Category: GBHackers

Celestial Stealer Attacking Browsers
06
Dec
2024

Sophisticated Celestial Stealer Attacking Browsers To Steal Login Credentials

Researchers discovered Celestial Stealer, a JavaScript-based MaaS infostealer targeting Windows systems that, evading detection with obfuscation and anti-analysis techniques, steals…

Russian Hackers Hijacked Pakistani Actor Servers For C2 Communication
06
Dec
2024

Russian Hackers Hijacked Pakistani Actor Servers For C2 Communication

Secret Blizzard, a Russian threat actor, has infiltrated 33 command-and-control (C2) servers belonging to the Pakistani group Storm-0156, which allows…

Russian BlueAlpha APT Abuses Cloudflare Tunnels To Deliver Custom Malware
06
Dec
2024

Russian BlueAlpha APT Abuses Cloudflare Tunnels To Deliver Custom Malware

BlueAlpha, a Russian state-sponsored group, is actively targeting Ukrainian individuals and organizations by using spearphishing emails with malicious HTML attachments…

06
Dec
2024

Top Five Industries Aggressively Targeted By Phishing Attacks

Researchers analyzed phishing attacks from Q3 2023 to Q3 2024 and identified the top five industries targeted by subject-customized emails,…

CapibaraZero Firmware With ESP32-S3 Hardware Enables Low Cost Flipper Zero alternative
06
Dec
2024

CapibaraZero Firmware With ESP32-S3 Hardware Enables Low Cost Flipper Zero alternative

The open-source tech landscape continues to innovate, and the release of the CapibaraZero firmware marks another breakthrough. Designed for ESP32-S3-based…

Multiple SonicWall Vulnerabilities Let Attackers Execute Remote Code
06
Dec
2024

Multiple SonicWall Vulnerabilities Let Attackers Execute Remote Code

72 Hours to Audit-Ready API Security APIs present a unique challenge in this landscape, as risk assessment and mitigation are…

Rockwell Automation Warns of Multiple Code Execution Vulnerabilities in Arena
06
Dec
2024

Rockwell Automation Warns of Multiple Code Execution Vulnerabilities in Arena

Rockwell Automation has issued a critical security advisory addressing multiple remote code execution (RCE) vulnerabilities discovered in its Arena® software….

Django Security Update, Patch for DoS & SQL Injection Vulnerability
06
Dec
2024

Django Security Update, Patch for DoS & SQL Injection Vulnerability

 The Django team has issued critical security updates for versions 5.1.4, 5.0.10, and 4.2.17. These updates address two vulnerabilities: a…

Researchers Released hrtng IDA Pro Plugin for Malware Analyst to Make Reverse Engineering Easy
06
Dec
2024

Researchers Released hrtng IDA Pro Plugin for Malware Analyst to Make Reverse Engineering Easy

The Global Research and Analysis Team (GReAT) has announced the release of hrtng, a cutting-edge plugin for IDA Pro, one of the…

Europol Dismantled 50+ Servers Used For Fake Online Shopping Websites
06
Dec
2024

Europol Dismantled 50+ Servers Used For Fake Online Shopping Websites

Europol, in collaboration with law enforcement across Europe, has taken down a sophisticated cybercriminal network responsible for large-scale online fraud….

Multiple ICS Advisories Released by CISA Detailing Exploits & Vulnerabilities
06
Dec
2024

Multiple ICS Advisories Released by CISA Detailing Exploits & Vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) has released two advisories highlighting significant security vulnerabilities in Industrial Control Systems (ICS)…

Windows NTLM Zero-Day Vulnerability Exposes User Credentials
06
Dec
2024

Windows NTLM Zero-Day Vulnerability Exposes User Credentials

A critical zero-day vulnerability affecting all modern Windows Workstation and Server versions has been discovered. The flaw enables attackers to…