A recently disclosed proof-of-concept (PoC) exploit for Microsoft Configuration Manager, previously known as System Center Configuration Manager (SCCM),…
Tag: GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Pokémon Center Data Breach Exposes Customers’ Personal and Order Data
Pokémon Center has begun notifying customers in the United Kingdom and Germany that personal information from their online orders was exposed following a…
OpenMatter Network to Take Verification Message to Belgrade Blockchain Week 2026
Melbourne, Florida, August 17th, 2026, CyberNewswire Head of Operations and Partnerships Chris Biele to lead sessions on secure scientific collaboration,…
Misconfigured Microsoft Power Pages Likely Exposed 27 Million Records to ExfilSquad
A suspected Microsoft Power Pages configuration failure has been linked to the exposure of roughly 27 million records across 13 organizations, after the…
HoneyMyte Upgrades CoolClient With Windows Kernel Rootkit to Hide Malware and C2 Connections
HoneyMyte, the China-aligned espionage group also tracked as Mustang Panda, has upgraded its CoolClient backdoor with a signed Windows kernel-mode rootkit…
Malicious Google Apps Script Profiles Crypto Victims Before Delivering Signed Windows Malware
A targeted cryptocurrency intrusion has exposed how Google-hosted Apps Script pages can be weaponized to profile prospective victims before delivering…
GeoServer Pre-Auth SQL Injection Flaw Lets Attackers Gain Remote Code Execution
A newly disclosed SQL injection vulnerability in GeoServer allows remote attackers to execute operating system commands on backend PostgreSQL hosts under…
ChainDrop Publishes Initial Malware Without Stealing a Long-Lived npm Token
The ChainDrop campaign has exposed a gap in modern software supply-chain defenses: malware no longer needs a durable npm publishing token or even an npm…
Weekly Recap! – Top 50 Biggest Cybersecurity Stories of the Week: Apple Spyware, Zoom Zero-Click RCE, VMware vCenter Exploits, Microsoft Patch Day & More
Welcome to this week’s edition of the GBHackers cybersecurity newsletter — your weekly cybersecurity bulletin covering the 50 most important stories from…
Evooo1Bot Turns Compromised Routers Into DDoS Bots and Anonymous Proxy Nodes
A newly identified Linux botnet dubbed Evooo1Bot is targeting vulnerable internet-facing routers, edge appliances, cameras, and enterprise systems,…
12 KB Backdoor Masquerades as Realtek Software and Hides C2 in Windows Whitespace
A compact, custom-built Windows backdoor that impersonates Realtek software, persists through WMI, and conceals its command-and-control address inside…
MessiahGPT Unrestricted AI Model Lets Hackers Generate Ransomware and Phishing Kits
A newly surfaced criminal AI service named MessiahGPT is being marketed on BreachForums as an unrestricted offensive model capable of generating…
Shell Investigates Data Breach After Cl0p Ransomware Claims Theft of 89GB Corporate Data
Shell has launched a cybersecurity investigation following claims by the Cl0p ransomware operation that it stole 89GB of corporate information from the…
Critical SAP Commerce Cloud RCE Vulnerability Actively Exploited in the Wild
Defused, a threat intelligence provider, reported exploitation attempts targeting CVE-2026-58231, a critical unauthenticated remote code execution…
McDonald’s, Vodafone Hit in Massive Azure Credential Theft Campaign
A threat actor using the alias “TheHatman” is allegedly selling large corporate employee directories that were allegedly extracted from Microsoft Azure…
Microsoft Makes Passkeys Default in Entra ID, Retires SMS and Voice Authentication
Microsoft will make passkeys the default authentication experience in Entra ID beginning September 1, 2026, and will fully retire its native SMS and voice…
Ruby 4.0 Marshal.load RCE Gadget Chain Exposes Critical Deserialization Risk
A newly disclosed universal deserialization gadget chain shows how a single unsafe Marshal.load operation can reportedly produce remote command execution…
Download More RAM Attack Bypasses Windows VBS, HVCI and Disables Microsoft Defender
A newly disclosed Windows attack technique, dubbed “Download More RAM,” can undermine Virtualization-Based Security (VBS), bypass Hypervisor-Protected…
Microsoft Copilot App Overhaul Merges Personal Chats and Ends Podcasts, Deep Research
Microsoft is reshaping its consumer and productivity AI strategy with a major update to its Copilot application, merging personal chat histories and…
VINclarity Publishes Investigation Into Alleged Scam and Fraud Reputation Attack Across Search and AI
Selidan, USA, August 14th, 2026, CyberNewswire New report examines suspicious Reddit activity, coordinated YouTube content and BBB Scam Tracker entries…