<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:media="http://search.yahoo.com/mrss/"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GBHackers Security | #1 Globally Trusted Cyber Security News Platform</title>
	<atom:link href="https://gbhackers.com/feed/" rel="self" type="application/rss+xml" />
	<link>https://gbhackers.com/</link>
	<description>GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers &#38; Technology Updates.</description>
	<lastBuildDate>Sat, 26 Sep 2026 08:15:12 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://gbhackers.com/wp-content/uploads/2024/09/cropped-gbh-32x32.png</url>
	<title>GBHackers Security | #1 Globally Trusted Cyber Security News Platform</title>
	<link>https://gbhackers.com/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">236592110</site>	<item>
		<title>Red Heron Exploits Critical Gitea Flaw to Steal Repositories and Deploy Linux Rootkit</title>
		<link>https://gbhackers.com/red-heron-exploits-critical-gitea-flaw/</link>
					<comments>https://gbhackers.com/red-heron-exploits-critical-gitea-flaw/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 08:15:11 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201089</guid>

					<description><![CDATA[<p>A threat actor tracked as Red Heron has exploited the critical Gitea remote code execution vulnerability CVE-2026-60004 to steal source-code repositories, establish persistent access, and deploy a covert Linux toolset consisting of the JITTERLY implant and SIXZUT LD_PRELOAD rootkit. Acronis reported that the actor rapidly weaponized the flaw against internet-exposed Gitea environments, turning initial access [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/red-heron-exploits-critical-gitea-flaw/">Red Heron Exploits Critical Gitea Flaw to Steal Repositories and Deploy Linux Rootkit</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/red-heron-exploits-critical-gitea-flaw/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/red-heron-exploits-critical-gitea-flaw-to-steal-repositories-and-deploy-linux-rootkit22r-6ab77edcda760.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201089</post-id>	</item>
		<item>
		<title>Windows 11 Update Causes Black Screen and Desktop Loading Issues After Sign-In</title>
		<link>https://gbhackers.com/windows-11-update-causes-black-screen/</link>
					<comments>https://gbhackers.com/windows-11-update-causes-black-screen/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 08:02:06 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201083</guid>

					<description><![CDATA[<p>Microsoft has confirmed a Windows 11 issue that can leave users with a black screen after sign-in or prevent the desktop from loading automatically. The problem affects devices that installed the August 2026 non-security preview updates and potentially later cumulative updates, with Azure Virtual Desktop environments using FSLogix profile containers most frequently affected. The issue [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/windows-11-update-causes-black-screen/">Windows 11 Update Causes Black Screen and Desktop Loading Issues After Sign-In</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/windows-11-update-causes-black-screen/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/windows-11-update-causes-black-screen-and-desktop-loading-issues-after-sign-in234-6ab77b9e9d9ff.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201083</post-id>	</item>
		<item>
		<title>Kiteworks Warns Users to Take Systems Offline Amid Suspected Zero-Day Threat</title>
		<link>https://gbhackers.com/kiteworks-systems-offline-amid-suspected-zero-day/</link>
					<comments>https://gbhackers.com/kiteworks-systems-offline-amid-suspected-zero-day/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 07:45:21 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201079</guid>

					<description><![CDATA[<p>Kiteworks has urged customers worldwide to temporarily shut down their servers after receiving credible law-enforcement intelligence that a threat actor may target Kiteworks deployments over the weekend. The emergency advisory is preventive, but the company said the potential activity may involve an unknown zero-day vulnerability. The secure file-sharing and managed content communications provider asked organizations [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/kiteworks-systems-offline-amid-suspected-zero-day/">Kiteworks Warns Users to Take Systems Offline Amid Suspected Zero-Day Threat</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/kiteworks-systems-offline-amid-suspected-zero-day/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/kiteworks-warns-users-to-take-systems-offline-amid-suspected-zero-day-threat24-6ab777fc9d5e7.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201079</post-id>	</item>
		<item>
		<title>Uncensored Local AI Model Bypasses EDR to Dump Windows LSASS Credentials</title>
		<link>https://gbhackers.com/uncensored-local-ai-model-bypasses-edr/</link>
					<comments>https://gbhackers.com/uncensored-local-ai-model-bypasses-edr/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 07:28:09 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201071</guid>

					<description><![CDATA[<p>A new demonstration shows how a locally hosted, uncensored AI model can help generate a Windows LSASS credential-dumping utility that reportedly evaded endpoint detection and response products during laboratory testing. The finding highlights how accessible local models can reduce the time and expertise needed to adapt offensive tooling after an attacker gains administrative access. Eddie [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/uncensored-local-ai-model-bypasses-edr/">Uncensored Local AI Model Bypasses EDR to Dump Windows LSASS Credentials</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/uncensored-local-ai-model-bypasses-edr/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/uncensored-local-ai-model-bypasses-edr-to-dump-windows-lsass-credentials24-6ab7736dc67fa.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201071</post-id>	</item>
		<item>
		<title>Storm-3168 Hackers Abuse Compromised Service Principals to Destroy Azure Cloud Resources</title>
		<link>https://gbhackers.com/storm-3168-hackers-abuse-compromised-service-principals/</link>
					<comments>https://gbhackers.com/storm-3168-hackers-abuse-compromised-service-principals/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 07:09:54 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201063</guid>

					<description><![CDATA[<p>Microsoft has uncovered a destructive Azure campaign linked to Storm-3168, also known as JADEPUFFER, in which attackers abused compromised service principals to map cloud environments, delete critical resources, target recovery safeguards, and obtain storage-account credentials. The activity shows how a single exposed workload identity can give attackers the automation and permissions needed to cause rapid [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/storm-3168-hackers-abuse-compromised-service-principals/">Storm-3168 Hackers Abuse Compromised Service Principals to Destroy Azure Cloud Resources</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/storm-3168-hackers-abuse-compromised-service-principals/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/storm-3168-hackers-abuse-compromised-service-principals-to-destroy-azure-cloud-resources23r-6ab76f2138c43.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201063</post-id>	</item>
		<item>
		<title>OpenAI Says Misaligned AI Agents Hacked Hugging Face and Bypassed Security Controls</title>
		<link>https://gbhackers.com/openai-says-misaligned-ai-agents-hacked-hugging-face/</link>
					<comments>https://gbhackers.com/openai-says-misaligned-ai-agents-hacked-hugging-face/#respond</comments>
		
		<dc:creator><![CDATA[Eswar]]></dc:creator>
		<pubDate>Sat, 26 Sep 2026 06:54:16 +0000</pubDate>
				<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201059</guid>

					<description><![CDATA[<p>OpenAI has disclosed that autonomous AI agents compromised portions of Hugging Face’s infrastructure during internal cybersecurity evaluations after pursuing misaligned strategies to complete difficult tasks. The company said the event was not simply a platform-security failure, but its most severe identified example of model-driven cyber activity and a warning that advanced agents can pursue objectives [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/openai-says-misaligned-ai-agents-hacked-hugging-face/">OpenAI Says Misaligned AI Agents Hacked Hugging Face and Bypassed Security Controls</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/openai-says-misaligned-ai-agents-hacked-hugging-face/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/openai-says-misaligned-ai-agents-hacked-hugging-face-and-bypassed-security-controls23-6ab76b8a60d23.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201059</post-id>	</item>
		<item>
		<title>Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems</title>
		<link>https://gbhackers.com/salmon-introduces-execution-verification-infrastructure-evi-for-securing-ai-agents-and-autonomous-systems/</link>
					<comments>https://gbhackers.com/salmon-introduces-execution-verification-infrastructure-evi-for-securing-ai-agents-and-autonomous-systems/#respond</comments>
		
		<dc:creator><![CDATA[CyberNewswire]]></dc:creator>
		<pubDate>Fri, 25 Sep 2026 13:37:32 +0000</pubDate>
				<category><![CDATA[Press Release]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201015</guid>

					<description><![CDATA[<p>San Francisco, USA, September 25th, 2026, CyberNewswire Archipelo today announced Salmon, Execution Verification Infrastructure (EVI) for AI agents and autonomous systems, powered by a cryptographic protocol designed to make execution history verifiable. Salmon establishes verifiable execution history and state lineage across humans, AI agents, and automation. The launch follows the OpenAI–Hugging Face incident, in which [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/salmon-introduces-execution-verification-infrastructure-evi-for-securing-ai-agents-and-autonomous-systems/">Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/salmon-introduces-execution-verification-infrastructure-evi-for-securing-ai-agents-and-autonomous-systems/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhMijXYjPQ4hCwqR1fWWIEJsNJ8ceVV0sK7irePvXG3X2HrWCbmkdS5yqGNmR6_QAPCEewXsi7hpqilE751KIyZRtwIjER2BVJ3ixdAL7g00tXdzaqtsfOI2KYkuImnv6ciIEIvbJc5kH2mERRXNh8LohXTXpehd3QbL9t8nqAoSWIMliFJD3B9AnMWxbA/s1600/Insignary%20Launches%20Clarity%20On-Demand%20SBOMs,%20No%20Annual%20Commitment%20Required%20Toronto,%20Canada,%20July%2015th,%202026,%20CyberNewswire%20Enterprise-grade%20binary%20software%20verification%20for%20one%20proj%20-%202026-09-25T185227.22.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201015</post-id>	</item>
		<item>
		<title>14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape</title>
		<link>https://gbhackers.com/14-year-old-linux-kernel-vulnerability/</link>
					<comments>https://gbhackers.com/14-year-old-linux-kernel-vulnerability/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Fri, 25 Sep 2026 12:48:13 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=201011</guid>

					<description><![CDATA[<p>A vulnerability in the Linux kernel’s AF_ALG cryptographic interface, which has existed for 14 years, can let an unprivileged local attacker gain root access and escape a Docker container by exploiting a race condition in concurrent socket writes. This flaw, tracked as CVE-2025-39964, was discovered in 2025 by STAR Labs researcher Muhammad Alifa Ramdhan, with [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/14-year-old-linux-kernel-vulnerability/">14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/14-year-old-linux-kernel-vulnerability/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/b2dce24c-c93d-4f91-8b5b-d0f1d31a5768-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">201011</post-id>	</item>
		<item>
		<title>ServiceNow Security Flaws Allow Attackers to Execute SQL and Modify Instance Data</title>
		<link>https://gbhackers.com/servicenow-security-flaws/</link>
					<comments>https://gbhackers.com/servicenow-security-flaws/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Fri, 25 Sep 2026 10:58:04 +0000</pubDate>
				<category><![CDATA[CVE/vulnerability]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[cyber security]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=200997</guid>

					<description><![CDATA[<p>ServiceNow has disclosed five vulnerabilities affecting its AI Platform, including two critical flaws that could allow unauthenticated attackers to execute arbitrary SQL commands, extract sensitive instance data, modify records, and escalate privileges. The security advisory, published in September 2026 and tracked as KB3159623 on September 24, details the following vulnerabilities: CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/servicenow-security-flaws/">ServiceNow Security Flaws Allow Attackers to Execute SQL and Modify Instance Data</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/servicenow-security-flaws/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/77b05012-12cf-49f6-b29f-d4f97548426a-1-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">200997</post-id>	</item>
		<item>
		<title>Rogue AI Agents Tried to Hack Public Websites After Data Retrieval Failed</title>
		<link>https://gbhackers.com/rogue-ai-agents-tried-to-hack-public-websites/</link>
					<comments>https://gbhackers.com/rogue-ai-agents-tried-to-hack-public-websites/#respond</comments>
		
		<dc:creator><![CDATA[Divya]]></dc:creator>
		<pubDate>Fri, 25 Sep 2026 10:41:35 +0000</pubDate>
				<category><![CDATA[AI]]></category>
		<category><![CDATA[Cyber Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<guid isPermaLink="false">https://gbhackers.com/?p=200993</guid>

					<description><![CDATA[<p>Research from Transluce shows that autonomous AI agents shifted from standard web data collection to probing for vulnerabilities in three public-facing services after traditional data retrieval methods failed. This activity targeted an Australian government health data platform, Data USA, and the University of New Mexico&#8217;s digital library. Rogue AI Tried to Hack Public Websites Transluce [&#8230;]</p>
<p>The post <a href="https://gbhackers.com/rogue-ai-agents-tried-to-hack-public-websites/">Rogue AI Agents Tried to Hack Public Websites After Data Retrieval Failed</a> appeared first on <a href="https://gbhackers.com">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>
]]></description>
		
					<wfw:commentRss>https://gbhackers.com/rogue-ai-agents-tried-to-hack-public-websites/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://gbhackers.com/wp-content/uploads/2026/09/56159e68-0759-49c5-81ac-b862ea91f226-1.webp" medium="image"></media:content>
<post-id xmlns="com-wordpress:feed-additions:1">200993</post-id>	</item>
	</channel>
</rss>
