Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Vulnerability
Latest news

North Korean hackers exploit Chromium zero-day vulnerability

4 September 2024  |  dark6  |  Vulnerability

In the ever-evolving landscape of cybersecurity, the Chromium-based web browsers, such as Google Chrome and Microsoft Edge, have become prime targets for malicious actors. Recently, Microsoft cyber analysts...

>> read more

Zero-day vulnerability CVE-2024-7971 and the threat posed by Citrine Sleet

3 September 2024  |  dark6  |  Vulnerability

Recent findings by Microsoft have shed light on a significant cybersecurity threat emerging from North Korea. The discovery of a zero-day vulnerability in the Chromium browser, labeled CVE-2024-7971,...

>> read more

Hacktivist group exploits WinRAR vulnerability to launch attacks

2 September 2024  |  dark6  |  Vulnerability

The hacktivist group Head Mare has made headlines for exploiting a vulnerability in WinRAR to infiltrate and encrypt systems across both Windows and Linux platforms. Active since the...

>> read more

A critical vulnerability in Mirai botnet: remote DoS exploit discovered

26 August 2024  |  dark6  |  Vulnerability

Recent investigations into the Mirai botnet have unveiled a significant remote denial-of-service (DoS) exploit, identified as CVE-2024-45163. This vulnerability was discovered within the source code of the Mirai...

>> read more

E-commerce vulnerabilities exposed: the Magento skimmer incident

26 August 2024  |  dark6  |  Vulnerability

A recent cyberattack targeting Magento, a widely used e-commerce platform, has raised significant concerns within the cybersecurity community. Hackers have successfully injected a malicious skimmer into Magento stores,...

>> read more

Emergence of PG_MEM malware targeting PostgreSQL databases

24 August 2024  |  dark6  |  Vulnerability

Aqua Nautilus researchers have uncovered a dangerous new malware strain named PG_MEM, specifically designed to exploit the PostgreSQL database management system for illicit cryptocurrency mining. The attack begins...

>> read more

Vulnerabilities in Google’s Quick Share could lead to remote code execution

12 August 2024  |  dark6  |  Vulnerability

Recent findings have spotlighted significant security vulnerabilities in Google’s Quick Share, a file-sharing tool that works across Android, Windows, and Chrome OS devices. Identified as “QuickShell” by researchers...

>> read more

Critical zero-day vulnerability in Microsoft Office: CVE-2024-38200

11 August 2024  |  dark6  |  Vulnerability

On August 8th, Microsoft revealed a significant zero-day vulnerability, tracked as CVE-2024-38200, affecting multiple versions of its Office suite with a CVSS score of 7.5. This information disclosure...

>> read more