Category: GBHackers

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers
11
Jun
2025

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers

Microsoft confirmed a critical security vulnerability (CVE-2025-47176) in Microsoft Office Outlook, enabling attackers to execute arbitrary code. Despite the “Remote…

Windows Common Log File System Driver Flaw Allows Attackers to Escalate Privileges
11
Jun
2025

Windows Common Log File System Driver Flaw Allows Attackers to Escalate Privileges

Microsoft addressed a critical security flaw (CVE-2025-32713) in the Windows Common Log File System (CLFS) driver during its June 2025…

Windows Task Scheduler Flaw Allows Attackers to Escalate Privileges
11
Jun
2025

Windows Task Scheduler Flaw Allows Attackers to Escalate Privileges

A critical elevation of privilege vulnerability has been identified in the Windows Task Scheduler service, tracked as CVE-2025-33067. Officially published…

Multiple Microsoft Office Vulnerabilities Enable Remote Code Execution by Attackers
11
Jun
2025

Multiple Microsoft Office Vulnerabilities Enable Remote Code Execution by Attackers

Microsoft has disclosed four critical remote code execution (RCE) vulnerabilities in its Office suite as part of the June 2025…

CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory via Amplification Attack
11
Jun
2025

CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory via Amplification Attack

A high-severity vulnerability (CVE-2025-47950) in CoreDNS’s DNS-over-QUIC (DoQ) implementation enables remote attackers to crash DNS servers through stream amplification attacks….

Apache CloudStack Flaw Allows Attackers to Execute Privileged Actions
11
Jun
2025

Apache CloudStack Flaw Allows Attackers to Execute Privileged Actions

Apache CloudStack, a leading open-source cloud management platform, has announced the immediate availability of new Long-Term Support (LTS) releases—version 4.19.3.0…

HPE Aruba Network Flaw Exposes Sensitive Data to Potential Hackers
11
Jun
2025

HPE Aruba Network Flaw Exposes Sensitive Data to Potential Hackers

HPE Aruba Networking has issued a critical security advisory regarding a high-severity vulnerability in its Private 5G Core Platform. Tracked…

Multiple Chrome Flaws Enable Remote Code Execution by Attackers
11
Jun
2025

Multiple Chrome Flaws Enable Remote Code Execution by Attackers

Google Chrome’s Stable channel is being updated to version 137.0.7151.103 for Windows and Mac, with Linux receiving version 137.0.7151.103 as…

Insyde UEFI Flaw Enables Digital Certificate Injection via NVRAM Variable
11
Jun
2025

Insyde UEFI Flaw Enables Digital Certificate Injection via NVRAM Variable

A critical vulnerability (CVE-2025-4275) in Insyde H2O UEFI firmware allows attackers to bypass Secure Boot protections by injecting malicious digital…

Beware of Instagram Growth Tools Stealing Login Credentials and Sending Them to Attackers
11
Jun
2025

Beware of Instagram Growth Tools Stealing Login Credentials and Sending Them to Attackers

A discovery by Socket’s Threat Research Team has unveiled a malicious Python package named imad213, masquerading as an Instagram growth…

New Report Highlights the Internet as the Primary Threat to Industrial Automation Systems
10
Jun
2025

New Report Highlights the Internet as the Primary Threat to Industrial Automation Systems

A recent report by Kaspersky ICS CERT, released on June 10, 2025, sheds light on the persistent and evolving cyberthreats…

Microsoft Windows WebDAV 0-Day RCE Vulnerability Actively Exploited in The Wild
10
Jun
2025

Microsoft Windows WebDAV 0-Day RCE Vulnerability Actively Exploited in The Wild

A critical zero-day vulnerability in Microsoft Windows, designated CVE-2025-33053, has been actively exploited by the advanced persistent threat (APT) group…