• Hackers are abusing the long-running Phorpiex (Trik) botnet to run large-scale ransomware, sextortion, and crypto-clipping operations, turning one infrastructure into a multi-purpose crime machine. A newer variant called Twizt gives the botnet a hybrid architecture that combines traditional command-and-control (C2) with a peer‑to‑peer (P2P) protocol, allowing infected machines to share commands and node lists directly with each […]

    The post Phorpiex Botnet Fuels Ransomware, Sextortion, and Crypto-Theft Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A massive automated cyberattack campaign is actively targeting web applications built on the popular Next.js framework to steal highly sensitive information. Cybersecurity researchers at Cisco Talos have uncovered a severe credential harvesting operation tracked as “UAT-10608” that compromised at least 766 servers worldwide within just 24 hours. The core of this attack relies on CVE-2025-55182, […]

    The post Attackers Abuse React2Shell Flaw to Compromise 700+ Next.js Hosts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A major software supply chain attack has been uncovered after threat actors compromised the widely used Axios npm package, impacting developers and organizations worldwide. The incident, detected on March 31, 2026, involved the use of stolen maintainer credentials to inject malicious code into the popular HTTP client library. Axios is one of the most widely […]

    The post North Korea-Linked Hackers Hit Axios npm in Supply Chain Attack appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • the OpenSSH project released version 10.3 alongside its portable version 10.3p1. Following a brief testing phase in late March, this major update addresses several important security vulnerabilities. The most critical fix prevents a dangerous shell injection flaw, making this an essential update for system administrators worldwide. OpenSSH remains the leading implementation of the SSH protocol […]

    The post OpenSSH 10.3 Released With Patch for Shell Injection and Other Security Flaws appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A new phishing campaign that uses malicious Windows shortcut (LNK) files to target users in South Korea, while abusing GitHub as Command and Control (C2) infrastructure to hide its activity. The operation, linked through tooling and tradecraft to North Korea–related actors, shows a clear evolution from earlier, less obfuscated XenoRAT-delivery campaigns observed since 2024. In […]

    The post North Korea Uses GitHub as C2 in New LNK Phishing Campaign appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The rapid and relentless adoption of Software-as-a-Service (SaaS) applications has fundamentally transformed how businesses operate in 2026. From critical productivity suites like Microsoft 365 and Google Workspace to specialized CRM, HR, and development tools, SaaS is ubiquitous. However, this convenience comes with a significant security caveat: a vast and often unmanaged attack surface. Each SaaS […]

    The post Top 10 Best SaaS Security Posture Management (SSPM) Tools 2026 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The Qilin ransomware group has developed a highly sophisticated infection chain that targets and disables over 300 endpoint detection and response (EDR) solutions. As defenders improve behavioral detection capabilities, attackers are increasingly targeting the defense layer itself during the early stages of a breach. By deploying a malicious “msimg32.dll” file, attackers can bypass traditional antivirus […]

    The post Qilin Ransomware Deploys Malicious DLL to Disable Most EDR Defenses appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A threat actor known as “Mr. Raccoon” claims to have breached Adobe, stealing a massive amount of sensitive data. According to a report by International Cyber Digest, the stolen files include 13 million customer support tickets, 15,000 employee records, internal documents, and all of the company’s HackerOne bug bounty submissions. The attacker did not hack […]

    The post Adobe Data Breach Allegedly Exposes 13 Million Support Tickets appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Ukraine has sent hundreds of counter-drone experts to the Middle East to help the militaries of the United States, Kuwait, Qatar, Saudi Arabia and the UAE defend themselves from Iranian and Russian Shahed drones. Among them is Ukrainian Air Force Capt. Max Maslii, deputy chief of staff for the 96th Anti-Aircraft Missile Brigade, who visited Washington, D.C., in March as part of a Ukrainian defense forces delegation. In this Defense One interview, Maslii describes how Ukraine is using robot swarms, agentic AI, and frontline innovation to define the future of military operations. He outlines how U.S. and NATO militaries must change how they buy, train, and conduct operations to meet the reality of robotic warfare. 

    Watch: 

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The U.S. military declared space superiority over Iran this week, but defense experts question what that means given the country’s inchoate military space program and heavy reliance on space-based intelligence from other nations.

    Adm. Brad Cooper, the head of U.S. Central Command, said Tuesday that the U.S. had established control of the space domain during Operation Epic Fury. It was nearly a month after CENTCOM had announced “Iran's equivalent of Space Command” was destroyed, which harmed the Islamic Revolutionary Guard Corps’ ability to coordinate retaliatory strikes.

    “Our Space Force has given us the ultimate high ground, delivering space superiority, which has been a critical enabler to this fight,” Cooper said in a Tuesday video.

    It’s not clear if the country is still actively jamming or spoofing U.S. assets, and it’s highly unlikely that the U.S. Space Force has physically destroyed the country’s handful of satellites. Navy Capt. Tim Hawkins, a CENTCOM spokesperson, said he could not discuss details about space operations “due to classification.” Given Iran's rudimentary space capabilities, defense experts question what has changed to prompt the military to declare space superiority.

    “It isn’t stopping them from using space assets,” Victoria Samson, the Secure World Foundation’s chief director of space security and stability, said of the U.S. declaring space superiority.  “There’s just a lot of question marks … In regards to how they use space as a national security enabler, I don’t know that they’ve really stopped it, because they weren’t using it other than for imagery analysis.” 

    Iran is reportedly relying on China and Russia’s intelligence and commercial space-based imagery to target U.S. assets throughout the region. A U.S. official told Defense One that Iran’s use of another country’s space-based data doesn’t mean the service lacks control of the space domain.

    “Just because the Iranians are receiving space-based intelligence doesn’t negate that we have space superiority,” the official said.

    Since 2005, the country has launched a total of 26 satellites, only 13 of which were still operational, according to the American Enterprise Institute’s space data navigator tool. Three of those are registered to the IRGC. The U.S., by comparison, has upwards of 500 operational military and intelligence satellites. 

    Gen. Chance Saltzman, the Space Force’s top uniformed officer, acknowledged “it wasn’t really a fair fight,” but said destroying Iran’s space capabilities gave the military an upper hand in communications and air operations within CENTCOM. 

    “You have space superiority if you can use space the way you want, and the adversary cannot use space the way they want, and I think those are the conditions that we've met in this particular instance,” Saltzman said during a Mitchell Institute event Wednesday.

    The term “space superiority” was first publicized in a 1980s Air Force manual. A 2004 service document likened the idea to air superiority and said the two are “crucial first steps in any military operation.” Last year, the Space Force published a warfighting doctrine that said the service’s “formative purpose” is to achieve space superiority.  

    “Space superiority is the degree of control that allows forces to operate at a time and place of their choosing without prohibitive interference from space or counterspace threats, while also denying the same to an adversary,” the Space Force’s doctrine reads.

    Some defense experts see the recent declaration of space superiority as a way for the service to highlight its warfighting rebrand in recent years. 

    “It’s a weird thing to say. I think it’s more a matter of floating the ‘Space Force as a warfighting’ thing,” Samson said.

    Kari Bingen, a senior fellow at the Center for Strategic and International Studies and director of the Aerospace Security Project, said it’s not surprising to see the Space Force becoming more integrated into operations, given adversaries’ desire to target command, control, communications, and intelligence capabilities.

    “Between Venezuela and Operation Epic Fury, these have been opportunities for the Space Force to better integrate space effects into a joint military campaign,” Bingen said. “We’ve long treated space as this special and different capability set. The physics are different, but to make it truly useful to the joint force, it needs to be fully integrated into planning and operations.” 

    Saltzman said guardians had been forward deployed to support Operation Epic Fury and continue to launch space effects in combat zones “despite being under attack from an adversary.” He also said some guardians are supporting the operation stateside out of Shaw Air Force Base in South Carolina and CENTCOM headquarters in Florida.

    “I won’t go into a lot of the operational details, as you might imagine, but you don't have to think too hard to understand what it is the Guardians are bringing to the fight,” Saltzman said. “All of the missions that we always do—missile warning, satellite communications. The links are vital. Over-the-horizon communications is as important now as it ever has been. We create disruption for an adversary.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶