gbhackers

Critical NETGEAR Router Flaw Allows Full Admin Access by Attackers

A critical authentication bypass vulnerability (CVE-2025-4978) has been discovered in NETGEAR DGND3700v2 wireless routers. The flaw, rated CVSSv4 9.3, allows unauthenticated attackers to gain full administrative access via a hidden backdoor.

Apple XNU Kernel Flaw Enables Attackers to Escalate Privileges

Apple has patched CVE-2025-31219, a critical vulnerability in the XNU kernel affecting macOS, iOS, iPadOS, tvOS, watchOS, and visionOS. The flaw allows local attackers to escalate privileges and execute arbitrary code with kernel-level access.

Cybercriminals Using Trusted Google Domains to Spread Malicious Code

A new malvertising campaign is leveraging trusted Google domains and outdated JSONP API calls to inject malicious scripts into legitimate e-commerce websites. These scripts redirect users to phishing pages that mimic payment portals.

Versa Concerto 0-Day Flaw Enables Remote Code Execution by Bypassing Authentication

Multiple critical vulnerabilities in Versa Concerto (versions 12.1.2–12.2.0) remain unpatched, enabling attackers to bypass authentication and achieve remote code execution (RCE) and host compromise.

Several GitLab Vulnerabilities Enable Attackers to Launch DoS Attacks

GitLab has released critical patches for 11 vulnerabilities in its CE and EE platforms, including three high-severity DoS flaws. These affect all deployment models and could lead to system downtime, data exposure, and authentication bypass.

Hackers Targets Coinbase Users Targeted in Advanced Social Engineering Hack

A sophisticated social engineering campaign has been actively targeting Coinbase users since early 2025, resulting in over $300 million in annual losses and $45 million in a single week in May.

Hackers Masquerade as Organizations to Steal Payroll Logins and Redirect Payments from Employees

A sophisticated SEO poisoning campaign has been uncovered targeting the manufacturing sector, where attackers are leveraging fake payroll portals to steal employee credentials and redirect paychecks.

Critical Vulnerability in Palo Alto GlobalProtect Gateway & Portal Enables Remote Code Execution

A reflected XSS vulnerability in Palo Alto Networks' GlobalProtect gateway and portal allows execution of malicious JavaScript in authenticated users' browsers, posing phishing and credential theft risks, especially with Clientless VPN enabled.

Critical Vulnerability in Lexmark Printers Enables Remote Code Execution

A critical vulnerability (CVE-2025-1127) affecting over 150 Lexmark printer and multifunction device models allows remote attackers to execute arbitrary code via a chained exploit involving path traversal and race condition flaws.

Kimsuky APT Group Deploys PowerShell Payloads to Deliver XWorm RAT

Cybersecurity researchers have identified a sophisticated malware campaign by the Kimsuky APT group, leveraging PowerShell payloads to deploy the XWorm Remote Access Trojan (RAT).

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags