Fortinet, a leading cybersecurity vendor, has issued urgent advisories regarding several critical vulnerabilities affecting its popular products,...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
A recently disclosed security vulnerability in Next.js, a popular React framework used by millions of developers worldwide,...
Forcepoint researchers have uncovered an alarming rise in activity involving a new infostealer malware named VIPKeyLogger. Distributed...
Datadog Security Labs has uncovered a potential privilege escalation method in Azure Key Vault that could grant...
Hitachi Vantara has disclosed a critical authentication bypass vulnerability (CVE-2024-10205) affecting its Infrastructure Analytics Advisor and Ops...
Kaspersky Labs has uncovered a distribution campaign for the “Mamont” Android banking Trojan, a sophisticated piece of...
A critical command injection vulnerability (CVE-2024-12356) has been discovered in BeyondTrust’s Privileged Remote Access (PRA) and Remote...
The BADBOX botnet is back and more dangerous than ever. Originally thought to have been dismantled, this...
Unit 42 researchers have uncovered multiple vulnerabilities in Azure Data Factory’s managed Apache Airflow integration, potentially enabling...
Google has released a crucial update for its Chrome browser, addressing five security vulnerabilities, several of which...
A large-scale malvertising campaign analyzed by Guardio Labs exposes how fake CAPTCHA prompts are used to deliver...
Zscaler ThreatLabz has identified a new malware family, RiseLoader, which specializes in downloading and executing second-stage payloads....
Nova, a newly discovered fork of the infamous Snake Keylogger family, is a growing challenge in cybersecurity....
The Apache Software Foundation has released important security updates to address two vulnerabilities in Apache Tomcat, a...
Security researcher Thanatos has uncovered a critical vulnerability (CVE-2024-53376) in CyberPanel, a popular web hosting control panel,...
A new malware campaign, identified as I2PRAT (I2P Remote Access Trojan), is raising the bar for cybercriminals’...
A newly discovered vulnerability in MinIO, the popular open-source object storage platform, could allow any user to...
The FBI, in collaboration with CISA, has issued a new alert regarding the HiatusRAT malware campaign. The...
The Sublime Threat Research Team has uncovered a malicious SharePoint impersonation campaign delivering Xloader malware, also known...
A new report by Wiz Threat Research highlights critical misconfigurations in Spring Boot Actuator, exposing sensitive data...
Morphisec researchers have uncovered CoinLurker, a sophisticated data-stealing malware that powers the latest wave of fake browser...
The Japan Computer Emergency Response Team Coordination Center (JPCERT/CC) has issued a warning about multiple critical vulnerabilities...