Skip to content

ADMIN.FOUNDATION

  • Hackers Weaponize Venom Stealer via ClickFix Lures for Massive Data Exfiltration

    ·

    cyber security, Cyber Security News

    Hackers are increasingly turning simple social engineering tricks into full-scale data theft operations, and a newly identified malware platform called Venom Stealer is a strong example of this shift. Instead of just stealing credentials once, Venom creates a continuous data exfiltration pipeline, allowing attackers to monitor and extract sensitive information long after the initial infection. […]

    The post Hackers Weaponize Venom Stealer via ClickFix Lures for Massive Data Exfiltration appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Phorpiex Botnet Fuels Ransomware, Sextortion, and Crypto-Theft Attacks

    ·

    Botnet, cyber security, Cyber Security News, Ransomware

    Hackers are abusing the long-running Phorpiex (Trik) botnet to run large-scale ransomware, sextortion, and crypto-clipping operations, turning one infrastructure into a multi-purpose crime machine. A newer variant called Twizt gives the botnet a hybrid architecture that combines traditional command-and-control (C2) with a peer‑to‑peer (P2P) protocol, allowing infected machines to share commands and node lists directly with each […]

    The post Phorpiex Botnet Fuels Ransomware, Sextortion, and Crypto-Theft Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Attackers Abuse React2Shell Flaw to Compromise 700+ Next.js Hosts

    ·

    CVE/vulnerability, cyber security, Cyber Security News, React, vulnerability

    A massive automated cyberattack campaign is actively targeting web applications built on the popular Next.js framework to steal highly sensitive information. Cybersecurity researchers at Cisco Talos have uncovered a severe credential harvesting operation tracked as “UAT-10608” that compromised at least 766 servers worldwide within just 24 hours. The core of this attack relies on CVE-2025-55182, […]

    The post Attackers Abuse React2Shell Flaw to Compromise 700+ Next.js Hosts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • North Korea-Linked Hackers Hit Axios npm in Supply Chain Attack

    ·

    cyber security, Cyber Security News

    A major software supply chain attack has been uncovered after threat actors compromised the widely used Axios npm package, impacting developers and organizations worldwide. The incident, detected on March 31, 2026, involved the use of stolen maintainer credentials to inject malicious code into the popular HTTP client library. Axios is one of the most widely […]

    The post North Korea-Linked Hackers Hit Axios npm in Supply Chain Attack appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • OpenSSH 10.3 Released With Patch for Shell Injection and Other Security Flaws

    ·

    cyber security, Cyber Security News, New Post, vulnerability

    the OpenSSH project released version 10.3 alongside its portable version 10.3p1. Following a brief testing phase in late March, this major update addresses several important security vulnerabilities. The most critical fix prevents a dangerous shell injection flaw, making this an essential update for system administrators worldwide. OpenSSH remains the leading implementation of the SSH protocol […]

    The post OpenSSH 10.3 Released With Patch for Shell Injection and Other Security Flaws appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • North Korea Uses GitHub as C2 in New LNK Phishing Campaign

    ·

    cyber security, Cyber Security News, GitHub, Phishing

    A new phishing campaign that uses malicious Windows shortcut (LNK) files to target users in South Korea, while abusing GitHub as Command and Control (C2) infrastructure to hide its activity. The operation, linked through tooling and tradecraft to North Korea–related actors, shows a clear evolution from earlier, less obfuscated XenoRAT-delivery campaigns observed since 2024. In […]

    The post North Korea Uses GitHub as C2 in New LNK Phishing Campaign appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Top 10 Best SaaS Security Posture Management (SSPM) Tools 2026

    ·

    Cyber Security News, Top 10

    The rapid and relentless adoption of Software-as-a-Service (SaaS) applications has fundamentally transformed how businesses operate in 2026. From critical productivity suites like Microsoft 365 and Google Workspace to specialized CRM, HR, and development tools, SaaS is ubiquitous. However, this convenience comes with a significant security caveat: a vast and often unmanaged attack surface. Each SaaS […]

    The post Top 10 Best SaaS Security Posture Management (SSPM) Tools 2026 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Qilin Ransomware Deploys Malicious DLL to Disable Most EDR Defenses

    ·

    cyber security, Cyber Security News, Ransomware, Windows

    The Qilin ransomware group has developed a highly sophisticated infection chain that targets and disables over 300 endpoint detection and response (EDR) solutions. As defenders improve behavioral detection capabilities, attackers are increasingly targeting the defense layer itself during the early stages of a breach. By deploying a malicious “msimg32.dll” file, attackers can bypass traditional antivirus […]

    The post Qilin Ransomware Deploys Malicious DLL to Disable Most EDR Defenses appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Adobe Data Breach Allegedly Exposes 13 Million Support Tickets

    ·

    cyber security, Cyber Security News, Data Breach

    A threat actor known as “Mr. Raccoon” claims to have breached Adobe, stealing a massive amount of sensitive data. According to a report by International Cyber Digest, the stolen files include 13 million customer support tickets, 15,000 employee records, internal documents, and all of the company’s HackerOne bug bounty submissions. The attacker did not hack […]

    The post Adobe Data Breach Allegedly Exposes 13 Million Support Tickets appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • ‘It’s drones fighting drones’: Ukrainian officer offers inside look at roboticized war

    ·

    Threats
    Ukraine has sent hundreds of counter-drone experts to the Middle East to help the militaries of the United States, Kuwait, Qatar, Saudi Arabia and the UAE defend themselves from Iranian and Russian Shahed drones. Among them is Ukrainian Air Force Capt. Max Maslii, deputy chief of staff for the 96th Anti-Aircraft Missile Brigade, who visited Washington, D.C., in March as part of a Ukrainian defense forces delegation. In this Defense One interview, Maslii describes how Ukraine is using robot swarms, agentic AI, and frontline innovation to define the future of military operations. He outlines how U.S. and NATO militaries must change how they buy, train, and conduct operations to meet the reality of robotic warfare. 

    Watch: 

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 370 371 372 373 374 … 1,050
Next Page

ADMIN.FOUNDATION

cybersecurity / defense / intelligence