A newly discovered vulnerability dubbed “CosmicSting” (CVE-2024-34102) has sent shockwaves through the e-commerce world, potentially jeopardizing millions...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
Ghostscript, a widely-used open-source software for rendering and converting PostScript and PDF files, has released a critical...
Cybersecurity researchers at XLab have uncovered a sophisticated new botnet dubbed “Zergeca.” Discovered in May 2024, this...
Cybersecurity researcher Zhiniang Peng published the technical details and proof-of-concept for two serious vulnerabilities in NVIDIA’s widely...
SocGholish, a sophisticated JavaScript malware framework, has been a persistent threat since its emergence in 2017. Designed...
The French National Cybersecurity Agency (ANSSI) has issued a warning about the continued activity of the Nobelium...
Symantec’s Threat Hunter Team has uncovered a long-running and highly sophisticated cyber espionage campaign targeting numerous telecommunications...
Fortra, the developer of the popular FileCatalyst file transfer solutions, has issued a critical security advisory warning...
On June 5, 2024, SolarWinds issued a critical advisory regarding a newly discovered path-traversal vulnerability in Serv-U,...
Cybersecurity firm Mandiant has unveiled a comprehensive report detailing the extensive cyber espionage campaign of UNC3886, a...
DataDog Security Labs has uncovered a concerning campaign targeting Amazon Web Services (AWS) environments, revealing a new...
FortiGuard Labs’ recent report on Fickle Stealer reveals a sophisticated and adaptable cyber threat that warrants closer...
A critical vulnerability has been discovered in the Rancher Kubernetes Engine (RKE), a widely used Kubernetes distribution...
Cybersecurity researchers at Avast have unearthed a new and previously undetected variant of the Diamorphine Linux kernel...
Trellix, a prominent cybersecurity provider, has issued urgent patches for two critical vulnerabilities discovered in its Intrusion...
A new wave of cybercrime is sweeping across China, exploiting the convenience and widespread use of QR...
EclecticIQ analysts have recently discovered a sophisticated phishing-as-a-service (PhaaS) platform called ONNX Store, targeting financial institutions worldwide....
Rapid7, a cybersecurity firm, has uncovered a recent malvertising campaign using fake software installers to distribute the...
In a security advisory released today, Broadcom revealed multiple critical vulnerabilities in VMware vCenter Server, the widely...
A critical vulnerability (CVE-2024-37902) has been discovered in the Deep Java Library (DJL), a widely-used open-source framework...
Taiwan’s CERT has issued a critical security warning regarding a severe vulnerability (CVE-2024-6047) affecting various end-of-life (EOL)...
Popular forum software platform, XenForo, has released an urgent security patch to address a critical vulnerability that...