Category: GBHackers

Axis Communications Vulnerability Exposes Azure Storage Credentials
13
Oct
2025

Axis Communications Vulnerability Exposes Azure Storage Credentials

Axis Communications, a leading provider of network video and surveillance solutions, has confirmed a critical vulnerability in its Autodesk® Revit®…

North Korean Hackers Target Developers with 338 Malicious Software Packages
13
Oct
2025

North Korean Hackers Target Developers with 338 Malicious Software Packages

North Korean threat actors have escalated their Contagious Interview campaign, deploying 338 malicious npm packages with over 50,000 downloads to…

Astaroth Banking Malware Exploits GitHub for Hosting Configuration Files
13
Oct
2025

Astaroth Banking Malware Exploits GitHub for Hosting Configuration Files

McAfee’s Threat Research team recently uncovered a sophisticated new Astaroth campaign that represents a significant evolution in malware infrastructure tactics….

Microsoft Finally Resolves Persistent Windows 11 ‘Update and Shut Down’ Glitch
13
Oct
2025

Microsoft Finally Resolves Persistent Windows 11 ‘Update and Shut Down’ Glitch

Microsoft has successfully addressed one of Windows 11’s most frustrating issues with its latest preview builds, finally fixing the notorious…

Happy DOM Flaw Allows Remote Code Execution Affecting 2.7 Million Users
13
Oct
2025

Happy DOM Flaw Allows Remote Code Execution Affecting 2.7 Million Users

A critical security vulnerability has been discovered in Happy DOM, a popular JavaScript library used for server-side rendering and testing…

Spanish Authorities Dismantle Advanced AI Phishing Operation GoogleXcoder
13
Oct
2025

Spanish Authorities Dismantle Advanced AI Phishing Operation GoogleXcoder

Spanish law enforcement recently dismantled an advanced AI-driven phishing network and arrested the mastermind developer known as “GoogleXcoder.” This operation…

WhatsApp Worm Targets Users with Banking Malware, Steals Login Information
13
Oct
2025

WhatsApp Worm Targets Users with Banking Malware, Steals Login Information

Cybersecurity researchers have uncovered a sophisticated new campaign targeting WhatsApp users in Brazil with self-propagating malware designed to steal banking…

Hackers Claim Massive Salesforce Breach: 1 Billion Records Stolen
13
Oct
2025

Hackers Claim Massive Salesforce Breach: 1 Billion Records Stolen

A new cybercriminal conglomerate known as Scattered Lapsus$ Hunters has emerged as a significant threat to global organizations, claiming responsibility…

Oracle E-Business Suite Flaw Enables Remote Code Execution and Data Theft
13
Oct
2025

Oracle E-Business Suite Flaw Enables Remote Code Execution and Data Theft

Oracle has issued a critical security alert for a severe vulnerability in its E-Business Suite platform that could allow attackers…

Attackers Exploit Defender for Endpoint Cloud API to Bypass Authentication and Disrupt Incident Response
13
Oct
2025

Attackers Exploit Defender for Endpoint Cloud API to Bypass Authentication and Disrupt Incident Response

Microsoft Defender for Endpoint’s cloud communication can be abused to bypass authentication, intercept commands, and spoof results, allowing attackers to…

Threat Actors Exploit Discord Webhooks for C2 via npm, PyPI, and Ruby Packages - GBHackers Security
12
Oct
2025

Threat Actors Exploit Discord Webhooks for C2 via npm, PyPI, and Ruby Packages – GBHackers Security

Threat actors are increasingly abusing Discord webhooks as covert command-and-control (C2) channels inside open-source packages, enabling stealthy exfiltration of secrets,…

New Stealit Malware Exploits Node.js Extensions to Target Windows Systems
11
Oct
2025

New Stealit Malware Exploits Node.js Extensions to Target Windows Systems

Security researchers have identified a new, active campaign of the Stealit malware that uses an experimental Node.js feature to infect…