Category: GBHackers

BADBOX 2.0 Malware Hits Over a Million Android Devices in Global Cyber Threat
06
Jun
2025

BADBOX 2.0 Malware Hits Over a Million Android Devices in Global Cyber Threat

HUMAN’s Satori Threat Intelligence and Research team, in collaboration with Google, Trend Micro, and Shadowserver, has uncovered and partially disrupted…

Critical RCE Vulnerability in AWS Amplify Studio – PoC Now Public
06
Jun
2025

Critical RCE Vulnerability in AWS Amplify Studio – PoC Now Public

In May 2025, AWS disclosed a critical remote code execution (RCE) vulnerability, CVE-2025-4318, in the @aws-amplify/codegen-ui package—a core dependency for…

ANY.RUN Empowers Government Agencies with Real-Time Threat Detection
06
Jun
2025

ANY.RUN Empowers Government Agencies with Real-Time Threat Detection

Government agencies worldwide are facing an unprecedented wave of cyberattacks, with adversaries employing advanced tactics to breach critical infrastructure and…

Critical RCE Flaw Found in HPE Insight Remote Support Tool
06
Jun
2025

Critical RCE Flaw Found in HPE Insight Remote Support Tool

Hewlett-Packard Enterprise (HPE) has released a critical security bulletin addressing multiple high-impact vulnerabilities in its Insight Remote Support (IRS) software,…

Critical FreeRTOS-Plus-TCP Flaw Allows Code Execution or System Crash
06
Jun
2025

Critical FreeRTOS-Plus-TCP Flaw Allows Code Execution or System Crash

A critical memory corruption vulnerability, tracked as CVE-2025-5688, has been disclosed in FreeRTOS-Plus-TCP, Amazon’s open-source TCP/IP stack widely used in…

Chrome Extensions Flaw Exposes Sensitive API Keys, secrets and Tokens
06
Jun
2025

Chrome Extensions Flaw Exposes Sensitive API Keys, secrets and Tokens

A critical security flaw has been uncovered in numerous popular Chrome extensions, affecting millions of users worldwide by exposing sensitive…

New pathWiper Malware Targets Critical Infrastructure to Deploy Admin Tools
06
Jun
2025

New pathWiper Malware Targets Critical Infrastructure to Deploy Admin Tools

Cisco Talos has uncovered a sophisticated and destructive cyberattack targeting a critical infrastructure entity in Ukraine, deploying a previously unknown…

XWorm and AsyncRAT Delivered by Malicious Actors
06
Jun
2025

XWorm and AsyncRAT Delivered by Malicious Actors

The widespread text-sharing website Paste.ee has been used as a weapon by bad actors to spread powerful malware strains like…

PoC Exploit Released for Apache Tomcat DoS Vulnerability
06
Jun
2025

PoC Exploit Released for Apache Tomcat DoS Vulnerability

A critical memory leak vulnerability in Apache Tomcat’s HTTP/2 implementation (CVE-2025-31650) has been weaponized, enabling unauthenticated denial-of-service attacks through malformed…

China Accuses Taiwan of Operating APT Groups with US Support
05
Jun
2025

China Accuses Taiwan of Operating APT Groups with US Support

China has accused Taiwan’s Democratic Progressive Party (DPP) authorities of orchestrating a series of sophisticated cyber attacks through Advanced Persistent…

New Chaos RAT Targets Linux and Windows Users to Steal Sensitive Data
05
Jun
2025

New Chaos RAT Targets Linux and Windows Users to Steal Sensitive Data

A new wave of cyber threats has emerged with the discovery of updated variants of Chaos RAT, a notorious open-source…

Iranian APT 'BladedFeline' Remains Hidden in Networks for 8 Years
05
Jun
2025

Iranian APT ‘BladedFeline’ Remains Hidden in Networks for 8 Years

ESET researchers have uncovered the persistent activities of BladedFeline, an Iranian-aligned Advanced Persistent Threat (APT) group, which has maintained covert…