Critical vulnerability compromises the security of .MOBI top-level domain
12 September 2024 dark6
A recent vulnerability discovery has exposed a glaring security flaw in the .MOBI domain name ecosystem. This vulnerability, stemming from...
Vulnerability
Threat landscape: EV charging infrastructure under attack
12 September 2024 dark6
As electric vehicles (EVs) gain traction, their reliance on interconnected systems and widespread public charging infrastructure introduces significant cybersecurity risks....
Vulnerability
Browser-based credential theft: a growing threat
12 September 2024 dark6
In the evolving cybersecurity landscape, web browsers have become a primary target for cybercriminals seeking to steal users’ credentials. This...
Malware
RansomHub’s malicious use of TDSSKiller to bypass endpoint detection and response (EDR)
12 September 2024 dark6
Kaspersky Lab’s TDSSKiller is a widely used free utility for detecting and removing rootkits. However, a recent cyberattack campaign by...
Vulnerability
Critical Zero-Day vulnerability in Microsoft’s App Control
11 September 2024 dark6
Microsoft has released a critical security update to address an actively exploited zero-day vulnerability affecting its Windows Smart App Control...
Vulnerability
Microsoft september 2024 Patch Tuesday: mitigating critical vulnerabilities
11 September 2024 dark6
The latest Microsoft Patch Tuesday, released in September 2024, addresses a substantial number of security vulnerabilities, including four critical zero-day...
Hacktivism
Flipper Zero firmware milestone: version 1.0 arrives after three years of evolution
10 September 2024 dark6
As cybersecurity enthusiasts rejoice, Flipper Zero has finally unveiled its highly anticipated firmware version 1.0, marking the culmination of three...
Databreach
Data breach at payment gateway Slim CD: 1.7 million users impacted
10 September 2024 dark6
Slim CD, Inc., a prominent payment processing platform for US and Canadian merchants, has recently disclosed a significant data breach...
Cybercrime
Chinese hackers leverage open-source tools for cyber attacks
10 September 2024 dark6
Cybersecurity researchers have uncovered that Chinese state-sponsored threat groups are actively exploiting open-source tools like Nmap to facilitate cyber attacks....
Vulnerability
Critical RCE vulnerabilities in Ivanti Endpoint Manager grant remote server access to attackers
10 September 2024 dark6
Ivanti has released security updates for its Endpoint Manager (EPM) 2024 and 2022 SU6 versions to address multiple severe and...
Earth Preta, the notorious Chinese Advanced Persistent Threat (APT) group, has been active for over a decade, targeting government entities,...
Databreach
Air-Gapped systems not impregnable: new attacks expose sensitive data
10 September 2024 dark6
Air-gapped computers, physically isolated from unsecured networks, were once considered impervious to cyberattacks. However, recent research has unveiled sophisticated techniques...