Category: GBHackers

xHunt APT Exploits Microsoft Exchange and IIS to Deploy Custom Backdoors
16
Dec
2025

xHunt APT Exploits Microsoft Exchange and IIS to Deploy Custom Backdoors

xHunt, a sophisticated cyber-espionage group with a laser focus on organizations in Kuwait, has continued to demonstrate advanced capabilities in…

PCPcat Malware Leverages React2Shell Vulnerability to Breach 59,000+ Servers
15
Dec
2025

PCPcat Malware Leverages React2Shell Vulnerability to Breach 59,000+ Servers

A sophisticated attack campaign attributed to a group identifying as “PCP” has compromised 59,128 servers in less than 48 hours…

ZnDoor Malware Actively Exploits React2Shell to Breach Network Infrastructure
15
Dec
2025

ZnDoor Malware Actively Exploits React2Shell to Breach Network Infrastructure

Since December 2025, security operations centers have identified a rising threat targeting Japanese enterprises through the exploitation of React2Shell (CVE-2025-55182),…

Microsoft December 2025 Security Updates Disrupt MSMQ Functionality on IIS
15
Dec
2025

Microsoft December 2025 Security Updates Disrupt MSMQ Functionality on IIS

Microsoft’s December 2025 security update has introduced a significant compatibility issue affecting Message Queuing (MSMQ) functionality across Windows Server and…

CISA Alerts on Actively Exploited Google Chromium Zero-Day Flaw
15
Dec
2025

CISA Alerts on Actively Exploited Google Chromium Zero-Day Flaw

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a critical zero-day vulnerability in Google Chrome…

CISA Adds Actively Exploited Sierra Router Flaw to KEV Catalog
15
Dec
2025

CISA Adds Actively Exploited Sierra Router Flaw to KEV Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting Sierra Wireless AirLink ALEOS routers to its…

Windows Remote Access Connection Manager Flaw Allows Arbitrary Code Execution
15
Dec
2025

Windows Remote Access Connection Manager Flaw Allows Arbitrary Code Execution

Security researchers have uncovered a critical unpatched vulnerability in the c This discovery emerged during an investigation of CVE-2025-59230, which…

Gentlemen Ransomware Emerges as a Threat to Corporate Networks
15
Dec
2025

Gentlemen Ransomware Emerges as a Threat to Corporate Networks

A sophisticated new ransomware group known as “Gentlemen” has emerged as a significant threat to global enterprise security, employing a…

Critical pgAdmin Flaw Allows Attackers to Execute Shell Commands on Host
15
Dec
2025

Critical pgAdmin Flaw Allows Attackers to Execute Shell Commands on Host

A new critical vulnerability in pgAdmin 4 allows remote attackers to bypass security filters and execute arbitrary shell commands on…

Critical Plesk Vulnerability Allows Users to Gain Root-Level Access
15
Dec
2025

Critical Plesk Vulnerability Allows Users to Gain Root-Level Access

A critical security vulnerability has been discovered in Plesk, a widely used web hosting control panel, that enables unauthorised users…

NVIDIA Merlin Vulnerabilities Allows Malicious Code Execution and DoS Attacks
15
Dec
2025

NVIDIA Merlin Vulnerabilities Allows Malicious Code Execution and DoS Attacks

NVIDIA has released urgent security patches for its Merlin machine learning framework after discovering two high-severity deserialization vulnerabilities that could…

New VolkLocker Ransomware Variant Targets Both Linux and Windows Systems
15
Dec
2025

New VolkLocker Ransomware Variant Targets Both Linux and Windows Systems

CyberVolk, a pro-Russia hacktivist group first documented in late 2024, has resurfaced with a sophisticated ransomware-as-a-service (RaaS) offering called VolkLocker…