Aggregator
Gunra Ransomware’s Double‑Extortion Playbook and Global Impact
Gunra Ransomware, has surfaced as a formidable threat in April 2025, targeting Windows systems across industries such as real estate, pharmaceuticals, and manufacturing. As reported by CYFIRMA, this ransomware employs a sophisticated double-extortion strategy, encrypting victims’ data while exfiltrating sensitive information to coerce payments. With documented attacks in Japan, Egypt, Panama, Italy, and Argentina, Gunra’s […]
The post Gunra Ransomware’s Double‑Extortion Playbook and Global Impact appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Ubuntu security advisory (AV25-245)
CVE-2022-25857 | snakeyaml up to 1.30 Depth denial of service (Issue 525 / Nessus ID 235116)
CVE-2022-40150 | Oracle Communications Billing and Revenue Management up to 12.0.0.7.0 Webservices Manager denial of service (Nessus ID 235116)
CVE-2022-40150 | Oracle WebLogic Server 12.2.1.3.0/12.2.1.4.0/14.1.1.0.0 Centralized Third Party Jars denial of service (Nessus ID 235116)
CVE-2022-40150 | Oracle Siebel CRM up to 23.4 EAI denial of service (Nessus ID 235116)
CVE-2022-40150 | Oracle Utilities Application Framework up to 4.5.0.1.1 General denial of service (Nessus ID 235116)
CVE-2022-23913 | Apache ActiveMQ Artemis up to 2.19.0 resource consumption (Nessus ID 235116)
CVE-2022-40150 | Jettison XML Parser resource consumption (Issue 45 / Nessus ID 235116)
CVE-2022-0084 | Oracle Communications Cloud Native Core Console 22.3.0 Configuration denial of service (Nessus ID 235116)
CVE-2022-0084 | XNIO notifyReadClosed allocation of resources (Nessus ID 235116)
Hackers Exploit 21 Apps to Take Full Control of E-Commerce Servers
Cybersecurity firm Sansec has uncovered a sophisticated supply chain attack that has compromised 21 popular e-commerce applications, granting hackers full control over hundreds of online stores. This malicious campaign, which began with the injection of backdoors as early as six years ago, was activated this week, exposing vulnerabilities in software from vendors such as Tigren, […]
The post Hackers Exploit 21 Apps to Take Full Control of E-Commerce Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Arabian Ghosts Defaced the Website of Massage Fitness Health Studio and Shop
Q1 2025 Recap: GitGuardian Doubles Down on Secrets Security and Machine Identity Control
GitGuardian launches new NHI Governance, enhanced synergies with Secret Manager integrations, smarter context analysis, container registry scanning, historical scanning for Jira & Confluence, and more. Take control of your secrets security, and machine identities.
The post Q1 2025 Recap: GitGuardian Doubles Down on Secrets Security and Machine Identity Control appeared first on Security Boulevard.
Alleged Sale of Admin and Shell Access to an Unidentified Greek E-Commerce Website
Hackers Target HR Departments With Fake Resumes to Spread More_eggs Malware
The financially motivated threat group Venom Spider, also tracked as TA4557, has shifted its focus to corporate Human Resources (HR) departments with a highly targeted spear-phishing operation. According to research by Arctic Wolf Labs, the group is leveraging legitimate job platforms and messaging services to send fraudulent job applications laced with malicious resumes. These deceptive […]
The post Hackers Target HR Departments With Fake Resumes to Spread More_eggs Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.