Skip to content

1010.cx

  • ClearFake Abuses BSC Testnet Contracts for Resilient C2 Operations

    ·

    cyber security, Cyber Security News

    Threat actors behind the ClearFake campaign have adopted a novel and highly resilient command-and-control (C2) architecture by leveraging BNB Smart Chain (BSC) testnet smart contracts, creating an infrastructure that is effectively immune to traditional takedown efforts. Unlike conventional malware campaigns that depend on easily disruptable infrastructure such as hosting providers or registrars, this approach embeds […]

    The post ClearFake Abuses BSC Testnet Contracts for Resilient C2 Operations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • How the Pentagon plans to spend $50 billion on drone warfare

    ·

    Science & Tech
    CAMP ATTERBURY, Indiana—A countdown began as a gaggle of defense officials, soldiers, drone makers, and reporters watched screens in a windowless operations center. Suddenly, a LUCAS drone appeared, moving at rocket speed and showing off a new low-level capability before it crashed through a cement structure on the test range. It was a vivid demonstration of just how quickly the FLM-136 drone is evolving—and of how swiftly Pentagon leaders want to spend the $50 billion they have requested this year for drone development and production.

    The path to spend that money quickly and well is paved with steps that Pentagon leaders have already taken. They have expanded the list of drones that unit commanders can easily buy, Emil Michael, defense undersecretary for research and engineering, said at the SOF Week event in Tampa last week. 

    “What was happening is we had this highly distributed drone sort of purchasing that all happened in small blocks, all in about the department, which has some goodness to that, because units can experiment on their own. But they had to buy from this small Blue List that never grew. Very hard for a vendor to get on that blue list,” he said.

    That will enable larger purchases of existing drones, Michael’s deputy James Mazol told reporters at Camp Atterbury as he described the Defense Autonomous Warfare Group’s plans to spend the $50 billion—more than 200 times its 2026 budget and more than the GDP of many nations.

    “Some of it is actually buying platforms en masse. Now there's a lot of actual platforms that can be part of that, that exist and just need to be scaled up”—meaning produced in larger quantities, Mazol said. 

    But the money will also go to bring in new companies, help them develop their systems, and bulk up their production.

    Autonomous surface vessel maker Saronic is a “good example of that,” said Mazol. “They have an unmanned surface vessel that has gone through…all this experimentation. They've built this body of evidence. And, you know, they're helping the Navy procure that in large quantities.”

    Meanwhile, defense officials are looking to Ukraine to foster new technology. 

    In March, when the Pentagon held “Gauntlet 1” of its Drone Dominance trials, the top performers included Ukrainian Defense Drones and a partnership of Ukraine’s SkyFall and a UK company—both examples of the sort of defense startup that can move quickly from launching to actually filling Pentagon orders. 

    The technology readiness experiment, or T-REX, was one of a series of rapid joint-service prototyping events begun in 2023. It also debuted a number of small startups like SplashOne Robotics, who are looking to partner with Ukraine. SplashOne showed off a quadcopter that shoots at other drones using autonomous targeting software called Gunner. Founder Jeff Wright said they “have game” against a variety of Russian one-way-attackers–the SuperCam 350, Orlan10, Molynia and even hard-to-hit Geran-2 drones.

    And more Pentagon commands are building up their ability to experiment with and procure drones. U.S. Southern Command has established an autonomous-warfare unit whose initial focus is building a data network to enable more effective use of drones.

    “We don't talk about robots at SAWC,” or SOUTHCOM Autonomous Warfare Command, said  Gen. Frank Donovan, who leads SOUTHCOM. “We talk about the data environment, the different data layers that we need at the very forward edge so our [special operations forces] and our conventional force teammates…can actually plug into that data network. Whatever robot shows up with the capability, they can leverage it instantaneously.”

    Donovan emphasized that he isn’t looking to a single company to create that environment, but instead wants open architectures that can connect many companies’ tools and products.

    “We can match the robots to the environment. Whether it swims, it flies, it has feet, whatever it does, we have to make it do what we want it to do when we want to do it,” he said at the SOF Week.

    Donovan’s message to vendors was blunt: it doesn’t matter how impressive your drone or counter-drone capability is if you put too many restrictions on how it connects, or the data it gives away. 

    “If it’s great only if you use it this way, only if you use my service stack, and only if you connect it to this or that, it’s unacceptable across the board.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Roundcube Webmail Vulnerability Allows Hackers to Execute Malicious SQL Queries

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    Roundcube Webmail users are being urged to update their systems immediately after the disclosure of multiple security vulnerabilities, including a critical pre-authentication SQL injection flaw that allows attackers to execute malicious database queries without requiring login access. The vulnerabilities were patched in newly released versions 1.6.16 and 1.7.1, published on May 24, 2026, as part […]

    The post Roundcube Webmail Vulnerability Allows Hackers to Execute Malicious SQL Queries appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware

    ·

    A new campaign orchestrated by a previously undocumented threat actor has targeted cryptocurrency organizations with an aim to facilitate digital asset theft using recruitment-themed social engineering and bespoke macOS malware. “These campaigns leveraged sophisticated social engineering techniques, custom macOS malware, and deep targeting of CI/CD infrastructure,” Wiz researchers Shira Ayal,

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hackers Spread VIP Keylogger via Fake Business Emails

    ·

    cyber security, Cyber Security News

    Hackers are actively deploying VIP Keylogger through phishing emails disguised as routine business documents, using multi‑layered loaders, steganography, and in‑memory execution to quietly steal credentials and other sensitive data from compromised systems. Recent VIP Keylogger campaigns rely heavily on social engineering, with phishing emails crafted to look like legitimate bank payment notifications, procurement orders, logistics […]

    The post Hackers Spread VIP Keylogger via Fake Business Emails appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Motorola App Allegedly Hijacks Amazon App Activity to Insert Affiliate Referral Codes

    ·

    Amazon, cyber security, Cyber Security News

    Motorola is facing scrutiny after researchers and users discovered that its preinstalled Smart Feed app was silently hijacking launches of the Amazon Shopping app to inject affiliate referral codes into user traffic. The behavior, now disabled after public backlash, raises fresh concerns about trust, bloatware, and on‑device ad tech on premium Android phones. Motorola Smart […]

    The post Motorola App Allegedly Hijacks Amazon App Activity to Insert Affiliate Referral Codes appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Microsoft Warns Against Public Release of Zero-Day Details Before Vendor Coordination

    ·

    cyber security, Cyber Security News, Microsoft, Zero-Day, zeroday

    Microsoft has issued a strong warning to the cybersecurity community following a recent surge in publicly disclosed zero-day vulnerabilities without prior coordination. According to the Microsoft Security Response Center (MSRC), several vulnerabilities were disclosed without prior notification to Microsoft, leaving customers exposed to potential exploitation before patches could be developed and deployed. The company stressed […]

    The post Microsoft Warns Against Public Release of Zero-Day Details Before Vendor Coordination appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hackers Host JS Malware on GHOSTYNETWORKS and OMEGATECH

    ·

    cyber security, Cyber Security News, Malware

    Hackers are abusing two bulletproof hosting providers, GHOSTYNETWORKS and OMEGATECH, to run a global JavaScript (JS) malware infrastructure that powers large‑scale malspam and business email compromise activity. In March 2026, multiple malspam waves delivered a JavaScript backdoor via ZIP or RAR attachments to organizations across regions and sectors, including energy companies and finance ministries. The […]

    The post Hackers Host JS Malware on GHOSTYNETWORKS and OMEGATECH appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Threat Actors Launch FIFA Website Spoofing Campaign to Steal User Details

    ·

    cyber security, Cyber Security News, Sniffing & Spoofing

    Threat actors are actively launching spoofing campaigns targeting FIFA-themed websites ahead of the 2026 FIFA World Cup, according to a Public Service Announcement (Alert I-052726-PSA) issued by the Federal Bureau of Investigation (FBI) on May 27, 2026. The campaign is designed to exploit global interest in the tournament by deceiving users into interacting with fraudulent […]

    The post Threat Actors Launch FIFA Website Spoofing Campaign to Steal User Details appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • New PureLogs Variant Abuses MSBuild to Evade Detection

    ·

    cyber security, Cyber Security News

    A new phishing-driven malware campaign distributing a stealthy PureLogs variant that leverages advanced evasion techniques, including process hollowing via MsBuild.exe. The campaign is designed to steal sensitive data from infected systems while avoiding traditional detection mechanisms through layered obfuscation and fileless execution. The attack begins with phishing emails disguised as purchase orders, a familiar social […]

    The post New PureLogs Variant Abuses MSBuild to Evade Detection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 … 61 62 63 64 65 … 881
Next Page

1010.cx

cybersecurity / defense / intelligence