Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Aug 21

OpenAI Frontier Models Get Zero Data Retention With Private Safety Processing

OpenAI has reaffirmed its commitment to Zero Data Retention (ZDR) for eligible API customers using frontier models while introducing the new Private Safety P...

GBHackers → Details

GBHackers general Aug 21

Hackers Hide Agent Tesla Malware Behind Emojis to Steal Browser and Email Passwords

A business email compromise campaign is using emoji-filled JScript to conceal an Agent Tesla v4 infostealer designed to steal browser, email, and messaging c...

T1598

GBHackers → Details

GBHackers general Aug 21

Quarkslab Says Anti-Reversing Software Should Return Plausible Wrong Answers Instead of Crashing

Quarkslab has argued that LLM-assisted reverse engineering does not make obfuscation obsolete, but it changes the defender’s threat model. Its latest experim...

T1027

GBHackers → Details

GBHackers general Aug 21

Critical Spring Security LDAP Flaw Lets Remote Attackers Read and Modify Directory Data

A critical vulnerability has been identified in the embedded UnboundID LDAP server within Spring Security. This flaw could allow remote attackers to authenti...

1 IOC

GBHackers → Details

GBHackers general Amazon Aug 21

Head Mare APT Exploits TrueConf Server RCE Flaws to Deliver PhantomCore Malware

The Head Mare APT group has been linked to a supply chain compromise involving unpatched TrueConf Server instances, which enabled the delivery of PhantomCore...

T1195

GBHackers → Details

GBHackers general Google Amazon Linux Aug 21

Google Chrome 151 Update Fixes 7 Security Flaws Enabling Remote Code Execution and Sandbox Escape

Google has released Chrome version 151 to the Stable channel for desktop platforms, addressing seven security vulnerabilities. Among these vulnerabilities is...

T1190

GBHackers → Details

GBHackers general Aug 21

Russia-Linked Hackers Exploit Legitimate Login Flows to Bypass 2FA and Steal Account Access

Three suspected Russian cyber espionage clusters abusing legitimate authentication mechanisms to hijack accounts belonging to academics, diplomats, defense p...

GBHackers → Details

GBHackers general Aug 21

Peer2Profit Turns Employee Devices Into AstroProxy Nodes That Can Expose Internal Networks

Residential proxy networks have become a key enabler for fraud, credential stuffing, account takeover, spam, and large-scale automated abuse. New research sh...

T1078 T1598

GBHackers → Details

GBHackers general Google Aug 21

New Manic Android Malware Targets 169 Apps, Steals PINs and Exfiltrates Data via Wi-Fi Mesh

A newly discovered Android malware family called Manic, which combines banking fraud functions with advanced spyware and remote device control capabilities. ...

T1566 T1041

GBHackers → Details

GBHackers general Microsoft Google Aug 21

Hackers Use Fake Google Gemini Installer to Deploy Vidar Stealer and Steal Browser Credentials

Threat actors are exploiting interest in generative AI software to distribute the Vidar information stealer through a fake Google Gemini installer hosted via...

GBHackers → Details

GBHackers general Aug 21

Compromised Rust Crate With 18,000+ Downloads Steals Source Code During Builds

A malicious update to the Rust crate called onering has been discovered, which exfiltrates source code changes from developers’ machines during the build pro...

T1041

GBHackers → Details

GBHackers general Microsoft Linux Aug 21

Windows Defender Driver Abuse Enables Kernel-Level EDR and Antivirus Bypass

Security researcher Jiří Vinopal has published a detailed analysis of BTR.sys, the Microsoft Defender Boot-Time Removal driver.

GBHackers → Details

GBHackers general Microsoft Aug 21

Microsoft Entra ID RCE Flaw Lets Unauthorized Attackers Execute Code Remotely

Microsoft has disclosed a critical remote code execution vulnerability in Microsoft Entra ID, identified as CVE-2026-69836. This flaw could enable unauthoriz...

T1190 1 IOC

GBHackers → Details

GBHackers general Google Aug 21

SilkParasite Uses Google Drive as C2 to Hide RAT Traffic Inside Trusted Cloud Services

SilkParasite, a long-running cyberespionage operation targeting government bodies across Central Asia through a compact but highly mature arsenal of remote a...

GBHackers → Details

GBHackers general Microsoft Apple Aug 20

MacSync Stealer Uses 30+ Rotating Domains to Steal macOS Credentials and Exfiltrate Data

MacSync Stealer is expanding its macOS-focused theft operation through a rotating network of more than 30 domains, using stable execution and network pattern...

T1041

GBHackers → Details

GBHackers general Aug 20

New CRLF Desync Attack Lets Hackers Steal HTTPOnly Cookies and Hijack Accounts

Security researchers Tom Stacey from PortSwigger and Tobia Righi from TurtleSec have introduced a new category of HTTP request smuggling attacks known as “CR...

GBHackers → Details

GBHackers general Linux Aug 20

New Zombie Card Attack Lets Expired Visa Cards Make Contactless Payments

Security researchers have demonstrated a “Zombie Card” attack that can reactivate certain expired Visa contactless cards, allowing them to be used for NFC pa...

GBHackers → Details

GBHackers general Aug 20

OpenAI Slows AI Model Development as Astra Approaches Critical Cyber Capabilities

OpenAI has temporarily slowed the development of its latest frontier AI models after initial testing suggested that its upcoming Astra system may meet the co...

GBHackers → Details

GBHackers general Google Aug 20

ToxicPanda 2.0 Steals PINs From 140+ Banking and Cryptocurrency Apps Using Invisible Overlays

ToxicPanda 2.0, an evolved Android banking Trojan that significantly expands its fraud, device control, and credential theft capabilities.

T1566 T1078

GBHackers → Details

GBHackers general Cisco Aug 20

Cisco BroadWorks Vulnerability Allows Remote Attackers to Access Sensitive Files

Cisco has issued security updates for a high-severity vulnerability in Cisco BroadWorks that could allow unauthenticated remote attackers to access sensitive...

1 IOC

GBHackers → Details

«Previous page 1 ... 22 23 24 25 26 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA