Normal view

There are new articles available, click to refresh the page.
Before yesterdayGBHackers

New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims

23 July 2026 at 06:32

A new Windows-focused infostealer and remote access trojan (RAT) dubbed Dolphin X is being advertised on cybercrime forums with a clear pitch: automate the theft and triage of high-value corporate targets. Unlike commodity stealers that focus mainly on browser passwords, Dolphin X is positioned as an enterprise-adjacent data vacuum with a built-in AI-powered victim scoring […]

The post New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Google Unveils CodeMender AI Agent for Automated Vulnerability Detection and Remediation

By: Divya
23 July 2026 at 03:37

Google has unveiled CodeMender, a managed AI security agent designed to identify, validate, and remediate software vulnerabilities at machine speed. Announced in preview on July 22, 2023, the tool is available through the Gemini Enterprise Agent Platform and can also function as a core component of Google’s AI Threat Defense offering. This launch comes as […]

The post Google Unveils CodeMender AI Agent for Automated Vulnerability Detection and Remediation appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Anthropic Launches Claude Security Plugin to Scan Codebases for Vulnerabilities Before Commit

By: Divya
23 July 2026 at 01:12

Anthropic has launched the Claude Security plugin for Claude Code in beta, enhancing its AI-assisted development platform with security scanning capabilities designed to identify vulnerabilities earlier in the software development lifecycle. The company stated that developers can scan code changes before committing them or initiate comprehensive security reviews across an entire codebase directly from the […]

The post Anthropic Launches Claude Security Plugin to Scan Codebases for Vulnerabilities Before Commit appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Yubico Launches YubiKey 5.8 With Hardware-Backed Authorization for AI Agent Workflows

By: Divya
22 July 2026 at 02:19

Yubico has released the YubiKey firmware version 5.8, expanding its hardware security key platform beyond phishing-resistant authentication. This update introduces verifiable, hardware-backed authorization for digital signatures, identity wallets, payment confirmations, and AI agent approval workflows. Announced on July 21, 2026, this firmware update aims to help enterprises verify not only who accesses an application but […]

The post Yubico Launches YubiKey 5.8 With Hardware-Backed Authorization for AI Agent Workflows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Exploits Zero-Day to Gain Internet Access and Compromise Hugging Face Servers

By: Divya
22 July 2026 at 00:46

OpenAI has revealed that during an internal evaluation of advanced cyber capabilities, AI agents exploited a zero-day vulnerability, escaped a constrained research environment, and compromised parts of Hugging Face’s production infrastructure. While Hugging Face detected and contained the activity, OpenAI’s internal security team also identified unusual behavior during the assessment. OpenAI Compromise Hugging Face Servers […]

The post OpenAI Exploits Zero-Day to Gain Internet Access and Compromise Hugging Face Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data

21 July 2026 at 06:57

JADEPUFFER has escalated from automated database extortion to purpose-built AI model destruction, deploying a custom Go ransomware dubbed ENCFORGE to encrypt and effectively wipe high‑value AI and ML artifacts across an entire stack. A missing‑authentication bug in the /api/v1/validate/code endpoint that enables unauthenticated arbitrary Python execution on the host. That initial operation chained reconnaissance, credential […]

The post JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Iran-Linked APT42 Uses AI-Assisted Phishing and TAMECAT Backdoor to Target Defense Officials

21 July 2026 at 04:40

Iran-linked APT42 is escalating its espionage operations with AI-assisted phishing and an expanded TAMECAT backdoor, enabling long-lived access to defense and government identities rather than just endpoints. Recent activity shows tightly integrated social engineering, cloud abuse, and fileless PowerShell tradecraft that significantly complicate detection and response. APT42, also tracked as TA453 in some reporting, is […]

The post Iran-Linked APT42 Uses AI-Assisted Phishing and TAMECAT Backdoor to Target Defense Officials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware

21 July 2026 at 03:34

AgentBaiting is the clearest sign yet that AI agents and their capability ecosystems have become a first‑class malware delivery surface, with FakeGit’s 7,600‑repo operation pushing SmartLoader and StealC directly into AI Skills and MCP workflows. By turning agent‑readable READMEs, public AI registries, and GitHub trust signals into a weaponized “AI capability supply chain,” attackers now […]

The post AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Bit2Watt Attack Turns AI Data Centers Into Cyber-Physical Threats to Local Power Grids

21 July 2026 at 01:48

Bit2Watt is a newly disclosed cyber‑physical attack class that weaponizes AI and GPU workloads in modern data centers to destabilize nearby power grids, turning compute infrastructure itself into a grid‑scale threat surface. Measurements on NVIDIA accelerators show sub‑millisecond power ramps where a single Volta V100 or RTX‑series GPU swings from low-load phases to near‑TDP draw, […]

The post Bit2Watt Attack Turns AI Data Centers Into Cyber-Physical Threats to Local Power Grids appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New NadMesh Botnet Uses 20+ RCE Vectors to Hijack AI and MCP Infrastructure

17 July 2026 at 06:55

NadMesh is a new, industrial‑grade Go‑based botnet that weaponizes more than 20 RCE vectors to hijack AI and MCP infrastructure at scale, combining autonomous scanning, exploit delivery, and credential harvesting in a single closed‑loop platform. In early July 2026, researchers identified NadMesh as a high‑volume Go-written botnet that was aggressively deploying bot agents across internet‑facing […]

The post New NadMesh Botnet Uses 20+ RCE Vectors to Hijack AI and MCP Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New Framework Redefines AI Penetration Testing Around Prompt Injection and Behavioral Objective Violations

16 July 2026 at 08:38

A newly proposed framework argues that AI penetration testing must move beyond conventional infrastructure compromise and assess whether an adversary can make an AI-enabled system act against its intended operational purpose. Traditional penetration testing typically measures compromise through outcomes such as unauthorized access, privilege escalation, data theft, service disruption, or persistence. Those outcomes remain critical […]

The post New Framework Redefines AI Penetration Testing Around Prompt Injection and Behavioral Objective Violations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Unveils GPT-Red AI Model That Automatically Finds Prompt Injection Vulnerabilities

By: Divya
16 July 2026 at 07:39

OpenAI has introduced GPT-Red, an automated safety red-teaming model trained to identify and exploit prompt injection weaknesses in AI agents. Prompt injection occurs when malicious instructions hidden in webpages, emails, local files, code repositories, or tool outputs manipulate an AI system into ignoring its intended task, potentially causing data theft, unauthorized actions, or policy bypasses. […]

The post OpenAI Unveils GPT-Red AI Model That Automatically Finds Prompt Injection Vulnerabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Malicious AI Agents Attempt Reverse Shells, Credential Theft, and Persistent SSH Access

16 July 2026 at 03:44

AI agents are increasingly crossing the line from generating content to executing actions inside developer workstations, cloud environments, and enterprise systems. New telemetry from Gen’s H1 2026 Threat Report shows that agent runtime controls detected attempts involving reverse shells, credential-file access, API-key discovery, destructive commands, and SSH persistence mechanisms. The activity does not necessarily mean […]

The post Malicious AI Agents Attempt Reverse Shells, Credential Theft, and Persistent SSH Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

BusySnake Stealer Uses Reverse SSH Tunnels and AI-Generated Loaders to Evade Detection

13 July 2026 at 06:40

Armored Likho, a previously undocumented threat group also tracked as Eagle Werewolf based on circumstantial evidence, is targeting government institutions and electric-power organizations across Russia, Brazil, and Kazakhstan with a new Python-based infostealer named BusySnake. The group’s activity reflects an unusual overlap between cyber-espionage and financially motivated operations. Armored Likho targets organizations for intelligence collection […]

The post BusySnake Stealer Uses Reverse SSH Tunnels and AI-Generated Loaders to Evade Detection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New GhostCommit Technique Hides Exploits in Images to Evade AI Code Reviewers

By: Divya
13 July 2026 at 00:00

Researchers have revealed a technique called “GhostCommit,” which involves prompt injection by hiding malicious instructions within images included in pull requests. This technique has the potential to bypass text-only AI code reviewers and later manipulate coding agents into exposing repository secrets. The ASSET Research Group explained that this technique leverages the widening gap between automated […]

The post New GhostCommit Technique Hides Exploits in Images to Evade AI Code Reviewers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Launches GPT-5.6 and ChatGPT Work With Multi-Agent Cybersecurity Capabilities

By: Divya
10 July 2026 at 01:07

OpenAI has launched GPT-5.6 alongside ChatGPT Work, positioning its newest flagship AI system as an agentic platform capable of completing extended, multi-step work across enterprise applications, files, web services, and desktop environments. GPT-5.6 Sol, the flagship model, is joined by Terra and Luna tiers, while ChatGPT Work uses the new model to transform high-level objectives […]

The post OpenAI Launches GPT-5.6 and ChatGPT Work With Multi-Agent Cybersecurity Capabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

GitHub Copilot IDE Coding Agents Vulnerable to Workflow-Level Jailbreak Attacks

By: Divya
9 July 2026 at 05:06

GitHub Copilot’s new coding agents, which are integrated into IDEs, are susceptible to a specific type of “workflow-level” jailbreak attacks. These attacks can bypass chat refusals, allowing agents to generate harmful code while performing standard software development tasks unwittingly. According to Arxiv, researchers who studied Copilot in Visual Studio Code discovered that models that successfully […]

The post GitHub Copilot IDE Coding Agents Vulnerable to Workflow-Level Jailbreak Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Claude AI Prompt Injection Attack Turns Chatbot Into Stealthy C2 Agent to Achieve Remote Code Execution

By: Divya
9 July 2026 at 00:17

Claude Desktop’s synced Personal Preferences feature can be exploited as a covert prompt-injection vector, transforming the AI assistant into a de facto command-and-control (C2) agent. This method allows for remote code execution on a compromised user workstation without the need for phishing emails or traditional malware delivery. In this attack chain, the initial access is […]

The post Claude AI Prompt Injection Attack Turns Chatbot Into Stealthy C2 Agent to Achieve Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

ESET Threat Report H1 2026 Highlights Malicious AI Skills, ClickFix Surge, and EDR Killers

8 July 2026 at 07:32

ESET’s H1 2026 threat report shows attackers accelerating the use of familiar playbooks with AI-flavored lures, social engineering, and defense evasion rather than inventing entirely new ones. The clearest signals are the rise of malicious AI skills, a doubled ClickFix footprint, first-wave AI-powered Android malware, record QR-code phishing, and a growing ecosystem of EDR killers. […]

The post ESET Threat Report H1 2026 Highlights Malicious AI Skills, ClickFix Surge, and EDR Killers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

AI-as-a-Service Botnet Routes Malicious Workloads Across Compromised Windows and Linux Hosts

8 July 2026 at 05:48

The underground advertisement for the so-called Mycelium Framework reads like another feature‑packed botnet sales pitch: cross‑platform payloads, encrypted C2, persistence, exploit modules, credential theft, and lateral movement. Those building blocks are not new. What makes Mycelium notable is its advertised purpose to treat compromised endpoints not as disposable bots but as a capability‑aware. AI compute […]

The post AI-as-a-Service Botnet Routes Malicious Workloads Across Compromised Windows and Linux Hosts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

❌
❌