Website profile

gbhackers.com

GBHackers Security | #1 Globally Trusted Cyber Security News Platform | GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates. gbhackers.com GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates.

  • 262articles · 30d
  • 4+ day agolatest article
  • Aug 17, 2026earliest in window
  • 40%with images
  • 375avg words
articles per day
Categories
  • Computers & Electronics 177
  • Science & Technology 158
  • Software 127
  • Conflict, War & Peace 76
  • Crime & Law 70
  • Software Dev. 55
  • Internet & Telecom 41
  • News 24

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


gbhackers.com > new-ai-workflow-identity-hijacking-attack

New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data

4+ day, 9+ hour ago   (539+ words) Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or jailbreaking an AI model. Instead, it exploits a fundamental authorization flaw: AI workflows can process untrusted input from low-privileged…...


gbhackers.com > litellm-ai-gateways

Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft

4+ day, 4+ hour ago   (616+ words) Nearly one in 10 internet-exposed LiteLLM AI gateways accepted the widely documented default master key, sk-1234, or required no authentication, creating a direct path to LLMjacking, sensitive credential exposure, and in vulnerable versions root-level code execution inside the gateway container. Their…...


gbhackers.com > microsoft-365-accounts-hijacked

Hackers Pose as IT Support to Hijack Microsoft 365 Accounts With Fake Passkey Alerts

4+ day, 8+ hour ago   (444+ words) Microsoft Security Research said it has observed the cloud-focused intrusions since May 2026. The campaign begins with a phone call or SMS sent to an employee’s personal device. Posing as IT support, the caller claims the target must urgently update a…...


gbhackers.com > phishing-attack-uses-blob-urls

New Phishing Attack Uses Blob URLs to Hide Malicious Pages From Security Scanners

4+ day, 6+ hour ago   (557+ words) A phishing campaign that moves the credential-harvesting page out of attacker-controlled web infrastructure and into the victim’s browser. Unlike ordinary phishing kits, which host cloned login portals on domains that can eventually be detected and disrupted, this campaign delivers malicious…...


gbhackers.com > openai-builds-defense-factory

OpenAI Builds ‘Defense Factory’ as AI Agents Gain Ability to Chain Cyber Exploits

4+ day, 8+ hour ago   (480+ words) OpenAI has announced its plans for a “Defense Factory,” a cybersecurity operation that prioritizes agent-driven actions. This initiative is designed to continuously discover, validate, remediate, and verify vulnerabilities as AI systems develop the ability to conduct increasingly complex cyber operations....


gbhackers.com > fortipam-chrome-extension-vulnerability

FortiPAM Chrome Extension Vulnerability Lets Malicious Sites Control Browser Proxy and Record Tabs

5+ day, 4+ hour ago   (440+ words) A critical vulnerability has been identified in the Fortinet FortiPAM Chrome extension that could allow a malicious website to manipulate browser proxy settings, open tabs at the attacker’s discretion, and record activity within those tabs. This issue, tracked as CVE…...


gbhackers.com > chatgpt-flaw

ChatGPT Flaw Could Let Attackers Steal Gmail Data Across User Accounts

5+ day, 7+ hour ago   (549+ words) Security researchers have revealed a recently patched flaw in ChatGPT’s isolation system that could have allowed attackers to access data from a victim’s connected Gmail account and send it to a separate ChatGPT account through a hidden cross-account channel. Check…...


gbhackers.com > best-managed-xdr-compared

The 12 Best Managed XDR Services, Compared and Priced

5+ day, 7+ hour ago   (1549+ words) Best value overall: Bitdefender — competent managed XDR at pricing that mid-market organizations can approve, which most of this list cannot claim. Best telemetry breadth: Palo Alto Unit 42. Best for keeping your existing tools: Stellar Cyber and ReliaQuest. MXDR is MDR…...


gbhackers.com > page > 2

GBHackers Security | #1 Globally Trusted Cyber Security News Platform | GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates.

5+ day, 9+ hour ago   (1590+ words) Best value overall: Microsoft Defender XDR included in Microsoft 365 E5 and genuinely strong across Microsoft’s own surface, which for most organizations is most of their surface. Best open XDR: Stellar Cyber, built to ingest whatever you already own. Best native correlation:…...


gbhackers.com > infostealers-target-ai-tools

Infostealers Target Claude, Cursor, Codex and Other AI Agents to Steal Credentials and Sensitive Data

5+ day, 10+ hour ago   (649+ words) Information-stealing malware is expanding its collection logic to target locally stored data from AI coding agents, including Claude, Cursor, Codex, Cline, Continue, and OpenCode. The shift puts developer credentials, Model Context Protocol configurations, prompt histories, project metadata, and potentially proprietary…...