Category: GBHackers

NVIDIA NeMo Flaw Enables Code Injection and Privilege Escalation Attacks
14
Nov
2025

NVIDIA NeMo Flaw Enables Code Injection and Privilege Escalation Attacks

NVIDIA has released critical security patches addressing two high-severity vulnerabilities in its NeMo Framework that could allow attackers to execute…

Cisco Catalyst Center Vulnerability Allows Attackers to Escalate Privileges
14
Nov
2025

Cisco Catalyst Center Vulnerability Allows Attackers to Escalate Privileges

A critical security vulnerability has been identified in the Cisco Catalyst Center Virtual Appliance that could enable authenticated, remote attackers…

Multiple Cisco Unified CCX Vulnerabilities Enable Arbitrary Command Execution by Attackers
14
Nov
2025

Multiple Cisco Unified CCX Vulnerabilities Enable Arbitrary Command Execution by Attackers

Cisco has disclosed critical security vulnerabilities affecting Cisco Unified Contact Center Express (Unified CCX) that could enable unauthenticated, remote attackers…

A piece of the code inside the vbs file with the last line commented out.
14
Nov
2025

Cybercriminals Use Fake Invoices to Deploy XWorm and Steal Login Credentials

Cybercriminals are deploying sophisticated phishing campaigns that weaponize seemingly legitimate invoice emails to distribute Backdoor.XWorm is a dangerous remote-access trojan (RAT)…

Formbook Malware Campaign Uses Malicious ZIP Files and Layered Scripting Techniques
14
Nov
2025

Formbook Malware Campaign Uses Malicious ZIP Files and Layered Scripting Techniques

A new campaign leveraging Formbook malware has emerged, showcasing sophisticated multi-stage infection tactics that underscore the importance of analyzing more…

Analysis of Multi-Stage Phishing Kits Leveraging Telegram for Credential Theft and Evasion Techniques
14
Nov
2025

Analysis of Multi-Stage Phishing Kits Leveraging Telegram for Credential Theft and Evasion Techniques

Researchers at Group-IB have uncovered a sophisticated phishing framework that demonstrates how cybercriminals are industrializing credential theft through automation, evasion…

Kraken Ransomware Targets Windows, Linux, and VMware ESXi in Enterprise Environments
14
Nov
2025

Kraken Ransomware Targets Windows, Linux, and VMware ESXi in Enterprise Environments

Cisco Talos has identified an emerging threat from Kraken, a sophisticated cross-platform ransomware group that has emerged from the remnants…

Android Photo Frame App Infects Devices With Malware, Allows Full Remote Takeover
14
Nov
2025

Android Photo Frame App Infects Devices With Malware, Allows Full Remote Takeover

A recent investigation has uncovered alarming security vulnerabilities in Android-powered digital photo frames, turning what should be a simple home…

Critical Zoho Analytics Plus Flaw Allows Attackers to Run Arbitrary SQL Queries
14
Nov
2025

Critical Zoho Analytics Plus Flaw Allows Attackers to Run Arbitrary SQL Queries

A critical unauthenticated SQL injection vulnerability has been discovered in Zoho Analytics Plus on-premise, posing a severe risk to organizations…

Washington Post Oracle E-Suite Breach Exposes Data of Over 9,000 Staff and Contractors
14
Nov
2025

Washington Post Oracle E-Suite Breach Exposes Data of Over 9,000 Staff and Contractors

The Washington Post disclosed a significant data breach affecting more than 9,700 employees and contractors following an external system compromise…

Critical Imunify360 Vulnerability Exposes Millions of Linux-Hosted Sites to RCE Attacks
14
Nov
2025

Critical Imunify360 Vulnerability Exposes Millions of Linux-Hosted Sites to RCE Attacks

A critical Remote Code Execution vulnerability has been patched in Imunify360 AV, a security product protecting approximately 56 million websites…

Lumma Stealer Leverages Browser Fingerprinting for Data Theft and Stealthy C2 Communications
14
Nov
2025

Lumma Stealer Leverages Browser Fingerprinting for Data Theft and Stealthy C2 Communications

Following the doxxing of Lumma Stealer’s alleged core members last month, the notorious infostealer initially experienced a significant decline in…