Website profile

Cso Online

CSO delivers the critical information about trends, practices, and products enterprise security leaders need to defend against criminal cyberattacks and other threats.

  • 1,703articles · 365d
  • 2+ day agolatest article
  • Sep 15, 2025earliest in window
  • 91%with images
  • 355avg words
articles per day
Categories
  • Science & Technology 1,156
  • Computers & Electronics 880
  • Software 623
  • News 355
  • Software Dev. 328
  • Crime & Law 240
  • Conflict, War & Peace 237
  • Science & Nature 237

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

CSO Online
csoonline.com > article > 4220939 > attackers-are-weaponizing-the-gap-between-chromium-fixes-and-chrome-patches.html

Attackers are weaponizing the gap between Chromium fixes and Chrome patches

2+ day, 5+ hour ago   (642+ words) A new exploit kit is revealing the perils of the “patch later” mentality. According to the Proofpoint Threat Research team, espionage-motivated threat actors are using a new malicious toolkit to chain together four separate Chrome browser and Microsoft Windows vulnerabilities…...

CSO Online
csoonline.com > article > 4220390 > mikrotik-patches-flaws-currently-being-exploited-to-take-over-routers.html

MikroTik patches flaws currently being exploited to take over routers

3+ day, 10+ hour ago   (649+ words) Networking gear manufacturer MikroTik has released patches for six vulnerabilities in its RouterOS firmware, two of which can be chained together to take over devices without authentication over SSH. The exploit chain, dubbed MikroTrick, is already being used by attackers…...

CSO Online
csoonline.com > article > 4220193 > shinyhunters-claims-florida-dmv-breach-puts-data-on-the-clock.html

ShinyHunters claims Florida DMV breach, puts data on the clock

3+ day, 19+ hour ago   (439+ words) ShinyHunters is claiming to have broken into a Florida government database containing sensitive information on the state’s drivers. The notorious extortion group said it has breached the Florida Department of Highway Safety and Motor Vehicles’ Driver and Vehicle Information Database…...

CSO Online
csoonline.com > article > 4219846 > september-2026-patch-tuesday-roundup-plugs-for-two-zero-day-holes-among-almost-1000-fixes-in-windows.html

September 2026 Patch Tuesday roundup: Plugs for two zero day holes among almost 1,000 fixes in Windows

4+ day, 3+ hour ago   (437+ words) Possibly wormable bugs and two zero-day holes highlight the almost 1,000 fixes issued today by Microsoft in its September Patch Tuesday release. The 964 vulnerabilities, another record since Microsoft began using AI in the middle of the year to find holes, require…...

CSO Online
csoonline.com > article > 4219606 > bigbear-2-0-phishing-campaign-hijacks-microsoft-365-sessions-after-mfa.html

BigBear 2.0 phishing campaign hijacks Microsoft 365 sessions after MFA

4+ day, 19+ hour ago   (700+ words) A phishing-as-a-service operation targeting Microsoft 365 users has harvested thousands of session cookies that could be used to hijack authenticated sessions after victims complete multifactor authentication, CloudSEK said. The cybersecurity firm said in a report that it uncovered the operation, known…...

CSO Online
csoonline.com > article > 4219242 > back-to-back-n-able-bugs-send-admins-on-a-patching-spree.html

Back-to-back N-able bugs send admins on a patching spree

5+ day, 18+ hour ago   (499+ words) A max-severity zero-day bug could be affecting cybersecurity firm N-able’s N-central remote monitoring and management platform, the company said, even as administrators were applying a hotfix for two vulnerabilities disclosed just a day earlier. The latest flaw, tracked as CVE…...

CSO Online
csoonline.com > article > 4217080 > when-the-patch-tsunami-meets-the-maintenance-window.html

When the patch tsunami meets the maintenance window

1+ week, 3+ day ago   (570+ words) Sabine Frömling, MBA, is an independent cybersecurity, OT security and governance consultant and the author of "ISMS für die Industrie – Der Praxisratgeber", with an English-language edition forthcoming in fall 2026. Since 2008, she has advised companies in the energy, manufacturing, pharmaceutical and…...

CSO Online
csoonline.com > article > 4215430 > servicenow-patches-three-maximum-severity-flaws-that-could-put-enterprise-data-at-risk.html

ServiceNow patches three maximum severity flaws that could put enterprise data at risk

2+ week, 1+ day ago   (793+ words) Code injection and SQL injection attacks have been around for decades, and they are still tried-and-true ways for attackers to compromise systems. ServiceNow’s latest trio of maximum severity flaws shows that even AI-era platforms remain vulnerable to these techniques: The…...

CSO Online
csoonline.com > article > 4214135 > microsoft-warns-patch-window-is-collapsing-urges-shift-to-network-level-containment.html

Microsoft warns patch window is collapsing, urges shift to network-level containment

2+ week, 3+ day ago   (720+ words) Microsoft is warning that the window for patching vulnerabilities is rapidly shrinking, as attackers move from disclosure to exploitation faster than enterprises can safely deploy fixes, and is urging organizations to adopt network-level controls to limit exposure during that gap....

CSO Online
csoonline.com > article > 4212929 > windows-defenders-own-driver-can-leave-systems-defenseless.html

Windows Defender’s own driver can leave systems defenseless

2+ week, 5+ day ago   (426+ words) A Microsoft-signed Windows Defender remediation driver can be repurposed into a kernel-level “operation engine” capable of deleting files, modifying the registry and neutralizing security controls, according to new research from Check Point Research (CPR). The technique does not exploit a…...