โŒ

Normal view

There are new articles available, click to refresh the page.
Before yesterdayHacking and InfoSec

LLMjacking Attack Abuses Leaked AWS Credentials to Hijack Amazon Bedrock AI Models

By: Divya
4 September 2026 at 01:26

Threat actors are increasingly converting stolen cloud credentials into access to costly generative AI services, a technique known as LLMjacking. FortiGuard Labs reported an incident involving Amazon Bedrock in which a leaked, long-lived AWS IAM access key with AdministratorAccess permissions was used to create a new identity, subscribe to foundation models, and run inference at [โ€ฆ]

The post LLMjacking Attack Abuses Leaked AWS Credentials to Hijack Amazon Bedrock AI Models appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Hide Reverse Shell Traffic Behind Signed Apps and AWS API Gateway

2 September 2026 at 04:12

Threat actors are using a layered fake IT-support campaign to obtain remote access, deploy a malicious MSI package and conceal hands-on-keyboard activity behind legitimate signed applications and AWS API Gateway infrastructure. The operation demonstrates how attackers can divide execution, command-and-control and interactive shell functions across multiple processes to frustrate conventional endpoint and network detections. Once [โ€ฆ]

The post Hackers Hide Reverse Shell Traffic Behind Signed Apps and AWS API Gateway appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Exploit Critical Langflow and Ruby on Rails Flaws in Active RCE Attacks

By: Divya
1 September 2026 at 09:08

Threat actors are actively exploiting two newly disclosed remote code execution vulnerabilities affecting Langflow and Ruby on Rails. These campaigns focus on cloud credential theft, host reconnaissance, and the establishment of command-and-control (C2) functions. VulnCheck researchers have reported exploitation targeting CVE-2026-0768 in Langflow, a low-code platform for building AI-powered applications and automated workflows. This vulnerability [โ€ฆ]

The post Hackers Exploit Critical Langflow and Ruby on Rails Flaws in Active RCE Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

โŒ
โŒ