Category: GBHackers

CISA Publishes New Guidance to Strengthen Microsoft Exchange Server Security
31
Oct
2025

CISA Publishes New Guidance to Strengthen Microsoft Exchange Server Security

The Cybersecurity and Infrastructure Security Agency (CISA), working alongside the National Security Agency and international cybersecurity partners, has released a…

Multi-Threaded C2 Steals Windows Logins
30
Oct
2025

Multi-Threaded C2 Steals Windows Logins

Cybersecurity researchers have uncovered a sophisticated Windows malware family dubbed Airstalk, which leverages legitimate mobile device management infrastructure to establish…

Aembit Introduces Identity and Access Management for Agentic AI
30
Oct
2025

Aembit Introduces Identity and Access Management for Agentic AI

Silver Spring, USA/ Maryland, October 30th, 2025, CyberNewsWire The new capabilities, anchored by Blended Identity and the MCP Identity Gateway,…

Critical Blink Vulnerability Lets Attackers Crash Chromium Browsers in Seconds
30
Oct
2025

Critical Blink Vulnerability Lets Attackers Crash Chromium Browsers in Seconds

Security researchers have discovered a critical architectural flaw in the Blink rendering engine that powers Chromium-based browsers, exposing over 3…

Threat Actors Abuse AzureHound Tool to Enumerate Azure and Entra ID Environments
30
Oct
2025

Threat Actors Abuse AzureHound Tool to Enumerate Azure and Entra ID Environments

The cybersecurity landscape continues to shift toward cloud-based attacks, with threat actors increasingly exploiting legitimate security tools for malicious reconnaissance….

Lampion Stealer Resurfaces with ClickFix Attack to Steal User Credentials Stealthily
30
Oct
2025

Lampion Stealer Resurfaces with ClickFix Attack to Steal User Credentials Stealthily

A Brazilian cybercriminal group has refined its long-running malware distribution campaign by incorporating innovative social engineering techniques and multi-stage infection…

Jenkins Flaws Expose SAML Authentication Bypass and MCP Server Plugin Weaknesses
30
Oct
2025

Jenkins Flaws Expose SAML Authentication Bypass and MCP Server Plugin Weaknesses

Jenkins automation server users face critical security threats following the disclosure of 14 distinct vulnerabilities spanning multiple plugins. The security…

Chrome 142 Update Patches 20 Security Flaws Enabling Code Execution
30
Oct
2025

Chrome 142 Update Patches 20 Security Flaws Enabling Code Execution

Google has released Chrome version 142 to the stable channel, addressing multiple critical security vulnerabilities that could allow attackers to…

700+ Android Apps Harvest Banking Login Details
30
Oct
2025

700+ Android Apps Harvest Banking Login Details

A sophisticated cybercrime campaign leveraging Near Field Communication technology has exploded across multiple continents, with researchers at zLabs identifying over…

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide
30
Oct
2025

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide

A critical security vulnerability in Redis’s Lua scripting engine has left thousands of database instances vulnerable to remote code execution…

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges
30
Oct
2025

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges

Microsoft has addressed a critical privilege escalation vulnerability affecting Windows environments worldwide. Attackers can exploit misconfigured Service Principal Names (SPNs)…

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter
30
Oct
2025

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter

Microsoft addressed a critical race condition vulnerability affecting its Windows Cloud Files Minifilter driver in October 2025. The flaw, assigned…