Category: GBHackers

New Mirai Botnet Variant Exploits TVT DVRs to Gain Admin Control
09
Apr
2025

New Mirai Botnet Variant Exploits TVT DVRs to Gain Admin Control

GreyNoise has noted a sharp escalation in hacking attempts targeting TVT NVMS9000 Digital Video Recorders (DVRs). The surge in malicious…

Ransomware Groups Target Organizations to Exfiltrate Data and Blackmail via Leak Site Posts
09
Apr
2025

Ransomware Groups Target Organizations to Exfiltrate Data and Blackmail via Leak Site Posts

Ransomware attacks have continued their relentless assault on organizations worldwide, with a focus on data exfiltration and subsequent blackmail through…

Ransomware Group Actively Exploits Windows CLFS Zero-Day Vulnerability
09
Apr
2025

Ransomware Group Actively Exploits Windows CLFS Zero-Day Vulnerability

Microsoft has uncovered a sophisticated ransomware campaign exploiting a zero-day vulnerability in the Windows Common Log File System (CLFS), tracked…

NCSC Issues Alert on MOONSHINE and BADBAZAAR Mobile Malware
09
Apr
2025

NCSC Issues Alert on MOONSHINE and BADBAZAAR Mobile Malware

GCHQ’s National Cyber Security Centre (NCSC), in collaboration with international and industry partners, has issued a global alert regarding two…

CISA Issues Alert on Active Exploits of Windows CLFS Vulnerability
09
Apr
2025

CISA Issues Alert on Active Exploits of Windows CLFS Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding active exploitation of a critical vulnerability in…

Apache mod_auth_openidc Flaw Lets Unauthenticated Users Access Protected Data
09
Apr
2025

Apache mod_auth_openidc Flaw Lets Unauthenticated Users Access Protected Data

A critical flaw in Apache mod_auth_openidc (versions ≤2.4.16.10) allows unauthenticated attackers to bypass authentication and access protected resources. The bug, CVE-2025-31492, patched…

AWS Systems Manager Plugin Flaw Allows Arbitrary Code Execution
09
Apr
2025

AWS Systems Manager Plugin Flaw Allows Arbitrary Code Execution

A recently discovered vulnerability in the AWS Systems Manager (SSM) Agent, a cornerstone of Amazon Web Services (AWS) used for…

Chrome Use-After-Free Vulnerability Enables Remote Code Attacks
09
Apr
2025

Chrome Use-After-Free Vulnerability Enables Remote Code Attacks

Google has rolled out a critical update for its Chrome browser, addressing a high-severity vulnerability that could allow remote code…

Windows CLFS 0-Day Vulnerability Exploited in the Wild
09
Apr
2025

Windows CLFS 0-Day Vulnerability Exploited in the Wild

Microsoft has disclosed an active exploitation of a zero-day vulnerability in the Windows Common Log File System (CLFS) driver, tracked…

Kibana Releases Security Patch to Fix Code Injection Vulnerability
09
Apr
2025

Kibana Releases Security Patch to Fix Code Injection Vulnerability

Elastic, the company behind Kibana, has released critical security updates to address a high-severity vulnerability identified as CVE-2024-12556. The flaw,…

WhatsApp for Windows Flaw Allowed Remote Code Execution via File Attachments
08
Apr
2025

WhatsApp for Windows Flaw Allowed Remote Code Execution via File Attachments

A critical vulnerability identified as CVE-2025-30401 was recently disclosed, highlighting a major security flaw in WhatsApp for Windows. This issue, which primarily…

MediaTek Releases Security Patch to Fix Vulnerabilities in Mobile and IoT Devices
07
Apr
2025

MediaTek Releases Security Patch to Fix Vulnerabilities in Mobile and IoT Devices

MediaTek, a prominent semiconductor company specializing in mobile, IoT, and multimedia chipsets, has announced the release of critical software patches…