Aggregator
CVE-2025-10353 | Melis Platform up to 5.3.0 CMS Slider saveDetailsForm mcsdetail_img path equivalence
CVE-2025-10649 | Welcart e-Commerce Plugin up to 2.11.21 on WordPress Cookie sql injection
CVE-2025-11475 | projectworlds Advanced Library Management System 1.0 /view_member.php user_id sql injection
New Phishing Kit Automates ClickFix Attacks to Evade Security Defenses
Cybercriminals are increasingly automating one of the most insidious social engineering exploits—forcing victims to manually execute malware under the guise of browser verification. The newly discovered IUAM ClickFix Generator commoditizes the ClickFix technique into an easy-to-use phishing kit, lowering the barrier for threat actors of all skill levels and enabling widespread deployment of information stealers […]
The post New Phishing Kit Automates ClickFix Attacks to Evade Security Defenses appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Google Unveils CodeMender – An AI Agent That Automatically Fixes Vulnerable Code
Google has introduced CodeMender, an AI-powered agent designed to automatically detect and patch security flaws in software. Announced on 6 October 2025 by Raluca Ada Popa and Four Flynn, CodeMender represents a major step toward leveraging artificial intelligence for proactive code security. CodeMender builds on Google’s earlier AI research in vulnerability discovery, such as Big Sleep […]
The post Google Unveils CodeMender – An AI Agent That Automatically Fixes Vulnerable Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Кибертело с человеческим разумом — хроники новой реальности от Neuralink
Getting your organisation ready for Windows 11 upgrade before Autumn 2025
TamperedChef Malware as PDF Editor Harvest Browser Credentials and Allows Backdoor Access
In recent weeks, security teams have observed a surge in malvertising campaigns distributing what appears to be a fully functional PDF editor. Dubbed TamperedChef, this malware masquerades as a legitimate application—AppSuite PDF Editor—leveraging convincing advertisements to lure European organizations and individuals into downloading the installer. Once executed, the installer exhibits expected functionalities for nearly two […]
The post TamperedChef Malware as PDF Editor Harvest Browser Credentials and Allows Backdoor Access appeared first on Cyber Security News.
Akamai Named a Gartner Peer Insights Customers’ Choice for WAAP Six Years in a Row
Nezha Tool Used in New Cyber Campaign Targeting Web Applications
Researchers uncover ClickFix-themed phishing kit
Palo Alto Networks researchers have discovered and analyzed “IUAM ClickFix Generator”, a phishing kit that allows less skilled attackers to infect unsuspecting users with malware by using the increasingly popular ClickFix social engineering technique. “This tool allows threat actors to create highly customizable phishing pages that mimic the challenge-response behavior of a browser verification page commonly deployed by Content Delivery Networks (CDNs) and cloud security providers to defend against automated threats. The spoofed interface is … More →
The post Researchers uncover ClickFix-themed phishing kit appeared first on Help Net Security.
PwnOS: From Admin to Root—Exploiting CVE-2024-9474
Google’s New AI Agent, CodeMender, Automatically Rewrites Vulnerable Code
Google has introduced CodeMender, a new artificial intelligence-powered agent that automatically enhances software security by identifying and fixing vulnerabilities. This initiative addresses the growing gap between the rapid, AI-assisted discovery of security flaws and the time-consuming manual effort required to patch them. Leveraging advanced AI, CodeMender not only reacts to new threats but also proactively […]
The post Google’s New AI Agent, CodeMender, Automatically Rewrites Vulnerable Code appeared first on Cyber Security News.
ClamAV 1.5.0 Released with Enhanced MS Office and PDF File Verification
ClamAV 1.5.0 is now available with new features that strengthen malware detection in Microsoft Office and PDF documents. This update marks a significant step forward for users who need reliable and thorough scanning of encrypted files and embedded links. Alongside improved file checks, the release also adds support for external signature verification, flexible hashing options, […]
The post ClamAV 1.5.0 Released with Enhanced MS Office and PDF File Verification appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Why SOC Efficiency Is the Most Valuable Currency in Cybersecurity
We Raised $15M to Build the Future of Security Data
We’re excited to share that Realm Security has raised a $15M Series A, just 12 months after our $5M seed round. We wouldn’t be here without our customers, our team, and our partners. Thank you for believing in what we’re building and for pushing us to make security data smarter, faster, and more useful every day.
The post We Raised $15M to Build the Future of Security Data appeared first on Realm.Security.
The post We Raised $15M to Build the Future of Security Data appeared first on Security Boulevard.
AI Chatbot Exploited as a Backdoor to Access Sensitive Data and Infrastructure
The rapid adoption of generative AI (GenAI), especially large language model (LLM) chatbots, has revolutionized customer engagement by delivering unparalleled efficiency and personalization. Yet, with this transformative power comes an equally formidable risk: adversaries are increasingly weaponizing AI applications to gain unauthorized access to critical systems. A compromised chatbot can morph from a helpful assistant […]
The post AI Chatbot Exploited as a Backdoor to Access Sensitive Data and Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Google Chrome security advisory (AV25-649)
OpenAI Blocks ChatGPT Accounts Linked to Chinese Hackers Developing Malware
OpenAI has taken decisive action to stop misuse of its ChatGPT models by banning accounts tied to a group of Chinese hackers. This move reflects OpenAI’s core aim to ensuring artificial general intelligence benefits everyone. By setting clear rules and acting swiftly on policy violations, OpenAI hopes to keep AI tools safe and accessible for […]
The post OpenAI Blocks ChatGPT Accounts Linked to Chinese Hackers Developing Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.