Aggregator
AI-Generated TikTok Videos Used to Distribute Infostealer Malware
Police arrests 270 dark web vendors, buyers in global crackdown
Malicious VS Code Extensions Target Windows Solidity Developers to Steal Login Credentials
Datadog Security Research has uncovered a targeted malware campaign aimed at Solidity developers on Windows systems, using malicious Visual Studio Code (VS Code) extensions as the initial attack vector. Identified as the work of a single threat actor tracked as MUT-9332, this operation deployed three trojanized extensions solaibot, among-eth, and blankebesxstnion disguised as legitimate tools […]
The post Malicious VS Code Extensions Target Windows Solidity Developers to Steal Login Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Unpatched Windows Server vulnerability allows full domain compromise
A privilege escalation vulnerability in Windows Server 2025 can be used by attackers to compromise any user in Active Directory (AD), including Domain Admins. “The [“BadSuccessor”] attack exploits the delegated Managed Service Account (dMSA) feature that was introduced in Windows Server 2025, works with the default configuration, and is trivial to implement,” Akamai researcher Yuval Gordon warned. BadSuccessor attack technique explained The exploitable feature was introduced to help organizations replace the legacy non-managed service accounts … More →
The post Unpatched Windows Server vulnerability allows full domain compromise appeared first on Help Net Security.
Ubuntu, nginx и немного зла: как вредонос притворился веб-сервером и заразил всё подряд
Windows 10紧急更新修复了MIDI恢复问题
Lumma Stealer Infrastructure Behind Global Attacks on Millions of Users Dismantled
The U.S. Justice Department, in collaboration with the FBI and private sector partners like Microsoft, has announced the disruption of the Lumma Stealer (also known as LummaC2) malware infrastructure. This global operation targeted the notorious Malware-as-a-Service (MaaS) platform, which has been linked to over 1.7 million instances of data theft worldwide. The unsealing of two […]
The post Lumma Stealer Infrastructure Behind Global Attacks on Millions of Users Dismantled appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
O2 UK修复了从呼叫元数据中泄露移动用户位置的错误
Scheidend troepencommandant Schreurs ziet toekomst voor Irak
SK Telecom称恶意软件入侵持续了3年,影响了2700万个号码
dongtai agent分析
Coinbase表示最近的数据泄露影响了69461名客户
Cybercriminals Using Trusted Google Domains to Spread Malicious Code
A sophisticated new malvertising scheme has emerged, transforming trusted e-commerce websites into phishing traps without the knowledge of site owners or advertisers. Cybercriminals are exploiting integrations with Google APIs, specifically through JSONP (JSON with Padding) calls, to inject malicious scripts into legitimate online stores. These scripts operate covertly, redirecting unsuspecting shoppers to fraudulent payment pages […]
The post Cybercriminals Using Trusted Google Domains to Spread Malicious Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
网络攻击后玛莎百货面临4.02亿美元利润损失
Signal 在默认下不能被 Recall
Law Enforcement, Microsoft Disrupt Operations of Popular Lumma Stealer
International law enforcement agencies and cybersecurity vendors seized thousands of domains used to run the MaaS operations of the widely popular Lumma Stealer malware, which was used to facilitate ransomware, malvertising, and phishing attacks around the globe.
The post Law Enforcement, Microsoft Disrupt Operations of Popular Lumma Stealer appeared first on Security Boulevard.
针对带有人工智能聊天机器人的儿童的新谷歌计划可能违反FTC隐私规则
Linux Kernel Zero-Day SMB Vulnerability Discovered via ChatGPT
Security researcher has discovered a zero-day vulnerability (CVE-2025-37899) in the Linux kernel’s SMB server implementation using OpenAI’s o3 language model. The vulnerability, a use-after-free bug in the SMB ‘logoff’ command handler, could potentially allow remote attackers to execute arbitrary code with kernel privileges. This discovery marks a significant advancement in AI-assisted vulnerability research, demonstrating how […]
The post Linux Kernel Zero-Day SMB Vulnerability Discovered via ChatGPT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.