Category: GBHackers

Magnet-Goblin
13
Mar
2024

Hackers Attacking Asset Management to Inject Malicious Code

The Andariel threat group was observed conducting persistent attacks against domestic businesses, specifically installing MeshAgent for remote screen control while…

Magnet-Goblin
13
Mar
2024

Google’s Gemini AI Vulnerability Lets Attackers Control Over Users

Researchers at HiddenLayer have unveiled a series of vulnerabilities within Google’s Gemini AI that could allow attackers to manipulate user…

Magnet-Goblin Hackers Attack Public Services Using 1-Day Exploits
13
Mar
2024

Magnet-Goblin Hackers Attack Public Services Using 1-Day Exploits

A new threat actor, Magnet Goblin, emerged by rapidly exploiting recently disclosed vulnerabilities (CVE-2023-46805 & CVE-2023-21887) in Ivanti Connect Secure…

Magnet-Goblin
13
Mar
2024

ChatGPT-Next-Web SSRF Vulnerability Let Hackers Gain Full Access to HTTP Endpoints

There are advantages to using standalone AI chatbots over cloud-based alternatives such as OpenAI; however, there are also some security…

Disguised Adobe Reader Installer That Install Infostealer Malware
13
Mar
2024

Disguised Adobe Reader Installer That Install Infostealer Malware

An infostealer disguised as the Adobe Reader installation has been observed. The file is disseminated in PDF format and prompts users…

Open Source Tool that Detects Hacking Activity
12
Mar
2024

Open Source Tool that Detects Hacking Activity

CloudGrappler is an innovative open-source tool designed to detect the presence of notorious threat actors in cloud environments. This tool…

KrustyLoader Backdoor
12
Mar
2024

French Government Hit with Severe DDoS Attack

Several French government websites faced disruptions due to a severe Distributed Denial of Service (DDoS) attack, marking a concerning escalation…

KrustyLoader Backdoor
12
Mar
2024

Hackers Deliver MSIX Malware in The Lure of Freemium

Cybercriminals usually use free apps to take advantage of the large number of people who use them freely.  The broader…

KrustyLoader Backdoor
12
Mar
2024

WordPress Plugin Flaw Exposes 2L+ Websites to XSS Attacks

Over 200,000 websites have been left vulnerable to Cross-Site Scripting (XSS) attacks due to a flaw in the Ultimate Member…

KrustyLoader Backdoor Attack Both Windows & Linux Systems
12
Mar
2024

KrustyLoader Backdoor Attack Both Windows & Linux Systems

Recent developments within the cybersecurity landscape have included the emergence of KrustyLoader, a sophisticated Rust-based backdoor that has caught the…

Hackers Compromised TeamCity Server To Install BianLian’s GO Backdoor
12
Mar
2024

Hackers Compromised TeamCity Server To Install BianLian’s GO Backdoor

BianLian attackers exploited a TeamCity vulnerability (CVE-2024-27198 or CVE-2023-42793) to gain initial access and move laterally within the network.  They…

Wordpress Builder Plugin Flaw Exposes 3,300+ Websites To XSS Attack
11
Mar
2024

WordPress Builder Plugin Flaw Exposes 3,300+ Websites To XSS Attack

A recent surge in attacks from a new malware campaign exploits a known vulnerability in the WordPress plugin Popup Builder, infecting over…