• A cache deception vulnerability in SvelteKit apps deployed on Vercel exposes sensitive user data to attackers. The flaw allows publicly cached responses to be authenticated. SvelteKit, a full-stack JavaScript framework, often pairs with Vercel for deployment. The issue stems from the Vercel adapter in SvelteKit, where the __pathname query parameter overrides the request path without any checks. […]

    The post Cache Deception Flaw in SvelteKit And Vercel Stack Exposes User Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Feb. 20, 2026 – Advantest Corporation, a top supplier of semiconductor test equipment, revealed it is battling a ransomware attack that struck its network last weekend. The incident, detected on February 15 (JST), has disrupted multiple systems and raised alarms in the global chip industry, where supply chain attacks can ripple through tech giants building […]

    The post Japanese Semiconductor Supplier Hit by Ransomware, Multiple Systems Impacted appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cybersecurity researchers at Veracode reveal a typosquatting attack that disguises Pulsar RAT as images to bypass Windows security and antivirus programs.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Last March, the customarily lively halls of the Air Force's largest warfighting conference felt more like a ghost town. 

    Military attendance at the Air and Space Forces Association’s Warfare Symposium just outside of Denver had dwindled after a travel ban was put in place to curb federal spending. Air Force initiatives aimed at competing with China were frozen by Defense Secretary Pete Hegseth. As the Air Force waited for the administration to nominate its top leaders, there were no splashy policy announcements.

    Now, as the conference returns to Colorado this week, all of that has changed. Airmen and guardians have been approved to travel for the events, said Amy Hudson, the association’s spokesperson. As of November, the service had all of its top leaders in place. The administration rolled out its Western hemisphere-focused defense strategy last month, and the Air Force is rallying around Hegseth’s defense-industry reforms. 

    But the Trump administration’s visions for air and space power priorities are still vague, experts and former Pentagon officials told Defense One. Keynote addresses by service leaders scheduled for Monday offer a much-needed opportunity for the Air and Space Force to pitch how they plan to counter global threats, including China. The National Defense Strategy’s China observations are seemingly contradictory, and one former official said it’s unclear how the Department of the Air Force will use it.

    “I think a lot of Air Force officers will be looking closely to see how China is being discussed,” a former Pentagon official said. “It was such a central facet of the Air Force approach in recent years that I just think people will be looking hard for signals there to understand how to think about it, how to posture their efforts vis-à-vis the competition with China.”

    Defense analysts have said the Air Force is not prepared for a potential fight with China—and the service’s current inventory and structure is to blame. 

    “Despite the United States Air Force’s (USAF) stellar performance in recent operations, a geriatric fleet of aircraft, low readiness rates, and dismal prospects in a potential future conflict with the People’s Republic of China (PRC) mean the service could decline within a decade from invaluable to incapable,” a Hudson Institute report released last week said. 

    An analysis this month from the Mitchell Institute for Aerospace Studies said the service needs a total of 500 next-generation fighters and bombers to take on China’s Integrated Air Defense System.

    “The Air Force must size and shape its forces to defeat Chinese aggression while simultaneously defending the U.S. homeland and deterring nuclear attacks,” the Mitchell report said. “It cannot do so at acceptable levels of risk with its current force mix and inventory.”

    Todd Harrison, a defense budget expert at the American Enterprise Institute, said the new National Defense Strategy, or NDS, does not have specific details on how the services are going to implement the ideas. 

    The service’s previous focus on competing with China included long-range nuclear bomber and a next-generation fighter jet. Harrison said the service needs to explain how that build-up and preparation is best suited for the new defense strategy.

    “The NDS’s No. 1 priority is homeland and hemispheric defense,” Harrison said. “The Air Force leadership has got to basically resolve this discrepancy between the force that they have been building and the force that the NDS prioritizes. Because they're very different capability sets. You don't need power projection forces in the same way if your priority is homeland defense.”

    Air Force Chief of Staff Gen. Kenneth Wilsbach is scheduled to give his first keynote address at the conference since taking over as the service’s top uniformed leader in November. The speech, titled “Fly and Fix: Empowered by Airmen,” will likely mirror themes in his initial message to the force, which did not mention China.

    “Our shared purpose is simple and enduring: to fly and fix so we are ready to fight,” Wilsbach wrote in December. “At our core, we fly and fix aircraft. It is the heart of who we are and what we do.”

    Air Force Secretary Troy Meink’s second Air and Space Forces Association keynote address is titled “Innovating Faster: Acquisition Transformation.” It follows Hegseth’s repeated calls for the defense industry to invest more money in creating new weapons and to move to a “wartime footing.” 

    Some of the service’s highest-profile and most expensive acquisition programs, such as the ICBM, B-21, F-47, and Air Force One efforts, have been moved under Defense Department oversight under a newly-created direct reporting portfolio manager role. Harrison said the move signals a lack of confidence in the service to manage its “too-big-to-fail” programs, but added it also offers a new chance for the Air Force to focus on developing programs that are critical to the service’s missions.

    “I think it also clears the deck for Secretary Meink and the whole Air Force acquisition enterprise to refocus on the things that are coming along that they can control,” Harrison said. “A next-generation tanker, a next-generation airlift, CCA, those are the kinds of things that they can, and should, be focusing on, and that's where some of these new acquisition priorities could actually be put to good use.”

    Gen. Chance Saltzman is scheduled to give one of his last Air and Space Force Association keynotes as the uniformed leader of the Space Force. He was confirmed to the four-year chief of space operations position in the fall of 2022. 

    His address, titled “Charting the Future of the Force,” follows recent calls from Space Force leaders to double the size of the smallest military service as it embraces an operational focus and warfighting mentality. 

    The former Pentagon official said White House and budgetary support for the Space Force’s growth will also be tied to how the service defines its role within the new National Defense Strategy.

    “[Space]was a huge priority the first Trump administration, and they've been much quieter about space as a priority outside of Golden Dome, which is very homeland focused,” the former Pentagon official said. “The whole push for space as a war-fighting domain, and making more investments in space, is tied to that concept of how to make sure that you control the ultimate high ground in a future conflict with a peer competitor, that’s a huge choice. And it will tie into the choice of the president and [Management and Budget Office] make on the top line.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Researchers at CyberProof have identified a new fake captcha campaign linked to the ClickFix operation. This stealthy infostealer targets over 25 browsers, cryptocurrency wallets like MetaMask, and gaming accounts by tricking users into executing malicious PowerShell commands.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A serious flaw in Splunk Enterprise for Windows that lets low-privileged users hijack DLL loading and escalate to SYSTEM-level access. Tracked as CVE-2026-20140, this local privilege escalation (LPE) vulnerability stems from DLL search-order hijacking and carries a CVSSv3.1 score of 7.7 (High). Splunk disclosed it on February 18, 2026, via advisory SVD-2026-0205. The issue affects […]

    The post Splunk Enterprise for Windows Flaw Enables DLL Hijacking, SYSTEM Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A Russian-speaking, financially motivated threat actor has been observed taking advantage of commercial generative artificial intelligence (AI) services to compromise over 600 FortiGate devices located in 55 countries. That’s according to new findings from Amazon Threat Intelligence, which said it observed the activity between January 11 and February 18, 2026. “No exploitation of FortiGate

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Anthropic has quietly flipped the script on application security. On February 20, the company launched Claude Code Security, a new capability baked directly into Claude Code on the web that automatically scans entire repositories for sophisticated vulnerabilities and delivers ready-to-review patch suggestions. Unlike legacy SAST tools that rely on rigid signature matching, Claude Code Security uses […]

    The post Anthropic Debuts Claude Code Security – AI Now Scan Vulnerabilities in Your Entire Codebase appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Artificial intelligence (AI) company Anthropic has begun to roll out a new security feature for Claude Code that can scan a user’s software codebase for vulnerabilities and suggest patches. The capability, called Claude Code Security, is currently available in a limited research preview to Enterprise and Team customers. “It scans codebases for security vulnerabilities and suggests targeted

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Roundcube webmail software to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities in question are listed below – CVE-2025-49113 (CVSS score: 9.9) – A deserialization of untrusted data vulnerability that allows remote code

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶