Category: GBHackers

New 'ClickFix' Malware Payload Targets Browser Cache, Warns Cybersecurity Experts
17
Feb
2026

New ‘ClickFix’ Malware Payload Targets Browser Cache, Warns Cybersecurity Experts

Threat actors on underground forums are now promoting a new “ClickFix” payload-delivery technique that hides malware in the browser cache…

New Sophisticated 'Carding-as-a-Service' Marketplaces Fuel Surge in Credit Card Fraud
17
Feb
2026

New Sophisticated ‘Carding-as-a-Service’ Marketplaces Fuel Surge in Credit Card Fraud

Credit card fraud has matured into a service-based criminal economy where stolen cards, malware, and support are bundled and sold like commercial…

DigitStealer Infostealer Targets macOS, Revealing Critical Infrastructure Vulnerabilities
17
Feb
2026

DigitStealer Infostealer Targets macOS, Revealing Critical Infrastructure Vulnerabilities

DigitStealer is an increasingly active macOS‑targeting infostealer whose predictable command‑and‑control (C2) setup exposes structural weaknesses in its operators’ infrastructure decisions….

Firefox v147.0.3 Released with Critical Fix for Heap Buffer Overflow Vulnerability
17
Feb
2026

Firefox v147.0.3 Released with Critical Fix for Heap Buffer Overflow Vulnerability

Mozilla has released an emergency security update for Firefox, addressing a critical heap buffer overflow vulnerability in the libvpx library….

Malicious Fork of Legitimate Triton App Discovered on GitHub, Exposing New Malware Threat
17
Feb
2026

Malicious Fork of Legitimate Triton App Discovered on GitHub, Exposing New Malware Threat

Attackers have weaponized a malicious fork of the legitimate Triton macOS client for omg.lol, turning a trusted open-source project into…

Microsoft Teams Leverages AI Workflows with Microsoft 365 Copilot for Task Automation
17
Feb
2026

Microsoft Teams Leverages AI Workflows with Microsoft 365 Copilot for Task Automation

Microsoft is rolling out AI Workflows in the Teams Workflows app, bringing intelligent automation capabilities powered by Microsoft 365 Copilot…

Apache NiFi Vulnerabilities Expose Systems to Authorization Bypass Attacks
17
Feb
2026

Apache NiFi Vulnerabilities Expose Systems to Authorization Bypass Attacks

Apache NiFi users are being urged to upgrade after the project disclosed a high-severity authorization flaw tracked as CVE-2026-25903. The…

0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof
17
Feb
2026

0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof

A new ransomware-as-a-service (RaaS) outfit calling itself 0APT has quickly drawn attention for all the wrong reasons, after loudly claiming to have…

Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access
17
Feb
2026

Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access

The Langchain development team has released a critical security update for the @langchain/community package to address a Server-Side Request Forgery (SSRF) vulnerability….

25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes
17
Feb
2026

25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes

The three major cloud-based password managers, such as Bitwarden, LastPass, and Dashlane, collectively serve approximately 60 million users. Despite marketing…

CleanTalk Plugin for WordPress Exposes Sites to Authorization Bypass via Reverse DNS
16
Feb
2026

CleanTalk Plugin for WordPress Exposes Sites to Authorization Bypass via Reverse DNS

A critical vulnerability in the popular CleanTalk Spam Protection plugin for WordPress exposes websites to complete takeover. Tracked as CVE-2026-1490,…

Joomla Vulnerabilities in Novarain/Tassos Framework Expose SQL Injection Risks
16
Feb
2026

Joomla Vulnerabilities in Novarain/Tassos Framework Expose SQL Injection Risks

Joomla site owners using extensions that bundle the Novarain/Tassos Framework are being warned after a source code review identified multiple…