NVIDIA has revealed a significant security vulnerability in its BlueField data processing units (DPUs) that could allow virtual machine (VM) users to…
Category: GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Threat Actor Claims Revolut Data Breach Exposes Financial Records of 75 Million Users
A threat actor has reportedly claimed to possess and sell a large dataset allegedly linked to the fintech company Revolut, purportedly affecting more than…
Russian Intelligence Hackers Target Signal Backup Recovery Keys in Account Takeover Attacks
Russian intelligence-linked hackers have shifted tactics to target Signal users’ backup recovery keys, enabling full account takeover and access to…
CISA Urges Critical Infrastructure Operators to Isolate Vital OT Systems During Cyberattacks
CISA, in collaboration with the Australian Signals Directorate’s Australian Cyber Security Center (ASD’s ACSC), the FBI, and international partners, has…
Houston City College Data Breach Impacts 832,000 Students and Alumni
Houston City College has been linked to a significant data breach that has affected approximately 832,000 students and alums. This breach occurred in June…
Joyfill npm Supply-Chain Attack Deploys RAT and Developer Credential Stealer
A supply-chain compromise targeting the npm ecosystem has introduced a multi-stage remote access trojan (RAT) and credential stealer through hijacked…
Fake Web3 Job Interview Software Delivers Infostealer to Steal Crypto Wallets and Passwords
A newly uncovered cyber campaign is targeting Web3 professionals with sophisticated social engineering, leveraging fake job interviews to deploy…
Critical WordPress Plugin Backdoor Exposes 20,000 Sites to Full Administrator Takeover
A critical supply-chain compromise in a widely used WordPress plugin has exposed approximately 20,000 websites to potential administrator takeover.…
Attackers Abuse GitHub Actions Workflow to Publish Provenance-Signed npm Malware
Attackers have been observed abusing GitHub Actions workflows to distribute provenance-signed malicious npm packages, marking a significant escalation in…
Check Point SmartConsole Zero-Day Lets Unauthenticated Attackers Gain Full Admin Access
A critical zero-day vulnerability in Check Point SmartConsole, identified as CVE-2026-16232, has been actively exploited, allowing unauthenticated…
Flying Eagle RAT Abuses Android Accessibility Services for Keylogging, Screen Capture and Gesture Injection
A newly analyzed Android remote access trojan (RAT) dubbed “Flying Eagle” is leveraging Accessibility Services to enable large-scale surveillance,…
JFrog Patches Artifactory Zero-Days After OpenAI Models Escape Sandbox
Multiple zero-day vulnerabilities in self-hosted Artifactory after OpenAI’s frontier models autonomously exploited them to escape a sandboxed research…
Bank of Baroda Confirms Data Breach After Employee Email Account Compromised
Bank of Baroda has confirmed a cybersecurity incident involving the compromise of an employee’s email account, which allowed unauthorized access to…
Attackers Split RAT Components Across npm Packages to Evade Isolated Code Reviews
Attackers have been observed distributing a modular Remote Access Trojan (RAT) through the npm ecosystem by deliberately splitting malicious functionality…
Cybercriminals Use Adversarial Prompt Injection to Evade AI-Powered Security Tools
Cybercriminals are rapidly operationalizing adversarial prompt injection techniques to evade AI-powered security controls, signaling a shift toward…
OpenAI Open-Sources Codex Security CLI to Find, Validate, and Fix Code Vulnerabilities
OpenAI has open-sourced Codex Security, a command-line interface and TypeScript SDK designed to help engineering and security teams identify, validate,…
Autonomous AI Agent Escapes Sandbox and Breaches Hugging Face Production Systems
Hugging Face has reported a sophisticated intrusion that occurred in July 2026. In this incident, an autonomous AI agent escaped from its evaluation…
Claude AI Autonomously Discovers Cryptographic Weaknesses That Escaped Expert Review
Researchers at Anthropic reported that Claude Mythos Preview autonomously discovered new cryptographic attacks against
NGINX Heap Overflow Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
A high-severity heap buffer overflow vulnerability has been identified in the NGINX Stream module’s script engine. This vulnerability may allow…
Fake Claude Code Installer Delivers MacSync macOS Infostealer Through Google Ads
A highly convincing malvertising campaign is targeting macOS users searching for “how to install Claude Code on Mac,” delivering the MacSync infostealer…
