Posts of last few hours
Please support the site operations by clicking ads.
Security researcher MSNightmare, also known as Nightmare-Eclipse, has released BigDiskBuster, a proof-of-concept denial-of-service technique designed to stop Microsoft Defender Antivirus from completing platform and security-intelligence updates. The project is presented as a successor to UnDefend. The researcher claims it works across all supported Windows versions, although the experimental code remains buggy; compatibility has not been […]
The post MSNightmare has Released a Windows Defender Update DoS Vulnerability Called BigDiskBuster appeared first on Cyber Security News.
Hackers are exploiting a critical cPanel and WHM flaw to place Mirai malware on exposed servers, extending a botnet threat normally associated with connected devices. The activity produced a sharp rise in suspicious Telnet traffic and exposed a wider Internet security problem. Its use directly against servers creates concern for organizations that may not associate […]
The post Hackers Exploit cPanel CVE-2026-41940 Auth Bypass to Deploy Mirai Malware appeared first on Cyber Security News.
Date: Sept. 18, 2026, 10 a.m. — 20 Sept. 2026, 10:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://dctf26-quals.cyber-edu.co/
Rating weight: 69.75
Event organizers: CCSIR.org
Date: Sept. 18, 2026, 4 p.m. — 20 Sept. 2026, 16:00 UTC [add to calendar]
Format: Jeopardy
On-line
Location: Brooklyn, New York
Offical URL: https://ctf.csaw.io/
Rating weight: 10.93
Event organizers: NYUSEC
Date: Sept. 19, 2026, noon — 20 Sept. 2026, 12:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.0bscuri7y.in/
Rating weight: 23.71
Event organizers: 0bscuri7y
Date: Sept. 20, 2026, 4:30 a.m. — 20 Sept. 2026, 16:30 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://lunar.rootriet.in/
Rating weight: 0
Event organizers: Root Riet
Threat actors are increasingly abusing Microsoft Teams’ external chat capabilities to impersonate corporate IT help desks. They trick employees into installing malware, granting remote access, and stealing Windows credentials. These attacks exploit a simple vulnerability: employees tend to distrust suspicious emails but often do not apply the same caution to collaboration platforms like Teams. Attackers […]
The post Hackers Abuse Microsoft Teams to Pose as IT Support and Steal Employee Passwords appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Security researchers have unveiled a cache poisoning technique called cache key injection that lets attackers bypass access controls, expose cached sensitive pages, trigger denial-of-service conditions, and potentially execute stored cross-site scripting (XSS) attacks against vulnerable Nginx deployments. Research by YesWeHack researcher Alex Brumen highlights flaws that occur when web caches create cache keys by directly […]
The post New Cache Key Injection Attack Lets Hackers Bypass Access Controls and Poison Nginx Caches appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Japanese software company Helpfeel has confirmed a data breach on its screenshot-sharing platform Gyazo, in which attackers exploited a vulnerability in its image upload server, stealing approximately 23.62 million user records and metadata tied to hundreds of millions of images. Gyazo is a cloud-based screenshot and screen-recording service that uploads users’ captures automatically and generates a shareable link they can post in chats, forums, or social media. According to the company, an attacker exploited the … More →
The post Hackers exploit Gyazo server flaw to steal 23.6 million user records appeared first on Help Net Security.
North Korea-linked threat actor TraderTraitor has expanded its developer-focused intrusion activity beyond cryptocurrency targets, using weaponized Terraform lock files in fake job-interview repositories to infect DevOps engineers with macOS backdoors. SentinelOne identified an Indian IT services provider compromised with the same FLATROOF and ROOFDECK implants previously linked to the April 2026 KelpDAO-LayerZero attack. The campaign […]
The post Hackers Weaponize Terraform Lock Files to Infect DevOps Engineers With macOS Backdoors appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Latest Blog Posts
- 4 weeks 2 days ago
- 3 months ago
- 3 months ago
- 3 months ago
- 3 months ago
- 7 months 3 weeks ago
- 1 year 1 month ago
- 1 year 1 month ago
- 1 year 2 months ago
- 1 year 6 months ago