Latest news

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities
Vulnerability

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities

18 November 2025 dark6

Google’s Chrome browser has found itself squarely in the crosshairs. A critical, previously unknown vulnerability – a zero-day – is...
The Payroll Pirates: a malvertising and layered attack infrastructure
Malware

The Payroll Pirates: a malvertising and layered attack infrastructure

18 November 2025 dark6

The “Payroll Pirates,” as Check Point researchers have dubbed them, represent a particularly insidious threat – a coordinated campaign targeting...
SpearSpecter: Iran’s Patient, multi-layered targeting campaign
Spyware

SpearSpecter: Iran’s Patient, multi-layered targeting campaign

17 November 2025 dark6

The cybersecurity landscape is increasingly characterized by sophistication, and the ongoing SpearSpecter campaign represents a particularly concerning evolution in state-sponsored...
Microsoft Entra guest invitations: a sophisticated TOAD evolution
Scams

Microsoft Entra guest invitations: a sophisticated TOAD evolution

17 November 2025 dark6

The landscape of sophisticated social engineering attacks is constantly shifting, and a recent development involving Microsoft Entra guest user invitations...
The AppCloud anomaly: pre-installed surveillance on Samsung Galaxy devices
Spyware

The AppCloud anomaly: pre-installed surveillance on Samsung Galaxy devices

17 November 2025 dark6

The recent accusations surrounding Samsung’s deployment of the AppCloud analytics application within its Galaxy A and M series smartphones, primarily...
SilentButDeadly: a targeted disruption of EDR networks
Blog

SilentButDeadly: a targeted disruption of EDR networks

16 November 2025 dark6

The relentless evolution of cyber threats has forced security professionals to continually adapt, often relying on increasingly complex Endpoint Detection...
FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available
Vulnerability

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025 dark6

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability...
SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign
Malware

SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign

14 November 2025 dark6

The SmartApeSG campaign, previously identified by aliases like ZPHP and HANEY MANEY, continues to demonstrate a remarkable capacity for adaptation,...
NVIDIA NeMo Framework: a critical cascade of vulnerabilities
Vulnerability

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025 dark6

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The...
New Bridgestone cyberattack: summary
Databreach

New Bridgestone cyberattack: summary

4 September 2025 dark6

Bridgestone Americas (BSA) is the North American division of Bridgestone, the world’s largest tire manufacturer by production volume. Attack Details...
Silk Road’s Ross Ulbricht receives $31 Million in Bitcoin from AlphaBay-linked source after release
Cybercrime

Silk Road’s Ross Ulbricht receives $31 Million in Bitcoin from AlphaBay-linked source after release

6 June 2025 securebulletin.com

The libertarian and crypto communities recently celebrated the release of Ross Ulbricht, the infamous founder of the Silk Road darknet...
Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms
Vulnerability

Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms

6 June 2025 securebulletin.com

A decade-old Remote Code Execution (RCE) flaw in Roundcube, the widely used open-source email client, has escalated into a global...