Category: GBHackers

AI-Powered Analysis Exposes Massive 5,000-Domain Chinese Malware Operation
10
Dec
2025

AI-Powered Analysis Exposes Massive 5,000-Domain Chinese Malware Operation

DomainTools Investigations has released critical findings detailing the expansion of a massive malware-delivery network targeting Chinese-speaking users worldwide. The long-running…

High-Risk Ivanti EPM Vulnerability Opens Door to Admin Session Hijacking
10
Dec
2025

High-Risk Ivanti EPM Vulnerability Opens Door to Admin Session Hijacking

A critical stored cross-site scripting (XSS) vulnerability in Ivanti Endpoint Manager (EPM) enables unauthenticated attackers to hijack administrator sessions by…

Microsoft Copilot Outage Disrupts UK and Europe With Access Failures and Broken Features
10
Dec
2025

Microsoft Copilot Outage Disrupts UK and Europe With Access Failures and Broken Features

Microsoft Copilot, the AI tool many businesses use daily, is facing significant problems today. Users in the United Kingdom and…

Custom QWCrypt Locker for Data Exfiltration and Ransomware Deployment
10
Dec
2025

Custom QWCrypt Locker for Data Exfiltration and Ransomware Deployment

Between February 2024 and August 2025, security researchers uncovered a significant campaign orchestrated by the GOLD BLADE threat group, previously…

Threat Actors Poison SEO to Spread Fake Microsoft Teams Installer
10
Dec
2025

Threat Actors Poison SEO to Spread Fake Microsoft Teams Installer

The Chinese advanced persistent threat (APT) group Silver Fox (also known as Void Arachne) has launched a sophisticated search engine…

Zoom Rooms on Windows and macOS Exposed to Privilege Escalation and Data Leakage Flaws
10
Dec
2025

Zoom Rooms on Windows and macOS Exposed to Privilege Escalation and Data Leakage Flaws

Zoom has released security patches addressing two critical vulnerabilities in Zoom Rooms deployments on both Windows and macOS. The vulnerabilities…

Makop Ransomware Targets RDP Systems Using AV Killer and Additional Exploits
10
Dec
2025

Makop Ransomware Targets RDP Systems Using AV Killer and Additional Exploits

Makop, a ransomware strain derived from Phobos, continues to pose a significant threat by exploiting exposed Remote Desktop Protocol (RDP)…

Microsoft December 2025 Patch Tuesday Fixes 56 Vulnerabilities Fixed and 3 Zero-days
10
Dec
2025

Microsoft December 2025 Patch Tuesday Fixes 56 Vulnerabilities Fixed and 3 Zero-days

CVE-2025-62554 Microsoft Office Remote Code Execution Vulnerability Critical Remote Code Execution Access of resource using incompatible type (‘type confusion’) in…

Hackers Using FLIPPER Devices to Breach IT Systems Arrested by Authorities
09
Dec
2025

Hackers Using FLIPPER Devices to Breach IT Systems Arrested by Authorities

Polish authorities have arrested three Ukrainian citizens after discovering sophisticated hacking equipment, including FLIPPER devices, during a routine traffic stop…

New Variant of Mirai Botnet 'Broadside' Launches Active Attacks on Users
09
Dec
2025

New Variant of Mirai Botnet ‘Broadside’ Launches Active Attacks on Users

Cydome’s Cybersecurity Research Team has uncovered a sophisticated new variant of the notorious Mirai botnet, designated as “Broadside,” currently executing…

Hackers Exploit Ivanti Connect Secure Vulnerabilities to Spread MetaRAT Malware
09
Dec
2025

Hackers Exploit Ivanti Connect Secure Vulnerabilities to Spread MetaRAT Malware

LAC’s Cyber Emergency Center has identified a sophisticated cyberespionage campaign targeting Japanese shipping and transportation companies. The operation, orchestrated by…

Malicious MCP Servers Enable Stealthy Prompt Injection to Drain System Resources
09
Dec
2025

Malicious MCP Servers Enable Stealthy Prompt Injection to Drain System Resources

Security researchers have uncovered critical vulnerabilities in the Model Context Protocol (MCP) sampling feature that enable malicious servers to execute…