptBot, an information-stealing malware first detected in 2019, has resurfaced with advanced tactics to target unsuspecting victims....
Open-source CI/CD platform GoCD has released an urgent security update to address a critical vulnerability, CVE-2024-56320 (CVSS...
Researchers at Socket have uncovered a series of malicious campaigns exploiting Out-of-Band Application Security Testing (OAST) techniques....
In a concerning escalation of phishing tactics, hackers are spoofing the United States Social Security Administration (SSA)...
In an era where mobile applications dominate daily life, cybersecurity threats have reached unprecedented sophistication. A recent...
A newly discovered vulnerability in the UpdraftPlus Backup & Migration Plugin, used by over 3 million WordPress...
The MISP-standard.org has announced an advancement in cybersecurity information sharing with the release of the Threat Actor...
In a response to recent allegations made by the ransomware group “Space Bears,” Atos, a global leader...
The U.S. Department of the Treasury has taken decisive action against a Chinese cybersecurity company accused of...
In a recent blog post, Microsoft outlines a bold vision for the future of American technology and...
The popular React framework, Next.js, has addressed a security vulnerability that could have allowed attackers to launch...
A high-severity vulnerability (CVE-2024-56513) has been identified in Karmada (Kubernetes Armada), a management platform designed to facilitate...
In 2022, India began enforcing a new VPN policy mandated by the Indian Computer Emergency Response Team...