Category: GBHackers

Critical SharePoint RCE Vulnerability Exploited via Malicious XML in Web Part
17
Jul
2025

Critical SharePoint RCE Vulnerability Exploited via Malicious XML in Web Part

A severe remote code execution (RCE) vulnerability has been discovered in Microsoft SharePoint that allows attackers to execute arbitrary code…

How Threat Actors Embed Malicious JavaScript in Vector Files
17
Jul
2025

How Threat Actors Embed Malicious JavaScript in Vector Files

Cybersecurity researchers have identified an emerging attack campaign where threat actors are weaponizing Scalable Vector Graphics (SVG) files to deliver…

0-Day RCE Flaw in SonicWall SMA Devices Exploited to Launch OVERSTEP Ransomware
17
Jul
2025

0-Day RCE Flaw in SonicWall SMA Devices Exploited to Launch OVERSTEP Ransomware

Google’s Threat Intelligence Group (GTIG) has uncovered a sophisticated cyberattack campaign targeting end-of-life SonicWall Secure Mobile Access (SMA) 100 series…

Cloudflare Confirms BGP Hijack Behind 1.1.1.1 DNS Disruption
17
Jul
2025

Cloudflare Confirms BGP Hijack Behind 1.1.1.1 DNS Disruption

Cloudflare has revealed that a 62-minute global outage of its popular 1.1.1.1 DNS resolver service on July 14, 2025, was…

Europol Takes Down NoName057(16)’s Global Network of Over 100 Servers
17
Jul
2025

Europol Takes Down NoName057(16)’s Global Network of Over 100 Servers

Operation Eastwood, coordinated by Europol and Eurojust, successfully dismantled the hacktivist collective’s global infrastructure consisting of over 100 servers worldwide….

FortiWeb Systems Compromised via Webshells After Public PoC Release
17
Jul
2025

FortiWeb Systems Compromised via Webshells After Public PoC Release

A widespread cyberattack campaign has successfully compromised dozens of Fortinet FortiWeb instances through webshell deployment, exploiting a critical vulnerability for…

SquidLoader Deploys Stealthy Malware with Near-Zero Detection to Evade Security Measures
17
Jul
2025

SquidLoader Deploys Stealthy Malware with Near-Zero Detection to Evade Security Measures

A fresh variant of SquidLoader malware has surfaced, actively entering Hong Kong institutions with previously unheard-of stealth, which is alarming…

Cracked Apps Delivering Infostealers Identified as Leading Attack Vector in June 2025
16
Jul
2025

Cracked Apps Delivering Infostealers Identified as Leading Attack Vector in June 2025

The AhnLab Security Intelligence Center (ASEC) published a thorough analysis in June 2025 that identified infostealer malware masquerading as keygens…

Hackers Leverage 607 Malicious Domains to Spread APK Malware with Remote Command Execution
16
Jul
2025

Hackers Leverage 607 Malicious Domains to Spread APK Malware with Remote Command Execution

PreCrime Labs at BforeAI discovered a complex cyber threat operation in which hackers have used a vast network of 607…

Threat Actors Weaponize WordPress Sites to Redirect Visitors to Malicious Domains
16
Jul
2025

Threat Actors Weaponize WordPress Sites to Redirect Visitors to Malicious Domains

Security researchers identified a sophisticated malware campaign targeting WordPress websites, where threat actors embedded malicious code within core files to…

NimDoor MacOS Malware Abuses Zoom SDK Updates to Steal Keychain Credentials
16
Jul
2025

NimDoor MacOS Malware Abuses Zoom SDK Updates to Steal Keychain Credentials

SentinelOne researchers have discovered NimDoor, a sophisticated MacOS malware campaign ascribed to North Korean-affiliated attackers, most likely the Stardust Chollima…

Gmail Message Exploit Triggers Code Execution in Claude, Bypassing Protections
16
Jul
2025

Gmail Message Exploit Triggers Code Execution in Claude, Bypassing Protections

A cybersecurity researcher has demonstrated how a carefully crafted Gmail message can trigger code execution through Claude Desktop, Anthropic’s AI…