Category: GBHackers

Microsoft Exchange Server Flaws Allow Network-Based Spoofing and Data Tampering
13
Aug
2025

Microsoft Exchange Server Flaws Allow Network-Based Spoofing and Data Tampering

Microsoft has disclosed critical security vulnerabilities in Exchange Server that could enable attackers to conduct network-based spoofing attacks and tamper…

Microsoft Teams RCE Flaw Allows Hackers to Read, Modify, and Delete Messages
13
Aug
2025

Microsoft Teams RCE Flaw Allows Hackers to Read, Modify, and Delete Messages

Microsoft has disclosed a critical remote code execution vulnerability in Microsoft Teams that could allow attackers to execute malicious code…

New Charon Ransomware Uses DLL Sideloading and Anti-EDR Tactics in Targeted Attacks
13
Aug
2025

New Charon Ransomware Uses DLL Sideloading and Anti-EDR Tactics in Targeted Attacks

Trend Micro researchers have uncovered a novel ransomware family dubbed Charon, deployed in a sophisticated campaign targeting the public sector…

Critical FortiSIEM Vulnerability Allows Attackers to Execute Malicious Commands, PoC Found in the Wild
13
Aug
2025

Critical FortiSIEM Vulnerability Allows Attackers to Execute Malicious Commands, PoC Found in the Wild

Security researchers have discovered a critical vulnerability in Fortinet’s FortiSIEM platform that enables remote attackers to execute unauthorized commands without…

Malicious npm Package Lures Job Seekers and Exfiltrates Sensitive Data
13
Aug
2025

Malicious npm Package Lures Job Seekers and Exfiltrates Sensitive Data

A self-proclaimed Ukrainian Web3 team targeted a community member during an interview’s first round by instructing them to clone and…

FortiWeb Authentication Bypass Vulnerability Allows Logins as Any Existing User
13
Aug
2025

FortiWeb Authentication Bypass Vulnerability Allows Logins as Any Existing User

A critical security vulnerability in Fortinet’s FortiWeb web application firewall has been discovered that allows unauthenticated attackers to bypass authentication…

Chrome Security Update Fixes High-Severity Flaws Allowing Arbitrary Code Execution
13
Aug
2025

Chrome Security Update Fixes High-Severity Flaws Allowing Arbitrary Code Execution

Google has released a critical security update for its Chrome browser, addressing six security vulnerabilities, including three high-severity flaws that…

New Zero-Click NTLM Credential Leak Exploit Bypasses Microsoft Patch for CVE-2025-24054
13
Aug
2025

New Zero-Click NTLM Credential Leak Exploit Bypasses Microsoft Patch for CVE-2025-24054

Security researchers at Cymulate Research Labs have discovered a critical zero-click NTLM credential leakage vulnerability that successfully bypasses Microsoft’s security…

Law Enforcement Seizes BlackSuit Ransomware Servers Targeting U.S. Critical Infrastructure
12
Aug
2025

Law Enforcement Seizes BlackSuit Ransomware Servers Targeting U.S. Critical Infrastructure

The U.S. Department of Justice, in collaboration with multiple domestic and international law enforcement agencies, announced the seizure of critical…

Electronic Arts Blocks 300,000 Cheating Attempts After Battlefield 6 Beta Launch
12
Aug
2025

Electronic Arts Blocks 300,000 Cheating Attempts After Battlefield 6 Beta Launch

Electronic Arts’ SPEAR Anti-Cheat Team has released a noteworthy update, stating that since the Battlefield 6 Open Beta Early Access…

1,500 Jenkins Servers Vulnerable to Command Injection via Git Parameter Plugin
12
Aug
2025

1,500 Jenkins Servers Vulnerable to Command Injection via Git Parameter Plugin

Jenkins disclosed CVE-2025-53652, also known as SECURITY-3419, as part of a batch of 31 plugin vulnerabilities. Initially rated as medium…

PoisonSeed Phishing Kit Bypasses MFA to Steal Credentials from Users and Organizations
12
Aug
2025

PoisonSeed Phishing Kit Bypasses MFA to Steal Credentials from Users and Organizations

The threat actor known as PoisonSeed, loosely affiliated with groups like Scattered Spider and CryptoChameleon, has deployed an active phishing…