Category: GBHackers

CISA Alerts on Active Exploitation of MongoDB Vulnerability CVE-2025-14847
31
Dec
2025

CISA Alerts on Active Exploitation of MongoDB Vulnerability CVE-2025-14847

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical warning about the active exploitation of CVE-2025-14847, a…

Hackers Impersonated Jackson JSON Library to Infiltrate Maven Central
31
Dec
2025

Hackers Impersonated Jackson JSON Library to Infiltrate Maven Central

Security researchers have uncovered a sophisticated multi-stage malware campaign targeting Maven Central, the primary repository for Java dependencies. The attack…

Critical SmarterMail Flaw Allows Attackers to Execute Remote Code
31
Dec
2025

Critical SmarterMail Flaw Allows Attackers to Execute Remote Code

SmarterTools has issued an urgent security advisory regarding a critical vulnerability in its widely used SmarterMail software. The flaw, which…

New Spear-Phishing Attack Targeting Security Individuals in the Israel Region
30
Dec
2025

New Spear-Phishing Attack Targeting Security Individuals in the Israel Region

Israel’s National Cyber Directorate has issued an urgent alert warning of an active spear-phishing campaign specifically targeting individuals employed in…

Critical IBM API Connect Flaw Allows Attackers to Bypass Authentication
30
Dec
2025

Critical IBM API Connect Flaw Allows Attackers to Bypass Authentication

IBM has disclosed a critical authentication bypass vulnerability affecting its API Connect platform, assigning it a maximum CVSS severity score…

ESET Flags Rising Threat of AI-Driven Malware and Ransomware
30
Dec
2025

ESET Flags Rising Threat of AI-Driven Malware and Ransomware

The cybersecurity landscape entered a critical new era in the second half of 2025 as AI-powered malware transitioned from theoretical…

Hackers Promote “VOID” AV Killer Claiming Kernel-Level Defense Evasion
30
Dec
2025

Hackers Promote “VOID” AV Killer Claiming Kernel-Level Defense Evasion

A threat actor operating under the handle Crypt4You has begun advertising a sophisticated new offensive tool on underground cybercrime forums, marketed as…

Magecart Campaign Deploys 50+ Malicious Scripts to Hijack E-Commerce Transactions
30
Dec
2025

Magecart Campaign Deploys 50+ Malicious Scripts to Hijack E-Commerce Transactions

A sophisticated and expansive Magecart campaign has been uncovered, marking a dangerous evolution in client-side attacks. Security researchers have identified…

70,000+ MongoDB Servers Exposed After MongoBleed PoC Released
30
Dec
2025

70,000+ MongoDB Servers Exposed After MongoBleed PoC Released

Over 74,000 MongoDB database servers remain vulnerable to a critical security flaw after proof-of-concept exploit code for the MongoBleed vulnerability…

EmEditor Website Breach Used to Spread Infostealer Malware
30
Dec
2025

EmEditor Website Breach Used to Spread Infostealer Malware

The popular text editor EmEditor fell victim to a sophisticated supply chain attack between December 19-22, 2025, in which attackers…

Operational Noise in Windows Event Logs During Advanced Cyberattacks
30
Dec
2025

Operational Noise in Windows Event Logs During Advanced Cyberattacks

“Threat actors are becoming more advanced, sophisticated, and are constantly changing their tactics.” This mantra has dominated cybersecurity discourse as…

OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks
30
Dec
2025

OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks

OpenAI has deployed a significant security update to ChatGPT Atlas, its browser-based AI agent, implementing advanced defenses against prompt injection…