Cybercriminals are leveraging the trusted reputation of government agencies to deceive businesses, with DocuSign phishing attacks on...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Security researcher Michael Zhmaylo has assembled a comprehensive collection of publicly disclosed exploits for Local Privilege Escalation...
A critical security vulnerability (CVE-2024-52308) in the GitHub Command Line Interface (CLI) has been identified, potentially enabling...
A recent security advisory from the LibreNMS project has revealed a severe vulnerability (CVE-2024-51092) affecting versions up...
Broadcom has updated an urgent security advisory following confirmation of in-the-wild exploitation of two critical vulnerabilities affecting...
A recent report by Unit 42 researchers uncovers a complex phishing campaign linked to a cluster of...
The Apache Software Foundation has recently disclosed three new vulnerabilities affecting Apache Tomcat, a widely-used open-source web...
In a recent analysis, security researcher Ryan Robinson from Intezer has detailed the highly sophisticated malware loader,...
A newly discovered vulnerability in Apache Kafka, the popular open-source event streaming platform, could allow attackers to...
The Baxter Life2000 Ventilation System, a key healthcare device used in critical infrastructure sectors, has been found...
A recent report from Infoblox Threat Intel sheds light on an underreported yet pervasive cyber threat: the...
CVE-2024-0012 and CVE-2024-9474: Actively Exploited Vulnerabilities Impact Palo Alto Networks PAN-OS
CVE-2024-0012 and CVE-2024-9474: Actively Exploited Vulnerabilities Impact Palo Alto Networks PAN-OS
Palo Alto Networks has issued critical advisories regarding two actively exploited vulnerabilities in their PAN-OS software, posing...
Trend Micro researchers have unveiled the operations of a sophisticated botnet, dubbed “Water Barghest.” By October 2024,...
Two vulnerabilities in Citrix’s “Virtual Apps and Desktops” remote access solution, CVE-2024-8068 and CVE-2024-8069, are actively being...
In the world of cybersecurity, penetration testers and red teams need sophisticated tools to assess and improve...
Security researcher Sina Kheirkhah from watchTowr recently published technical details and a proof-of-concept (PoC) exploit for a...
In a comprehensive analysis released by Check Point Research (CPR), the WezRat infostealer has been identified as...
Sonatype has issued two security advisories for its Nexus Repository Manager 2.x, a popular repository manager used...
In October 2024, Huntress analysts uncovered a previously unreported ransomware strain, dubbed SafePay, deployed across two distinct...
In a detailed report released by the EclecticIQ Threat Research Team, cybersecurity analysts have uncovered a well-coordinated...