Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

Iran-Linked Tortoiseshell Expands Espionage With TWOSTROKE Backdoor and Reverse SSH Tunnels

27 August 2026  |  dark6  |  Spyware

Researchers have linked new Windows malware and reverse SSH infrastructure to the Iran-associated Tortoiseshell threat group. The tools masquerade as a legitimate Windows library and support covert tunneling,...

>> read more

One Malicious Webpage Can Hijack Your AI Coding Agent Through an NVIDIA NemoClaw Flaw

27 August 2026  |  dark6  |  AI

A critical flaw in NVIDIA's NemoClaw tooling exposes a local AI inference server to the open network, letting a single malicious website hijack an AI agent via DNS...

>> read more

OpenSSL Updates Close Heap Corruption and Remote Crash Weaknesses

26 August 2026  |  dark6  |  Vulnerability

OpenSSL has released patched builds for a broad set of vulnerabilities affecting CMS, CMP, DTLS, QUIC and cryptographic operations. Several weaknesses are remotely triggerable, making dependency discovery and...

>> read more

Core Werewolf Deploys Custom CoreRAT Against Russian Defense Targets

26 August 2026  |  dark6  |  Malware

The Core Werewolf threat group is using a newly documented Windows remote access trojan in campaigns aimed at Russian public-sector and defense organizations. Telegram lures and forged official...

>> read more

Actively Exploited SharePoint Flaw Combines With RCE for Server Takeover

26 August 2026  |  dark6  |  Vulnerability

Two on-premises SharePoint vulnerabilities can be chained to bypass authentication and execute code on vulnerable servers. With the authentication flaw already listed as exploited, administrators should patch exposed...

>> read more

ToxNetV2 Botnet Adds AI-Guided Commands to Linux Attack Operations

26 August 2026  |  dark6  |  Malware

Researchers have analyzed a peer-to-peer Linux botnet whose controller consults an NVIDIA-hosted AI model to propose operational actions. Human approval still gates the most consequential commands, but the...

>> read more

Iran-Linked Hackers Knocked a UK Power Plant Offline for Four Days in a First-of-Its-Kind Attack

24 August 2026  |  dark6  |  Cybercrime

A small UK energy generator was forced completely offline for four days last month in what officials describe as the first successful cyberattack to shut down a British...

>> read more

Fake Adobe Reader Site Powers a New Malware-as-a-Service Platform Targeting Windows Users

24 August 2026  |  dark6  |  Malware

Researchers have uncovered a live malware-as-a-service operation hiding behind a convincing fake Adobe Acrobat Reader site, using a WebDAV trick and a disguised batch file to install information-stealing...

>> read more