Cybercriminals are rapidly rotating lure domains, cloud storage buckets and command-and-control channels, but one infrastructure component is proving far…
Tag: GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Microsoft Warns of EvilTokens AI Phishing Service Hijacking Thousands of Accounts
Microsoft has warned that the EvilTokens phishing-as-a-service platform has become a major driver of AI-enabled device-code phishing, compromising more…
Graphalgo Malware Uses Malicious Terraform Providers and Go Modules to Deploy RAT
A threat actor linked to the ongoing Graphalgo software supply-chain campaign has expanded beyond npm and PyPI, using malicious Terraform providers and Go…
ManageEngine RCE Flaw Enables SYSTEM Code Execution From Windows Login Screen
ManageEngine has addressed a critical remote code execution vulnerability in ADSelfService Plus, which could allow an unauthenticated attacker to execute…
Critical WordPress Flaw Lets Unauthenticated Attackers Execute Remote Code
WordPress has released version 7.1.2 to address a critical path-traversal vulnerability, tracked as CVE-2026-87902, which could allow unauthenticated…
Chrome Update Fixes 108 Vulnerabilities Including Critical GPU, WebGL and ANGLE Flaws
Google released Chrome version 154 to the Stable channel for Windows, macOS, and Linux, fixing 108 security vulnerabilities. This update addresses 11…
NVIDIA Infrastructure Controller Hit by 14 Flaws Enabling Code Execution and Privilege Escalation
NVIDIA has released version 2.0 of its Infrastructure Controller to address 14 vulnerabilities found in its Linux-based infrastructure management…
Microsoft SharePoint Flaw Lets Low-Privilege Attackers Execute Remote Code
A detailed Microsoft SharePoint vulnerability, tracked as CVE-2026-65660, allows authenticated, low-privileged users to execute arbitrary code on…
ChatGPT Computer History Feature Creates New Data Theft Risk for macOS Infostealers
OpenAI’s new ChatGPT Computer History feature for macOS aims to enhance AI assistance by making it more context-aware. However, it also creates a…
AI-Powered Threats Exploit Digital Trust Through Autonomous Breach Techniques
The boundary between conventional conflict and cyber sabotage is narrowing as adversaries adopt artificial intelligence to industrialize deception,…
12 Best MFA Solutions Compared (2026): Features & Pricing
Cisco Duo is the best MFA for most buyers comparing on price and speed published per-user tiers, a free small-team floor, and device trust included while…
Cisco Talos Launches CAIRN Tool to Hunt and Track AI-Integrated Malware
Cisco Talos has released CAIRN, an open-source research toolkit that helps defenders hunt, classify, and track malware that uses artificial intelligence…
Weekly Cybersecurity Newsletter – Top 50 Biggest Cybersecurity Stories of the Week
Chrome 153 & iOS 27 Patches, Check Point + Cisco ISE + FortiGate Exploited, AI Weaponized, Cyclops Blink Returns & More Welcome to this week’s edition of…
Autonomous AI Agents Hack Online Retailers for $25 Per Target, Steal 600,000 Credit Cards
A financially motivated threat actor used open-source autonomous AI agents to target hundreds of online retailers, stealing over 600,000 unexpired credit…
Fake TV Streaming Ads Deliver StreamRat Malware for Remote Android Device Hijacking
StreamRat, a newly identified Android banking trojan distributed through deceptive Meta and TikTok advertisements impersonating a free…
Researchers Find Malware That Uses AI Models Instead of Human Hackers for Control
A Windows malware implant named CLOSEDQUORUM that uses commercial large language models as an autonomous command-and-control layer, shifting tactical…
Hackers Exploit Check Point 0-Day Flaw to Execute Code on Management Servers
Check Point has issued an urgent security alert about CVE-2026-93616, a critical vulnerability involving directory traversal and arbitrary file uploads.…
Stealthy WordPress Malware Uses Must-Use Plugin and Ethereum EtherHiding for Persistent Backdoor Access
A newly analyzed WordPress malware implant combines must-use plugin persistence, hidden administrator accounts, credential theft, cross-site propagation,…
ShinyHunters Claims FBI Breach Exposed Data of All Employees and Applicants
The cybercriminal group ShinyHunters has claimed to have breached systems linked to the FBI, obtaining highly sensitive information on “almost all” FBI…
Critical F5 BIG-IP APM Flaw Actively Exploited for Remote Code Execution
F5 has disclosed a critical remote code execution vulnerability in its BIG-IP Access Policy Manager (APM) that is already being exploited in the wild.…
