Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

The Payroll Pirates: a malvertising and layered attack infrastructure

18 November 2025  |  dark6  |  Malware

The “Payroll Pirates,” as Check Point researchers have dubbed them, represent a particularly insidious threat – a coordinated campaign targeting payroll systems, credit unions, and trading platforms across...

>> read more

SpearSpecter: Iran’s Patient, multi-layered targeting campaign

17 November 2025  |  dark6  |  Spyware

The cybersecurity landscape is increasingly characterized by sophistication, and the ongoing SpearSpecter campaign represents a particularly concerning evolution in state-sponsored espionage. This isn’t a blunt instrument of brute-force...

>> read more

Microsoft Entra guest invitations: a sophisticated TOAD evolution

17 November 2025  |  dark6  |  Scams

The landscape of sophisticated social engineering attacks is constantly shifting, and a recent development involving Microsoft Entra guest user invitations highlights a concerning trend: the seamless integration of...

>> read more

The AppCloud anomaly: pre-installed surveillance on Samsung Galaxy devices

17 November 2025  |  dark6  |  Spyware

The recent accusations surrounding Samsung’s deployment of the AppCloud analytics application within its Galaxy A and M series smartphones, primarily targeting the Middle East and North Africa (MENA)...

>> read more

SilentButDeadly: a targeted disruption of EDR networks

16 November 2025  |  dark6  |  Blog

The relentless evolution of cyber threats has forced security professionals to continually adapt, often relying on increasingly complex Endpoint Detection and Response (EDR) solutions. However, this reliance introduces...

>> read more

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025  |  dark6  |  Vulnerability

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability CVE-2025-64446 within FortiWeb devices. This disclosure, originating from...

>> read more

SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign

14 November 2025  |  dark6  |  Malware

The SmartApeSG campaign, previously identified by aliases like ZPHP and HANEY MANEY, continues to demonstrate a remarkable capacity for adaptation, moving beyond initial tactics of deceptive browser update...

>> read more

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025  |  dark6  |  Vulnerability

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The disclosure, detailed in a critical security update, centers...

>> read more