Latest news

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available
Vulnerability

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025 dark6

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability...
SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign
Malware

SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign

14 November 2025 dark6

The SmartApeSG campaign, previously identified by aliases like ZPHP and HANEY MANEY, continues to demonstrate a remarkable capacity for adaptation,...
NVIDIA NeMo Framework: a critical cascade of vulnerabilities
Vulnerability

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025 dark6

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The...
New Bridgestone cyberattack: summary
Databreach

New Bridgestone cyberattack: summary

4 September 2025 dark6

Bridgestone Americas (BSA) is the North American division of Bridgestone, the world’s largest tire manufacturer by production volume. Attack Details...
Silk Road’s Ross Ulbricht receives $31 Million in Bitcoin from AlphaBay-linked source after release
Cybercrime

Silk Road’s Ross Ulbricht receives $31 Million in Bitcoin from AlphaBay-linked source after release

6 June 2025 securebulletin.com

The libertarian and crypto communities recently celebrated the release of Ross Ulbricht, the infamous founder of the Silk Road darknet...
Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms
Vulnerability

Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms

6 June 2025 securebulletin.com

A decade-old Remote Code Execution (RCE) flaw in Roundcube, the widely used open-source email client, has escalated into a global...
Meta and Yandex Android apps exploit Localhost to track users
Privacy

Meta and Yandex Android apps exploit Localhost to track users

4 June 2025 securebulletin.com

A recent investigation has uncovered that native Android apps from Meta (including Facebook and Instagram) and Yandex have been covertly...
Sophos exposes massive GitHub campaign distributing backdoored malware
Malware

Sophos exposes massive GitHub campaign distributing backdoored malware

4 June 2025 securebulletin.com

A sophisticated malware campaign targeting hackers, gamers, and cybersecurity researchers has been uncovered on GitHub, leveraging fake exploits, game cheats,...
Debunking OrbitShade: AI-Driven misinformation in Cyber Threat Intelligence
Malware

Debunking OrbitShade: AI-Driven misinformation in Cyber Threat Intelligence

30 May 2025 securebulletin.com

The recent public report dated April 29, 2025, alleging the existence of a state-sponsored malware named OrbitShade targeting satellite infrastructure...
Windows 11 fails to start after KB5058405 update
Vulnerability

Windows 11 fails to start after KB5058405 update

29 May 2025 securebulletin.com

The recent disclosure by Microsoft regarding the KB5058405 cumulative update for Windows 11 has significant implications for enterprise cybersecurity and...
Ransomware attack in MathWorks outage that paralyzed MATLAB
Ransomware

Ransomware attack in MathWorks outage that paralyzed MATLAB

27 May 2025 dark6

When the world’s engineers, scientists, and students logged in to MATLAB on May 18, 2025, many were met with silence—a...
Anatomy of the Winos 4.0 campaign
Malware

Anatomy of the Winos 4.0 campaign

25 May 2025 securebulletin.com

The Winos 4.0 campaign, as dissected by Rapid7, exemplifies the evolving sophistication of contemporary malware operations targeting Chinese-speaking environments. This...