Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Intel WordPress Jul 29

Critical WordPress Plugin Backdoor Exposes 20,000 Sites to Full Administrator Takeover

A critical supply-chain compromise in a widely used WordPress plugin has exposed approximately 20,000 websites to potential administrator takeover. Researche...

T1556

GBHackers → Details

GBHackers general Google Jul 29

Flying Eagle RAT Abuses Android Accessibility Services for Keylogging, Screen Capture and Gesture Injection

A newly analyzed Android remote access trojan (RAT) dubbed “Flying Eagle” is leveraging Accessibility Services to enable large-scale surveillance, credential...

T1078

GBHackers → Details

GBHackers general Jul 29

Bank of Baroda Confirms Data Breach After Employee Email Account Compromised

Bank of Baroda has confirmed a cybersecurity incident involving the compromise of an employee’s email account, which allowed unauthorized access to certain d...

GBHackers → Details

GBHackers general Jul 29

JFrog Patches Artifactory Zero-Days After OpenAI Models Escape Sandbox

Multiple zero-day vulnerabilities in self-hosted Artifactory after OpenAI’s frontier models autonomously exploited them to escape a sandboxed research enviro...

T1195

GBHackers → Details

GBHackers general Jul 29

Attackers Split RAT Components Across npm Packages to Evade Isolated Code Reviews

Attackers have been observed distributing a modular Remote Access Trojan (RAT) through the npm ecosystem by deliberately splitting malicious functionality ac...

GBHackers → Details

GBHackers general Proofpoint Jul 29

Cybercriminals Use Adversarial Prompt Injection to Evade AI-Powered Security Tools

Cybercriminals are rapidly operationalizing adversarial prompt injection techniques to evade AI-powered security controls, signaling a shift toward targeting...

T1566

GBHackers → Details

GBHackers general Apache Jul 29

OpenAI Open-Sources Codex Security CLI to Find, Validate, and Fix Code Vulnerabilities

OpenAI has open-sourced Codex Security, a command-line interface and TypeScript SDK designed to help engineering and security teams identify, validate, and r...

GBHackers → Details

GBHackers general Jul 29

Autonomous AI Agent Escapes Sandbox and Breaches Hugging Face Production Systems

Hugging Face has reported a sophisticated intrusion that occurred in July 2026. In this incident, an autonomous AI agent escaped from its evaluation sandbox,...

GBHackers → Details

GBHackers general Jul 29

Claude AI Autonomously Discovers Cryptographic Weaknesses That Escaped Expert Review

Researchers at Anthropic reported that Claude Mythos Preview autonomously discovered new cryptographic attacks against the post-quantum signature candidate H...

GBHackers → Details

GBHackers general F5 Jul 29

NGINX Heap Overflow Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

A high-severity heap buffer overflow vulnerability has been identified in the NGINX Stream module’s script engine. This vulnerability may allow unauthenticat...

1 IOC

GBHackers → Details

GBHackers general Jul 28

Aembit Joins Snowflake to Tackle AI’s Next Security Frontier: Trusted Agent Interoperability

Silver Spring, MD, USA, July 28th, 2026, CyberNewswire To reduce identity risk when third-party AI agents access business systems, Aembit is launching a new ...

GBHackers → Details

GBHackers general Google Apple Jul 28

Fake Claude Code Installer Delivers MacSync macOS Infostealer Through Google Ads

A highly convincing malvertising campaign is targeting macOS users searching for “how to install Claude Code on Mac,” delivering the MacSync infostealer thro...

T1189

GBHackers → Details

GBHackers general Microsoft Jul 28

Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users

The takedown of the Kratos phishing-as-a-service (PhaaS) platform in July 2026 has done little to slow the broader threat landscape. As security researchers ...

T1566 T1598

GBHackers → Details

GBHackers general Jul 28

CastleLoader Campaign Deploys NeedleStealer to Steal Crypto Wallet Seeds and Browser Sessions

A significant evolution in the CastleLoader malware ecosystem, with new campaigns deploying the NeedleStealer framework to harvest cryptocurrency wallet seed...

GBHackers → Details

GBHackers general Jul 28

Critical TeamCity Flaw Lets Unauthenticated Attackers Execute System Commands

JetBrains has announced a critical vulnerability in TeamCity On-Premises, identified as CVE-2026-63077. This vulnerability allows unauthenticated remote atta...

1 IOC

GBHackers → Details

GBHackers general Jul 28

Chinese Hackers Use RedRelay Multi-Hop Network to Conceal Global Cyber Operations

Chinese state-linked hackers are increasingly relying on a covert multi-hop infrastructure dubbed RedRelay (also known as ORBWEAVER) to mask the origins of g...

GBHackers → Details

GBHackers general Linux Jul 28

AI-Discovered Linux Kernel Zero-Day Enables Root Privilege Escalation

A researcher recently disclosed an AI-assisted Linux kernel zero-day vulnerability, tracked as CVE-2026-53264, which allows local privilege escalation to roo...

T1548 T1068 1 IOC

GBHackers → Details

GBHackers general Jul 28

Tengu Mirai Botnet Uses Watchdog Reboots and Binary Bricking to Resist Removal

Tengu, a newly observed Mirai-derived botnet, is demonstrating how modern IoT malware is rapidly evolving beyond traditional distributed denial-of-service (D...

GBHackers → Details

GBHackers general Jul 28

Fake ShinyHunters Emails Give Victims 48 Hours to Pay $2,000 Bitcoin Ransom

Fake ShinyHunters-themed sextortion emails are abusing data from recent ShinyHunters leaks to threaten victims with the release of fabricated “webcam recordi...

GBHackers → Details

GBHackers general Microsoft Jul 28

LegacyHive Exploit Abuses Windows Profile Loading to Hijack User Registry Hives

LegacyHive is a newly discovered proof-of-concept (PoC) for Windows that exploits profile initialization and offline registry hive manipulation to redirect u...

GBHackers → Details

«Previous page 1 ... 39 40 41 42 43 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA