Hackers Abusing OAuth Token to Take Over Millions of Accounts

A new OAuth vulnerability has been discovered in three of the major extensions such as Grammarly, Vidio, and Bukalapak. These applications use the OAuth protocol for their authentication, which is vulnerable to an authentication token-stealing attack. OAuth is an authentication protocol that was introduced in 2006 and acts as a passwordless signing-in for many applications […]

The post Hackers Abusing OAuth Token to Take Over Millions of Accounts appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 30, 2023
Read More >>

Authorities Seize 17 North Korean Hacker Websites Used for Scamming

The U.S. Government just took down 17 hackers’ websites from the Democratic People’s Republic of Korea (DPRK). These hackers were using these sites to cheat businesses in the U.S. and abroad. It’s great to see that action is being taken to protect companies from these kinds of cyber threats. “The seizures announced today protect U.S. […]

The post Authorities Seize 17 North Korean Hacker Websites Used for Scamming appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 26, 2023
Read More >>

Indian National Arrested for Stealing $150,000 via Computer Hacking

A cybercriminal from India was taken into custody for utilizing computer hacking to steal a sum of $150,000 from an elderly woman. A computer hacker is an individual with exceptional proficiency in computer technology, who is highly skilled in discovering and exploiting vulnerabilities in software and computer systems. They possess a deep understanding of programming […]

The post Indian National Arrested for Stealing $150,000 via Computer Hacking appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 26, 2023
Read More >>

Okta Support System Hacked, Users Sensitive Data Exposed

The US-based software firm Okta has discovered malicious activity using a stolen credential to access Okta’s support case management system. An attacker was able to view sensitive files uploaded by Okta customers. According to the company’s public statement, the Auth0/CIC case management system and the Okta service in production are unaffected by the hack. The firm […]

The post Okta Support System Hacked, Users Sensitive Data Exposed appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 23, 2023
Read More >>

Casio Hacked: Customers’ Personal Details Exposed

Casio Computer Co., Ltd. has apologized for a data leak due to unauthorized server access.  The server contained the personal information of customers who registered for its educational web service, “ClassPad[.]net.” The leak affected customers both in Japan and abroad. The company expressed deep regret for the trouble and worry this incident caused its customers […]

The post Casio Hacked: Customers’ Personal Details Exposed appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 23, 2023
Read More >>

North Korean Hackers Exploiting TeamCity Flaw to Compromise Organizations Network

Microsoft has detected two North Korean nation-state threat actors, Diamond Sleet and Onyx Sleet, exploiting CVE-2023-42793. This vulnerability allows remote code execution on various JetBrains TeamCity server versions widely used for DevOps and software development activities. Diamond Sleet and other North Korean threat actors executed software supply chain attacks through build environment infiltration, posing a […]

The post North Korean Hackers Exploiting TeamCity Flaw to Compromise Organizations Network appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 20, 2023
Read More >>

Hackers Using Secure USB Drives to Attack Government Entities

An ongoing attack on government agencies in the APAC region has been claimed to have compromised a secure USB device with hardware encryption. The nation’s government agencies utilize these safe USB devices to transfer and save data between computer systems. The attacks had a very small number of victims and were highly targeted. The attacks […]

The post Hackers Using Secure USB Drives to Attack Government Entities appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 19, 2023
Read More >>

Hackers Switching from Weaponized Office Documents to CHM & LNK Files

Malware distribution methods have changed significantly in the cyber threat landscape. Data analysis shows that Microsoft Office document files are no longer the preferred medium for delivering malware.  Cybercriminals are using more complex and elusive methods, such as alternative file formats and evasive techniques, reads the ASEC report. Document FREE Demo Deploy Advanced AI-Powered Email […]

The post Hackers Switching from Weaponized Office Documents to CHM & LNK Files appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 18, 2023
Read More >>

Hackers Deliver Weaponized Notepad++ Via Google Ads

Cybercriminals are known to exploit malicious advertising techniques for targeting the widely-used Notepad++ text editor for Windows. This could lead to the dissemination of ransomware and malware. In these malvertising efforts, threat actors take advantage of Google advertisements. According to Malwarebytes, it appears to have completely evaded detection for at least a few months. It […]

The post Hackers Deliver Weaponized Notepad++ Via Google Ads appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 18, 2023
Read More >>

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer’s popularity and remote access capabilities make it an attractive target for those seeking to compromise systems for their gain. Threat actors target TeamViewer for their illicit purposes because it is a widely used remote desktop software with potential security weaknesses.  Exploiting vulnerabilities in TeamViewer can provide unauthorized access to systems and sensitive data, enabling […]

The post Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

October 18, 2023
Read More >>