Category: GBHackers

Malicious Fork of Legitimate Triton App Discovered on GitHub, Exposing New Malware Threat
17
Feb
2026

Malicious Fork of Legitimate Triton App Discovered on GitHub, Exposing New Malware Threat

Attackers have weaponized a malicious fork of the legitimate Triton macOS client for omg.lol, turning a trusted open-source project into…

Microsoft Teams Leverages AI Workflows with Microsoft 365 Copilot for Task Automation
17
Feb
2026

Microsoft Teams Leverages AI Workflows with Microsoft 365 Copilot for Task Automation

Microsoft is rolling out AI Workflows in the Teams Workflows app, bringing intelligent automation capabilities powered by Microsoft 365 Copilot…

Apache NiFi Vulnerabilities Expose Systems to Authorization Bypass Attacks
17
Feb
2026

Apache NiFi Vulnerabilities Expose Systems to Authorization Bypass Attacks

Apache NiFi users are being urged to upgrade after the project disclosed a high-severity authorization flaw tracked as CVE-2026-25903. The…

0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof
17
Feb
2026

0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof

A new ransomware-as-a-service (RaaS) outfit calling itself 0APT has quickly drawn attention for all the wrong reasons, after loudly claiming to have…

Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access
17
Feb
2026

Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access

The Langchain development team has released a critical security update for the @langchain/community package to address a Server-Side Request Forgery (SSRF) vulnerability….

25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes
17
Feb
2026

25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes

The three major cloud-based password managers, such as Bitwarden, LastPass, and Dashlane, collectively serve approximately 60 million users. Despite marketing…

CleanTalk Plugin for WordPress Exposes Sites to Authorization Bypass via Reverse DNS
16
Feb
2026

CleanTalk Plugin for WordPress Exposes Sites to Authorization Bypass via Reverse DNS

A critical vulnerability in the popular CleanTalk Spam Protection plugin for WordPress exposes websites to complete takeover. Tracked as CVE-2026-1490,…

Joomla Vulnerabilities in Novarain/Tassos Framework Expose SQL Injection Risks
16
Feb
2026

Joomla Vulnerabilities in Novarain/Tassos Framework Expose SQL Injection Risks

Joomla site owners using extensions that bundle the Novarain/Tassos Framework are being warned after a source code review identified multiple…

Windows 11 KB5077181 Update Triggers Infinite Restart Loop on Some Devices
16
Feb
2026

Windows 11 KB5077181 Update Triggers Infinite Restart Loop on Some Devices

Microsoft’s February 10, 2026, Patch Tuesday cumulative update KB5077181 for Windows 11 is being linked to severe boot failures on some devices,…

Noodlophile Malware Authors Use Fake Job Ads and Phishing Schemes to Evolve Tactics
16
Feb
2026

Noodlophile Malware Authors Use Fake Job Ads and Phishing Schemes to Evolve Tactics

Hey folks in the threat‑hunting world looks like our coverage of the Noodlophile infostealer has struck a nerve with its creators. The…

Fake Shops Target Winter Olympics 2026 Fans for Attacks
16
Feb
2026

Fake Shops Target Winter Olympics 2026 Fans for Attacks

The excitement surrounding the Milano-Cortina 2026 Winter Olympics has given cybercriminals a new opportunity to trick fans. The adorable stoat…

ZeroDayRAT Exploit Targets Android & iOS, Enabling Real-Time Surveillance and Massive Data Theft
16
Feb
2026

ZeroDayRAT Exploit Targets Android & iOS, Enabling Real-Time Surveillance and Massive Data Theft

A newly surfaced mobile spyware platform called ZeroDayRAT is rapidly gaining traction across underground Telegram channels. ZeroDayRAT is designed to give attackers complete…