Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

AI Agent Swarm Exploits PaperCut Flaws Across 440 Servers Worldwide

10 September 2026  |  dark6  |  Vulnerability

A Russian-speaking operator used hundreds of autonomous AI agents to compromise 440 PaperCut servers across 48 countries. Although only a fraction reached domain administrator, the campaign shows how...

>> read more

ClearFake CAPTCHA Campaign Disables EDR to Deploy Crypto Stealer

10 September 2026  |  dark6  |  Malware

ClearFake has expanded its fake CAPTCHA operation with a vulnerable-driver technique that terminates endpoint defenses before deploying a cryptocurrency stealer. The campaign combines compromised sites, blockchain-hosted instructions, WebDAV...

>> read more

Critical ArangoDB Flaws Enable Login Bypass and Root-Level Code Execution

10 September 2026  |  dark6  |  Vulnerability

Two critical ArangoDB vulnerabilities can be chained to bypass authentication, manipulate database content and execute code with root privileges. Version 3.12.11 contains fixes, and exposed deployments should be...

>> read more

Veradigm Discloses Patient SSNs Exposed After Vendor Credentials Were Stolen

10 September 2026  |  dark6  |  Databreach

Healthcare technology firm Veradigm has disclosed to the SEC that stolen vendor credentials were used to access an API and download patient data, including Social Security numbers. The...

>> read more

Fake Job Interviews Deliver NodeRabbit and PollCat Malware to Software Developers

10 September 2026  |  dark6  |  Malware

An Iran-linked group tracked as Mirage Kitten (UNC1549) is posing as recruiters on LinkedIn to trick developers into running malicious take-home coding tests. The booby-trapped projects deploy two...

>> read more

N0va Phishing Kit Hijacks Real Microsoft Logins to Steal Session Tokens

10 September 2026  |  dark6  |  Phishing

A new phishing kit called N0va abuses legitimate device-code authentication flows for Microsoft, Google, and other trusted services to steal access and refresh tokens rather than passwords. The...

>> read more

MapLibre Sanitizer Bug Puts 2.7 Million Sites at Risk of Zero-Click Code Execution

10 September 2026  |  dark6  |  Vulnerability

A critical flaw in the widely used MapLibre GL JS mapping library lets attackers slip malicious event handlers past its HTML sanitizer, triggering code execution with no clicks...

>> read more

FortiGate Exploitation Campaign Plants PivotC2 Malware and Steals Network Credentials

9 September 2026  |  dark6  |  Malware

Attackers are exploiting a critical Fortinet vulnerability to install a custom Node.js remote-access framework on exposed appliances. The campaign has reportedly compromised 178 devices and can harvest credentials,...

>> read more