βCVE-2025-53833 (CVSS 10): Critical SSTI Flaw in LaRecipe Threatens Millions of Laravel Apps
https://securityonline.info/cve-2025-53833-cvss-10-critical-ssti-flaw-in-larecipe-threatens-millions-of-laravel-apps/
https://securityonline.info/cve-2025-53833-cvss-10-critical-ssti-flaw-in-larecipe-threatens-millions-of-laravel-apps/
Daily CyberSecurity
CVE-2025-53833 (CVSS 10): Critical SSTI Flaw in LaRecipe Threatens Millions of Laravel Apps
A critical SSTI flaw (CVE-2025-53833, CVSS 10.0) in LaRecipe allows unauthenticated RCE on affected servers via template injection. Update to v2.8.1 immediately!
βCursor AI IDE Hacked: Fraudulent Extension Steals $500K in Crypto from Russian Developer
https://securityonline.info/cursor-ai-ide-hacked-fraudulent-extension-steals-500k-in-crypto-from-russian-developer/
https://securityonline.info/cursor-ai-ide-hacked-fraudulent-extension-steals-500k-in-crypto-from-russian-developer/
Daily CyberSecurity
Cursor AI IDE Hacked: Fraudulent Extension Steals $500K in Crypto from Russian Developer
A Russian crypto developer lost $500K after installing a fraudulent "Solidity Language" extension for Cursor AI IDE from Open VSX, which deployed malware for remote access and data theft.
βFederal IT Contractor Pays $14.75 Million Fine to Settle Cyber Fraud Charges
https://thecyberexpress.com/federal-contractor-pays-14m-to-settle-fraud/
https://thecyberexpress.com/federal-contractor-pays-14m-to-settle-fraud/
The Cyber Express
Federal Contractor Pays $14.7M To Settle Cyber Fraud Charges
A Maryland-based IT firm, Hill ASC Inc., has agreed to fork over at least $14.75 million in a settlement that brings the federal contractors under the
βFBI seized multiple piracy sites distributing pirated video games
https://securityaffairs.com/179925/cyber-crime/fbi-seized-multiple-piracy-sites-distributing-pirated-video-games.html
https://securityaffairs.com/179925/cyber-crime/fbi-seized-multiple-piracy-sites-distributing-pirated-video-games.html
Security Affairs
FBI seized multiple piracy sites distributing pirated video games
FBI seizes multiple piracy sites for Nintendo Switch and PlayStation 4 games, dismantling their infrastructure.
βGovernment Organizations Targeted via AWS Lambda URL Endpoint Exploits
https://gbhackers.com/government-organizations-targeted/
https://gbhackers.com/government-organizations-targeted/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Government Organizations Targeted via AWS Lambda URL Endpoint Exploits
Unit 42 researchers from Palo Alto Networks have been monitoring a sophisticated threat cluster designated CL-STA-1020.
βCybercriminals Clone CNN, BBC, and CNBC Sites to Lure Victims into Investment Fraud
https://gbhackers.com/cybercriminals-clone-cnn-bbc-and-cnbc-sites/
https://gbhackers.com/cybercriminals-clone-cnn-bbc-and-cnbc-sites/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Cybercriminals Clone CNN, BBC, and CNBC Sites to Lure Victims into Investment Fraud
Researchers have unveiled a sprawling cybercrime syndicate orchestrating an elaborate phishing and investment fraud campaign.
βAWS Overhauls Free Tier: Replaces 1-Year Plan with Credit-Based Model, Max 6 Months Free
https://securityonline.info/aws-overhauls-free-tier-replaces-1-year-plan-with-credit-based-model-max-6-months-free/
https://securityonline.info/aws-overhauls-free-tier-replaces-1-year-plan-with-credit-based-model-max-6-months-free/
Daily CyberSecurity
AWS Overhauls Free Tier: Replaces 1-Year Plan with Credit-Based Model, Max 6 Months Free
AWS replaced its 1-year free tier with a credit-based model (up to $200 credits, 6 months max) for new users, effective July 15, 2025. Accounts close if not upgraded.
βJack Dorsey Unveils βSun Dayβ: A New App to Track UV Exposure and Vitamin D
https://securityonline.info/jack-dorsey-unveils-sun-day-a-new-app-to-track-uv-exposure-and-vitamin-d/
https://securityonline.info/jack-dorsey-unveils-sun-day-a-new-app-to-track-uv-exposure-and-vitamin-d/
Daily CyberSecurity
Jack Dorsey Unveils "Sun Day": A New App to Track UV Exposure and Vitamin D
Jack Dorsey launches "Sun Day," a new iOS app for tracking personal sun exposure, UV radiation, and estimating Vitamin D synthesis based on user data.
βMetaβs $100B AI Push: Gigawatt Data Centers Spark Water Crisis & Community Tensions
https://securityonline.info/metas-100b-ai-push-gigawatt-data-centers-spark-water-crisis-community-tensions/
https://securityonline.info/metas-100b-ai-push-gigawatt-data-centers-spark-water-crisis-community-tensions/
Daily CyberSecurity
Meta's $100B AI Push: Gigawatt Data Centers Spark Water Crisis & Community Tensions
Meta's multi-billion dollar investment in gigawatt-scale AI data centers is raising alarms over massive water consumption and escalating community tensions.
βWindows 10 End-of-Life: Microsoft Extends 365 Support Until 2028 with ESU Program
https://securityonline.info/windows-10-end-of-life-microsoft-extends-365-support-until-2028-with-esu-program/
https://securityonline.info/windows-10-end-of-life-microsoft-extends-365-support-until-2028-with-esu-program/
Daily CyberSecurity
Windows 10 End-of-Life: Microsoft Extends 365 Support Until 2028 with ESU Program
Microsoft extends Windows 10 security updates via ESU until Oct 2028 and Microsoft 365 support, giving users more time to migrate to Windows 11.
βPentagon Funds AI Giants: OpenAI, Google, Anthropic, xAI Tapped for Military AI Development
https://securityonline.info/pentagon-funds-ai-giants-openai-google-anthropic-xai-tapped-for-military-ai-development/
https://securityonline.info/pentagon-funds-ai-giants-openai-google-anthropic-xai-tapped-for-military-ai-development/
Daily CyberSecurity
Pentagon Funds AI Giants: OpenAI, Google, Anthropic, xAI Tapped for Military AI Development
The U.S. DoD is investing up to $200M in AI firms like OpenAI, Google, Anthropic, and xAI to develop advanced AI for military applications and "superintelligence."
βPHP 9.0 to Adopt BSD License: Unifying Open Source and Ending Licensing Confusion
https://securityonline.info/php-9-0-to-adopt-bsd-license-unifying-open-source-and-ending-licensing-confusion/
https://securityonline.info/php-9-0-to-adopt-bsd-license-unifying-open-source-and-ending-licensing-confusion/
Daily CyberSecurity
PHP 9.0 to Adopt BSD License: Unifying Open Source and Ending Licensing Confusion
PHP is proposing a shift to the 3-Clause BSD License for PHP 9.0, aiming to resolve long-standing compatibility issues and streamline its open-source framework.
βIntel Raptor Lake CPUs Facing Widespread Stability Issues, Causing Firefox Crashes
https://securityonline.info/intel-raptor-lake-cpus-facing-widespread-stability-issues-causing-firefox-crashes/
https://securityonline.info/intel-raptor-lake-cpus-facing-widespread-stability-issues-causing-firefox-crashes/
Daily CyberSecurity
Intel Raptor Lake CPUs Facing Widespread Stability Issues, Causing Firefox Crashes
Intel's 14th-gen Raptor Lake CPUs are causing widespread system instability and Firefox crashes, leading Mozilla to disable its crash reporting bot.
βDoes Showing Seconds on Your Windows Clock Drain Battery? LTTLABS Puts Microsoftβs Claim to the Test!
https://securityonline.info/does-showing-seconds-on-your-windows-clock-drain-battery-lttlabs-puts-microsofts-claim-to-the-test/
https://securityonline.info/does-showing-seconds-on-your-windows-clock-drain-battery-lttlabs-puts-microsofts-claim-to-the-test/
Daily CyberSecurity
Does Showing Seconds on Your Windows Clock Drain Battery? LTTLABS Puts Microsoft's Claim to the Test!
Microsoft claimed showing seconds on the Windows clock drains battery. LTTLABS tested it on 3 laptops, revealing measurable impact, especially on high-performance devices.
βNCC Advises Immediate Windows 11 Upgrade to Strengthen Cyberattack Defenses
https://gbhackers.com/ncc-advises-immediate-windows-11-upgrade/
https://gbhackers.com/ncc-advises-immediate-windows-11-upgrade/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
NCC Advises Immediate Windows 11 Upgrade to Strengthen Cyberattack Defenses
The National Cyber Security Centre (NCSC) has unveiled its latest recommended configuration packs for Microsoft Windows operating systems.
βApache Tomcat Coyote Flaw Allows Attackers to Launch DoS Attacks
https://gbhackers.com/apache-tomcat-coyote-flaw/
https://gbhackers.com/apache-tomcat-coyote-flaw/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Apache Tomcat Coyote Flaw Allows Attackers to Launch DoS Attacks
The Apache Software Foundation has revealed a vulnerability in the Tomcat Coyote module, specifically within the Maven artifact org.apache.tomcat:tomcat-coyote.
βMITRE Launches AADAPT Framework to Counter Real-World Attacks on Digital Asset Systems
https://gbhackers.com/mitre-launches-aadapt-framework/
https://gbhackers.com/mitre-launches-aadapt-framework/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
MITRE Launches AADAPT Framework to Counter Real-World Attacks on Digital Asset Systems
The MITRE Corporation has unveiled its comprehensive AADAPTβ’ framework (Adversarial Actions in Digital Asset Payment Technologies).
βFBI Seizes NSW2U, PS4PKG Domains in $170 Million Game Piracy Investigation
https://thecyberexpress.com/fbi-seizes-nsw2u-ps4pkg-domains/
https://thecyberexpress.com/fbi-seizes-nsw2u-ps4pkg-domains/
The Cyber Express
FBI Seizes NSW2U, PS4PKG And Other Video Game Piracy Sites
The FBI has effectively ended access to some of the most used piracy platforms for video games.
βBritish Citizen Sentenced for Islamophobic WiFi Hack at UK Train Stations
https://gbhackers.com/british-citizen-sentenced-for-islamophobic-wifi-hack/
https://gbhackers.com/british-citizen-sentenced-for-islamophobic-wifi-hack/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
British Citizen Sentenced for Islamophobic WiFi Hack at UK Train Stations
John Andreas Wik, a 37-year-old resident of Limes Road in Beckenham, has been handed a 24-month prison sentence, suspended for two years.
βNorth Korean Hackers Exploit Zoom Invites in Attacks on Crypto Companies
https://gbhackers.com/north-korean-hackers-exploit-zoom-invites-in-attacks/
https://gbhackers.com/north-korean-hackers-exploit-zoom-invites-in-attacks/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
North Korean Hackers Exploit Zoom Invites in Attacks on Crypto Companies
Cybersecurity firm SentinelOne has exposed an ongoing malware campaign orchestrated by North Korean threat actors.
βLaRecipe Tool with 2.3M Downloads Found Vulnerable to Full Server Takeover
https://gbhackers.com/larecipe-tool-with-2-3m-downloads-found-vulnerable-to-full-server-takeover/
https://gbhackers.com/larecipe-tool-with-2-3m-downloads-found-vulnerable-to-full-server-takeover/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
LaRecipe Tool with 2.3M Downloads Found Vulnerable to Full Server Takeover
A critical security vulnerability has been discovered in LaRecipe, a popular Laravel documentation package with over 2.3 million downloads, that could allow attackers to completely compromise affected servers.