Latest news

HashJack: weaponizing trust in AI browser assistants
AI

HashJack: weaponizing trust in AI browser assistants

26 November 2025 dark6

A vulnerability in the way AI browser assistants handle URL fragments opens doors for malicious attacks. For years, we’ve seen...
A Critical Security Flaws in HashiCorp’s Provider
Vulnerability

A Critical Security Flaws in HashiCorp’s Provider

25 November 2025 dark6

HashiCorp’s Vault Terraform provider, a cornerstone of secure secrets management for organizations worldwide, has been found with a critical security...
ClickFix: Fake Windows Updates and PNG Steganography Make a Darker Play for User Machines
Malware

ClickFix: Fake Windows Updates and PNG Steganography Make a Darker Play for User Machines

25 November 2025 dark6

For those deeply involved with cybersecurity, the past few years have seen a dramatic rise in sophisticated phishing campaigns leveraging...
How Hackers are using Open-Source repositories to steal crypto
Malware

How Hackers are using Open-Source repositories to steal crypto

24 November 2025 dark6

A new wave of malware targeting cryptocurrency users is hitting developers hard, showcasing the growing sophistication and accessibility of attacks...
ToddyCat’s new tricks: email hacking evolves with the cloud
Malware

ToddyCat’s new tricks: email hacking evolves with the cloud

24 November 2025 dark6

The age-old adage “if it ain’t broke, don’t fix it” doesn’t always hold true in cybersecurity. As attackers are increasingly...
Wireshark 4.6.1: critical security update addresses major vulnerabilities
Vulnerability

Wireshark 4.6.1: critical security update addresses major vulnerabilities

24 November 2025 dark6

A recent update from the Wireshark Foundation addresses critical vulnerabilities impacting the widely used network protocol analyzer, potentially exposing users...
APT24: three years of obscure espionage with the “BadAudio” download
Malware

APT24: three years of obscure espionage with the “BadAudio” download

21 November 2025 dark6

For years, APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has been quietly crafting targeted attacks against...
Oracle hit: Clop’s Zero-Day exploit leaves tech giant exposed
Ransomware

Oracle hit: Clop’s Zero-Day exploit leaves tech giant exposed

21 November 2025 dark6

Yesterday, the cybersecurity world was rocked by news of a potentially massive breach targeting Oracle. The notorious Clop ransomware gang...
Databreach: 2.3TB data from Italian rail group, Almaviva
Databreach

Databreach: 2.3TB data from Italian rail group, Almaviva

21 November 2025 dark6

A colossal digital archive, estimated at approximately 2.3 terabytes, has appeared in the darkest corners of the web. A malicious...
Eternidade Stealer: WhatsApp-Enabled banking trojan sophistication
Spyware

Eternidade Stealer: WhatsApp-Enabled banking trojan sophistication

20 November 2025 dark6

The Trustwave SpiderLabs team has unearthed a particularly unsettling piece of malware – Eternidade Stealer – that’s raising serious questions...
Akira: a CAPTCHA breach unravels enterprise security
Ransomware

Akira: a CAPTCHA breach unravels enterprise security

19 November 2025 dark6

The recent escalation of attacks attributed to the Howling Scorpius ransomware group has highlighted a chillingly simple, yet devastatingly effective,...
Nova Stealer: macOS cryptocurrency theft
Malware

Nova Stealer: macOS cryptocurrency theft

19 November 2025 dark6

The cybersecurity landscape is consistently shaped by increasingly sophisticated threats, and the latest to garner significant attention is Nova Stealer...