Skip to content

ADMIN.FOUNDATION

  • New Bluetooth Headphone Vulnerabilities Allow Hackers to Hijack Connected Smartphones

    ·

    Bluetooth, CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Security researchers have disclosed critical vulnerabilities in Airoha-based Bluetooth headphones that enable attackers to compromise connected smartphones through chained exploits. The three vulnerabilities CVE-2025-20700, CVE-2025-20701, and CVE-2025-20702 affect dozens of popular headphone models from Sony, Marshall, Jabra, Bose, and other manufacturers. The vulnerabilities center on missing authentication mechanisms and exposed debugging functionality in Airoha’s custom […]

    The post New Bluetooth Headphone Vulnerabilities Allow Hackers to Hijack Connected Smartphones appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 27 Malicious npm Packages Used as Phishing Infrastructure to Steal Login Credentials

    ·

    Cybersecurity researchers have disclosed details of what has been described as a “sustained and targeted” spear-phishing campaign that has published over two dozen packages to the npm registry to facilitate credential theft. The activity, which involved uploading 27 npm packages from six different npm aliases, has primarily targeted sales and commercial personnel at critical

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Silver Fox Hackers Target Indian Entities Using Income Tax Phishing Lures

    ·

    cyber security, Cyber Security News, Phishing

    Threat intelligence researchers at CloudSEK have uncovered a sophisticated phishing campaign targeting Indian entities using Income Tax-themed lures, attributed to the Chinese-aligned Silver Fox APT group. The campaign employs an advanced multi-stage malware chain delivering Valley RAT, a modular remote access trojan with capabilities for long-term persistence and dynamic payload delivery. The discovery notes the […]

    The post Silver Fox Hackers Target Indian Entities Using Income Tax Phishing Lures appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Ubisoft Confirms Rainbow Six Siege Server Intrusion Linked to MongoBleed

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Ubisoft faced a coordinated security crisis today as hackers exploited the critical MongoBleed vulnerability (CVE-2025-14847) to infiltrate Rainbow Six Siege servers, causing widespread account tampering and service disruptions. In-Game Chaos Unfolds According to CSN, Players worldwide reported extraordinary account modifications beginning early this morning. Thousands of gamers discovered their accounts credited with millions of R6 […]

    The post Ubisoft Confirms Rainbow Six Siege Server Intrusion Linked to MongoBleed appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • MongoDB Vulnerability CVE-2025-14847 Under Active Exploitation Worldwide

    ·

    A recently disclosed security vulnerability in MongoDB has come under active exploitation in the wild, with over 87,000 potentially susceptible instances identified across the world. The vulnerability in question is CVE-2025-14847 (CVSS score: 8.7), which allows an unauthenticated attacker to remotely leak sensitive data from the MongoDB server memory. It has been codenamed MongoBleed. “A flaw

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • AI-Powered Phishing Kit Targets Microsoft Users for Credential Theft

    ·

    AI, cyber security, Cyber Security News, Phishing

    Security researchers have uncovered a sophisticated Spanish-language phishing kit targeting Microsoft Outlook users, revealing what appears to be a coordinated credential-theft operation with potential AI-assisted code development. The toolkit, tracked under the operational codename “Mycelial Mage,” demonstrates evolving anti-analysis capabilities and a deliberate shift toward ephemeral exfiltration channels using Telegram and Discord. The investigation, which […]

    The post AI-Powered Phishing Kit Targets Microsoft Users for Credential Theft appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hunting Windows LPE Flaws Through Kernel Drivers and Named Pipes

    ·

    cyber security, Cyber Security News, vulnerability, Windows

    Security researchers from the Whitehat School recently completed an intensive bug-hunting project focused on identifying privilege escalation (LPE) flaws in Windows systems. The findings reveal critical vulnerabilities in two major attack surfaces: kernel drivers and named pipes areas that cybersecurity teams should prioritize immediately. The Kernel Driver Challenge Kernel drivers represent a significant security risk […]

    The post Hunting Windows LPE Flaws Through Kernel Drivers and Named Pipes appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Traditional Security Frameworks Leave Organizations Exposed to AI-Specific Attack Vectors

    ·

    In December 2024, the popular Ultralytics AI library was compromised, installing malicious code that hijacked system resources for cryptocurrency mining. In August 2025, malicious Nx packages leaked 2,349 GitHub, cloud, and AI credentials. Throughout 2024, ChatGPT vulnerabilities allowed unauthorized extraction of user data from AI memory. The result: 23.77 million secrets were leaked through AI

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks

    ·

    ChatGPT, cyber security, Cyber Security News, OpenAI, vulnerability

    OpenAI has deployed a significant security update to ChatGPT Atlas, its browser-based AI agent, implementing advanced defenses against prompt injection attacks. The update introduces an adversarially trained model combined with strengthened safeguards designed to protect users from increasingly sophisticated manipulation attempts. Prompt injection attacks represent a critical vulnerability for AI agents operating in web browsers. […]

    The post OpenAI Strengthens ChatGPT Atlas Security to Block Prompt Injection Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Operational Noise in Windows Event Logs During Advanced Cyberattacks

    ·

    Cyber Attack, cyber security, Cyber Security News, Windows

    “Threat actors are becoming more advanced, sophisticated, and are constantly changing their tactics.” This mantra has dominated cybersecurity discourse as organizations grapple with escalating breach volumes. Industry reports typically portray attackers as methodical operators executing flawless playbooks moving seamlessly from initial access to data exfiltration or ransomware deployment. The reality documented in Windows Event Logs […]

    The post Operational Noise in Windows Event Logs During Advanced Cyberattacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 618 619 620 621 622 … 1,062
Next Page

ADMIN.FOUNDATION

cybersecurity / defense / intelligence