Category: GBHackers

CISA Issues Comprehensive Guide to Safeguard Network Edge Devices from Cyber Threats
12
Jun
2025

CISA Issues Comprehensive Guide to Safeguard Network Edge Devices from Cyber Threats

The Cybersecurity and Infrastructure Security Agency (CISA), in partnership with international cybersecurity authorities, announced the release of comprehensive guidance to…

Linux Malware Authors Targeting Cloud Environments with ELF Binaries
12
Jun
2025

Linux Malware Authors Targeting Cloud Environments with ELF Binaries

Unit 42, Palo Alto Networks’ threat intelligence division, has recently conducted investigations that have revealed a worrying trend: threat actors…

New Secure Boot Vulnerability Allows Attackers to Install Malware in PC and Server Boot Processes
12
Jun
2025

New Secure Boot Vulnerability Allows Attackers to Install Malware in PC and Server Boot Processes

Security researchers from Binarly have uncovered a major software vulnerability in the Unified Extensible Firmware Interface (UEFI) ecosystem, specifically impacting…

Over 40,000 Internet-Connected Cameras Exposed, Streaming Live Online
11
Jun
2025

Over 40,000 Internet-Connected Cameras Exposed, Streaming Live Online

Bitsight TRACE has uncovered more than 40,000 security cameras openly accessible on the internet—streaming live footage from homes, offices, factories,…

Interpol Dismantles 20,000 Malicious IPs and Domains Tied to 69 Malware Variants
11
Jun
2025

Interpol Dismantles 20,000 Malicious IPs and Domains Tied to 69 Malware Variants

INTERPOL’s Operation Secure has seen the takedown of more than 20,000 malicious IP addresses and domains associated with infostealer malware….

ConnectWise to Update Code Signing Certificates for ScreenConnect, Automate, and RMM
11
Jun
2025

ConnectWise to Update Code Signing Certificates for ScreenConnect, Automate, and RMM

ConnectWise, a leading provider of remote management and cyber protection tools for managed service providers (MSPs), is set to implement…

Insyde UEFI Application Vulnerability Enables Digital Certificate Injection Through NVRAM Variable
11
Jun
2025

Insyde UEFI Application Vulnerability Enables Digital Certificate Injection Through NVRAM Variable

A critical vulnerability in Insyde H2O UEFI firmware (tracked as CVE-2025-XXXX) allows attackers to bypass Secure Boot protections by injecting…

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers
11
Jun
2025

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers

Microsoft confirmed a critical security vulnerability (CVE-2025-47176) in Microsoft Office Outlook, enabling attackers to execute arbitrary code. Despite the “Remote…

Windows Common Log File System Driver Flaw Allows Attackers to Escalate Privileges
11
Jun
2025

Windows Common Log File System Driver Flaw Allows Attackers to Escalate Privileges

Microsoft addressed a critical security flaw (CVE-2025-32713) in the Windows Common Log File System (CLFS) driver during its June 2025…

Windows Task Scheduler Flaw Allows Attackers to Escalate Privileges
11
Jun
2025

Windows Task Scheduler Flaw Allows Attackers to Escalate Privileges

A critical elevation of privilege vulnerability has been identified in the Windows Task Scheduler service, tracked as CVE-2025-33067. Officially published…

Multiple Microsoft Office Vulnerabilities Enable Remote Code Execution by Attackers
11
Jun
2025

Multiple Microsoft Office Vulnerabilities Enable Remote Code Execution by Attackers

Microsoft has disclosed four critical remote code execution (RCE) vulnerabilities in its Office suite as part of the June 2025…

CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory via Amplification Attack
11
Jun
2025

CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory via Amplification Attack

A high-severity vulnerability (CVE-2025-47950) in CoreDNS’s DNS-over-QUIC (DoQ) implementation enables remote attackers to crash DNS servers through stream amplification attacks….