Aggregator
Microsoft Prevents Billions of Dollars in Fraud and Scams
Microsoft has reported significant strides in thwarting financial fraud across its ecosystem. From April 2024 to April 2025, the tech giant managed to prevent approximately $4 billion in fraudulent transactions, a testament to its robust anti-fraud measures and AI-driven defenses. AI-Enhanced Cyber Threats and Microsoft’s Defense The evolution of AI has inadvertently lowered the entry […]
The post Microsoft Prevents Billions of Dollars in Fraud and Scams appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
State Sponsored Hackers now Widely Using ClickFix Attack Technique in Espionage Campaigns
The state-sponsored hackers from North Korea, Iran, and Russia have begunp deploying the ClickFix social engineering technique, traditionally associated with cybercriminal activities, into their espionage operations. This shift was first documented by Proofpoint researchers over a three-month period from late 2024 into early 2025 where these actors employed ClickFix in routine activities. The Emergence of […]
The post State Sponsored Hackers now Widely Using ClickFix Attack Technique in Espionage Campaigns appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-32790 | langgenius dify up to 0.6.12 /export access control
Critical AnythingLLM Vulnerability Exposes Systems to Remote Code Execution
A critical security flaw (CVE-2024-13059) in the open-source AI framework AnythingLLM has raised alarms across cybersecurity communities. The vulnerability, discovered in February 2025, allows attackers with administrative privileges to execute malicious code remotely, potentially compromising entire systems. Detail Description CVE ID CVE-2024-13059 Severity Critical (CVSS 9.1) EPSS Score 0.04% (Low exploitation probability) Affected Versions AnythingLLM versions < […]
The post Critical AnythingLLM Vulnerability Exposes Systems to Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-49808 | IBM Sterling Connect:Direct Web Services 6.1.0/6.2.0/6.3.0 authorization
CVE-2024-45651 | IBM Sterling Connect:Direct Web Services 6.1.0/6.2.0/6.3.0 session expiration
CVE-2022-41358 | SourceCodester Garage Management System 1.0 createCategories.php categoriesName cross site scripting (ID 168718 / EDB-52238)
Gain Legends International Suffers Security Breach – Customers Data Stolen
Gain Legends International, a prominent name in sports, entertainment, and venue management, has confirmed a significant cybersecurity breach that has compromised the personal information of an undisclosed number of customers and associates. The incident was first identified on November 9, 2024, and prompted immediate action from the company to secure its systems and launch a […]
The post Gain Legends International Suffers Security Breach – Customers Data Stolen appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Linux Kernel Vulnerability Let Attackers Escalate Privilege – PoC Released
A newly discovered vulnerability, CVE-2024-53141, in the Linux kernel’s IP sets framework has exposed a critical security flaw that allows local attackers to escalate privileges and potentially gain root access. The vulnerability, assigned a CVSS score of 7.8, uncovered by researchers st424204 and d4em0n, specifically affects the bitmap:ip set type within the netfilter subsystem. Linux […]
The post Linux Kernel Vulnerability Let Attackers Escalate Privilege – PoC Released appeared first on Cyber Security News.
Подслушивает прямо из кармана: SpyMax стирает границы между законом и шпионажем
CVE-2000-0505 | Apache HTTP Server up to 1.3.6.2 on Windows Directory information disclosure (EDB-19975 / Nessus ID 10440)
Global Zoom Outage Caused by Server Block Imposed from GoDaddy Registry
On April 16, 2025, millions of users worldwide found themselves unable to access Zoom, the widely used video conferencing platform, due to a critical outage that lasted nearly two hours. The disruption, which began at 11:25 AM PDT and was resolved by 1:12 PM PDT, was traced not to a cyberattack or internal technical failure, […]
The post Global Zoom Outage Caused by Server Block Imposed from GoDaddy Registry appeared first on Cyber Security News.