Four incidents involving OpenAI, Anthropic, Meta and the UK AI Security Institute (AISI) describe AI agents reaching systems belonging to other…
Tag: GBHackers Security | #1 Globally Trusted Cyber Security News Platform
GeoServer Zero-Day SQL Injection Vulnerability Actively Exploited to Gain RCE
A newly disclosed, unpatched SQL injection vulnerability in GeoServer is currently being actively tested across the internet. Researchers have issued…
Malicious SVG Reconstructs DCRat Archive Entirely Inside Victim’s Browser
A newly analyzed DarkCrystal RAT (DCRat) campaign shows how threat actors are turning an apparently harmless SVG attachment into a full malware-delivery…
Dysphoria Hijacks Routers, Gateways and IP Cameras to Build Massive IoT Botnet
The Dysphoria botnet has expanded into a major Internet of Things threat, with a new Shadowserver Special Report identifying approximately 296,000…
24 Malware Crypter Sellers Turn EDR Evasion and In-Memory Execution Into Paid Services
A growing underground market is turning mature malware-evasion techniques into subscription products. An analysis of 24 active crypting-service vendors…
New Bring Your Own EDR Attack Turns SentinelOne Into Trojan Horse to Bypass Windows PPL
Security researchers have introduced a new technique called “Bring Your Own EDR” (BYOEDR) that exploits legitimate SentinelOne components to bypass…
New DRAM Scrambling Attack Unlocks AMD CPU PSP, SMM and Microcode
Security researcher Christopher Domas has released a proof-of-concept project called “skitter-creek-bath-salts,” which demonstrates a vulnerability in…
Apple Warns iPhone Users in 110 Countries of Mercenary Spyware Attacks
Apple has issued a new set of high-confidence Apple Threat Notification alerts, warning selected iPhone users in 110 countries that they may be targets of…
PATCHCORD Infrastructure Hosts SuperShell C2 for Remote Commands and Webshell Management
A newly uncovered espionage operation targeting Afghan telecom providers and South Asian critical infrastructure has exposed a layered attacker ecosystem…
Hackers Steal One AI Key, Resell the Compute, and Leave Victims With a Million-Dollar Bill
A rapidly expanding financial cybercrime model called AI token jacking, where threat actors steal developer API keys for popular AI platforms, consume the…
Aeternum Hides Malware Commands on Polygon Blockchain Where Server Takedowns Can’t Erase Them
A newly analyzed malware operation called Aeternum is turning the public Polygon blockchain into a command-and-control (C2) channel, allowing attackers to…
Trezor Shipping Provider Data Breach Exposes Personal Data of 13,689 Customers
Hardware wallet manufacturer Trezor has recently disclosed a data breach at ShipMonk, a third-party shipping provider. This breach exposed the personal…
Fortinet FortiWeb and FortiClient Flaws Let Unauthenticated Attackers Gain Access and Execute Arbitrary Code
Fortinet has released security updates to address high-severity vulnerabilities in FortiWeb and FortiClient for Windows. These vulnerabilities could allow…
Beacon CRM Data Breach Exposes Customer Data via Compromised AWS Access Key
Beacon CRM has confirmed that a threat actor likely downloaded a complete copy of its customer database after gaining access to its Amazon Web Services…
New AmnesiaStealer Malware Targets macOS Users via ClickFix Attacks
A newly identified macOS infostealer, named AmnesiaStealer, targets users via ClickFix social-engineering campaigns that impersonate GitHub download…
Jewelbug Uses Public Google Docs as Malware Command-and-Control Delivery Channel
A China-linked threat group tracked as Jewelbug has turned public Google Docs into a resilient command-and-control delivery channel, embedding freshly…
Microsoft Exchange Server Vulnerabilities Allow DoS, Privilege Escalation, and RCE
Microsoft has released security updates that address six vulnerabilities in Exchange Server. These vulnerabilities include flaws that could allow remote…
Critical Dell VMware vSphere Client Flaw Lets Remote Attackers Execute Commands as Root
Dell has disclosed a significant security vulnerability in its Virtual Storage Integrator (VSI) for VMware vSphere Client. This vulnerability could allow…
Trump Administration Authorizes Cyber Operations Against Foreign Criminal Networks
The Trump administration has issued a presidential memorandum that establishes a federal program allowing vetted U.S. private-sector companies to conduct…
LiteLLM Hack Exposes Secrets From 2,488 Companies Across 118,829 CI Runner Dumps
The LiteLLM supply-chain compromise has shifted from a short-lived malicious package incident into a sprawling enterprise exposure event. Analysis of an…