Eswar, Author at GBHackers - Latest Cyber Security News | Hacker News https://gbhackers.com/author/eswar/ Cyber Security News, Hacking News, Information security, Cyber Security, Penetration testing Wed, 26 Jul 2023 11:12:19 +0000 en-US hourly 1 https://wordpress.org/?v=6.2.2 116523949 Critical MikroTik RouterOS Flaw Exposes 900,000 Systems to Cyber Attacks https://gbhackers.com/privilege-escalation-mikrotik-routeros/ https://gbhackers.com/privilege-escalation-mikrotik-routeros/#respond Wed, 26 Jul 2023 11:03:39 +0000 https://gbhackers.com/?p=70442 MikroTik RouterOS were vulnerable to a privilege escalation vulnerability which was first disclosed in June 2022 at REcon. The vulnerability existed on the x86 Virtual Machines of RouterOS, where a root shell can be obtained. However, the new CVE for this vulnerability was assigned only in the middle of July 2023 when researchers at Vulncheck […]

The post Critical MikroTik RouterOS Flaw Exposes 900,000 Systems to Cyber Attacks appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/privilege-escalation-mikrotik-routeros/feed/ 0 70442
Hackers Use SMS Alerts to Install SpyNote Malware https://gbhackers.com/sms-message-installs-malware/ https://gbhackers.com/sms-message-installs-malware/#respond Tue, 25 Jul 2023 12:23:49 +0000 https://gbhackers.com/?p=70306 Reports indicate that a Smishing campaign was conducted against Japanese Android users under the name of a Japanese Power and Water Infrastructure company. The SMS contains a link to lure victims into a phishing site. Once the victims click on the link, mobile malware is downloaded, which was discovered to be the SpyNote malware. The […]

The post Hackers Use SMS Alerts to Install SpyNote Malware appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/sms-message-installs-malware/feed/ 0 70306
15 More Vulnerabilities Added to 2023 CWE Top 25 Most Dangerous Software https://gbhackers.com/15-more-vulnerabilities-added-to-2023-cwe-top-25-most-dangerous-software/ https://gbhackers.com/15-more-vulnerabilities-added-to-2023-cwe-top-25-most-dangerous-software/#respond Tue, 25 Jul 2023 10:20:40 +0000 https://gbhackers.com/?p=70074 The CVE MITRE foundation has released the list of “On the Cusp” in which many of the CWEs (Common Weakness Enumerations) have increased as well as decreased in their rankings between 2022 and 2023. CVE releases the top 25 most dangerous software weaknesses which helps organizations to mitigate software security risks. However, exploitable vulnerabilities beyond […]

The post 15 More Vulnerabilities Added to 2023 CWE Top 25 Most Dangerous Software appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/15-more-vulnerabilities-added-to-2023-cwe-top-25-most-dangerous-software/feed/ 0 70074
12 Norway Government Ministries were Targeted in a Cyberattack https://gbhackers.com/12-norway-government-ministries-were-targeted-in-a-cyberattack/ https://gbhackers.com/12-norway-government-ministries-were-targeted-in-a-cyberattack/#respond Mon, 24 Jul 2023 13:40:14 +0000 https://gbhackers.com/?p=69942 According to recent reports, twelve government ministries in Norway have been targeted by cyber-attacks. The most recent attack was aimed at Norway’s public sector, and investigations are currently ongoing. Norway has been Europe’s largest gas supplier after Russia had a drop in the supply. Norway has also become Western Europe’s largest oil exporter. The cyber […]

The post 12 Norway Government Ministries were Targeted in a Cyberattack appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/12-norway-government-ministries-were-targeted-in-a-cyberattack/feed/ 0 69942
Hackers Deliver HotRat as Hidden Scripts in cracked software https://gbhackers.com/hotrat-as-hidden-scripts/ https://gbhackers.com/hotrat-as-hidden-scripts/#respond Fri, 21 Jul 2023 05:12:10 +0000 https://gbhackers.com/?p=69692 The use of illegal software has been under circulation ever since there have been torrents and cracked software. Recent reports show that threat actors have been relying on cracked software to deploy HotRat malware into victims’ systems. HotRat malware is capable of stealing login credentials, cryptocurrency wallets, screen capturing, keylogging, and installing additional malware. Hackers […]

The post Hackers Deliver HotRat as Hidden Scripts in cracked software appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/hotrat-as-hidden-scripts/feed/ 0 69692
Oracle Patches 32 Critical Flaws in MySQL, WebLogic Server, & VirtualBox VM https://gbhackers.com/oracle-security-patches/ https://gbhackers.com/oracle-security-patches/#respond Thu, 20 Jul 2023 14:32:14 +0000 https://gbhackers.com/?p=69669 Oracle has released a list of security patches for more than 130+ products. These products were used in several industries, including banking, communication, enterprise, development, and others.  Oracle has released the severity rating and categorized them as critical, high, medium, and low based on their CVSS 3.1 score. Over 508 new security patches and CVE […]

The post Oracle Patches 32 Critical Flaws in MySQL, WebLogic Server, & VirtualBox VM appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/oracle-security-patches/feed/ 0 69669
OWASP Released Top 10 Critical Vulnerabilities for LLMs(AI models) https://gbhackers.com/owasp-top-10-llms/ https://gbhackers.com/owasp-top-10-llms/#respond Wed, 19 Jul 2023 11:03:33 +0000 https://gbhackers.com/?p=69442 OWASP Foundation has released the 0.9.0 version of Critical Vulnerabilities in LLMs (Large Language Models). A groundbreaking initiative has emerged to address the pressing need for educating developers, designers, architects, and other professionals involved in AI models. AI-based technologies are currently being developed across various industries with the goal of revolutionizing long-standing traditional methods that […]

The post OWASP Released Top 10 Critical Vulnerabilities for LLMs(AI models) appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/owasp-top-10-llms/feed/ 0 69442
Beware of Weaponized TeamViewer Installer that Delivers njRAT https://gbhackers.com/weaponized-teamviewer-delivers-rat/ https://gbhackers.com/weaponized-teamviewer-delivers-rat/#respond Fri, 14 Jul 2023 14:25:45 +0000 https://gbhackers.com/?p=69154 Threat actors relying on legitimate, well-known software TeamViewer for exploitation has been a very common scenario. There have been several cases where threat actors used well-known software to deliver malware to the victims. Similarly, a recent report from Cyble Research & Intelligence Labs stated that the most popularly used remote desktop support software, “TeamViewer” has […]

The post Beware of Weaponized TeamViewer Installer that Delivers njRAT appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/weaponized-teamviewer-delivers-rat/feed/ 0 69154
Jenkins Plugin Flaw Lets Attackers Gain Admin Access https://gbhackers.com/jenkins-plugin-flaw/ https://gbhackers.com/jenkins-plugin-flaw/#respond Thu, 13 Jul 2023 13:19:23 +0000 https://gbhackers.com/?p=68928 A recent security advisory from Jenkins reported that they had fixed 24 vulnerabilities affecting multiple Jenkins plugins. This Flaw includes 5 High, 18 Medium, and 1 Low severity vulnerabilities. Patches have been released for some of the affected plugins, while others are still under development. Affected Plugins and their Versions The list of affected Jenkins […]

The post Jenkins Plugin Flaw Lets Attackers Gain Admin Access appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/jenkins-plugin-flaw/feed/ 0 68928
SonicWall Critical Flaws Let Attackers Bypass Authentication https://gbhackers.com/sonicwall-critical-vulnerabilities/ https://gbhackers.com/sonicwall-critical-vulnerabilities/#respond Thu, 13 Jul 2023 10:34:50 +0000 https://gbhackers.com/?p=68918 SonicWall has recently published a security notice in which 15 vulnerabilities were fixed. CVEs for these vulnerabilities have been published, and patches for 4 Critical, 4 High, and 7 Medium severity vulnerabilities have been patched as per the notice. These Vulnerabilities let attackers inject SQL queries and bypass authentication. Critical Severity Vulnerabilities CVE-2023-34134: Password Hash […]

The post SonicWall Critical Flaws Let Attackers Bypass Authentication appeared first on GBHackers - Latest Cyber Security News | Hacker News.

]]>
https://gbhackers.com/sonicwall-critical-vulnerabilities/feed/ 0 68918