❌

Normal view

There are new articles available, click to refresh the page.
Yesterday β€” 22 July 2026GBHackers

Yubico Launches YubiKey 5.8 With Hardware-Backed Authorization for AI Agent Workflows

By: Divya
22 July 2026 at 02:19

Yubico has released the YubiKey firmware version 5.8, expanding its hardware security key platform beyond phishing-resistant authentication. This update introduces verifiable, hardware-backed authorization for digital signatures, identity wallets, payment confirmations, and AI agent approval workflows. Announced on July 21, 2026, this firmware update aims to help enterprises verify not only who accesses an application but […]

The post Yubico Launches YubiKey 5.8 With Hardware-Backed Authorization for AI Agent Workflows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Exploits Zero-Day to Gain Internet Access and Compromise Hugging Face Servers

By: Divya
22 July 2026 at 00:46

OpenAI has revealed that during an internal evaluation of advanced cyber capabilities, AI agents exploited a zero-day vulnerability, escaped a constrained research environment, and compromised parts of Hugging Face’s production infrastructure. While Hugging Face detected and contained the activity, OpenAI’s internal security team also identified unusual behavior during the assessment. OpenAI Compromise Hugging Face Servers […]

The post OpenAI Exploits Zero-Day to Gain Internet Access and Compromise Hugging Face Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Before yesterdayGBHackers

JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data

21 July 2026 at 06:57

JADEPUFFER has escalated from automated database extortion to purpose-built AI model destruction, deploying a custom Go ransomware dubbed ENCFORGE to encrypt and effectively wipe high‑value AI and ML artifacts across an entire stack. A missing‑authentication bug in the /api/v1/validate/code endpoint that enables unauthenticated arbitrary Python execution on the host. That initial operation chained reconnaissance, credential […]

The post JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Iran-Linked APT42 Uses AI-Assisted Phishing and TAMECAT Backdoor to Target Defense Officials

21 July 2026 at 04:40

Iran-linked APT42 is escalating its espionage operations with AI-assisted phishing and an expanded TAMECAT backdoor, enabling long-lived access to defense and government identities rather than just endpoints. Recent activity shows tightly integrated social engineering, cloud abuse, and fileless PowerShell tradecraft that significantly complicate detection and response. APT42, also tracked as TA453 in some reporting, is […]

The post Iran-Linked APT42 Uses AI-Assisted Phishing and TAMECAT Backdoor to Target Defense Officials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware

21 July 2026 at 03:34

AgentBaiting is the clearest sign yet that AI agents and their capability ecosystems have become a first‑class malware delivery surface, with FakeGit’s 7,600‑repo operation pushing SmartLoader and StealC directly into AI Skills and MCP workflows. By turning agent‑readable READMEs, public AI registries, and GitHub trust signals into a weaponized β€œAI capability supply chain,” attackers now […]

The post AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Bit2Watt Attack Turns AI Data Centers Into Cyber-Physical Threats to Local Power Grids

21 July 2026 at 01:48

Bit2Watt is a newly disclosed cyber‑physical attack class that weaponizes AI and GPU workloads in modern data centers to destabilize nearby power grids, turning compute infrastructure itself into a grid‑scale threat surface. Measurements on NVIDIA accelerators show sub‑millisecond power ramps where a single Volta V100 or RTX‑series GPU swings from low-load phases to near‑TDP draw, […]

The post Bit2Watt Attack Turns AI Data Centers Into Cyber-Physical Threats to Local Power Grids appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New NadMesh Botnet Uses 20+ RCE Vectors to Hijack AI and MCP Infrastructure

17 July 2026 at 06:55

NadMesh is a new, industrial‑grade Go‑based botnet that weaponizes more than 20 RCE vectors to hijack AI and MCP infrastructure at scale, combining autonomous scanning, exploit delivery, and credential harvesting in a single closed‑loop platform. In early July 2026, researchers identified NadMesh as a high‑volume Go-written botnet that was aggressively deploying bot agents across internet‑facing […]

The post New NadMesh Botnet Uses 20+ RCE Vectors to Hijack AI and MCP Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New Framework Redefines AI Penetration Testing Around Prompt Injection and Behavioral Objective Violations

16 July 2026 at 08:38

A newly proposed framework argues that AI penetration testing must move beyond conventional infrastructure compromise and assess whether an adversary can make an AI-enabled system act against its intended operational purpose. Traditional penetration testing typically measures compromise through outcomes such as unauthorized access, privilege escalation, data theft, service disruption, or persistence. Those outcomes remain critical […]

The post New Framework Redefines AI Penetration Testing Around Prompt Injection and Behavioral Objective Violations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Unveils GPT-Red AI Model That Automatically Finds Prompt Injection Vulnerabilities

By: Divya
16 July 2026 at 07:39

OpenAI has introduced GPT-Red, an automated safety red-teaming model trained to identify and exploit prompt injection weaknesses in AI agents. Prompt injection occurs when malicious instructions hidden in webpages, emails, local files, code repositories, or tool outputs manipulate an AI system into ignoring its intended task, potentially causing data theft, unauthorized actions, or policy bypasses. […]

The post OpenAI Unveils GPT-Red AI Model That Automatically Finds Prompt Injection Vulnerabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Malicious AI Agents Attempt Reverse Shells, Credential Theft, and Persistent SSH Access

16 July 2026 at 03:44

AI agents are increasingly crossing the line from generating content to executing actions inside developer workstations, cloud environments, and enterprise systems. New telemetry from Gen’s H1 2026 Threat Report shows that agent runtime controls detected attempts involving reverse shells, credential-file access, API-key discovery, destructive commands, and SSH persistence mechanisms. The activity does not necessarily mean […]

The post Malicious AI Agents Attempt Reverse Shells, Credential Theft, and Persistent SSH Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

BusySnake Stealer Uses Reverse SSH Tunnels and AI-Generated Loaders to Evade Detection

13 July 2026 at 06:40

Armored Likho, a previously undocumented threat group also tracked as Eagle Werewolf based on circumstantial evidence, is targeting government institutions and electric-power organizations across Russia, Brazil, and Kazakhstan with a new Python-based infostealer named BusySnake. The group’s activity reflects an unusual overlap between cyber-espionage and financially motivated operations. Armored Likho targets organizations for intelligence collection […]

The post BusySnake Stealer Uses Reverse SSH Tunnels and AI-Generated Loaders to Evade Detection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New GhostCommit Technique Hides Exploits in Images to Evade AI Code Reviewers

By: Divya
13 July 2026 at 00:00

Researchers have revealed a technique called β€œGhostCommit,” which involves prompt injection by hiding malicious instructions within images included in pull requests. This technique has the potential to bypass text-only AI code reviewers and later manipulate coding agents into exposing repository secrets. The ASSET Research Group explained that this technique leverages the widening gap between automated […]

The post New GhostCommit Technique Hides Exploits in Images to Evade AI Code Reviewers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Launches GPT-5.6 and ChatGPT Work With Multi-Agent Cybersecurity Capabilities

By: Divya
10 July 2026 at 01:07

OpenAI has launched GPT-5.6 alongside ChatGPT Work, positioning its newest flagship AI system as an agentic platform capable of completing extended, multi-step work across enterprise applications, files, web services, and desktop environments. GPT-5.6 Sol, the flagship model, is joined by Terra and Luna tiers, while ChatGPT Work uses the new model to transform high-level objectives […]

The post OpenAI Launches GPT-5.6 and ChatGPT Work With Multi-Agent Cybersecurity Capabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

GitHub Copilot IDE Coding Agents Vulnerable to Workflow-Level Jailbreak Attacks

By: Divya
9 July 2026 at 05:06

GitHub Copilot’s new coding agents, which are integrated into IDEs, are susceptible to a specific type of β€œworkflow-level” jailbreak attacks. These attacks can bypass chat refusals, allowing agents to generate harmful code while performing standard software development tasks unwittingly. According to Arxiv, researchers who studied Copilot in Visual Studio Code discovered that models that successfully […]

The post GitHub Copilot IDE Coding Agents Vulnerable to Workflow-Level Jailbreak Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Claude AI Prompt Injection Attack Turns Chatbot Into Stealthy C2 Agent to Achieve Remote Code Execution

By: Divya
9 July 2026 at 00:17

Claude Desktop’s synced Personal Preferences feature can be exploited as a covert prompt-injection vector, transforming the AI assistant into a de facto command-and-control (C2) agent. This method allows for remote code execution on a compromised user workstation without the need for phishing emails or traditional malware delivery. In this attack chain, the initial access is […]

The post Claude AI Prompt Injection Attack Turns Chatbot Into Stealthy C2 Agent to Achieve Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

ESET Threat Report H1 2026 Highlights Malicious AI Skills, ClickFix Surge, and EDR Killers

8 July 2026 at 07:32

ESET’s H1 2026 threat report shows attackers accelerating the use of familiar playbooks with AI-flavored lures, social engineering, and defense evasion rather than inventing entirely new ones. The clearest signals are the rise of malicious AI skills, a doubled ClickFix footprint, first-wave AI-powered Android malware, record QR-code phishing, and a growing ecosystem of EDR killers. […]

The post ESET Threat Report H1 2026 Highlights Malicious AI Skills, ClickFix Surge, and EDR Killers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

AI-as-a-Service Botnet Routes Malicious Workloads Across Compromised Windows and Linux Hosts

8 July 2026 at 05:48

The underground advertisement for the so-called Mycelium Framework reads like another feature‑packed botnet sales pitch: cross‑platform payloads, encrypted C2, persistence, exploit modules, credential theft, and lateral movement. Those building blocks are not new. What makes Mycelium notable is its advertised purpose to treat compromised endpoints not as disposable bots but as a capability‑aware. AI compute […]

The post AI-as-a-Service Botnet Routes Malicious Workloads Across Compromised Windows and Linux Hosts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Claude Code, Cursor, and OpenAI Codex Trigger Cyberattack-Like Telemetry Alerts

By: Divya
8 July 2026 at 04:42

AI-powered coding assistants such as Claude Code, Cursor, and OpenAI Codex are increasingly triggering endpoint detection and response (EDR) alerts that resemble active cyberattacks, according to new research from Sophos X-Ops. This analysis, based on real-world telemetry collected in June 2026, highlights how autonomous AI behavior, while often benign, closely mirrors adversarial tactics, creating new […]

The post Claude Code, Cursor, and OpenAI Codex Trigger Cyberattack-Like Telemetry Alerts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Anthropic Keeps Claude Fable 5 Available on Paid Plans Until July 12

By: Divya
8 July 2026 at 00:30

Anthropic has announced an extension of access to its advanced AI model, Claude Fable 5, allowing users on all paid plans to continue using the system until July 12, 2026. This update, shared via the company’s official X account, comes as enterprises increasingly rely on generative AI models for security research, code analysis, and threat […]

The post Anthropic Keeps Claude Fable 5 Available on Paid Plans Until July 12 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

❌
❌