Website profile

gbhackers.com

GBHackers Security | #1 Globally Trusted Cyber Security News Platform | GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates. gbhackers.com GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates.

  • 271articles · 30d
  • 2+ day agolatest article
  • Aug 14, 2026earliest in window
  • 39%with images
  • 376avg words
articles per day
Categories
  • Computers & Electronics 182
  • Science & Technology 166
  • Software 134
  • Conflict, War & Peace 76
  • Crime & Law 71
  • Software Dev. 56
  • Internet & Telecom 41
  • News 27

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

gbhackers.com
gbhackers.com > new-ai-workflow-identity-hijacking-attack

New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data

2+ day, 20+ hour ago   (539+ words) Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or jailbreaking an AI model. Instead, it exploits a fundamental authorization flaw: AI workflows can process untrusted input from low-privileged…...

gbhackers.com
gbhackers.com > litellm-ai-gateways

Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft

2+ day, 15+ hour ago   (616+ words) Nearly one in 10 internet-exposed LiteLLM AI gateways accepted the widely documented default master key, sk-1234, or required no authentication, creating a direct path to LLMjacking, sensitive credential exposure, and in vulnerable versions root-level code execution inside the gateway container. Their…...

gbhackers.com
gbhackers.com > redis-cryptojacking-campaign

Massive Redis Cryptojacking Campaign Hijacks Thousands of Linux Servers

3+ day, 23+ hour ago   (569+ words) The campaign scans IPv4 address ranges for Redis services exposed to the internet, typically on TCP port 6379, then attempts to interact with instances that allow connections without authentication. Once access is obtained, the attackers use Redis’s administrative CONFIG SET command to…...

gbhackers.com
gbhackers.com > npm-worm-returns-after-111-days

Known npm Worm Returns After 111 Days and Security Scanning Still Let It Through

4+ day, 23+ hour ago   (616+ words) A known Shai-Hulud npm worm payload has resurfaced after 111 days of inactivity, raising fresh questions about the effectiveness of registry-level malware screening. The May campaign demonstrated how quickly a single compromised maintainer account can turn into a software supply-chain incident....

Google News
gbhackers.com > chainguard-hits-1-billion-build-manifests

Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security

1+ week, 18+ hour ago   (488+ words) Chainguard has surpassed 1 billion container build manifests, doubling production from 500 million in six months as it expands its AI-assisted software supply-chain security platform. The company now maintains more than 3,000 unique container images and 675,000 image versions. The milestone reflects more than…...

gbhackers.com
gbhackers.com > gitspawn-flaw-enables-arbitrary-code-execution

GitSpawn Flaw Enables Arbitrary Code Execution in Claude Code, Codex, Cursor and Grok

1+ week, 2+ day ago   (506+ words) A newly disclosed vulnerability class, named GitSpawn, reveals a serious weakness in AI coding agents that automatically execute Git commands to understand a developer’s project better. Researchers at Manifold Security discovered that several tools, including Claude Code, OpenAI Codex, Cursor,…...

gbhackers.com
gbhackers.com > wordpress-uses-frontier-ai-tools-to-detect-vulnerabilities

WordPress Uses Frontier AI Tools to Detect Vulnerabilities Before They Can Be Exploited

1+ week, 4+ day ago   (440+ words) The WordPress project has launched a coordinated security program to improve how vulnerabilities are identified, prioritized, fixed, and released across the world’s most widely used content management system. This initiative, known as the Core Security Initiative, responds to a significant…...

gbhackers.com
gbhackers.com > openclaw-2-0-released

OpenClaw 2.0 Released With Enhanced AI Agent Security and Credential Protection

1+ week, 5+ day ago   (369+ words) OpenClaw has launched version 2.0, offering a major overhaul of its AI-agent platform. This update emphasizes streamlined deployment, a rebuilt browser experience, collaborative cloud sessions, and enhanced security for credentials and connected services. The release on August 30 represents the largest update…...

gbhackers.com
gbhackers.com > composer-path-traversal-flaw > amp

Composer Path Traversal Flaw Lets Malicious Packages Expose Sensitive Files

1+ week, 5+ day ago   (626+ words) Composer users are urged to update their software following the disclosure of a path-traversal vulnerability. This flaw could allow a malicious or compromised PHP package to change file permissions outside of its own installation directory. The issue has been resolved…...

gbhackers.com
gbhackers.com > critical-gogs-flaw-enables-remote-code-execution > amp

Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal

2+ week, 20+ hour ago   (525+ words) A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido security researcher Jorian Woltjer and fixed…...