Category: GBHackers

Chrome 142 Update Patches 20 Security Flaws Enabling Code Execution
30
Oct
2025

Chrome 142 Update Patches 20 Security Flaws Enabling Code Execution

Google has released Chrome version 142 to the stable channel, addressing multiple critical security vulnerabilities that could allow attackers to…

700+ Android Apps Harvest Banking Login Details
30
Oct
2025

700+ Android Apps Harvest Banking Login Details

A sophisticated cybercrime campaign leveraging Near Field Communication technology has exploded across multiple continents, with researchers at zLabs identifying over…

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide
30
Oct
2025

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide

A critical security vulnerability in Redis’s Lua scripting engine has left thousands of database instances vulnerable to remote code execution…

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges
30
Oct
2025

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges

Microsoft has addressed a critical privilege escalation vulnerability affecting Windows environments worldwide. Attackers can exploit misconfigured Service Principal Names (SPNs)…

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter
30
Oct
2025

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter

Microsoft addressed a critical race condition vulnerability affecting its Windows Cloud Files Minifilter driver in October 2025. The flaw, assigned…

New Malware Infects WooCommerce Sites Through Fake Plugins to Steal Credit Card Data
30
Oct
2025

New Malware Infects WooCommerce Sites Through Fake Plugins to Steal Credit Card Data

A sophisticated malware campaign is actively targeting WordPress e-commerce websites using the WooCommerce plugin, according to recent findings from the…

12 Malicious Extensions in VSCode Marketplace Steal Source Code and Exfiltrate Login Credentials
30
Oct
2025

12 Malicious Extensions in VSCode Marketplace Steal Source Code and Exfiltrate Login Credentials

The VSCode extension marketplace has become a critical vulnerability in the software supply chain. Security researchers at HelixGuard Team recently…

WordPress Plugin Vulnerability Lets Attackers Read Any Server File
30
Oct
2025

WordPress Plugin Vulnerability Lets Attackers Read Any Server File

A critical security flaw has been discovered in the Anti-Malware Security and Brute-Force Firewall WordPress plugin, putting more than 100,000…

CISA Alerts on Active Exploitation of WSUS Vulnerability
30
Oct
2025

CISA Alerts on Active Exploitation of WSUS Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about active exploitation of a critical vulnerability affecting…

PhantomRaven Attack Discovered in 126 Malicious npm Packages, Exceeding 86,000 Downloads
30
Oct
2025

PhantomRaven Attack Discovered in 126 Malicious npm Packages, Exceeding 86,000 Downloads

The global developer community has been rocked by the emergence of PhantomRaven, a far-reaching campaign involving 126 malicious npm packages…

Cybercriminals Launch Flood of Fake Forex Platforms to Harvest Logins
29
Oct
2025

Cybercriminals Launch Flood of Fake Forex Platforms to Harvest Logins

Fraudulent investment platforms impersonating legitimate cryptocurrency and forex exchanges have emerged as the primary financial threat across Asia, with organized…

Microsoft DNS Outage Disrupts Azure and Microsoft 365 Services Worldwide
29
Oct
2025

Microsoft DNS Outage Disrupts Azure and Microsoft 365 Services Worldwide

Microsoft experienced a widespread service outage on Wednesday, October 29, 2025, affecting its Azure cloud platform and Microsoft 365 suite,…