Category: GBHackers

Microsoft Brokering File System Vulnerability Enables Local Privilege Escalation
22
Dec
2025

Microsoft Brokering File System Vulnerability Enables Local Privilege Escalation

Microsoft has addressed a critical use-after-free vulnerability in its Brokering File System (BFS) driver that could allow attackers to escalate…

SideWinder APT Launches Cyberattacks on Indian Entities Posing as the Income Tax Department
22
Dec
2025

SideWinder APT Launches Cyberattacks on Indian Entities Posing as the Income Tax Department

Zscaler Threat Hunting has identified a sophisticated espionage campaign targeting Indian entities through fraudulent “Income Tax Department” portals, representing a…

Blind Eagle Hackers Target Government Agencies Using PowerShell Scripts
22
Dec
2025

Blind Eagle Hackers Target Government Agencies Using PowerShell Scripts

Colombian government institutions are facing a sophisticated multi-stage cyberattack campaign orchestrated by the BlindEagle threat group, which leveraged compromised internal…

Nissan Discloses Data Breach Linked to Compromised Red Hat Infrastructure
22
Dec
2025

Nissan Discloses Data Breach Linked to Compromised Red Hat Infrastructure

Nissan Motor Co., Ltd. has disclosed a significant data breach affecting approximately 21,000 customers of Nissan Fukuoka Sales Co., Ltd….

Bangladeshi Operator of Fake ID Marketplaces Charged in International Fraud Case
21
Dec
2025

Bangladeshi Operator of Fake ID Marketplaces Charged in International Fraud Case

A 29-year-old Bangladeshi man has been indicted on federal charges for operating online marketplaces that sold fraudulent identity document templates…

Criminal IP and Palo Alto Networks Cortex XSOAR Integrate to Deliver AI-Driven Exposure Intelligence
20
Dec
2025

Criminal IP and Palo Alto Networks Cortex XSOAR Integrate to Deliver AI-Driven Exposure Intelligence

Torrance, United States / California, December 19th, 2025, CyberNewsWire Criminal IP (criminalip.io), the AI-powered threat intelligence and attack surface monitoring platform…

Microsoft Teams Outage Causes Global Messaging Delays and Service Interruptions
20
Dec
2025

Microsoft Teams Outage Causes Global Messaging Delays and Service Interruptions

Microsoft Teams users worldwide experienced significant service disruptions on December 20, 2025, as the collaboration platform encountered widespread issues affecting…

25,000+ FortiCloud SSO-Enabled Systems Vulnerable to Remote Exploitation
20
Dec
2025

25,000+ FortiCloud SSO-Enabled Systems Vulnerable to Remote Exploitation

The Shadowserver Foundation has identified over 25,000 internet-facing Fortinet devices globally with FortiCloud Single Sign-On (SSO) functionality enabled, raising concerns…

Scripted Sparrow Utilizes Automation to Generate and Dispatch Attack Messages
20
Dec
2025

Scripted Sparrow Utilizes Automation to Generate and Dispatch Attack Messages

Scripted Sparrow, a prolific Business Email Compromise (BEC) collective with members spanning three continents, has raised significant concerns among cybersecurity…

New Kibana Vulnerabilities Allow Attackers to Embed Malicious Scripts
20
Dec
2025

New Kibana Vulnerabilities Allow Attackers to Embed Malicious Scripts

Elastic has released critical security updates to address a dangerous cross-site scripting (XSS) vulnerability affecting multiple versions of Kibana. The…

Iranian APT Targeting Networks and Critical Infrastructure Organizations
20
Dec
2025

Iranian APT Targeting Networks and Critical Infrastructure Organizations

Iranian state-sponsored threat actors, previously thought to have gone dormant, have resurfaced with sophisticated new malware campaigns targeting critical infrastructure…

Apache Log4j Flaw Enables Interception of Sensitive Logging Data
20
Dec
2025

Apache Log4j Flaw Enables Interception of Sensitive Logging Data

The Apache Software Foundation has released a critical security update for its widely used Log4j logging library. A newly discovered…