Latest news

Android’s December Patch: Zero-Day Vulnerabilities and Their Impact
Vulnerability

Android’s December Patch: Zero-Day Vulnerabilities and Their Impact

2 December 2025 dark6

The latest security bulletin from Google has brought forth a grim reality for Android users: multiple zero-day vulnerabilities are actively...
A Critical Design Flaws in Microsoft Azure API Management Threatens Organizations
Vulnerability

A Critical Design Flaws in Microsoft Azure API Management Threatens Organizations

1 December 2025 dark6

Microsoft’s Azure API Management (APIM) Developer Portal, a platform commonly used for managing and securing APIs, is vulnerable to a...
HashJack: weaponizing trust in AI browser assistants
AI

HashJack: weaponizing trust in AI browser assistants

26 November 2025 dark6

A vulnerability in the way AI browser assistants handle URL fragments opens doors for malicious attacks. For years, we’ve seen...
A Critical Security Flaws in HashiCorp’s Provider
Vulnerability

A Critical Security Flaws in HashiCorp’s Provider

25 November 2025 dark6

HashiCorp’s Vault Terraform provider, a cornerstone of secure secrets management for organizations worldwide, has been found with a critical security...
Wireshark 4.6.1: critical security update addresses major vulnerabilities
Vulnerability

Wireshark 4.6.1: critical security update addresses major vulnerabilities

24 November 2025 dark6

A recent update from the Wireshark Foundation addresses critical vulnerabilities impacting the widely used network protocol analyzer, potentially exposing users...
Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities
Vulnerability

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities

18 November 2025 dark6

Google’s Chrome browser has found itself squarely in the crosshairs. A critical, previously unknown vulnerability – a zero-day – is...
FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available
Vulnerability

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025 dark6

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability...
NVIDIA NeMo Framework: a critical cascade of vulnerabilities
Vulnerability

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025 dark6

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The...
Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms
Vulnerability

Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms

6 June 2025 securebulletin.com

A decade-old Remote Code Execution (RCE) flaw in Roundcube, the widely used open-source email client, has escalated into a global...
Windows 11 fails to start after KB5058405 update
Vulnerability

Windows 11 fails to start after KB5058405 update

29 May 2025 securebulletin.com

The recent disclosure by Microsoft regarding the KB5058405 cumulative update for Windows 11 has significant implications for enterprise cybersecurity and...
Analysis of recent high-severity vulnerabilities in GitLab and Atlassian products
Vulnerability

Analysis of recent high-severity vulnerabilities in GitLab and Atlassian products

22 May 2025 securebulletin.com

Both GitLab and Atlassian have recently released critical security patches addressing a series of high-severity vulnerabilities across their core product...
Malicious npm packages hijack macOS Cursor AI IDE
Vulnerability

Malicious npm packages hijack macOS Cursor AI IDE

9 May 2025 securebulletin.com

The Socket Threat Research Team has uncovered a sophisticated supply chain attack targeting macOS developers using the Cursor AI code...