❌

Normal view

There are new articles available, click to refresh the page.
Today β€” 28 July 2026GBHackers

Fake ShinyHunters Emails Give Victims 48 Hours to Pay $2,000 Bitcoin Ransom

28 July 2026 at 05:14

Fake ShinyHunters-themed sextortion emails are abusing data from recent ShinyHunters leaks to threaten victims with the release of fabricated β€œwebcam recordings” unless a 2,000 dollar Bitcoin ransom is paid within 48 hours. Despite the technical-sounding claims, there is no evidence of actual device compromise, malware deployment, or recorded content behind these messages. The emails impersonate […]

The post Fake ShinyHunters Emails Give Victims 48 Hours to Pay $2,000 Bitcoin Ransom appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

LegacyHive Exploit Abuses Windows Profile Loading to Hijack User Registry Hives

By: Divya
28 July 2026 at 04:16

LegacyHive is a newly discovered proof-of-concept (PoC) for Windows that exploits profile initialization and offline registry hive manipulation to redirect user-level registry paths, potentially allowing access to resources associated with another account. This technique was published by the Nightmare-Eclipse disclosure actor shortly after Microsoft’s July 2026 Patch Tuesday. Unlike traditional software vulnerabilities, LegacyHive chains legitimate […]

The post LegacyHive Exploit Abuses Windows Profile Loading to Hijack User Registry Hives appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Top 10 Best VPN Alternatives For Secure Remote Access in 2026

28 July 2026 at 03:58

In the rapidly evolving landscape of 2026, the traditional VPN is increasingly showing its age. While a VPN creates a secure, encrypted tunnel to a private network, it often functions like an β€œall-access key,” granting users broad, undifferentiated access once connected. This model presents a significant security risk, as a single compromised endpoint can give […]

The post Top 10 Best VPN Alternatives For Secure Remote Access in 2026 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

PortSwigger Introduces Burp AT Agentic AI for Automated Penetration Testing

By: Divya
28 July 2026 at 03:48

PortSwigger has launched Burp AT, an agentic AI system that allows penetration testers to delegate web security investigation tasks while maintaining direct control over the testing scope, approvals, and final conclusions. The public beta is currently available for Burp Suite Professional users. Unlike standalone AI assistants that operate based on prompts with limited context, Burp […]

The post PortSwigger Introduces Burp AT Agentic AI for Automated Penetration Testing appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Dysphoria IoT Botnet Uses Blockchain Domains and 200,000 Devices for DDoS Attacks

28 July 2026 at 03:47

A rapidly evolving IoT botnet dubbed β€œDysphoria” has emerged as a significant global threat, leveraging blockchain-based domain resolution and a hybrid command-and-control (C2) architecture to sustain large-scale distributed denial-of-service (DDoS) operations. Dysphoria’s evolution has been unusually aggressive, transitioning from early jackskid-derived variants to more sophisticated fbot-based implementations within weeks. Initial samples observed in March 2026 […]

The post Dysphoria IoT Botnet Uses Blockchain Domains and 200,000 Devices for DDoS Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy GoGRPC Backdoor

28 July 2026 at 02:34

An evolving intrusion campaign in which threat actors impersonate IT helpdesk personnel via Microsoft Teams to gain initial access and deploy a custom Go-based backdoor dubbed β€œGoGRPC.” Active since January 2026, the activity is assessed to be linked to an initial access broker (IAB) operation that likely facilitates downstream ransomware attacks. Aligning with tactics observed […]

The post Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy GoGRPC Backdoor appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Multiple FFmpeg Flaws Allow Arbitrary Memory Corruption via Malicious Videos

By: Divya
28 July 2026 at 02:17

Multiple high-severity vulnerabilities in FFmpeg could allow attackers to corrupt memory, disclose process data, or exhaust system resources. This can happen if users or automated media-processing services are manipulated into handling specially crafted video, audio, image, or subtitle files. The vulnerabilities affect FFmpeg versions up to 8.1.28. Organizations operating transcoding pipelines, media upload platforms, streaming […]

The post Multiple FFmpeg Flaws Allow Arbitrary Memory Corruption via Malicious Videos appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Operation STANDOFF Uses GitHub Redirects Across 44 Servers to Hide Multi-Malware C2 Traffic

28 July 2026 at 01:45

Operation STANDOFF is a Russian‑speaking cybercriminal campaign that uses a cluster of at least 44 TimeWeb‑hosted servers that all masquerade as benign GitHub redirectors to conceal multi‑malware command‑and‑control (C2) and proxy traffic. This infrastructure underpins a full ecosystem: a pay‑per‑install loader, a proxy‑botnet, a multi‑operator intrusion console, and an AI‑driven influence and outreach platform. All […]

The post Operation STANDOFF Uses GitHub Redirects Across 44 Servers to Hide Multi-Malware C2 Traffic appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Apple iOS 26.6 Update Fixes Flaws Allowing Kernel-Level Code Execution and Root Access

By: Divya
28 July 2026 at 01:38

Apple has released iOS 26.6 and iPadOS 26.6, a significant security update that addresses numerous vulnerabilities across core operating system components, media frameworks, WebKit, wireless services, and application frameworks. Released on July 27, 2026, this update is available for iPhone 11 and later models, as well as supported iPads. It should be prioritized for deployment […]

The post Apple iOS 26.6 Update Fixes Flaws Allowing Kernel-Level Code Execution and Root Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI CEO Sam Altman Claims AI Has Reached Singularity as Systems Begin Improving Themselves

By: Divya
28 July 2026 at 01:11

OpenAI CEO Sam Altman has stated that artificial intelligence has entered the long-discussed stage of technological singularity, referring to the current period as the point where AI systems can increasingly improve future AI capabilities. His remarks, made during the β€œRelentless” podcast released on Saturday, have reignited the debate over whether advanced AI models have reached […]

The post OpenAI CEO Sam Altman Claims AI Has Reached Singularity as Systems Begin Improving Themselves appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Operation BlueDash Maintains Redundant Remote Access Even After One RMM Tool Is Removed

28 July 2026 at 01:08

A newly analyzed phishing-driven intrusion set tracked as Operation BlueDash demonstrates how threat actors are operationalizing legitimate remote monitoring and management (RMM) tools to maintain persistent and redundant access to compromised environments. The infection chain begins with a Microsoft Teams-themed phishing email delivering a β€œsecure document” lure. Victims are redirected through compromised infrastructur to a […]

The post Operation BlueDash Maintains Redundant Remote Access Even After One RMM Tool Is Removed appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

ShinyHunters Claims EY Data Breach, Threatens to Leak Stolen Client Tax Data

By: Divya
28 July 2026 at 00:53

ShinyHunters has claimed responsibility for the data breach at Ernst & Young (EY) and is threatening to publish allegedly stolen client tax information unless the professional services firm engages in negotiations before July 31, 2026. The extortion group posted about EY on its dark web leak site, describing the deadline as a β€œfinal warning” and […]

The post ShinyHunters Claims EY Data Breach, Threatens to Leak Stolen Client Tax Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Yesterday β€” 27 July 2026GBHackers

NVIDIA, Microsoft, and CrowdStrike Launch Alliance for Open-Source AI Security

By: Divya
27 July 2026 at 09:57

NVIDIA, Microsoft, and CrowdStrike have joined a broad coalition of technology, cybersecurity, and open-source organizations to launch the Open Secure AI Alliance. This initiative focuses on developing open tools, models, agent harnesses, and security techniques to defend AI-enabled infrastructure. The alliance builds on the groundwork laid by the Linux Foundation’s Akrites initiative and the Open […]

The post NVIDIA, Microsoft, and CrowdStrike Launch Alliance for Open-Source AI Security appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Anyone With a Browser Could Access 700,000 Vatican Prayer App Accounts

27 July 2026 at 08:49

A critical access control vulnerability in the Vatican’s official β€œClick to Pray” platform has exposed the personal data of more than 700,000 users, highlighting once again how basic web security misconfigurations continue to put large-scale user bases at risk. The service, operated by the Pope’s Worldwide Prayer Network, is widely used across the globe to […]

The post Anyone With a Browser Could Access 700,000 Vatican Prayer App Accounts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Claude Opus 5 Finds Software Vulnerabilities While Blocking Exploit Generation

By: Divya
27 July 2026 at 08:22

Claude Opus 5, the latest flagship AI model from Anthropic, represents a significant shift in how advanced systems can be safely utilized in cybersecurity. This model can proactively identify software vulnerabilities while specifically preventing the generation of exploits and offensive usage. Announced on July 24, 2026, Opus 5 is positioned as a high-end, general-purpose intelligence […]

The post Claude Opus 5 Finds Software Vulnerabilities While Blocking Exploit Generation appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Europol Launches Project COMPASS to Disrupt β€˜The Com’ Cybercrime Network Targeting Minors

By: Divya
27 July 2026 at 07:36

Europol has launched Project COMPASS, a coordinated transnational initiative aimed at disrupting β€œThe Com,” a highly dangerous cybercrime and nihilistic extremist network that systematically targets minors and vulnerable young people across digital platforms. The Com operates as a sprawling transnational virtual network (TVN), utilizing social media, messaging apps, music platforms, and online games to recruit, […]

The post Europol Launches Project COMPASS to Disrupt β€˜The Com’ Cybercrime Network Targeting Minors appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

vBulletin Pre-Auth RCE Flaw Allows Remote PHP Code Execution

By: Divya
27 July 2026 at 07:11

A critical pre-authentication remote code execution vulnerability in vBulletin, tracked as CVE-2026-61511, could allow unauthenticated attackers to execute arbitrary PHP code on vulnerable forum servers. This issue affects vBulletin versions 6.2.1 and earlier, as well as 6.1.6 and earlier, according to a July 27, 2026, disclosure from SSD Secure Disclosure. If exploited successfully, this vulnerability […]

The post vBulletin Pre-Auth RCE Flaw Allows Remote PHP Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Over 70 Fake Windows App Sites Could Turn Trusted Downloads Into Malware

27 July 2026 at 06:59

A newly uncovered cluster of more than 70 impersonation domains targeting popular Windows applications is raising fresh concerns about a scalable malware distribution campaign that leverages trust in legitimate software ecosystems. The discovery, triggered by a developer investigating unusual search results for their own application, reveals a coordinated infrastructure designed to mimic well-known tools while […]

The post Over 70 Fake Windows App Sites Could Turn Trusted Downloads Into Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

GitHub Adds Dependabot Cooldown to Stop Poisoned Dependencies

By: Divya
27 July 2026 at 06:37

GitHub has introduced a default cooldown period for Dependabot version updates to decrease the risk of organizations automatically adopting malicious or compromised open-source dependencies as soon as they are released. This change comes in response to a rise in supply chain attacks where attackers publish trojanized package versions to public registries, relying on automated update […]

The post GitHub Adds Dependabot Cooldown to Stop Poisoned Dependencies appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Crypto Criminals Use Social Media Profiling to Select Victims for Violent Wrench Attacks

27 July 2026 at 06:05

Crypto criminals are increasingly weaponizing social media intelligence to identify and target high-value individuals in a surge of violent β€œwrench attacks,” marking a shift from purely digital exploitation to coordinated physical coercion campaigns. Recent threat intelligence indicates that attackers are systematically profiling cryptocurrency holders using publicly available data across platforms such as Instagram, TikTok, X, […]

The post Crypto Criminals Use Social Media Profiling to Select Victims for Violent Wrench Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

❌
❌