Category: GBHackers

New ClickFix Attack Imitates Ministry of Defence Website to Target Windows & Linux Systems
06
May
2025

New ClickFix Attack Imitates Ministry of Defence Website to Target Windows & Linux Systems

A newly identified cyberattack campaign has surfaced, leveraging the recognizable branding of India’s Ministry of Defence to distribute cross-platform malware…

Researcher Exploits Regex Filter Flaw to Gain Remote Code Execution
06
May
2025

Researcher Exploits Regex Filter Flaw to Gain Remote Code Execution

Target application included a username field restricted by a frontend regex filter (/^[a-zA-Z0-9]{1,20}$/), designed to accept only alphanumeric characters. While…

New GPOHound Tool Analyzes Active Directory GPOs for Escalation Risks
06
May
2025

New GPOHound Tool Analyzes Active Directory GPOs for Escalation Risks

Security researchers have released GPOHound, a powerful open-source tool designed to analyze Group Policy Objects (GPOs) in Active Directory environments for…

Windows Deployment Services Hit by 0-Click UDP Flaw Leading to System Failures
06
May
2025

Windows Deployment Services Hit by 0-Click UDP Flaw Leading to System Failures

A newly discovered pre-authentication denial-of-service (DoS) vulnerability in Microsoft’s Windows Deployment Services (WDS) exposes enterprise networks to instant system crashes via malicious…

CISA Issues Alert on Langflow Vulnerability Actively Exploited in Attacks
06
May
2025

CISA Issues Alert on Langflow Vulnerability Actively Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent alert regarding an actively exploited vulnerability in Langflow, a popular…

06
May
2025

Critical Microsoft Zero-Click Telnet Vulnerability Enables Credential Theft Without User Action

A critical vulnerability has been uncovered in Microsoft’s Telnet Client (telnet.exe), enabling attackers to steal Windows credentials from unsuspecting users,…

MediaTek Fixes Multiple Security Flaws in Smartphone, Tablet, and TV Chipsets
05
May
2025

MediaTek Fixes Multiple Security Flaws in Smartphone, Tablet, and TV Chipsets

Why Application Security is Non-Negotiable The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application…

Hackers Selling SS7 0-Day Exploit on Dark Web for $5,000
05
May
2025

Hackers Selling SS7 0-Day Exploit on Dark Web for $5,000

A newly discovered dark web listing claims to sell a critical SS7 protocol exploit for $5,000, raising alarms about global…

LUMMAC.V2 Stealer Uses ClickFix Technique to Deceive Users into Executing Malicious Commands
05
May
2025

LUMMAC.V2 Stealer Uses ClickFix Technique to Deceive Users into Executing Malicious Commands

The LUMMAC.V2 infostealer malware, also known as Lumma or Lummastealer, has emerged as a significant threat, employing the cunning “ClickFix”…

Hackers Use Pahalgam Attack-Themed Decoys to Target Indian Government Officials
05
May
2025

Hackers Use Pahalgam Attack-Themed Decoys to Target Indian Government Officials

The Seqrite Labs APT team has uncovered a sophisticated cyber campaign by the Pakistan-linked Transparent Tribe (APT36) targeting Indian Government…

Hackers Target HR Departments with Fake Resumes to Spread More_eggs Malware
05
May
2025

Hackers Target HR Departments with Fake Resumes to Spread More_eggs Malware

The financially motivated threat group Venom Spider, also tracked as TA4557, has shifted its focus to corporate Human Resources (HR)…

Hackers Exploit 21 Apps to Take Full Control of E-Commerce Servers
05
May
2025

Hackers Exploit 21 Apps to Take Full Control of E-Commerce Servers

Cybersecurity firm Sansec has uncovered a sophisticated supply chain attack that has compromised 21 popular e-commerce applications, granting hackers full…