Category: GBHackers

Surveillance Firm Exploits SS7 Flaw to Track User Locations
21
Jul
2025

Surveillance Firm Exploits SS7 Flaw to Track User Locations

A sophisticated surveillance operation has been discovered exploiting critical vulnerabilities in the global telecommunications infrastructure to track mobile phone users’…

CoinDCX Hack Leads to $44.2 Million Loss
21
Jul
2025

CoinDCX Hack Leads to $44.2 Million Loss

Major Indian cryptocurrency exchange CoinDCX has confirmed a significant security breach that resulted in approximately $44 million in losses, though…

Livewire Flaw Puts Millions of Laravel Apps at Risk of RCE Attacks
21
Jul
2025

Livewire Flaw Puts Millions of Laravel Apps at Risk of RCE Attacks

A critical vulnerability discovered in Livewire, a popular full-stack framework for Laravel applications, exposes millions of web properties to unauthenticated…

Microsoft AppLocker Flaw Lets Malicious Apps Bypass Security Restrictions
21
Jul
2025

Microsoft AppLocker Flaw Lets Malicious Apps Bypass Security Restrictions

Security researchers at Varonis Threat Labs have identified a subtle but significant vulnerability in Microsoft’s AppLocker security feature that could…

7-Zip Vulnerability Lets Malicious RAR5 Files Crash Systems
21
Jul
2025

7-Zip Vulnerability Lets Malicious RAR5 Files Crash Systems

A critical denial-of-service vulnerability has been discovered in 7-Zip that allows attackers to crash systems using specially crafted RAR5 archive…

CISA Issues Alert on Microsoft SharePoint 0-Day RCE Exploited in Attacks
21
Jul
2025

CISA Issues Alert on Microsoft SharePoint 0-Day RCE Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent security alert regarding a critical zero-day vulnerability in Microsoft…

CrushFTP 0-Day Vulnerability Actively Exploited to Breach Servers
21
Jul
2025

CrushFTP 0-Day Vulnerability Actively Exploited to Breach Servers

A critical zero-day vulnerability in CrushFTP servers is being actively exploited by threat actors to compromise systems worldwide. The vulnerability,…

PoisonSeed Attack Tricks Users into Scanning Malicious MFA QR Codes
21
Jul
2025

PoisonSeed Attack Tricks Users into Scanning Malicious MFA QR Codes

A sophisticated new cyber attack technique has emerged that exploits the cross-device sign-in features of FIDO keys, effectively bypassing one…

SharePoint 0-Day RCE Flaw Actively Exploited for Full Server Takeover
21
Jul
2025

SharePoint 0-Day RCE Flaw Actively Exploited for Full Server Takeover

A devastating new SharePoint vulnerability is being actively exploited in large-scale attacks worldwide, enabling attackers to gain complete control of…

New Surge of Crypto-Jacking Hits Over 3,500 Websites
19
Jul
2025

New Surge of Crypto-Jacking Hits Over 3,500 Websites

Cybersecurity experts at cside have discovered a clever campaign that infected over 3,500 websites with nefarious JavaScript miners, marking a…

Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware
18
Jul
2025

Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware

A sophisticated threat actor, dubbed “SilverFox,” has been orchestrating a large-scale malware distribution campaign since at least June 2023, primarily…

New Veeam-Themed Phishing Attack Uses Weaponized WAV File to Target Users
18
Jul
2025

New Veeam-Themed Phishing Attack Uses Weaponized WAV File to Target Users

Cybercriminals are now leveraging seemingly innocuous voicemail notifications to distribute malware, with a recent campaign impersonating Veeam Software to exploit…