Skip to content

ADMIN.FOUNDATION

  • PureRAT Hides PE Payloads in PNGs for Fileless Execution

    ·

    cyber security, Cyber Security News

    A multi-stage PureRAT campaign that hides portable executable (PE) payloads inside PNG images and executes them almost entirely in memory, making detection and forensics significantly harder for defenders. The campaign combines steganography, PowerShell-based loaders, UAC bypass, process hollowing, and anti-virtualization checks to remain stealthy on compromised systems. The attack begins with a weaponized .LNK file […]

    The post PureRAT Hides PE Payloads in PNGs for Fileless Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • GitHub Issue Alerts Exploited in OAuth Phishing Scam Targeting Developers

    ·

    cyber security, Cyber Security News, GitHub, Phishing

    Hackers are abusing GitHub’s own issue-notification emails to phish developers and silently take over their repositories using malicious OAuth applications, effectively turning trusted DevOps tooling into a supply-chain attack vector. Developers are now prime targets because compromising their accounts gives attackers direct access to source code CI/CD pipelines, and production workflows, making this a textbook supply-chain attack […]

    The post GitHub Issue Alerts Exploited in OAuth Phishing Scam Targeting Developers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • CISA Alerts Defenders to Exploited Cisco Catalyst SD-WAN Manager Security Flaws

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to network defenders regarding the active exploitation of Cisco Catalyst SD-WAN Manager. On April 20, 2026, CISA officially added three distinct security flaws affecting the platform to its Known Exploited Vulnerabilities (KEV) catalog. Cisco Catalyst SD-WAN Manager is a critical administrative console used […]

    The post CISA Alerts Defenders to Exploited Cisco Catalyst SD-WAN Manager Security Flaws appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 6,000+ Publicly Exposed Apache ActiveMQ Instances Found Vulnerable to CVE-2026-34197

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Over 6,000 internet-facing Apache ActiveMQ servers are currently affected by a critical security flaw, leaving enterprise networks wide open to attack. The Shadowserver Foundation, a prominent nonprofit security research organization, reported finding exactly 6,364 vulnerable IP addresses during its daily network scans on April 19, 2026. This vulnerability, officially tracked as CVE-2026-34197, stems from an […]

    The post 6,000+ Publicly Exposed Apache ActiveMQ Instances Found Vulnerable to CVE-2026-34197 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Gentlemen RaaS Hits Windows, Linux, and ESXi With New C-Based Locker

    ·

    cyber security, Cyber Security News, Linux, Ransomware, Windows

    Gentlemen is a fast‑growing ransomware‑as‑a‑service (RaaS) operation now targeting Windows, Linux, NAS, BSD, and VMware ESXi with a new locker written in C for hypervisor environments. Its multi‑platform design and strong defense‑evasion features make it a high‑impact threat to corporate networks worldwide. The Gentlemen RaaS emerged around mid‑2025 and quickly built an affiliate ecosystem by […]

    The post Gentlemen RaaS Hits Windows, Linux, and ESXi With New C-Based Locker appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines

    ·

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added eight new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including three flaws impacting Cisco Catalyst SD-WAN Manager, citing evidence of active exploitation. The list of vulnerabilities is as follows – CVE-2023-27351 (CVSS score: 8.2) – An improper authentication vulnerability in PaperCut

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 12 Fraudulent Browser Extensions Disguised as TikTok Downloaders Compromise 130K Users

    ·

    Browser, cyber security, Cyber Security News

    LayerX security researchers have uncovered a massive, highly coordinated campaign involving at least 12 malicious browser extensions on the Google Chrome and Microsoft Edge marketplaces. Disguised as legitimate TikTok video downloaders, these extensions secretly track user activity and harvest sensitive data. The operation has successfully compromised over 130,000 users, with approximately 12,500 installations still active […]

    The post 12 Fraudulent Browser Extensions Disguised as TikTok Downloaders Compromise 130K Users appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • AI-Driven Exploitation Could Shrink Defenders’ Patch Window

    ·

    AI, cyber security, Cyber Security News

    AI-powered cyberattacks are entering a new phase, with frontier AI models now capable of autonomously discovering and exploiting software vulnerabilities at unprecedented speed. Unit 42’s hands-on testing reveals that modern AI models are no longer مجرد coding assistants. Instead, they demonstrate the reasoning ability of full-spectrum security researchers. According to recent findings from Unit 42, […]

    The post AI-Driven Exploitation Could Shrink Defenders’ Patch Window appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Malicious GGUF Models Could Trigger Remote Code Execution on SGLang Servers

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Security researchers have uncovered a critical vulnerability in SGLang, a widely used framework for running large language models, that allows threat actors to compromise inference servers. Tracked as CVE-2026-5760, this flaw enables Remote Code Execution (RCE) when a server loads a maliciously crafted GGUF model file. By simply hosting a weaponized model on platforms like […]

    The post Malicious GGUF Models Could Trigger Remote Code Execution on SGLang Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Sub that sank Iranian warship reflects Navy’s drive to adapt, CNO says

    ·

    Policy
    The U.S. submarine that sank an Iranian warship last month was trained and dispatched on short notice, the chief of naval operations said Monday, touting the quick turn as an example of the Navy’s efforts to adapt more quickly to the changing needs of war.

    “Several weeks ago, after the initial strikes” on Iran, “the joint force needed some covert naval options—and fast, not a six-month deployment cycle and not a full strike group,” Adm. Daryl Caudle told an audience at the Navy League’s Sea-Air-Space conference outside Washington, D.C. “We took a submarine operating in the Indo-Pacific, ran it through a tailored training and certification package, sortied it west, and repositioned it in the Indian Ocean.” 

    On March 4, the attack sub Charlotte fired two torpedoes at the Iranian frigate Dena off Sri Lanka, becoming the first U.S. submarine to sink an enemy vessel with a torpedo since World War II, Pentagon officials have said. 

    "This was not improvisation," Caudle said Monday. "That was a glimpse of the future force…We succeeded because we adapted faster than the problem.”

    Adapting to battlefield problems will mean sending “tailored forces”—like a single retrained sub—rather than rigidly defined sets of naval assets, he said. 

    It will also mean warships that can take on new capabilities as quickly as a slingloaded shipping container can be delivered to a flight deck.

    “If it fits in a container, I want it,” Caudle said, underscoring an initiative announced last month. “Containerization allows us to decouple payloads from platforms. To rapidly reconfigure forces, to tailor capability to mission to scale effects across the entire fleet.”

    Hudson Institute analyst Bryan Clark noted that the submarine’s dash to the Indian Ocean was not the only example of the Navy’s use of tailored forces in the current conflict. 

    “For example, the Navy assembled a tailored force for the blockade of Iran and a separate tailored force for mine-clearing in the Strait of Hormuz,” Clark said.  

    But beyond that, he said, the CNO’s speech reflected an understanding of a key to modern warfare.

    "He focused on adaptability, and suggested the ability to adjust tactics, systems, and force compositions is as important as mass in determining combat success," he said. 

    Clark, whom Caudle has credited with key insights that are changing the way the Navy generates its forces, recently co-wrote a report on military adaptation. It describes how Ukraine’s maritime forces demonstrate the ability to adapt and how various organizational gaps in the U.S. military throttle it.

    Clark and the report’s co-authors argue that fostering the kind of adaptation that wins wars requires organizing for it.“The enablers of modern warfare—cloud computing, software development tooling, artificial intelligence (AI), digital manufacturing, ubiquitous sensing—are globally available. The military that first builds the infrastructure to best exploit them will have a potentially insurmountable advantage,” they write. 

    They propose that “Adaptation in Contact—the deliberate weaponization of the learning cycle—represents the next revolution in military affairs.”

    Caudle's speech suggested he sees the same problem. He said the Navy's biggest constraint is not technology, but "integration and adoption." To speed new technology to the fleet, therefore, he is pushing a framework he calls the Fleet Introduction Operating System, intended to make updates to naval systems as seamless as downloading an app. The concept is part of Caudle's Fighting Instructions, published in February, which laid out his broader strategy for how the Navy organizes, trains, equips, and fights.

    Whether the Navy can institutionalize that kind of learning speed at scale remains the open question. The Hudson report said that building "digital rails"—intelligence pipelines, simulation environments, and secure deployment channels capable of pushing validated updates to the tactical edge in hours—would require sustained institutional investment, not just a renamed initiative.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 350 351 352 353 354 … 1,074
Next Page

ADMIN.FOUNDATION

cybersecurity / defense / intelligence