Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Aug 25

ASOS Warns Customers of Data Breach Following Credential-Based Account Takeovers

ASOS has started notifying affected customers in the U.S.

GBHackers → Details

GBHackers general Amazon Zscaler Aug 25

Multiple Zscaler Client Connector Flaws Enable Remote Code Execution

Zscaler has addressed several vulnerabilities in its Client Connector endpoint application that could allow an unauthenticated, unprivileged attacker to exec...

T1190 1 IOC

GBHackers → Details

GBHackers general Broadcom Aug 25

91 Spring CVEs Impact Over 209,000 Software Components Across the Supply Chain

Broadcom has disclosed 91 Common Vulnerabilities and Exposures (CVEs) affecting the Spring Framework and related projects, triggering a software supply chain...

T1195

GBHackers → Details

GBHackers general Google Cloudflare Aug 25

PavinLoader Uses ClickFix and Fake Downloads to Deploy Amatera Stealer via Blockchain C2

PavinLoader, a multi-stage .NET malware loader, operating across ClickFix, fake software-download, and malicious game campaigns.

GBHackers → Details

GBHackers general Aug 25

Anthropic Expands Claude MCP Security With Enterprise-Managed Identity Controls

Anthropic has expanded Claude Enterprise’s Model Context Protocol (MCP) security capabilities with enterprise-managed authorization, allowing organizations t...

GBHackers → Details

GBHackers general Amazon WordPress Aug 25

Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts

Two critical vulnerabilities have been identified in the miniOrange SAML 2.0 Single Sign-On WordPress plugin, which could allow unauthenticated attackers to ...

2 IOCs

GBHackers → Details

GBHackers general Red Hat Aug 25

Critical Red Hat Keycloak Password Reset Flaw Enables Unauthenticated Account Takeover

Red Hat has disclosed a critical vulnerability in the Red Hat Build of Keycloak that allows an unauthenticated remote attacker to bypass a key safeguard in t...

1 IOC

GBHackers → Details

GBHackers general Google Apple Aug 25

Hackers Place Fake Codex Download Above Legitimate OpenAI Result to Infect Mac Users

Threat actors are using sponsored Google Search ads to place a fake OpenAI Codex download page above the legitimate result, steering macOS users into manuall...

GBHackers → Details

GBHackers general Microsoft Aug 25

EvilTokens Abuses Microsoft Device Codes to Hijack Accounts Without Stealing Passwords

EvilTokens is pushing phishing-as-a-service beyond credential theft by abusing Microsoft’s device authorization flow to obtain valid Microsoft 365 tokens. Vi...

T1566 T1078

GBHackers → Details

GBHackers general Amazon Aug 25

TP-Link Archer Command Injection Flaws Enable Root-Level Code Execution

TP-Link has released firmware updates for three Archer router models due to the discovery of multiple command injection vulnerabilities. These vulnerabilitie...

T1059

GBHackers → Details

GBHackers general Aug 25

Fake GTA 6 Demo Sites Spread Vidar Stealer to Hijack Authenticated Browser Sessions

Cybercriminals are capitalizing on renewed interest in Grand Theft Auto VI by pushing fake Rockstar Games pages that advertise a non-existent GTA 6 demo but ...

GBHackers → Details

GBHackers general Aug 25

WeedHack Malware Spreads Through SEO-Poisoned Minecraft Sites Despite C2 Disruption

A renewed distribution wave for the WeedHack malware-as-a-service operation, with threat actors continuing to push infected Minecraft clients and mods despit...

T1588

GBHackers → Details

GBHackers general Oracle Aug 25

Hackers Exploit Critical Oracle HTTP Server Flaw to Access and Modify Sensitive Data

The U.S.

1 IOC

GBHackers → Details

GBHackers general Microsoft Aug 25

Microsoft Teams New Security Policy Lets Admins Automatically Block Meeting Bots

Microsoft is introducing a new Microsoft Teams meeting policy that automatically blocks identified external bots. This aims to address growing concerns regar...

GBHackers → Details

GBHackers general Microsoft Apple Amazon Palo Alto Networks Linux Aug 25

5 Palo Alto GlobalProtect Flaws Let Attackers Gain SYSTEM/Root Access and Steal AD Passwords

Security researcher Martijn van Ramesdonk has disclosed five vulnerabilities affecting Palo Alto Networks’ GlobalProtect, an enterprise VPN and endpoint agen...

T1548 T1068

GBHackers → Details

GBHackers general Google Aug 24

Google and Bing Search Results Used to Deliver Hidden Banking Phishing Pages

Threat actors are increasingly using Google and Bing as phishing delivery channels, employing a cloaking technique that presents harmless pages to security s...

T1566

GBHackers → Details

GBHackers general Microsoft Aug 24

North Korean Hackers Hide AnyDesk on Victim PCs to Maintain Secret Remote Access

North Korea-linked Kimsuky operators have targeted organizations in South Korea and Japan with spear-phishing campaigns that install and conceal AnyDesk, giv...

T1566 T1059.001

GBHackers → Details

GBHackers general Aug 24

Hackers Impersonate Security Staff to Steal Credentials in ReliaQuest Social Engineering Attack

ReliaQuest has reported a targeted social engineering attack in which threat actors impersonated company security personnel, used a spoofed domain, and succe...

T1204

GBHackers → Details

GBHackers general Aug 24

Mysterious Ox Alpha Stealth AI Model Emerges for Coding and Agentic Work

A newly discovered AI system called Ox Alpha has emerged on OpenRouter, sparking widespread speculation within the AI community regarding its origin, technic...

GBHackers → Details

GBHackers general Aug 24

Zimbra Collaboration Suite Flaw Actively Exploited to Execute Arbitrary Commands

Threat actors are actively exploiting a critical operating system command injection vulnerability in Zimbra Collaboration Suite, identified as CVE-2026-73570...

T1059 1 IOC

GBHackers → Details

«Previous page 1 ... 20 21 22 23 24 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA