Category: GBHackers

Chrome Extension with 6M+ Users Found Collecting AI Chatbot Inputs
16
Dec
2025

Chrome Extension with 6M+ Users Found Collecting AI Chatbot Inputs

A popular browser extension promoted as a free and secure VPN has been discovered secretly capturing user conversations across multiple…

Jaguar Land Rover Confirms August Cyberattack Led to Employee Data Theft
16
Dec
2025

Jaguar Land Rover Confirms August Cyberattack Led to Employee Data Theft

Jaguar Land Rover (JLR) has officially confirmed that a major cyberattack in August resulted in the theft of sensitive personal…

JumpCloud Remote Assist Windows Agent Vulnerability Allows Privilege Escalation
16
Dec
2025

JumpCloud Remote Assist Windows Agent Vulnerability Allows Privilege Escalation

A critical local privilege escalation vulnerability in the JumpCloud Remote Assist for Windows agent allows any low-privileged user on a Windows system…

SantaStealer Malware Steals Sensitive Files, Credentials, and Crypto Wallet Data
16
Dec
2025

SantaStealer Malware Steals Sensitive Files, Credentials, and Crypto Wallet Data

Cybersecurity researchers at Rapid7 Labs have uncovered a sophisticated new threat: SantaStealer, a malware-as-a-service information stealer actively promoted on Telegram…

ClickFix Attack Abuses finger.exe to Execute Malicious Code
16
Dec
2025

ClickFix Attack Abuses finger.exe to Execute Malicious Code

Cybersecurity researchers have identified a resurgence in the abuse of legacy Windows protocols, specifically the finger.exe command, to facilitate social…

Android Users at Risk as Malware Poses as mParivahan and e-Challan Apps
16
Dec
2025

Android Users at Risk as Malware Poses as mParivahan and e-Challan Apps

A sophisticated Android malware campaign dubbed NexusRoute is actively targeting Indian users by impersonating the Indian Government Ministry, mParivahan, and…

Frogblight Android Malware Spoofs Government Sites to Collect SMS and Device Details
16
Dec
2025

Frogblight Android Malware Spoofs Government Sites to Collect SMS and Device Details

Kaspersky security researchers have uncovered a sophisticated Android banking Trojan called Frogblight that targets Turkish users by impersonating legitimate government…

AI Pentesting Tool That Autonomously Identifies and Exploits Code Vulnerabilities
16
Dec
2025

AI Pentesting Tool That Autonomously Identifies and Exploits Code Vulnerabilities

Keygraph has unveiled Shannon, a fully autonomous artificial intelligence pentester designed to discover and execute real exploits in web applications. Unlike…

Wireshark 4.6.2 Released With Crash Vulnerability Fixes and Protocol Updates
16
Dec
2025

Wireshark 4.6.2 Released With Crash Vulnerability Fixes and Protocol Updates

Wireshark, the world’s leading network protocol analyzer, has released version 4.6.2 with critical security updates and important bug fixes. The…

xHunt APT Exploits Microsoft Exchange and IIS to Deploy Custom Backdoors
16
Dec
2025

xHunt APT Exploits Microsoft Exchange and IIS to Deploy Custom Backdoors

xHunt, a sophisticated cyber-espionage group with a laser focus on organizations in Kuwait, has continued to demonstrate advanced capabilities in…

PCPcat Malware Leverages React2Shell Vulnerability to Breach 59,000+ Servers
15
Dec
2025

PCPcat Malware Leverages React2Shell Vulnerability to Breach 59,000+ Servers

A sophisticated attack campaign attributed to a group identifying as “PCP” has compromised 59,128 servers in less than 48 hours…

ZnDoor Malware Actively Exploits React2Shell to Breach Network Infrastructure
15
Dec
2025

ZnDoor Malware Actively Exploits React2Shell to Breach Network Infrastructure

Since December 2025, security operations centers have identified a rising threat targeting Japanese enterprises through the exploitation of React2Shell (CVE-2025-55182),…