Latest news

GitLab Releases Critical Security Patch for Multiple High-Severity Vulnerabilities
Vulnerability

GitLab Releases Critical Security Patch for Multiple High-Severity Vulnerabilities

11 December 2025 dark6

Security researchers have uncovered vulnerabilities in GitLab’s Community Edition and Enterprise Edition platforms, prompting the company to release critical security...
A Critical Patch for Vulnerable Next.js: New Scanner Unveils Hidden Attacks
Vulnerability

A Critical Patch for Vulnerable Next.js: New Scanner Unveils Hidden Attacks

4 December 2025 dark6

With the rise of Serverless functions, static site generators like Next.js have become ubiquitous in web development, streamlining functionality and...
A Silent Vulnerability Exposed: How Hackers Used Hidden Commands to Steal Sensitive Data
Vulnerability

A Silent Vulnerability Exposed: How Hackers Used Hidden Commands to Steal Sensitive Data

3 December 2025 dark6

Microsoft’s seemingly “unremarkable” November 2025 Patch Tuesday update actually contained a major security fix. But even the most meticulous patching...
Chrome 143: A Patch Day For Deep Dive Cybersecurity Professionals
Vulnerability

Chrome 143: A Patch Day For Deep Dive Cybersecurity Professionals

3 December 2025 dark6

Google has just released Chrome 143, ushering in a new era of browser security with 13 addressed vulnerabilities. This release...
Android’s December Patch: Zero-Day Vulnerabilities and Their Impact
Vulnerability

Android’s December Patch: Zero-Day Vulnerabilities and Their Impact

2 December 2025 dark6

The latest security bulletin from Google has brought forth a grim reality for Android users: multiple zero-day vulnerabilities are actively...
A Critical Design Flaws in Microsoft Azure API Management Threatens Organizations
Vulnerability

A Critical Design Flaws in Microsoft Azure API Management Threatens Organizations

1 December 2025 dark6

Microsoft’s Azure API Management (APIM) Developer Portal, a platform commonly used for managing and securing APIs, is vulnerable to a...
HashJack: weaponizing trust in AI browser assistants
AI

HashJack: weaponizing trust in AI browser assistants

26 November 2025 dark6

A vulnerability in the way AI browser assistants handle URL fragments opens doors for malicious attacks. For years, we’ve seen...
A Critical Security Flaws in HashiCorp’s Provider
Vulnerability

A Critical Security Flaws in HashiCorp’s Provider

25 November 2025 dark6

HashiCorp’s Vault Terraform provider, a cornerstone of secure secrets management for organizations worldwide, has been found with a critical security...
Wireshark 4.6.1: critical security update addresses major vulnerabilities
Vulnerability

Wireshark 4.6.1: critical security update addresses major vulnerabilities

24 November 2025 dark6

A recent update from the Wireshark Foundation addresses critical vulnerabilities impacting the widely used network protocol analyzer, potentially exposing users...
Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities
Vulnerability

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities

18 November 2025 dark6

Google’s Chrome browser has found itself squarely in the crosshairs. A critical, previously unknown vulnerability – a zero-day – is...
FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available
Vulnerability

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025 dark6

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability...
NVIDIA NeMo Framework: a critical cascade of vulnerabilities
Vulnerability

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025 dark6

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The...