Website profile

gbhackers.com

GBHackers Security | #1 Globally Trusted Cyber Security News Platform | GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates. gbhackers.com GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates.

  • 262articles · 30d
  • 4+ day agolatest article
  • Aug 17, 2026earliest in window
  • 40%with images
  • 375avg words
articles per day
Categories
  • Computers & Electronics 177
  • Science & Technology 158
  • Software 127
  • Conflict, War & Peace 76
  • Crime & Law 70
  • Software Dev. 55
  • Internet & Telecom 41
  • News 24

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


gbhackers.com > new-ai-workflow-identity-hijacking-attack

New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data

4+ day, 9+ hour ago   (539+ words) Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or jailbreaking an AI model. Instead, it exploits a fundamental authorization flaw: AI workflows can process untrusted input from low-privileged…...


gbhackers.com > litellm-ai-gateways

Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft

4+ day, 4+ hour ago   (616+ words) Nearly one in 10 internet-exposed LiteLLM AI gateways accepted the widely documented default master key, sk-1234, or required no authentication, creating a direct path to LLMjacking, sensitive credential exposure, and in vulnerable versions root-level code execution inside the gateway container. Their…...


gbhackers.com > microsoft-365-accounts-hijacked

Hackers Pose as IT Support to Hijack Microsoft 365 Accounts With Fake Passkey Alerts

4+ day, 8+ hour ago   (444+ words) Microsoft Security Research said it has observed the cloud-focused intrusions since May 2026. The campaign begins with a phone call or SMS sent to an employee’s personal device. Posing as IT support, the caller claims the target must urgently update a…...


gbhackers.com > phishing-attack-uses-blob-urls

New Phishing Attack Uses Blob URLs to Hide Malicious Pages From Security Scanners

4+ day, 6+ hour ago   (557+ words) A phishing campaign that moves the credential-harvesting page out of attacker-controlled web infrastructure and into the victim’s browser. Unlike ordinary phishing kits, which host cloned login portals on domains that can eventually be detected and disrupted, this campaign delivers malicious…...


gbhackers.com > clickfix-lures-target-macos

Hackers Use ClickFix Lures to Deploy MacSync Stealer and Bypass macOS Security.

4+ day, 10+ hour ago   (593+ words) The campaigns do not require a macOS vulnerability; instead, they abuse user trust by persuading victims to paste attacker-controlled commands into Terminal, sidestepping traditional file-centric protections. However, Russian-language artifacts observed in some samples do not establish attribution to a particular…...


gbhackers.com > fortipam-chrome-extension-vulnerability

FortiPAM Chrome Extension Vulnerability Lets Malicious Sites Control Browser Proxy and Record Tabs

5+ day, 4+ hour ago   (440+ words) A critical vulnerability has been identified in the Fortinet FortiPAM Chrome extension that could allow a malicious website to manipulate browser proxy settings, open tabs at the attacker’s discretion, and record activity within those tabs. This issue, tracked as CVE…...


gbhackers.com > best-mac-antivirus-compared

The 12 Best Antivirus Software for Mac, Compared and Priced

5+ day, 7+ hour ago   (1458+ words) Best value overall: Bitdefender leading detection at mid-range pricing with a light footprint. Best free option: Malwarebytes’ scanner, which cleans an infected Mac without costing anything. Best macOS specialist: Intego. Best bundle: Norton, if you’ll actually use the VPN, backup,…...


gbhackers.com > infostealers-target-ai-tools

Infostealers Target Claude, Cursor, Codex and Other AI Agents to Steal Credentials and Sensitive Data

5+ day, 10+ hour ago   (649+ words) Information-stealing malware is expanding its collection logic to target locally stored data from AI coding agents, including Claude, Cursor, Codex, Cline, Continue, and OpenCode. The shift puts developer credentials, Model Context Protocol configurations, prompt histories, project metadata, and potentially proprietary…...


gbhackers.com > redis-cryptojacking-campaign

Massive Redis Cryptojacking Campaign Hijacks Thousands of Linux Servers

5+ day, 12+ hour ago   (569+ words) The campaign scans IPv4 address ranges for Redis services exposed to the internet, typically on TCP port 6379, then attempts to interact with instances that allow connections without authentication. Once access is obtained, the attackers use Redis’s administrative CONFIG SET command to…...


gbhackers.com > google-sheets-c2-abuse

Hackers Abuse Google Sheets as C2 in ClickFix Attacks to Steal Cryptocurrency

5+ day, 11+ hour ago   (605+ words) The operation marks a significant evolution of ClickFix social engineering: rather than persuading users to execute PowerShell commands or install malware on an operating system, attackers manipulate them into running malicious code inside Chrome itself. The document claims to disclose…...