Latest news

QNAP NAS vulnerabilities
Vulnerability

QNAP NAS vulnerabilities

9 December 2024 dark6

QNAP NAS systems, widely used for data storage, have been flagged for several critical vulnerabilities that pose significant risks to...
Critical NTLM Vulnerability in Windows
Vulnerability

Critical NTLM Vulnerability in Windows

8 December 2024 dark6

Security researchers have identified a critical vulnerability affecting all Windows Workstation and Server versions, including Windows 7, Server 2008 R2,...
Apache Tomcat vulnerability (CVE-2024-38286)
Vulnerability

Apache Tomcat vulnerability (CVE-2024-38286)

24 September 2024 dark6

A severe vulnerability has emerged in Apache Tomcat, a widely used Java application server. Identified as CVE-2024-38286, this flaw poses...
Windows MiniFilter vulnerability: a threat to EDR security
Vulnerability

Windows MiniFilter vulnerability: a threat to EDR security

18 September 2024 dark6

Endpoint Detection and Response (EDR) solutions are essential for modern cybersecurity defenses. However, research has revealed a vulnerability in Windows...
Critical Windows kernel vulnerability disclosed
Vulnerability

Critical Windows kernel vulnerability disclosed

18 September 2024 dark6

Microsoft has issued an urgent warning regarding a critical Windows kernel vulnerability (CVE-2024-37985) that could result in the disclosure of...
Apple iOS 18 patches 32 security flaws
Vulnerability

Apple iOS 18 patches 32 security flaws

17 September 2024 dark6

Apple has released iOS 18, a major software update that addresses a multitude of security vulnerabilities across its operating system....
Critical macOS Calendar vulnerability: zero-click execution of malicious code
Vulnerability

Critical macOS Calendar vulnerability: zero-click execution of malicious code

17 September 2024 dark6

A severe zero-click vulnerability has been discovered within Apple’s macOS Calendar application, posing a significant threat to user security. This...
Cybercriminals exploit legitimate software for insidious attacks
Vulnerability

Cybercriminals exploit legitimate software for insidious attacks

14 September 2024 dark6

Cybercriminals are evolving their tactics, leveraging legitimate software to evade detection and compromise systems. By blending into normal network traffic,...
Critical Cisco vulnerability threatens Web-Based management interfaces
Vulnerability

Critical Cisco vulnerability threatens Web-Based management interfaces

14 September 2024 dark6

Cisco has recently disclosed a severe vulnerability (CVE-2024-20381) impacting the JSON-RPC API feature used by various web-based management interfaces in...
Cybersecurity alert for Small and Mid-sized Businesses: CosmicBeetle threat actor on the rise
Vulnerability

Cybersecurity alert for Small and Mid-sized Businesses: CosmicBeetle threat actor on the rise

14 September 2024 dark6

Small and mid-sized businesses (SMBs) are increasingly becoming targets of cybercriminals due to weaker security measures and lack of cybersecurity...
Urgent: GitLab warns of critical vulnerability, advises immediate patching
Vulnerability

Urgent: GitLab warns of critical vulnerability, advises immediate patching

13 September 2024 dark6

GitLab, a popular DevOps platform, has recently released a critical security update to address several high-severity vulnerabilities. Organizations using GitLab...
Critical Active Directory certificate services vulnerabilities: implications and mitigation strategies
Vulnerability

Critical Active Directory certificate services vulnerabilities: implications and mitigation strategies

12 September 2024 dark6

Microsoft’s Active Directory Certificate Services (AD CS), a PKI implementation in Active Directory environments, has been found to contain critical...