Category: GBHackers

Spring Framework Flaw Enables Remote File Disclosure via “Content‑Disposition” Header
13
Jun
2025

Spring Framework Flaw Enables Remote File Disclosure via “Content‑Disposition” Header

A medium-severity reflected file download (RFD) vulnerability (CVE-2025-41234) in VMware’s Spring Framework has been patched, affecting multiple versions of the…

New Tools, Smartwatch and Car Hacking Added
13
Jun
2025

New Tools, Smartwatch and Car Hacking Added

Kali Linux, the preferred distribution for security professionals, has launched its second major release of 2025, Kali Linux 2025.2, in…

Arsen Launches AI-Powered Vishing Simulation to Help Organizations Combat Voice Phishing at Scale
13
Jun
2025

Arsen Launches AI-Powered Vishing Simulation to Help Organizations Combat Voice Phishing at Scale

Arsen, the cybersecurity startup known for defending organizations against social engineering threats, has announced the release of its new Vishing Simulation…

NIST Releases New Guide - 19 Strategies for Building Zero Trust Architectures
13
Jun
2025

NIST Releases New Guide – 19 Strategies for Building Zero Trust Architectures

The National Institute of Standards and Technology (NIST) has released groundbreaking guidance to help organizations implement Zero Trust Architectures (ZTAs)…

Amazon Cloud Cam Flaw Allows Attackers to Intercept and Modify Network Traffic
13
Jun
2025

Amazon Cloud Cam Flaw Allows Attackers to Intercept and Modify Network Traffic

A critical vulnerability (CVE-2025-6031) has been identified in Amazon Cloud Cam devices, which reached end-of-life (EOL) status in December 2022….

Microsoft Defender Spoofing Flaw Enables Privilege Escalation and AD Access
13
Jun
2025

Microsoft Defender Spoofing Flaw Enables Privilege Escalation and AD Access

A newly disclosed spoofing vulnerability (CVE-2025-26685) in Microsoft Defender for Identity (MDI) enables unauthenticated attackers to capture Net-NTLM hashes of…

HashiCorp Nomad ACL Lookup Flaw Allows Privilege Escalation
13
Jun
2025

HashiCorp Nomad ACL Lookup Flaw Allows Privilege Escalation

HashiCorp disclosed a critical security flaw (CVE-2025-4922) in its Nomad workload orchestration tool on June 11, 2025, exposing clusters to…

Fog Ransomware Uses Pentesting Tools to Steal Data and Launch Attacks
13
Jun
2025

Fog Ransomware Uses Pentesting Tools to Steal Data and Launch Attacks

Fog ransomware incidents in recent years have exposed a dangerous new trend in cybercrime: hackers are using open-source penetration testing…

TokenBreak Exploit Tricks AI Models Using Minimal Input Changes
13
Jun
2025

TokenBreak Exploit Tricks AI Models Using Minimal Input Changes

HiddenLayer’s security research team has uncovered TokenBreak, a novel attack technique that bypasses AI text classification models by exploiting tokenization…

PoC Exploit Unveiled for Windows Disk Cleanup Elevation Vulnerability
13
Jun
2025

PoC Exploit Unveiled for Windows Disk Cleanup Elevation Vulnerability

Microsoft addressed a high-severity elevation of privilege vulnerability (CVE-2025-21420) in its Windows Disk Cleanup Utility (cleanmgr.exe) during February 2025’s Patch…

Major Outage Hits Google Cloud and Linked Cloudflare Services, Thousands Affected
13
Jun
2025

Major Outage Hits Google Cloud and Linked Cloudflare Services, Thousands Affected

On June 12, 2025, concurrent infrastructure failures at Cloudflare and Google caused widespread service disruptions, highlighting vulnerabilities in modern cloud…

Threat Actors Using Bat Files to Deploy Quasar RAT
13
Jun
2025

Threat Actors Using Bat Files to Deploy Quasar RAT

Remote Access Trojans (RATs) like Quasar have been a persistent threat for years, enabling attackers to control infected systems remotely. Recent…