Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Sep 5

12-Year-Old PostgreSQL Flaw Lets Attackers Execute Code and Take Over Database Servers

A critical PostgreSQL vulnerability dubbed PostGREShell could allow low-privileged replication accounts to execute attacker-controlled code, escalate to data...

1 IOC

GBHackers → Details

GBHackers general Palo Alto Networks Intel Sep 5

Hackers Use Frontier AI Agents to Breach Enterprise Network in Under 10 Hours

A threat actor used frontier artificial-intelligence models and attack-specific agentic frameworks to breach an enterprise environment, harvest root credenti...

GBHackers → Details

GBHackers general Sep 5

CARS24 Data Breach Exposes 3,100 Customer Records, Leads Allegedly Sold for ₹1,000 Each

Used-car platform CARS24 has alleged that confidential information belonging to approximately 3,100 customers was stolen and supplied to a rival business and...

GBHackers → Details

GBHackers general Microsoft Sep 4

Hackers Turn HiveMQ and Element Messenger Into Control Channels for Windows Backdoors

The financially motivated threat actor Toy Ghouls has expanded its custom malware arsenal with two Windows backdoors that abuse HiveMQ’s public MQTT infrastr...

GBHackers → Details

GBHackers general Sep 4

OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques

Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchan...

GBHackers → Details

GBHackers general Sep 4

ShipMonk Data Breach Exposes Personal Data of 67,000 Additional Trezor Customers

Trezor has revealed that a data breach involving its fulfillment provider, ShipMonk, exposed personal and order information of approximately 67,000 additiona...

GBHackers → Details

GBHackers general Sep 4

NodeStealer Spyware Adds Keylogging, Screenshot Capture and Facebook Data Theft

A major upgrade to the Python-based NodeStealer malware, transforming the Facebook-focused infostealer into a broader spyware platform capable of logging key...

T1041

GBHackers → Details

GBHackers general Microsoft Sep 4

Microsoft Teams Adds QR Code Protection to Block Phishing and Fraud

Microsoft is developing a new security feature for Teams messaging that will obscure QR codes sent by external users. This measure aims to help organizations...

T1566

GBHackers → Details

GBHackers general Microsoft Sep 4

MECCHA CHAMELEON Flaw Lets Malicious Custom Maps Achieve Remote Code Execution

A recently patched vulnerability in MECCHA CHAMELEON allowed attacker-controlled Steam Workshop maps to write files to arbitrary locations on Windows systems...

T1190

GBHackers → Details

GBHackers general WordPress Sep 4

Critical Super Forms WordPress Flaw Actively Exploited to Achieve Remote Code Execution

Threat actors are actively exploiting a critical vulnerability in the Super Forms WordPress plugin, allowing them to upload PHP backdoors and gain remote cod...

T1190 1 IOC

GBHackers → Details

GBHackers general Amazon Sep 4

Plex Urges Users to Update Media Server as Multiple Security Flaws Are Discovered

Plex has urged users to promptly update their Plex Media Server and Plex Desktop software following the release of fixes for several undisclosed security iss...

GBHackers → Details

GBHackers general Microsoft Sep 4

Hackers Abuse AI-Era ASCII Smuggling to Hide Phishing Content in Millions of Emails

Threat actors have repurposed an AI prompt-injection technique known as ASCII smuggling to evade email security controls at massive scale, hiding invisible U...

T1566

GBHackers → Details

GBHackers general Sep 4

Chinese-Speaking Hackers Use Claude, Qwen and DeepSeek AI Agents to Attack Government Systems

Chinese-speaking threat operators have been observed using Claude, Qwen and DeepSeek-powered AI agents as operational components in a second intrusion campai...

GBHackers → Details

GBHackers general Amazon Sep 4

TP-Link Archer AX55 Flaws Enable Remote Code Execution and Admin Password Theft

TP-Link has released security updates for two vulnerabilities found in its Archer AX55 v4 wireless router. These vulnerabilities could allow attackers on the...

T1190 2 IOCs

GBHackers → Details

GBHackers general Microsoft Sep 4

Microsoft 365 Direct Send Bypass Lets Attackers Spoof Internal Users Without Credentials

A Microsoft 365 email security-control bypass that lets attackers submit unauthenticated messages posing as internal users by leaving one SMTP field blank. T...

GBHackers → Details

GBHackers general Google Oracle Sep 4

Google Chrome V8 Flaw Actively Exploited in the Wild, Update Released

Google has released an urgent update for Chrome Stable to address CVE-2026-85046, a high-severity type confusion vulnerability in the V8 JavaScript and WebAs...

1 IOC

GBHackers → Details

GBHackers general Microsoft CrowdStrike Sep 4

CrowdStrike Falcon Zero-Day Lets Attackers Escalate Privileges on Windows Systems

A recently released proof-of-concept, named FalconFlank, claims to reveal a local privilege escalation vulnerability in the CrowdStrike Falcon Sensor on Wind...

T1548 T1068

GBHackers → Details

GBHackers general Apple Oracle Sep 4

Contagious Interview Operators Move Beyond Git Hooks With Trojanized Mac Applications

North Korea-linked Contagious Interview operators have expanded their developer-targeting malware delivery operation beyond booby-trapped Git hooks and codin...

GBHackers → Details

GBHackers general Amazon Intel Sep 4

Hackers Compromise More Than 14,500 Dahua Security Cameras in Massive Campaign

A large-scale campaign dubbed Operation CameraSwarm compromised at least 14,530 Dahua IP cameras and related surveillance devices in just 35 days. Exposing h...

T1592 1 IOC

GBHackers → Details

GBHackers general Amazon Sep 4

LLMjacking Attack Abuses Leaked AWS Credentials to Hijack Amazon Bedrock AI Models

Threat actors are increasingly converting stolen cloud credentials into access to costly generative AI services, a technique known as LLMjacking.

GBHackers → Details

«Previous page 1 ... 12 13 14 15 16 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA