A China-linked threat group tracked as Jewelbug has turned public Google Docs into a resilient command-and-control delivery channel, embedding freshly…
Category: GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Microsoft Exchange Server Vulnerabilities Allow DoS, Privilege Escalation, and RCE
Microsoft has released security updates that address six vulnerabilities in Exchange Server. These vulnerabilities include flaws that could allow remote…
Critical Dell VMware vSphere Client Flaw Lets Remote Attackers Execute Commands as Root
Dell has disclosed a significant security vulnerability in its Virtual Storage Integrator (VSI) for VMware vSphere Client. This vulnerability could allow…
Trump Administration Authorizes Cyber Operations Against Foreign Criminal Networks
The Trump administration has issued a presidential memorandum that establishes a federal program allowing vetted U.S. private-sector companies to conduct…
LiteLLM Hack Exposes Secrets From 2,488 Companies Across 118,829 CI Runner Dumps
The LiteLLM supply-chain compromise has shifted from a short-lived malicious package incident into a sprawling enterprise exposure event. Analysis of an…
CISA Adds Actively Exploited Windows WinSock Vulnerability to KEV Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Microsoft Windows vulnerability to its Known Exploited…
Armored Likho Turns Windows Microphones Into Automated Eavesdropping Devices
Armored Likho, also tracked as Eagle Werewolf, has expanded its espionage capability with a Rust-based toolkit that can hijack Telegram sessions and…
Wireshark 4.6.8 Released to Patch 28 Security Vulnerabilities
Wireshark has released version 4.6.8, which addresses security vulnerabilities in 28 identified issues that could lead to crashes, abnormal exits,…
Cloudflare Mitigates 23.2 Million DDoS Attacks as 1 Tbps Attacks Surge 519%
Cloudflare has mitigated 23.2 million network-layer DDoS attacks and stopped 29.64 trillion HTTP DDoS requests during the first half of 2026. This…
6,330 Internet-Exposed ICS Devices Near U.S. Data Centers Put Cooling and Power Systems at Risk
A newly published internet-exposure analysis has identified more than 6,300 high-confidence industrial control system and building automation devices…
Critical Adobe Commerce Flaw Lets Unauthenticated Attackers Escalate Privileges
Adobe has released security updates for Adobe Commerce, Adobe Commerce B2B, and Magento Open Source to address multiple critical vulnerabilities. One of…
WhatsApp Introduces On-Device Scam Alert to Detect Fraud Messages
WhatsApp has initiated a limited beta rollout of a feature called Scam Alert, which utilises an on-device machine learning model to identify potentially…
Adobe ColdFusion Critical Vulnerabilities Enable Arbitrary Code Execution
Adobe has released critical security updates for ColdFusion 2025 and ColdFusion 2023, addressing 17 vulnerabilities that could enable arbitrary code…
Akira Ransomware Reboots Windows Into Safe Mode to Disable EDR and Microsoft Defender
An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an…
Gunra Ransomware Uses Up to 100 ChaCha20 Threads to Rapidly Encrypt Linux Systems
Gunra ransomware has added a Linux encryptor to its arsenal, giving affiliates control over how they lock enterprise data. The command-line payload can…
Kimwolf v7 Removes Exploitation Code and Leaves Infection to External Loaders
A newly identified Kimwolf v7 build shows the Android and IoT botnet shifting from an all-in-one compromise toolkit into a more specialized DDoS and…
China-Linked Hackers Use Autonomous AI Agents to Breach Taiwan Government Systems
A China-linked threat actor has reportedly utilized a multi-agent artificial intelligence framework to conduct a nearly autonomous intrusion campaign…
Phantom Stealer Uses PNG Steganography and PowerShell Injection to Steal Credentials
Phantom Stealer is a .NET-based credential-harvesting malware that combines PNG-backed payload concealment, PowerShell-driven process injection, and…
Palo Alto GlobalProtect Vulnerabilities Enable SYSTEM and Root-Level Access
Palo Alto Networks has released security advisories for multiple vulnerabilities in the GlobalProtect App that could allow a local attacker to elevate…
City-Forum Hackers Target Salesforce and ServiceNow Instances Worldwide for Data Theft
A sophisticated threat campaign, referred to as “City-Forum,” is targeting publicly accessible Salesforce Experience Cloud sites and ServiceNow Service…