Researchers from Outpost24 have identified a concerning trend: thousands of IT administrators are employing predictable and weak...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
CVE-2023-34050 is a deserialization vulnerability in the Spring AMQP project, which is a popular Java library for...
In a concerning cyber-espionage campaign that unfolded in September 2022, cybersecurity experts from Kaspersky identified a slew...
In recent weeks, alarming revelations emerged from Google’s Threat Analysis Group (TAG). They’ve identified multiple state-sponsored hacking...
A vulnerability has been detected on the digital business platform, ServiceNow, jeopardizing the platform’s users. ServiceNow is...
On October 4, 2023, Proself, a Japanese company that offers online storage and file-sharing solutions, identified a...
Researchers from Elastic Security Labs have unearthed a new backdoor, BLOODALCHEMY, employed in attacks against the nations...
In the realm of digital services, consistent communication with customers and stakeholders is pivotal. Organizations large and...
JavaScript is a language in constant evolution, with new features, methodologies, and improvements being added regularly. While...
Cybersecurity analysts from F-Secure undertook an in-depth examination of the Android spyware, SpyNote, uncovering its vast capabilities...
In the vast ocean of open-source web frameworks, web2py has long been revered as a versatile tool...
Cisco unveiled a previously undisclosed vulnerability within the Web UI feature of its IOS XE Software. This...
Apache bRPC is a popular RPC framework used by many large companies and open-source projects. It is...
Palo Alto Networks has recently unearthed a new wave of attacks emanating from the XorDDoS Trojan. A...
In a concerning revelation, Trend Micro’s security researchers have spotlighted a sinister trend: cybercriminals are deploying a...
A critical security vulnerability has been discovered in the Linux NVMe-oF/TCP driver. This vulnerability, CVE-2023-5178, can be...
Node.js is a popular JavaScript runtime environment that is used to build scalable and performant web applications...
Apache InLong is a one-stop, full-scenario integration framework for massive data that supports Data Ingestion, Data Synchronization,...
Recently, the Steam accounts of several game developers were compromised by hackers, who subsequently disseminated malicious software...
On October 15, 2023, a security researcher with X (formerly Twitter) alias @po6ix released a proof-of-concept (PoC)...