<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:media="http://search.yahoo.com/mrss/"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GBHackers Security | #1 Globally Trusted Cyber Security News Platform</title>
	<atom:link href="https://gbhackers.com/feed/" rel="self" type="application/rss+xml" />
	<link>https://gbhackers.com/</link>
	<description>GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers &#38; Technology Updates.</description>
	<lastBuildDate>Tue, 25 Aug 2026 13:27:56 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://gbhackers.com/wp-content/uploads/2024/09/cropped-gbh-32x32.png</url>
	<title>GBHackers Security | #1 Globally Trusted Cyber Security News Platform</title>
	<link>https://gbhackers.com/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">236592110</site>	<item>
		<title>AI-Assisted ToxNetV2 Linux Botnet Uses LLM to Generate Shell and SSH Commands</title>
		<link>https://gbhackers.com/toxnetv2-linux-botnet/</link>
					<comments>https://gbhackers.com/toxnetv2-linux-botnet/#respond</comments>
		
		<dc:creator><![CDATA[Mayura Kathir]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 13:27:54 +0000</pubDate>
				<category><![CDATA[AI]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Linux]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197069</guid>

					<description><![CDATA[<p>ToxNetV2, an AArch64 Linux peer-to-peer botnet, integrates a large language model into its controller workflow to turn botnet and host telemetry into proposed operational actions. The implementation connects NVIDIA NIM-hosted z-ai/glm-5.2 model output to controller-side functions including local shell execution, file writes, remote SSH commands, persistent state changes, and cross-compilation. Analysis published by Joe Reverser [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/toxnetv2-linux-botnet/">AI-Assisted ToxNetV2 Linux Botnet Uses LLM to Generate Shell and SSH Commands</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/toxnetv2-linux-botnet/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/f671a282-757f-49a4-a468-178125467a4d.png" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197069</post-id>	</item>
		<item>
		<title>Multi-Agent AI Framework Compromises Government Systems and Steals Thousands of Records</title>
		<link>https://gbhackers.com/multi-agent-ai-framework-compromises-government-systems/</link>
					<comments>https://gbhackers.com/multi-agent-ai-framework-compromises-government-systems/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 12:47:23 +0000</pubDate>
				<category><![CDATA[AI]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197073</guid>

					<description><![CDATA[<p>A multi-agent AI framework, utilizing Hermes and OpenClaw agents, was employed to compromise government entities in Asia, stealing thousands of personnel records, cracking employee credentials, and establishing persistent access to state infrastructure, according to Dream Research Labs. Researchers discovered a 160 MB operational archive containing 1,395 files generated over about 4 days of activity, from [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/multi-agent-ai-framework-compromises-government-systems/">Multi-Agent AI Framework Compromises Government Systems and Steals Thousands of Records</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/multi-agent-ai-framework-compromises-government-systems/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/08685e0e-69ed-4d49-8c22-d366ab7bb944-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197073</post-id>	</item>
		<item>
		<title>Scammers Impersonate Microsoft to Push Fake Security Scans and Refund Fraud</title>
		<link>https://gbhackers.com/scammers-impersonate-microsoft-to-push-fake-security-scans-and-refund-fraud/</link>
					<comments>https://gbhackers.com/scammers-impersonate-microsoft-to-push-fake-security-scans-and-refund-fraud/#respond</comments>
		
		<dc:creator><![CDATA[Mayura Kathir]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 11:57:02 +0000</pubDate>
				<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Microsoft]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197038</guid>

					<description><![CDATA[<p>A cluster of fraudulent websites impersonating Microsoft is using fake “security scans” to pressure victims into uninstalling antivirus products, disclosing personal and banking information, and granting remote access to their computers. The sites, branded as SysScan, claim to assess whether an antivirus product is functioning properly. Their conclusion is predetermined: the victim’s computer is allegedly [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/scammers-impersonate-microsoft-to-push-fake-security-scans-and-refund-fraud/">Scammers Impersonate Microsoft to Push Fake Security Scans and Refund Fraud</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/scammers-impersonate-microsoft-to-push-fake-security-scans-and-refund-fraud/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/31d207e1-dcde-44c9-82c6-9770e6f9c36f.png" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197038</post-id>	</item>
		<item>
		<title>ASOS Warns Customers of Data Breach Following Credential-Based Account Takeovers</title>
		<link>https://gbhackers.com/asos-warns-customers-of-data-breach/</link>
					<comments>https://gbhackers.com/asos-warns-customers-of-data-breach/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 11:27:12 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Data Breach]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197064</guid>

					<description><![CDATA[<p>ASOS has started notifying affected customers in the U.S. after detecting unauthorized access to accounts linked to login credentials obtained from outside its systems. According to a breach notification issued by ASOS US Sales LLC, unusual activity was detected in certain ASOS accounts on July 28, 2026. An investigation conducted the following day revealed that [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/asos-warns-customers-of-data-breach/">ASOS Warns Customers of Data Breach Following Credential-Based Account Takeovers</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/asos-warns-customers-of-data-breach/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/56387e0a-e842-4759-8ab8-6d8a61b9f8b6-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197064</post-id>	</item>
		<item>
		<title>Multiple Zscaler Client Connector Flaws Enable Remote Code Execution</title>
		<link>https://gbhackers.com/multiple-zscaler-client-connector-flaws/</link>
					<comments>https://gbhackers.com/multiple-zscaler-client-connector-flaws/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 11:13:03 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197059</guid>

					<description><![CDATA[<p>Zscaler has addressed several vulnerabilities in its Client Connector endpoint application that could allow an unauthenticated, unprivileged attacker to execute arbitrary code within the product’s context. This vulnerability, tracked as CVE-2026-59568, is rated as Critical, with a CVSS v3.1 score of 9.1. The attack vector is network-accessible and requires no privileges or user interaction. Multiple [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/multiple-zscaler-client-connector-flaws/">Multiple Zscaler Client Connector Flaws Enable Remote Code Execution</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/multiple-zscaler-client-connector-flaws/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/55bfa160-815a-4746-b995-c0c97d916728-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197059</post-id>	</item>
		<item>
		<title>91 Spring CVEs Impact Over 209,000 Software Components Across the Supply Chain</title>
		<link>https://gbhackers.com/91-spring-cves-impact-over-209000-software-components/</link>
					<comments>https://gbhackers.com/91-spring-cves-impact-over-209000-software-components/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 10:06:45 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197035</guid>

					<description><![CDATA[<p>Broadcom has disclosed 91 Common Vulnerabilities and Exposures (CVEs) affecting the Spring Framework and related projects, triggering a software supply chain remediation event that Sonatype estimates impacts 209,569 software components. The advisory issued on August 20 highlights the widening gap between AI-accelerated vulnerability discovery and organizations&#8217; ability to identify, fix, rebuild, and deploy affected software. [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/91-spring-cves-impact-over-209000-software-components/">91 Spring CVEs Impact Over 209,000 Software Components Across the Supply Chain</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/91-spring-cves-impact-over-209000-software-components/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/cad4121e-20fd-4606-820d-3ed4af1cdb6f-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197035</post-id>	</item>
		<item>
		<title>PavinLoader Uses ClickFix and Fake Downloads to Deploy Amatera Stealer via Blockchain C2</title>
		<link>https://gbhackers.com/pavinloader-uses-clickfix/</link>
					<comments>https://gbhackers.com/pavinloader-uses-clickfix/#respond</comments>
		
		<dc:creator><![CDATA[Mayura Kathir]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 09:48:32 +0000</pubDate>
				<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197011</guid>

					<description><![CDATA[<p>PavinLoader, a multi-stage .NET malware loader, operating across ClickFix, fake software-download, and malicious game campaigns. The activity shows how attackers are moving beyond a single delivery vector. A victim may be lured to a fake Cloudflare or Google verification page and instructed to paste a command, persuaded to install apparently legitimate software, or tricked into [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/pavinloader-uses-clickfix/">PavinLoader Uses ClickFix and Fake Downloads to Deploy Amatera Stealer via Blockchain C2</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/pavinloader-uses-clickfix/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/eea4d854-c6a2-4973-8699-060473cf4510.png" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197011</post-id>	</item>
		<item>
		<title>Anthropic Expands Claude MCP Security With Enterprise-Managed Identity Controls</title>
		<link>https://gbhackers.com/anthropic-expands-claude-mcp-security-with-enterprise-managed-identity-controls/</link>
					<comments>https://gbhackers.com/anthropic-expands-claude-mcp-security-with-enterprise-managed-identity-controls/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 08:47:48 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197006</guid>

					<description><![CDATA[<p>Anthropic has expanded Claude Enterprise’s Model Context Protocol (MCP) security capabilities with enterprise-managed authorization, allowing organizations to centrally provision and govern connector access through their identity provider (IdP). The feature, now generally available, removes the need for individual users to authorize each MCP connector after an administrator enables it. Instead, administrators can authorize a connector [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/anthropic-expands-claude-mcp-security-with-enterprise-managed-identity-controls/">Anthropic Expands Claude MCP Security With Enterprise-Managed Identity Controls</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/anthropic-expands-claude-mcp-security-with-enterprise-managed-identity-controls/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/23d748c5-fd3a-49ef-973e-ce67f6fa311d-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197006</post-id>	</item>
		<item>
		<title>Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts</title>
		<link>https://gbhackers.com/critical-miniorange-saml-sso-flaws/</link>
					<comments>https://gbhackers.com/critical-miniorange-saml-sso-flaws/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 08:36:37 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[Wordpress]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=197002</guid>

					<description><![CDATA[<p>Two critical vulnerabilities have been identified in the miniOrange SAML 2.0 Single Sign-On WordPress plugin, which could allow unauthenticated attackers to forge SAML assertions and log in as any existing user, including site administrators. These vulnerabilities, tracked as CVE-2026-61979 and CVE-2026-15981, carry a CVSS score of 9.8. Research conducted by DigitalOcean&#8217;s security team and later [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/critical-miniorange-saml-sso-flaws/">Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/critical-miniorange-saml-sso-flaws/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/8acbd2a1-3eda-4d67-b7f1-cea8416ff95a-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">197002</post-id>	</item>
		<item>
		<title>Critical Red Hat Keycloak Password Reset Flaw Enables Unauthenticated Account Takeover</title>
		<link>https://gbhackers.com/critical-red-hat-keycloak-password-reset-flaw/</link>
					<comments>https://gbhackers.com/critical-red-hat-keycloak-password-reset-flaw/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Tue, 25 Aug 2026 08:23:26 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=196996</guid>

					<description><![CDATA[<p>Red Hat has disclosed a critical vulnerability in the Red Hat Build of Keycloak that allows an unauthenticated remote attacker to bypass a key safeguard in the password reset process and seize control of arbitrary user accounts. Tracked as CVE-2026-18963, the flaw affects the keycloak-services component, the core identity and access management engine behind the [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/critical-red-hat-keycloak-password-reset-flaw/">Critical Red Hat Keycloak Password Reset Flaw Enables Unauthenticated Account Takeover</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/critical-red-hat-keycloak-password-reset-flaw/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/08/c72217f2-18b3-4ed9-9da5-98301602eca4-1-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">196996</post-id>	</item>
	</channel>
</rss>
