GBHackers On Security

GBHackers On Security

Publication
0 followers

Security news site covering daily hacking news and cyberattack updates.

Report: China Breached Email Systems Used by U.S. Congressional Staff
NewsJan 8, 2026

Report: China Breached Email Systems Used by U.S. Congressional Staff

According to a Financial Times investigation, Chinese state‑linked hackers breached email systems used by staff of several influential House committees. The intrusion gave the actors access to legislative drafts, policy discussions and potentially classified briefings. U.S. officials highlighted the vulnerability...

By GBHackers On Security
How Attackers Hide Processes by Abusing Kernel Patch Protection
NewsJan 8, 2026

How Attackers Hide Processes by Abusing Kernel Patch Protection

Researchers disclosed a new Windows rootkit technique that hides malicious processes by using the legitimate PsSetCreateProcessNotifyRoutineEx API to repair ActiveProcessLinks just before the kernel’s PspProcessDelete validation runs. This timing‑based bypass evades both PatchGuard and Hypervisor‑Protected Code Integrity, allowing processes to...

By GBHackers On Security
GitLab Patches Multiple Flaws Allowing Arbitrary Code Execution
NewsJan 8, 2026

GitLab Patches Multiple Flaws Allowing Arbitrary Code Execution

GitLab has issued emergency patches—versions 18.7.1, 18.6.3 and 18.5.5—to close seven newly disclosed vulnerabilities affecting self‑managed instances. The flaws include two high‑severity stored and reflected cross‑site scripting bugs, missing authorization checks in AI GraphQL endpoints, and a runner‑removal issue that...

By GBHackers On Security
BlueDelta Hackers Target Microsoft OWA, Google, and Sophos VPN to Steal Credentials
NewsJan 8, 2026

BlueDelta Hackers Target Microsoft OWA, Google, and Sophos VPN to Steal Credentials

Recorded Future’s Insikt Group uncovered a credential‑harvesting campaign by the Russian‑state backed BlueDelta group throughout 2025. The actors deployed phishing emails with legitimate‑looking PDFs to lure victims into fake Microsoft Outlook Web Access, Google, and Sophos VPN login portals, using...

By GBHackers On Security
Linux Battery Utility Vulnerability Allows Authentication Bypass and System Tampering
NewsJan 8, 2026

Linux Battery Utility Vulnerability Allows Authentication Bypass and System Tampering

A vulnerability in the TLP power‑profiles daemon (version 1.9.0) lets local users bypass Polkit authentication and tamper with system power settings. The flaw stems from using Polkit’s deprecated “unix‑process” subject, creating a PID race condition that grants elevated control without admin...

By GBHackers On Security
OwnCloud Warns Users to Enable MFA After Credential Theft Incident
NewsJan 8, 2026

OwnCloud Warns Users to Enable MFA After Credential Theft Incident

ownCloud issued an urgent advisory urging users to enable Multi‑Factor Authentication after a credential‑theft incident reported by Hudson Rock. Threat actors stole passwords via infostealer malware such as RedLine, Lumma and Vidar and accessed accounts lacking MFA. The breach did not...

By GBHackers On Security
Global GoBruteforcer Botnet Campaign Threatens 50,000 Linux Servers
NewsJan 8, 2026

Global GoBruteforcer Botnet Campaign Threatens 50,000 Linux Servers

The GoBruteforcer botnet is actively compromising more than 50,000 internet‑facing Linux servers by brute‑forcing credentials for FTP, MySQL, PostgreSQL and phpMyAdmin services. Researchers note that AI‑generated deployment examples and legacy stacks like XAMPP have proliferated weak default passwords, expanding the...

By GBHackers On Security
Cybercriminals Exploit VMware ESXi Vulnerabilities Using Zero-Day Toolset
NewsJan 8, 2026

Cybercriminals Exploit VMware ESXi Vulnerabilities Using Zero-Day Toolset

Huntress researchers uncovered a sophisticated campaign that leverages a zero‑day toolkit, MAESTRO, to exploit three critical VMware ESXi vulnerabilities disclosed in VMSA‑2025‑0004. The attack chain begins with stolen Domain Admin credentials used to compromise a SonicWall VPN, followed by lateral...

By GBHackers On Security
Hackers Using Malicious QR Codes for Phishing via HTML Table
NewsJan 7, 2026

Hackers Using Malicious QR Codes for Phishing via HTML Table

Hackers have begun delivering phishing QR codes without images, rendering them as dense HTML tables of colored cells. This “imageless” approach evades traditional image‑analysis scanners that look for bitmap QR patterns. Recipients who scan the codes are directed to credential‑harvesting...

By GBHackers On Security