Skip to content

ADMIN.FOUNDATION

  • Malicious Chrome Extension Exposes Facebook Business Manager Accounts to 2FA and Analytics Theft

    ·

    Chrome, cyber security, Cyber Security News, FACEBOOK

    A malicious Google Chrome extension, CL Suite by @CLMasters, which masquerades as a productivity tool for Meta Business Suite while silently stealing sensitive authentication data. Although the extension markets itself as a solution to “remove verification popups” and “generate 2FA codes,” its actual function is to exfiltrate Two-Factor Authentication (2FA) seeds, one-time codes, and detailed business […]

    The post Malicious Chrome Extension Exposes Facebook Business Manager Accounts to 2FA and Analytics Theft appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • QR Codes Exploited for Phishing Attacks and Malware Spread on Mobile Devices

    ·

    cyber security, Cyber Security News, Malware, Phishing

    QR code abuse has become a significant mobile threat vector, with attackers using it to deliver phishing pages, trigger in‑app account takeovers, and distribute malicious applications outside official app stores. Because people routinely scan QR codes for payments, menus and app downloads, these attacks often bypass enterprise protections by shifting the interaction onto less‑protected personal […]

    The post QR Codes Exploited for Phishing Attacks and Malware Spread on Mobile Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Apple Tests End-to-End Encrypted RCS Messaging in iOS 26.4 Developer Beta

    ·

    Apple on Monday released a new developer beta of iOS and iPadOS with support for end-to-end encryption (E2EE) in Rich Communications Services (RCS) messages. The feature is currently available for testing in iOS and iPadOS 26.4 Beta, and is expected to be shipped to customers in a future update for iOS, iPadOS, macOS, and watchOS. “End-to-end encryption is in beta and is not available for all

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof

    ·

    cyber security, Cyber Security News, Ransomware

    A new ransomware-as-a-service (RaaS) outfit calling itself 0APT has quickly drawn attention for all the wrong reasons, after loudly claiming to have compromised around 200 victims while failing to provide any verifiable proof of compromise. Emerging on or around January 28, 2026, the group launched a dark web data leak site (DLS) and rapidly populated it with […]

    The post 0APT Ransomware Group Claims 200 Victims, Fails to Provide Proof appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    The Langchain development team has released a critical security update for the @langchain/community package to address a Server-Side Request Forgery (SSRF) vulnerability. Identified as CVE-2026-26019, this flaw exists within the RecursiveUrlLoader class, a utility used for web crawling. If left unpatched, the vulnerability allows attackers to bypass domain restrictions and force the application to access internal network resources or […]

    The post Langchain Community SSRF Bypass Vulnerability Exposes Internal Services to Unauthorized Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Threat Actors Target OpenClaw Configurations to Steal Login Credentials

    ·

    cyber security, Cyber Security News

    A new wave of infostealer activity targeting OpenClaw, an emerging AI assistant platform. The discovery marks a major turning point in the behavior of infostealer malware moving beyond browser and cryptocurrency theft to focus on AI configuration environments that hold deep digital identities and sensitive metadata. Hudson Rock detected a live infection where an infostealer successfully […]

    The post Threat Actors Target OpenClaw Configurations to Steal Login Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes

    ·

    CVE/vulnerability, cyber security, Cyber Security News, Password, Vulnerabilities, vulnerability

    The three major cloud-based password managers, such as Bitwarden, LastPass, and Dashlane, collectively serve approximately 60 million users. Despite marketing claims of “zero-knowledge encryption,” the research team demonstrated that these platforms contained vulnerabilities allowing attackers to view or modify stored credentials. The findings challenge the industry standard assumption that providers cannot access user data even […]

    The post 25 Vulnerabilities Found in Cloud Password Managers, Exposing Users to Unauthorized Access and Changes appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hackers Abuse ScreenConnect to Hijack PCs via Fake Social Security Emails

    ·

    Cyber Attack, cybersecurity, Forcepoint, Iran, Malware, SCAM, ScreenConnect, Security, Social Security, Windows, Windows SmartScreen
    Forcepoint X-labs reveals how hackers use fake SSA emails and hijacked ScreenConnect tools to bypass Windows security to target UK, US, and Canadian organisations.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Infostealer Steals OpenClaw AI Agent Configuration Files and Gateway Tokens

    ·

    Cybersecurity researchers disclosed they have detected a case of an information stealer infection successfully exfiltrating a victim’s OpenClaw (formerly Clawdbot and Moltbot) configuration environment. “This finding marks a significant milestone in the evolution of infostealer behavior: the transition from stealing browser credentials to harvesting the ‘souls’ and identities of personal AI [

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Study Uncovers 25 Password Recovery Attacks in Major Cloud Password Managers

    ·

    A new study has found that multiple cloud-based password managers, including Bitwarden, Dashlane, and LastPass, are susceptible to password recovery attacks under certain conditions. “The attacks range in severity from integrity violations to the complete compromise of all vaults in an organization,” researchers Matteo Scarlata, Giovanni Torrisi, Matilda Backendal, and Kenneth G. Paterson said.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 492 493 494 495 496 … 1,053
Next Page

ADMIN.FOUNDATION

cybersecurity / defense / intelligence