Install
GBHackers Security | #1 Globally Trusted Cyber Security News Platform | GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates. gbhackers.com GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates.
- 271articles · 30d
- 2+ day agolatest article
- Aug 14, 2026earliest in window
- 39%with images
- 376avg words
- Computers & Electronics 182
- Science & Technology 166
- Software 134
- Conflict, War & Peace 76
- Crime & Law 71
- Software Dev. 56
- Internet & Telecom 41
- News 27
- cyber security news
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- cyber attacks
- data breach
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- computer security
- threatsday bulletin
- digital world
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data
2+ day, 20+ hour ago (539+ words) Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or jailbreaking an AI model. Instead, it exploits a fundamental authorization flaw: AI workflows can process untrusted input from low-privileged…...
Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft
2+ day, 15+ hour ago (616+ words) Nearly one in 10 internet-exposed LiteLLM AI gateways accepted the widely documented default master key, sk-1234, or required no authentication, creating a direct path to LLMjacking, sensitive credential exposure, and in vulnerable versions root-level code execution inside the gateway container. Their…...
Massive Redis Cryptojacking Campaign Hijacks Thousands of Linux Servers
3+ day, 23+ hour ago (569+ words) The campaign scans IPv4 address ranges for Redis services exposed to the internet, typically on TCP port 6379, then attempts to interact with instances that allow connections without authentication. Once access is obtained, the attackers use Redis’s administrative CONFIG SET command to…...
Known npm Worm Returns After 111 Days and Security Scanning Still Let It Through
4+ day, 23+ hour ago (616+ words) A known Shai-Hulud npm worm payload has resurfaced after 111 days of inactivity, raising fresh questions about the effectiveness of registry-level malware screening. The May campaign demonstrated how quickly a single compromised maintainer account can turn into a software supply-chain incident....
Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security
1+ week, 18+ hour ago (488+ words) Chainguard has surpassed 1 billion container build manifests, doubling production from 500 million in six months as it expands its AI-assisted software supply-chain security platform. The company now maintains more than 3,000 unique container images and 675,000 image versions. The milestone reflects more than…...
GitSpawn Flaw Enables Arbitrary Code Execution in Claude Code, Codex, Cursor and Grok
1+ week, 2+ day ago (506+ words) A newly disclosed vulnerability class, named GitSpawn, reveals a serious weakness in AI coding agents that automatically execute Git commands to understand a developer’s project better. Researchers at Manifold Security discovered that several tools, including Claude Code, OpenAI Codex, Cursor,…...
WordPress Uses Frontier AI Tools to Detect Vulnerabilities Before They Can Be Exploited
1+ week, 4+ day ago (440+ words) The WordPress project has launched a coordinated security program to improve how vulnerabilities are identified, prioritized, fixed, and released across the world’s most widely used content management system. This initiative, known as the Core Security Initiative, responds to a significant…...
OpenClaw 2.0 Released With Enhanced AI Agent Security and Credential Protection
1+ week, 5+ day ago (369+ words) OpenClaw has launched version 2.0, offering a major overhaul of its AI-agent platform. This update emphasizes streamlined deployment, a rebuilt browser experience, collaborative cloud sessions, and enhanced security for credentials and connected services. The release on August 30 represents the largest update…...
Composer Path Traversal Flaw Lets Malicious Packages Expose Sensitive Files
1+ week, 5+ day ago (626+ words) Composer users are urged to update their software following the disclosure of a path-traversal vulnerability. This flaw could allow a malicious or compromised PHP package to change file permissions outside of its own installation directory. The issue has been resolved…...
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
2+ week, 20+ hour ago (525+ words) A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido security researcher Jorian Woltjer and fixed…...