Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GBHackers

20 articles

GBHackers general Okta 8h ago

Aembit Launches Support for Okta Cross App Access, Extending Enterprise Identity Controls to AI Agents

Silver Spring, Maryland, USA, September 22nd, 2026, CyberNewswire Aembit, the identity and access management (IAM) company for AI agents, today announced sup...

GBHackers → Details

GBHackers general Linux 13h ago

Critical Linux KVM Flaw Enables Guest-to-Host Escape on ARM64 Systems

A critical vulnerability in the Linux Kernel-based Virtual Machine (KVM) for ARM64 systems could let attackers escape a virtual machine and gain read and wri...

1 IOC

GBHackers → Details

GBHackers general Microsoft 14h ago

TASK#STOMP PowerShell Backdoor Steals Business Documents and Executes Remote Commands

A Windows-focused backdoor dubbed TASK#STOMP that uses VBScript, PowerShell, Scheduled Tasks, and runtime C# compilation to establish resilient persistence a...

T1059.001 T1053

GBHackers → Details

GBHackers general Microsoft 14h ago

Hackers Exploit Veeam Agent Vulnerability to Gain SYSTEM-Level Access on Windows

A newly discovered privilege escalation flaw in Veeam Agent for Microsoft Windows could allow attackers with local access to compromised endpoints to execute...

T1548 1 IOC

GBHackers → Details

GBHackers general Red Hat 14h ago

Red Hat OpenShift Flaw Lets Attackers Poison Disconnected Registries With Malicious Releases

Red Hat disclosed an important OpenShift vulnerability that could let attackers bypass release-image signature checks and introduce malicious payloads into d...

1 IOC

GBHackers → Details

GBHackers general Linux 14h ago

Linux BambooToken Malware Uses MQTT C2 for Remote Shell Access and File Exfiltration

A Linux variant of the BambooToken backdoor uses MQTT as its command-and-control channel, enabling operators to profile compromised hosts, execute shell comm...

T1041

GBHackers → Details

GBHackers general 14h ago

Critical MaxKB AI Agent Flaw Lets Prompt Injection Execute System Commands

A critical vulnerability in the MaxKB AI knowledge-base platform could let attackers exploit prompt injection and run operating system commands on vulnerable...

1 IOC

GBHackers → Details

GBHackers general 16h ago

Hackers Abuse Stolen BigCommerce App Key to Steal Master of Malt Customer Data

Master of Malt reported a customer data breach after attackers allegedly compromised an application key linked to Ribon, a third-party BigCommerce app manage...

GBHackers → Details

GBHackers general Microsoft Google 16h ago

Chinese APT Clones Legitimate Websites to Deliver Chrome and Windows Zero-Day Exploits

A third Chinese threat actor has been linked to phishing campaigns that cloned trusted websites and chained Chrome and Windows zero-day exploits to deploy a ...

T1566

GBHackers → Details

GBHackers general SAP 16h ago

D-Link DIR-822A Router Vulnerability Scores CVSS 10.0 With Public PoC Available

D-Link has announced a critical stack-based buffer overflow vulnerability affecting the non-US DIR-822A router, identified as CVE-2026-86296. This vulnerabil...

1 IOC

GBHackers → Details

GBHackers general 17h ago

CISA Flags Actively Exploited Flaw in Zyxel GS1900 Switches

The U.S.

1 IOC

GBHackers → Details

GBHackers general GitHub 17h ago

Hackers Compromise 65 GitHub Repositories and Poison npm Package With Hidden Backdoor

Threat actors have compromised at least 65 public GitHub repositories in a software supply-chain campaign that abused npm trusted publishing to distribute a ...

GBHackers → Details

GBHackers general WordPress 19h ago

Hackers Exploit WordPress CVE-2026-63030 and CVE-2026-60137 to Steal Government Data

A suspected Chinese-speaking threat actor has exploited the critical WordPress “wp2shell” vulnerability chain to compromise government and small-business tar...

2 IOCs

GBHackers → Details

GBHackers general Microsoft 19h ago

Windows 11 26H1 Security Update Expands Secure Boot Certificate Protection

Microsoft has released the cumulative security update for September 2026 for Windows 11 version 26H1. This update expands the range of systems that can autom...

GBHackers → Details

GBHackers general Microsoft 19h ago

Microsoft to Disable SMS as Primary Entra ID Sign-In Method in 2027

Microsoft will turn off SMS as a primary sign-in method for Microsoft Entra ID workforce tenants on February 1, 2027, accelerating its transition to phishing...

T1566

GBHackers → Details

GBHackers general 19h ago

Vidar Uses Custom Bytecode Interpreter and ARX Stream Ciphers for Per-Build String Obfuscation

Vidar information stealer has introduced a lightweight custom virtual machine and per-build stream-cipher variations to conceal its embedded strings, raising...

T1027

GBHackers → Details

GBHackers general Amazon Palo Alto Networks GitHub 20h ago

AWS Detects and Quarantines Exposed IAM Credentials in Public GitHub Repositories

AWS can automatically quarantine exposed Identity and Access Management (IAM) access keys that appear in public GitHub repositories. This process involves ap...

GBHackers → Details

GBHackers general Microsoft 20h ago

One Stolen Active Directory File Can Expose Credentials for an Entire Windows Domain

A single stolen Active Directory database can turn a limited Windows intrusion into a domain-wide credential compromise. Threat actors that obtain the NTDS.

T1003

GBHackers → Details

GBHackers general Google 20h ago

Google Fined €403 Million for GDPR Violations Over Location Data Processing

Ireland’s Data Protection Commission (DPC) has imposed a €403 million administrative fine on Google Ireland Limited for breaching the EU General Data Protect...

GBHackers → Details

GBHackers general 20h ago

Meta’s Muse AI 0-Day Lets Hackers Hijack Dictation Traffic and Inject Malicious Prompts

A recent proof-of-concept (PoC) developed by security researcher Patrick Wardle reveals a local zero-day vulnerability in the Muse application. This vulnerab...

GBHackers → Details

1 2 3 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA