Skip to content

ADMIN.FOUNDATION

  • PoC Exploit Code Published for nginx-ui Backup Restore Security Flaw

    ·

    CVE/vulnerability, cyber security, Cyber Security News, PoC, vulnerability

    A critical security flaw in the nginx-ui backup restore mechanism, tracked as CVE-2026-33026, allows attackers to manipulate encrypted backups and execute arbitrary commands. Proof-of-Concept (PoC) exploit code has been publicly released, prompting an urgent need for administrators to update to version 2.3.4. Backup Integrity Bypass Flaw The vulnerability stems from a circular trust model where […]

    The post PoC Exploit Code Published for nginx-ui Backup Restore Security Flaw appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • North Korean Hackers Breach Axios Package, Target Windows, macOS, and Linux Systems

    ·

    cyber security, Cyber Security News, Linux, macOS, Windows

    A North Korea–nexus threat actor has hijacked the popular Axios NPM package in a high‑impact software supply chain attack that can silently backdoor Windows, macOS, and Linux systems. Between March 31, 2026, 00:21 and 03:20 UTC, attackers used a compromised maintainer account to push backdoored Axios releases 1.14.1 and 0.30.4 to NPM. The attackers changed […]

    The post North Korean Hackers Breach Axios Package, Target Windows, macOS, and Linux Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069

    ·

    Google has formally attributed the supply chain compromise of the popular Axios npm package to a financially motivated North Korean threat activity cluster tracked as UNC1069. “We have attributed the attack to a suspected North Korean threat actor we track as UNC1069,” John Hultquist, chief analyst at Google Threat Intelligence Group (GTIG), told The Hacker News in a statement. “North Korean

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • CrewAI Hit by Critical Vulnerabilities Enabling Sandbox Escape and Host Compromise

    ·

    AI, CVE/vulnerability, cyber security, Cyber Security News, Vulnerabilities, vulnerability

    CrewAI, a prominent tool used by developers to orchestrate multi-agent AI systems, is currently vulnerable to a chain of critical security flaws. By using direct or indirect prompt injection, attackers can manipulate AI agents to escape secure sandboxes and compromise the host machine. The primary threat stems from insecure fallback behaviors and configuration settings within […]

    The post CrewAI Hit by Critical Vulnerabilities Enabling Sandbox Escape and Host Compromise appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Windows 11 Update Fixes Critical Installation Loop Problem

    ·

    cyber security, Cyber Security News, Microsoft, Windows

    Microsoft has rolled out an urgent, out-of-band update to fix a frustrating installation glitch plaguing Windows 11 users. On March 31, 2026, the company released KB5086672 to rescue devices trapped in an update loop caused by the recent March 26 preview release. When users attempted to install that specific package, their systems would abruptly fail […]

    The post Windows 11 Update Fixes Critical Installation Loop Problem appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • PyPI Telnyx Python SDK Backdoored to Steal Credentials on Windows, macOS, and Linux

    ·

    cyber security, Cyber Security News, Python

    Telnyx Python SDK on PyPI, using a multi‑stage WAV steganography payload to steal credentials across Windows, macOS, and Linux systems. The backdoor lives in telnyx/_client.py and is triggered at module scope, so simply importing telnyx is enough to execute the payload before any application code runs. The rogue releases remained available for roughly 6.5 hours before PyPI quarantined them […]

    The post PyPI Telnyx Python SDK Backdoored to Steal Credentials on Windows, macOS, and Linux appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • TrueConf Vulnerability Under Active Exploitation in Southeast Asia Government Attacks

    ·

    CVE/vulnerability, cyber security, Cyber Security News

    Check Point Research has discovered a critical zero-day vulnerability in the TrueConf video conferencing client. Tracked as CVE-2026-3502 with a CVSS score of 7.8, this flaw is currently being exploited in targeted attacks against government entities in Southeast Asia. Dubbed “Operation TrueChaos,” the campaign uses the application’s trusted update system to deliver the Havoc post-exploitation […]

    The post TrueConf Vulnerability Under Active Exploitation in Southeast Asia Government Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms

    ·

    Anthropic on Tuesday confirmed that internal code for its popular artificial intelligence (AI) coding assistant, Claude Code, had been inadvertently released due to a human error. “No sensitive customer data or credentials were involved or exposed,” an Anthropic spokesperson said in a statement shared with CNBC News. “This was a release packaging issue caused by human error, not a security

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • NPM Supply Chain Attack Uses undicy-http to Deploy RAT

    ·

    cyber security, Cyber Security News

    A highly sophisticated npm supply chain attack that abuses a fake HTTP client package to deliver both a powerful RAT and a stealthy browser stealer. The malicious package, undicy-http@2.0.0, was uploaded to npm to impersonate undici, the official HTTP client widely used in Node.js projects. Despite the similar name, it contains no HTTP client logic; […]

    The post NPM Supply Chain Attack Uses undicy-http to Deploy RAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Google Cloud’s Vertex AI Hit by Vulnerability Enabling Sensitive Data Access

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Artificial intelligence agents are transforming enterprise workflows, but they also introduce dangerous new attack vectors. Security researchers from Palo Alto Networks’ Unit 42 recently uncovered a significant vulnerability in Google Cloud Platform’s (GCP) Vertex AI Agent Engine. By exploiting overly broad default permissions, attackers can deploy a malicious “double agent” to secretly exfiltrate sensitive data […]

    The post Google Cloud’s Vertex AI Hit by Vulnerability Enabling Sensitive Data Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 378 379 380 381 382 … 1,051
Next Page

ADMIN.FOUNDATION

cybersecurity / defense / intelligence