Category: GBHackers

Critical BIOS/UEFI Vulnerabilities Enable Attackers To Overwrite System Firmware
08
Jan
2025

Critical BIOS/UEFI Vulnerabilities Enable Attackers To Overwrite System Firmware

Researchers discovered critical BIOS/UEFI vulnerabilities in the Illumina iSeq 100 DNA sequencer, where the device utilizes an outdated firmware implementation…

PHP Servers Vulnerability Exploited To Inject PacketCrypt Cryptocurrency Miner
08
Jan
2025

PHP Servers Vulnerability Exploited To Inject PacketCrypt Cryptocurrency Miner

Researchers observed a URL attempts to exploit a server-side vulnerability by executing multiple commands through PHP’s system() function. It downloads…

Oracle WebLogic Vulneraiblity Actively Exploited in Cyber Attacks
08
Jan
2025

Oracle WebLogic Vulneraiblity Actively Exploited in Cyber Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding the active exploitation of critical vulnerabilities in various…

Casio Hacked - Servers Compromised by a Ransomware Attack
08
Jan
2025

Casio Hacked – Servers Compromised by a Ransomware Attack

Casio Computer Co., Ltd. has confirmed a significant cybersecurity breach after its servers were targeted in a sophisticated ransomware attack….

CyTwist Launches Advanced Security Solution to Identify AI-Driven Cyber Threats in Minutes
07
Jan
2025

CyTwist Launches Advanced Security Solution to Identify AI-Driven Cyber Threats in Minutes

CyTwist, a leader in advanced next-generation threat detection solutions, has launched its patented detection engine to combat the insidious rise…

New WordPress Plugin That Weaponizes Legit Sites To Steal Customer Payment Data
07
Jan
2025

New WordPress Plugin That Weaponizes Legit Sites To Steal Customer Payment Data

Cybercriminals have developed PhishWP, a malicious WordPress plugin, to facilitate sophisticated phishing attacks, which enable attackers to create convincing replicas…

EAGERBEE Malware Updated It’s Arsenal to Attack ISPs & Government Entities
07
Jan
2025

EAGERBEE Malware Updated It’s Arsenal to Attack ISPs & Government Entities

The Kaspersky researchers investigation into the EAGERBEE backdoor revealed its deployment within Middle Eastern ISPs and government entities of novel…

Hackers Weaponize Security Testing By Weaponizing npm, PyPI, & Ruby Exploit Packages
07
Jan
2025

Hackers Weaponize Security Testing By Weaponizing npm, PyPI, & Ruby Exploit Packages

Over the past year, malicious actors have been abusing OAST services for data exfiltration, C2 channel establishment, and multi-stage attacks…

New FireScam Android Malware Abusing Firebase Services To Evade Detection
07
Jan
2025

New FireScam Android Malware Abusing Firebase Services To Evade Detection

FireScam is multi-stage malware disguised as a fake “Telegram Premium” app that steals data and maintains persistence on compromised devices…

Hackers mimic Social Security Administration To Deliver ConnectWise RAT
07
Jan
2025

Hackers mimic Social Security Administration To Deliver ConnectWise RAT

A phishing campaign spoofing the United States Social Security Administration emerged in September 2024, delivering emails with embedded links to…

Patch for Critical RCE Vulnerabilities
07
Jan
2025

Patch for Critical RCE Vulnerabilities

The January 2025 Android Security Bulletin has issued important updates regarding critical vulnerabilities that affect Android devices. Users are urged…

India’s Draft Digital Personal Data Protection Rules
07
Jan
2025

India’s Draft Digital Personal Data Protection Rules

India has unveiled its draft Digital Personal Data Protection Rules, designed to operationalize the Digital Personal Data Protection Act, 2023…