Category: GBHackers

Formbricks Signature Verification Flaw Lets Attackers Reset User Passwords
29
Sep
2025

Formbricks Signature Verification Flaw Lets Attackers Reset User Passwords

A critical vulnerability in the open source Formbricks experience management toolbox allows attackers to reset any user’s password without authorization. Published three…

New ModStealer Evades Antivirus, Targets macOS Users to Steal Sensitive Data
29
Sep
2025

New ModStealer Evades Antivirus, Targets macOS Users to Steal Sensitive Data

A sophisticated new malware strain targeting macOS users has emerged, capable of bypassing traditional antivirus solutions while specifically targeting developers…

SUSE Rancher Flaws Allow Attackers to Lock Out Admin Accounts
29
Sep
2025

SUSE Rancher Flaws Allow Attackers to Lock Out Admin Accounts

A critical security vulnerability in SUSE Rancher Manager has been discovered that enables attackers with elevated privileges to lock out administrative accounts,…

Two Dutch Teenagers Arrested for Wi-Fi Sniffing Activities
29
Sep
2025

Two Dutch Teenagers Arrested for Wi-Fi Sniffing Activities

Dutch authorities have arrested two 17-year-old boys on suspicion of “state interference” in a cybersecurity case with alleged connections to…

Threat Actors Exploiting Dynamic DNS Providers for Malicious Activity
29
Sep
2025

Threat Actors Exploiting Dynamic DNS Providers for Malicious Activity

Cybersecurity researchers have identified a growing trend where threat actors are increasingly exploiting Dynamic DNS providers to host malicious infrastructure,…

Notepad++ DLL Hijack Flaw Lets Attackers Run Malicious Code
29
Sep
2025

Notepad++ DLL Hijack Flaw Lets Attackers Run Malicious Code

Security researchers have identified a critical DLL hijacking vulnerability in Notepad++ version 8.8.3, tracked as CVE-2025-56383. This flaw enables attackers to…

Hackers Exploit Cisco ASA 0-Day to Deploy RayInitiator and LINE VIPER Malware
26
Sep
2025

Hackers Exploit Cisco ASA 0-Day to Deploy RayInitiator and LINE VIPER Malware

Security teams worldwide have been warned after attackers began exploiting a newly discovered zero-day vulnerability in Cisco Adaptive Security Appliance…

Cisco ASA 0-Day RCE Flaw Actively Exploited in the Wild
26
Sep
2025

Cisco ASA 0-Day RCE Flaw Actively Exploited in the Wild

A critical zero-day vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD)…

Malicious MCP Server Discovered Stealing Sensitive Emails Using AI Agents
26
Sep
2025

Malicious MCP Server Discovered Stealing Sensitive Emails Using AI Agents

Enterprises everywhere are embracing MCP servers—tools that grant AI assistants “god-mode” permissions to send emails, run database queries, and automate…

Apache Airflow Vulnerability Lets Read-Only Users Access Sensitive Data
26
Sep
2025

Apache Airflow Vulnerability Lets Read-Only Users Access Sensitive Data

Apache Airflow maintainers have disclosed a serious security issue, tracked as CVE-2025-54831, that allows users holding only read permissions to…

Malware Gangs Enlist Covert North Korean IT Workers in Corporate Attacks
26
Sep
2025

Malware Gangs Enlist Covert North Korean IT Workers in Corporate Attacks

Malware operators aligned with North Korea have forged a sophisticated partnership with covert IT workers to target corporate organizations worldwide….

New Botnet ‘Loader-as-a-Service’ Turns Home Routers and IoT into Mirai Farms
26
Sep
2025

New Botnet ‘Loader-as-a-Service’ Turns Home Routers and IoT into Mirai Farms

CloudSEK has uncovered a sophisticated Loader-as-a-Service botnet campaign spanning the last six months, leveraging exposed command-and-control logs to orchestrate attacks…