Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Google Aug 19

Balonx PhaaS Steals Bank OTPs in Real Time While AI Calls and Android RAT Target Victims

Mexico’s banking sector is facing a more industrialized fraud threat as the Balonx Sistema phishing-as-a-service (PhaaS) operation combines real-time OTP the...

T1566

GBHackers → Details

GBHackers general Aug 19

659 Stripe Merchant API Keys Leaked Online, Exposing 688,000 Customer Records

A data leak published on a cybercrime data-trading forum has exposed live Stripe API credentials for 659 merchant accounts, along with approximately 35 GB of...

GBHackers → Details

GBHackers general Microsoft Aug 19

Cursor 0-Day Lets Attackers Execute Malicious Code by Opening a Repository

A recently disclosed security issue in Cursor IDE exposed a serious Windows binary-planting vulnerability that could allow malicious code to execute simply b...

1 IOC

GBHackers → Details

GBHackers general Microsoft Amazon Aug 19

BeyondTrust Endpoint Privilege Management Flaws Enable Local Privilege Escalation

BeyondTrust has revealed two high-severity vulnerabilities in its Endpoint Privilege Management (EPM) Windows Deployment product, which could lead to local p...

T1548 T1068 T1562 2 IOCs

GBHackers → Details

GBHackers general Amazon Oracle Aug 19

Oracle Releases 943 Security Patches to Fix Critical Vulnerabilities Across Enterprise Products

Oracle has released 943 security patches as part of its August 2026 Critical Security Patch Update (CSPU), addressing newly disclosed vulnerabilities across ...

GBHackers → Details

GBHackers general Intel Aug 19

Ransom Busters Ransomware Affiliate Targets Victims With Fake Data Recovery Extortion

A threat actor calling itself “Ransom Busters” is targeting ransomware victims with a deceptive recovery offer, claiming it can restore encrypted files and d...

GBHackers → Details

GBHackers general Microsoft Apple Aug 19

Microsoft Links 30+ Domains to MacSync Stealer’s Credential-Theft and Data-Exfiltration Infrastructure

More than 30 domains tied to MacSync Stealer, exposing a rotating macOS-focused infrastructure that supports payload delivery, command-and-control, credentia...

T1078 T1041

GBHackers → Details

GBHackers general Aug 19

D-Link DWR-M961 Router Hit by 15 Command Injection and Buffer Overflow Vulnerabilities

D-Link has disclosed and patched 15 Common Vulnerabilities and Exposures (CVEs) affecting its DWR-M961 4G/LTE router, specifically hardware revision C1. This...

T1059

GBHackers → Details

GBHackers general Aug 19

RAVEN Tool Steals Entire Elasticsearch Databases and Rebuilds Deleted Backdoors

The RAVEN offensive framework can turn compromised Elasticsearch and Kibana environments into durable data-theft and persistence operations. RAVEN, short for...

T1041 T1592

GBHackers → Details

GBHackers general Apache Aug 19

Critical Apache HttpComponents Client Flaw Lets Attackers Impersonate Servers

A critical vulnerability in the Apache HttpComponents Client can allow man-in-the-middle attackers to impersonate trusted servers when applications use the a...

T1557 1 IOC

GBHackers → Details

GBHackers general VMware Broadcom Aug 19

CISA Warns Hackers Are Actively Exploiting VMware vCenter Path Traversal Flaw

The U.S.

1 IOC

GBHackers → Details

GBHackers general Google Apple Aug 19

Fake Claude Install Guide Steals Mac Passwords and Turns Trusted Crypto Wallet Apps Into Phishing Traps

A Google-sponsored search result for Claude installation instructions is being used to deliver a sophisticated macOS stealer and remote-access trojan (RAT) n...

T1566

GBHackers → Details

GBHackers general WordPress Aug 19

Hackers Abuse Thousands of WordPress Sites to Spread StopAndProtect Malware via ClickFix

A large-scale malware operation called StopAndProtect is exploiting thousands of compromised WordPress websites to distribute ransomware, steal files, harves...

GBHackers → Details

GBHackers general Oracle Aug 19

Cl0p Hackers Exploit PTC Windchill Vulnerability to Deploy Custom Web Shell and Steal Data

The Cl0p ransomware and extortion operation is likely exploiting a critical PTC Windchill vulnerability to deploy a purpose-built Java web shell that can har...

T1190 T1041 1 IOC

GBHackers → Details

GBHackers general Intel Aug 19

Medusa Ransomware Attacks 300+ Critical Infrastructure Organizations Using Double Extortion

Medusa ransomware operators have compromised over 500 organizations across critical infrastructure sectors, according to a joint advisory issued by the FBI, ...

GBHackers → Details

GBHackers general Microsoft Aug 19

Critical Microsoft Copilot CoSnitch Flaw Lets Hackers Steal Sensitive Data With One Click

A critical one-click vulnerability in Microsoft Copilot Personal, tracked as CVE-2026-24301 and dubbed CoSnitch. This flaw could enable an attacker to trigge...

1 IOC

GBHackers → Details

GBHackers general Oracle Aug 18

Projextor Abuses Cross-Platform Electron Framework to Conceal Malware Activity

Threat actors behind the Projextor campaign are abusing Electron-based productivity applications to conceal malware-like capabilities behind fully functionin...

T1059

GBHackers → Details

GBHackers general Aug 18

Critical MLflow SSRF Flaw Exploited in the Wild

A critical unauthenticated server-side request forgery (SSRF) vulnerability in MLflow, tracked as CVE-2026-64849, is being actively exploited within hours of...

1 IOC

GBHackers → Details

GBHackers general Aug 18

OpenAI Warns Organizations to Automate Cybersecurity as AI-Powered Attacks Accelerate

OpenAI has issued a warning that organizations need to quickly automate core cybersecurity functions as increasingly advanced AI systems make it easier and c...

GBHackers → Details

GBHackers general Google Aug 18

BTMob Uses Custom Phishing Apps to Turn Android Users Into Remote-Controlled Fraud Victims

BTMOB has evolved beyond a conventional Android banking trojan into a turnkey fraud platform that lets criminals build branded phishing apps, remotely operat...

T1566

GBHackers → Details

«Previous page 1 ... 24 25 26 27 28 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA