The Hacker News
- Apple Drops iCloud's Advanced Data Protection in the U.K. Amid Encryption Backdoor Demands 21 Φεβρουαρίου, 2025Apple is removing its Advanced Data Protection (ADP) feature for iCloud from the United Kingdom with immediate effect following government demands for backdoor access to encrypted user data. The development was first reported by Bloomberg. ADP for iCloud is an optional setting that ensures that users' trusted devices retain sole access to the encryption keys […]
- Data Leak Exposes TopSec's Role in China’s Censorship-as-a-Service Operations 21 Φεβρουαρίου, 2025An analysis of a data leak from a Chinese cybersecurity company TopSec has revealed that it likely offers censorship-as-a-service solutions to prospective customers, including a state-owned enterprise in the country. Founded in 1995, TopSec ostensibly offers services such as Endpoint Detection and Response (EDR) and vulnerability scanning. But it's also providing "boutique" solutions in order
- Cybercriminals Can Now Clone Any Brand’s Site in Minutes Using Darcula PhaaS v3 21 Φεβρουαρίου, 2025The threat actors behind the Darcula phishing-as-a-service (PhaaS) platform appear to be readying a new version that allows prospective customers and cyber crooks to clone any brand's legitimate website and create a phishing version, further bringing down the technical expertise required to pull off phishing attacks at scale. The latest iteration of the phishing suite […]
- Webinar: Learn How to Identify High-Risk Identity Gaps and Slash Security Debt in 2025 21 Φεβρουαρίου, 2025In today’s rapidly evolving digital landscape, weak identity security isn’t just a flaw—it’s a major risk that can expose your business to breaches and costly downtime. Many organizations are overwhelmed by an excess of user identities and aging systems, making them vulnerable to attacks. Without a strategic plan, these security gaps can quickly turn into […]
- AI-Powered Deception is a Menace to Our Societies 21 Φεβρουαρίου, 2025Wherever there’s been conflict in the world, propaganda has never been far away. Travel back in time to 515 BC and read the Behistun Inscription, an autobiography by Persian King Darius that discusses his rise to power. More recently, see how different newspapers report on wars, where it’s said, ‘The first casualty is the truth.’ […]
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
- Nagios XI Flaw Exposes User Details and Emails to Unauthenticated Attackers” 21 Φεβρουαρίου, 2025A security vulnerability in Nagios XI 2024R1.2.2, tracked as CVE-2024-54961, has been disclosed, allowing unauthenticated attackers to retrieve sensitive user information, including usernames and email addresses, from the network monitoring platform. This high-severity flaw (CVSSv3 score: 6.5) exposes organizations to heightened risks of phishing campaigns, credential-stuffing attacks, and lateral movement within compromised networks. Technical Breakdown […]
- Critical UniFi Protect Camera Vulnerability Enables Remote Code Execution Attacks 21 Φεβρουαρίου, 2025Ubiquiti Networks has issued an urgent security advisory (Bulletin 046) warning of multiple critical vulnerabilities in its UniFi Protect camera ecosystem, including a high-severity remote code execution (RCE) flaw that could allow attackers to hijack devices and infiltrate network infrastructure. The vulnerabilities, discovered during the Pwn2Own 2025 hacking competition, affect UniFi Protect Cameras (firmware v4.74.88 […]
- Critical Vulnerability in Fluent Bit Exposes Cloud Services to Potential Cyber Attacks 21 Φεβρουαρίου, 2025A critical security flaw in Fluent Bit, a widely adopted log processing and metrics collection tool part of the Cloud Native Computing Foundation (CNCF), has exposed enterprise cloud infrastructures to denial-of-service (DoS) attacks. Designated as CVE-2024-50608 and CVE-2024-50609, these vulnerabilities—scoring 8.9 on the CVSS v3.1 severity scale—stem from improper handling of HTTP headers in the […]
- New Darcula 3.0 Tool Generates Phishing Kits to Mimic Global Brands 21 Φεβρουαρίου, 2025The cybercriminal group behind the notorious “darcula-suite” platform has unveiled its latest iteration, darcula 3.0, which introduces groundbreaking capabilities for creating phishing kits targeting any brand globally. This “Phishing-as-a-Service” (PhaaS) platform lowers the technical barrier for bad actors by automating the cloning of legitimate websites and enabling non-technical users to deploy sophisticated phishing campaigns with […]
- Salt Typhoon Hackers Exploit Cisco Vulnerability to Gain Device Access on US.Telecom Networks 21 Φεβρουαρίου, 2025A highly advanced threat actor, dubbed “Salt Typhoon,” has been implicated in a series of cyberattacks targeting major U.S. telecommunications networks, according to a report by Cisco Talos. The campaign, which began in late 2024 and was confirmed by the U.S. government, involves exploiting vulnerabilities in Cisco devices and leveraging stolen credentials to infiltrate critical […]