Category: GBHackers

Magecart Campaign Deploys 50+ Malicious Scripts to Hijack E-Commerce Transactions
30
Dec
2025

Magecart Campaign Deploys 50+ Malicious Scripts to Hijack E-Commerce Transactions

A sophisticated and expansive Magecart campaign has been uncovered, marking a dangerous evolution in client-side attacks. Security researchers have identified…

70,000+ MongoDB Servers Exposed After MongoBleed PoC Released
30
Dec
2025

70,000+ MongoDB Servers Exposed After MongoBleed PoC Released

Over 74,000 MongoDB database servers remain vulnerable to a critical security flaw after proof-of-concept exploit code for the MongoBleed vulnerability…

EmEditor Website Breach Used to Spread Infostealer Malware
30
Dec
2025

EmEditor Website Breach Used to Spread Infostealer Malware

The popular text editor EmEditor fell victim to a sophisticated supply chain attack between December 19-22, 2025, in which attackers…

Operational Noise in Windows Event Logs During Advanced Cyberattacks
30
Dec
2025

Operational Noise in Windows Event Logs During Advanced Cyberattacks

“Threat actors are becoming more advanced, sophisticated, and are constantly changing their tactics.” This mantra has dominated cybersecurity discourse as…

OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks
30
Dec
2025

OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks

OpenAI has deployed a significant security update to ChatGPT Atlas, its browser-based AI agent, implementing advanced defenses against prompt injection…

Hunting Windows LPE Flaws Through Kernel Drivers and Named Pipes
30
Dec
2025

Hunting Windows LPE Flaws Through Kernel Drivers and Named Pipes

Security researchers from the Whitehat School recently completed an intensive bug-hunting project focused on identifying privilege escalation (LPE) flaws in…

AI-Powered Phishing Kit Targets Microsoft Users for Credential Theft
30
Dec
2025

AI-Powered Phishing Kit Targets Microsoft Users for Credential Theft

Security researchers have uncovered a sophisticated Spanish-language phishing kit targeting Microsoft Outlook users, revealing what appears to be a coordinated…

Ubisoft Confirms Rainbow Six Siege Server Intrusion Linked to MongoBleed
30
Dec
2025

Ubisoft Confirms Rainbow Six Siege Server Intrusion Linked to MongoBleed

Ubisoft faced a coordinated security crisis today as hackers exploited the critical MongoBleed vulnerability (CVE-2025-14847) to infiltrate Rainbow Six Siege…

Silver Fox Hackers Target Indian Entities Using Income Tax Phishing Lures
29
Dec
2025

Silver Fox Hackers Target Indian Entities Using Income Tax Phishing Lures

Threat intelligence researchers at CloudSEK have uncovered a sophisticated phishing campaign targeting Indian entities using Income Tax-themed lures, attributed to…

New Bluetooth Headphone Vulnerabilities Allow Hackers to Hijack Connected Smartphones
29
Dec
2025

New Bluetooth Headphone Vulnerabilities Allow Hackers to Hijack Connected Smartphones

Security researchers have disclosed critical vulnerabilities in Airoha-based Bluetooth headphones that enable attackers to compromise connected smartphones through chained exploits….

Critical Zero-Day RCE Flaw in Networking Devices Exposes Over 70,000 Hosts
29
Dec
2025

Critical Zero-Day RCE Flaw in Networking Devices Exposes Over 70,000 Hosts

A severe unauthenticated remote code execution vulnerability has been discovered in XSpeeder networking devices, potentially affecting more than 70,000 publicly…

Hackers Launch 2.5 Million+ Malicious Requests Targeting Adobe ColdFusion Servers
29
Dec
2025

Hackers Launch 2.5 Million+ Malicious Requests Targeting Adobe ColdFusion Servers

Security researchers have uncovered a massive coordinated exploitation campaign where threat actors launched over 2.5 million malicious requests against vulnerable…