Category: GBHackers

IBM Watsonx.ai Vulnerability Let Attackers Trigger XSS Attacks
13
Jan
2025

IBM Watsonx.ai Vulnerability Let Attackers Trigger XSS Attacks

A recently disclosed vulnerability, identified as CVE-2024-49785, has been found in IBM watsonx.ai, including its integration with IBM Cloud Pak for…

Hackers Targeting Users Who Lodged Complaints On Government portal To Steal Credit Card Data
10
Jan
2025

Hackers Targeting Users Who Lodged Complaints On Government portal To Steal Credit Card Data

Fraudsters in the Middle East are exploiting a vulnerability in the government services portal. By impersonating government officials, they target…

Weaponized LDAP Exploit Deploys Information-Stealing Malware
10
Jan
2025

Weaponized LDAP Exploit Deploys Information-Stealing Malware

Cybercriminals are exploiting the recent critical LDAP vulnerabilities (CVE-2024-49112 and CVE-2024-49113) by distributing fake proof-of-concept exploits for CVE-2024-49113 (dubbed “LDAPNightmare”). …

Multi-Plugin Malware Framework Installs Backdoor on Windows
10
Jan
2025

Multi-Plugin Malware Framework Installs Backdoor on Windows

The QSC Loader service DLL named “loader.dll” leverages two distinct methods to obtain the path to the Core module code….

New NonEuclid RAT Evades Antivirus and Encrypts Critical Files
10
Jan
2025

New NonEuclid RAT Evades Antivirus and Encrypts Critical Files

A NonEuclid sophisticated C# Remote Access Trojan (RAT) designed for the.NET Framework 4.8 has been shown to pose a significant…

Juniper Networks Vulnerability Let Remote Attacker Execute Network Attacks
10
Jan
2025

Juniper Networks Vulnerability Let Remote Attacker Execute Network Attacks

Juniper Networks has disclosed a significant vulnerability affecting its Junos OS and Junos OS Evolved platforms. Identified as CVE-2025-21598, this…

Initial phishing email
10
Jan
2025

Beware! Fake Crowdstrike Recruitment Emails Spread Cryptominer Malware

CrowdStrike, a leader in cybersecurity, uncovered a sophisticated phishing campaign that leverages its recruitment branding to propagate malware disguised as…

"Siri Data Stays Private, Not Used for Ads: Apple Confirms
10
Jan
2025

“Siri Data Stays Private, Not Used for Ads: Apple Confirms

Apple Inc. says its commitment to user privacy, emphasizing that its products, such as the digital assistant Siri, are designed…

PowerSchool Hacked - Attackers Accessed Personal Data of Students and Teachers
10
Jan
2025

PowerSchool Hacked – Attackers Accessed Personal Data of Students and Teachers

Walker County Schools has reported that unauthorized access to personal data belonging to students and educators was achieved through the…

United Nations Aviation Agency Hacked Recruitment Data Exposed
10
Jan
2025

United Nations Aviation Agency Hacked Recruitment Data Exposed

The International Civil Aviation Organization (ICAO), a United Nations agency responsible for coordinating global aviation standards, has reported a significant…

Criminal IP Launches Real-Time Phishing Detection Tool on Microsoft Marketplace
09
Jan
2025

Criminal IP Launches Real-Time Phishing Detection Tool on Microsoft Marketplace

Criminal IP, a globally recognized Cyber Threat Intelligence (CTI) solution by AI SPERA, has launched its Criminal IP Malicious Link Detector add-in…

New PayPal Phishing Abusing Microsoft365 Domains for Sophisticated Attacks
09
Jan
2025

New PayPal Phishing Abusing Microsoft365 Domains for Sophisticated Attacks

A new and sophisticated phishing scam has been uncovered, leveraging Microsoft 365 domains to trick users into compromising their PayPal…