Category: GBHackers

Bitdefender Flaw Let Attackers Trigger Server-Side Request Forgery Attacks
01
Aug
2024

Bitdefender Flaw Let Attackers Trigger Server-Side Request Forgery Attacks

A recently discovered vulnerability in Bitdefender’s GravityZone Update Server has raised significant security concerns. Identified as CVE-2024-6980, this flaw allows…

OAuth Vulnerability Exposes 1 Million Websites To XSS Attacks
01
Aug
2024

OAuth Vulnerability Exposes 1 Million Websites To XSS Attacks

Despite robust defenses, Cross-Site Scripting (XSS) remains a persistent web vulnerability, as its exploitation has become increasingly challenging. A recent…

World Wide Web Consortium Opposed Google’s Decision on Third-party cookies
31
Jul
2024

World Wide Web Consortium Opposed Google’s Decision on Third-party cookies

The World Wide Web Consortium (W3C) has strongly opposed Google’s decision to halt the deprecation of third-party cookies. The W3C…

New Specula Tool Turning Outlook as a C2 Server by Leveraging Registry
31
Jul
2024

New Specula Tool Turning Outlook as a C2 Server by Leveraging Registry

Cybersecurity firm TrustedSec has unveiled a powerful new tool called Specula. It exploits a longstanding vulnerability in Microsoft Outlook to…

Meta paid a $1.4 Billion Settlement for the Unauthorized Capture
31
Jul
2024

Meta paid a $1.4 Billion Settlement for the Unauthorized Capture

Texas Attorney General Ken Paxton has secured a $1.4 billion settlement with Meta Platforms Inc. (formerly known as Facebook) over…

Patch for Critical Flaw that Leads to Exploitation
31
Jul
2024

Patch for Critical Flaw that Leads to Exploitation

Google has rolled out a new security update for its Chrome browser, addressing several critical vulnerabilities. The update on the…

Progress Patched New MOVEit File Transfer Flaw that Allows Privilege Escalation
30
Jul
2024

Progress Patched New MOVEit File Transfer Flaw that Allows Privilege Escalation

Progress, the company behind MOVEit Transfer, has issued a critical security alert addressing a newly discovered vulnerability in its MOVEit…

Proofpoint's Email Protection Let Attackers Send Millions Of Phishing Emails
30
Jul
2024

Proofpoint’s Email Protection Let Attackers Send Millions Of Phishing Emails

Hackers use phishing emails to mislead recipients into providing personal data like usernames, passwords, credit card numbers, or social security…

AcidPour Malware Attacking Linux Data Storage Devices To Wipe Out Data
30
Jul
2024

AcidPour Malware Attacking Linux Data Storage Devices To Wipe Out Data

In March 2024, a new variant of the AcidRain wiper malware dubbed “AcidPour” was noticed. It targets Linux data storage…

DigiCert to Revoke Thousands of Certificates Following Domain Validation Error
30
Jul
2024

DigiCert to Revoke Thousands of Certificates Following Domain Validation Error

DigiCert, a leading digital certificate provider, has announced the revocation of thousands of certificates due to a domain validation error….

Threat Actots Leveraging ChatGPT To Craft Sophisticated Attacks
29
Jul
2024

Threat Actots Leveraging ChatGPT To Craft Sophisticated Attacks

Adversaries are employing Large Language Models to generate malicious code, delivered via phishing emails, for downloading diverse payloads, including Rhadamanthys,…

Ukraine Hacked Russian Banks, Leading Major Disruption
29
Jul
2024

Ukraine Hacked Russian Banks, Leading Major Disruption

A large-scale cyberattack orchestrated by Ukrainian intelligence led to disruptions in the Russian banking sector. According to a source from…