Latest news

Microsoft expands Microsoft 365 subscription benefits with Defender VPN
Spyware

Microsoft expands Microsoft 365 subscription benefits with Defender VPN

1 August 2024 dark6

Microsoft has recently enhanced its Microsoft 365 Personal and Family subscriptions by introducing the Microsoft Defender VPN service, now available...
Increasing phishing threats targeting Microsoft OneDrive users
Phishing

Increasing phishing threats targeting Microsoft OneDrive users

1 August 2024 dark6

In an emerging and sophisticated phishing campaign identified by the Trellix Advanced Research Center, Microsoft OneDrive users are facing a...
Vulnerability in OAuth, XSS for millions of websites
Blog

Vulnerability in OAuth, XSS for millions of websites

31 July 2024 dark6

A critical vulnerability within the OAuth authentication standard poses a substantial risk to millions of websites and their users, potentially...
RansomHub ransomware: a new threat in the cybercrime landscape
Ransomware

RansomHub ransomware: a new threat in the cybercrime landscape

31 July 2024 dark6

Cybersecurity researchers at Lab52 have highlighted the rise of the RansomHub ransomware gang, which employs a mix of old and...
Ongoing exploitation of VMware ESXi vulnerability CVE-2024-37085
Vulnerability

Ongoing exploitation of VMware ESXi vulnerability CVE-2024-37085

31 July 2024 dark6

A vulnerability in VMware’s ESXi virtualization platform, identified as CVE-2024-37085, continues to leave thousands of servers susceptible to ransomware attacks....
Leveraging AI/ML to improve MDR efficiency and reduce false positives
Malware

Leveraging AI/ML to improve MDR efficiency and reduce false positives

31 July 2024 dark6

Key Findings from the 2023 MDR Analysis Report: AI/ML in Incident Detection: Challenges and Solutions: Balancing Detection and False Positives:...
EchoSpoofing campaign exploits Proofpoint vulnerability
Vulnerability

EchoSpoofing campaign exploits Proofpoint vulnerability

30 July 2024 dark6

An unknown attacker exploited a vulnerability in Proofpoint’s email routing settings to send mass fraudulent messages impersonating well-known companies such...
Russian information operations target French snap elections: operation “Doppelgänger”
Hacktivism

Russian information operations target French snap elections: operation “Doppelgänger”

30 July 2024 dark6

From early June to late July 2024, Russian actors conducted a series of sophisticated information operations under the code name...
Ransomware threats loom over Paris 2024 olympics
Ransomware

Ransomware threats loom over Paris 2024 olympics

29 July 2024 dark6

A recent study by ExtraHop has highlighted the near inevitability of ransomware attacks targeting the Paris 2024 Olympics. The event’s...
Apache superset security update: addressing CVE-2024-34693
Vulnerability

Apache superset security update: addressing CVE-2024-34693

29 July 2024 dark6

The Apache Software Foundation has released critical security updates to mitigate an arbitrary file read vulnerability (CVE-2024-34693) in Apache Superset....
Kaspersky unveils the return of Mandrake Android spyware on Google Play Store
Spyware

Kaspersky unveils the return of Mandrake Android spyware on Google Play Store

29 July 2024 dark6

Kaspersky researchers have uncovered the resurgence of the Mandrake Android spyware, which has been active on the Google Play Store...
European parliament member targeted by sophisticated spyware attack
Spyware

European parliament member targeted by sophisticated spyware attack

28 July 2024 dark6

In a disturbing development, German Member of the European Parliament (MEP) Daniel Freund revealed that he was the target of...