Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

gbhackers.com
gbhackers.com > microsoft-copilot-update-merges-chats-retires-podcast

Microsoft Copilot App Overhaul Merges Personal Chats and Ends Podcasts, Deep Research

1+ day, 7+ hour ago   (462+ words) Microsoft is reshaping its consumer and productivity AI strategy with a major update to its Copilot application, merging personal chat histories and generated content while discontinuing several prominent capabilities. The changes affect consumer users of Copilot and coincide with the…...

gbhackers.com
gbhackers.com > ruby-4-0-marshal-load-rce-gadget-chain > amp

Ruby 4.0 Marshal.load RCE Gadget Chain Exposes Critical Deserialization Risk

1+ day, 6+ hour ago   (583+ words) A newly disclosed universal deserialization gadget chain shows how a single unsafe Marshal.load operation can reportedly produce remote command execution in Ruby 4.0.6, underscoring the persistent danger of exposing Ruby’s native serialization mechanism to attacker-controlled data. According to research published…...

gbhackers.com
gbhackers.com > patchcord-infrastructure-hosts-supershell

PATCHCORD Infrastructure Hosts SuperShell C2 for Remote Commands and Webshell Management

2+ day, 7+ hour ago   (425+ words) The installer’s metadata, publisher strings, and portal URL were crafted to resemble the legitimate Afghan Telecom environment, showing that the operators had tailored their deception to the intended victim basis. Once launched, PATCHCORD establishes persistence by hijacking browser shortcuts for…...

gbhackers.com
gbhackers.com > 24-malware-crypter-sellers

24 Malware Crypter Sellers Turn EDR Evasion and In-Memory Execution Into Paid Services

2+ day, 6+ hour ago   (391+ words) An analysis of 24 active crypting-service vendors shows that customers can now buy payload obfuscation, in-memory execution, anti-analysis controls, process injection, persistence, and rapid “re-crypting” as packaged services rather than develop them internally. The current market is far broader. Higher-tier vendors…...

gbhackers.com
gbhackers.com > fortinet-fortiweb-and-forticlient-flaws

Fortinet FortiWeb and FortiClient Flaws Let Unauthenticated Attackers Gain Access and Execute Arbitrary Code

2+ day, 8+ hour ago   (352+ words) The flaws CVE-2026-26035 and CVE-2026-70465 were disclosed as part of an August 2026 patch release that addressed eight security issues across various Fortinet products. The vulnerabilities affect different attack surfaces and should not be regarded as a single exploit chain. CVE…...

gbhackers.com
gbhackers.com > apple-warns-iphone-users-in-110-countries

Apple Warns iPhone Users in 110 Countries of Mercenary Spyware Attacks

2+ day, 7+ hour ago   (472+ words) Apple has issued a new set of high-confidence Apple Threat Notification alerts, warning selected iPhone users in 110 countries that they may be targets of government-grade mercenary spyware. These notifications are not routine phishing messages or general security advisories. According to…...

gbhackers.com
gbhackers.com > trezor-shipping-provider-data-breach

Trezor Shipping Provider Data Breach Exposes Personal Data of 13,689 Customers

2+ day, 9+ hour ago   (513+ words) Hardware wallet manufacturer Trezor has recently disclosed a data breach at ShipMonk, a third-party shipping provider. This breach exposed the personal information of 13,689 customers. ShipMonk notified Trezor on August 10, 2026, that an unauthorized actor had accessed its systems, which contained customer…...

gbhackers.com
gbhackers.com > new-amnesiastealer-malware-targets-macos-users > amp

New AmnesiaStealer Malware Targets macOS Users via ClickFix Attacks

2+ day, 9+ hour ago   (545+ words) Researchers have observed the campaign using a counterfeit GitHub-themed page that displays a “Download for macOS” prompt along with a deceptive “Verified Publisher” badge. Rather than downloading an application directly, the site instructs victims to open Terminal, paste a command,…...

gbhackers.com
gbhackers.com > jewelbug-uses-public-google-docs

Jewelbug Uses Public Google Docs as Malware Command-and-Control Delivery Channel

3+ day, 57+ min ago   (418+ words) A China-linked threat group tracked as Jewelbug has turned public Google Docs into a resilient command-and-control delivery channel, embedding freshly obfuscated malware payloads in documents that victim implants retrieve and execute. Investigators found that both missions rely on shared infrastructure,…...

gbhackers.com
gbhackers.com > akira-ransomware-reboots-windows

Akira Ransomware Reboots Windows Into Safe Mode to Disable EDR and Microsoft Defender

3+ day, 6+ hour ago   (569+ words) An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an anti-EDR tactic linked to the operation. The intrusion failed to encrypt files after the stripped-down boot environment triggered…...