Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > vulnerability
#vulnerability

A Silent Vulnerability Exposed: How Hackers Used Hidden Commands to Steal Sensitive Data

3 December 2025  |  dark6  |  Vulnerability

Microsoft’s seemingly “unremarkable” November 2025 Patch Tuesday update actually contained a major security fix. But even the most meticulous patching process can sometimes be outmaneuvered by cunning threat...

>> read more

HashJack: weaponizing trust in AI browser assistants

26 November 2025  |  dark6  |  AI

A vulnerability in the way AI browser assistants handle URL fragments opens doors for malicious attacks. For years, we’ve seen AI take center stage across various industries, revolutionizing...

>> read more

A Critical Security Flaws in HashiCorp’s Provider

25 November 2025  |  dark6  |  Vulnerability

HashiCorp’s Vault Terraform provider, a cornerstone of secure secrets management for organizations worldwide, has been found with a critical security flaw. This vulnerability, tracked as CVE-2025-13357, affects users...

>> read more

Wireshark 4.6.1: critical security update addresses major vulnerabilities

24 November 2025  |  dark6  |  Vulnerability

A recent update from the Wireshark Foundation addresses critical vulnerabilities impacting the widely used network protocol analyzer, potentially exposing users to denial-of-service conditions. The vulnerability lies within the...

>> read more

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities

18 November 2025  |  dark6  |  Vulnerability

Google’s Chrome browser has found itself squarely in the crosshairs. A critical, previously unknown vulnerability – a zero-day – is actively being leveraged in the wild, triggering a...

>> read more

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025  |  dark6  |  Vulnerability

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The disclosure, detailed in a critical security update, centers...

>> read more

China-Linked APTs exploit critical SAP NetWeaver vulnerability to breach over 580 systems globally

13 May 2025  |  securebulletin.com  |  Cybercrime

In a significant escalation of cyber-espionage activities, multiple China-affiliated advanced persistent threat (APT) groups have been found actively exploiting a recently disclosed critical vulnerability in SAP NetWeaver, identified...

>> read more

MITRE Signals Critical Risk to CVE Program as Federal Funding Expires

15 April 2025  |  securebulletin.com  |  Vulnerability

The cybersecurity world faces a significant challenge as the Common Vulnerabilities and Exposures (CVE) program, a cornerstone of global vulnerability management, risks disruption due to expiring federal funding....

>> read more