DESTAQUES

Ameaças Cibernéticas

1629 notícias
Ameaças Cibernéticas Bleeping Computer 🇺🇸

Microsoft starts removing WMIC tool used by cybercriminals

Microsoft announced that it removed the Windows Management Instrumentation Command-line (WMIC) tool from Windows 11 24H2 and 25H2, as well as from Windows 11 beta builds released this week. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. Ray is an open-source, Python-native distributed computing framework desig…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Falha crítica em plugin permite takeover total do WordPress

Sites WordPress que utilizam o plugin User Profile Builder estão vulneráveis a uma falha crítica que permite a tomada total do controle, conforme análise da empresa de segurança Wordfence. A vulnerabilidade, com pontuação CVSS de 9.8, permite que um atacante não autenticado se re…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Clop lista GE, Philips e Shell em vazamento de dados

As gigantes de tecnologia General Electric (GE) e Philips, além da petroleira Shell, investigam alegações de que o grupo de ransomware Clop tenha invadido seus sistemas e roubado dados, conforme comunicados das empresas. A Philips confirmou que identificou e conteve uma tentativa…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Julho bate recorde global de ataques de ransomware

O mês de julho registrou o maior volume de ataques de ransomware no mundo nos últimos 12 meses, com 955 vítimas globais e um salto de 33,9% em comparação a junho, superando o pico anterior de 881 ocorrências em dezembro de 2025. Os dados são da plataforma Ransomware.live, de moni…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Desarticulada quadrilha que roubou R$ 193 milhões

A Polícia Federal do Brasil e o Bundeskriminalamt (BKA), a polícia criminal alemã, prenderam sete pessoas ligadas a um ataque cibernético que, em novembro de 2023, desviou cerca de € 30 milhões (R$ 193,6 milhões) das contas de clientes do banco alemão Commerzbank. Três suspeitos …

Ameaças Cibernéticas CISO Advisor 🇧🇷

Brasil registra 4.151 ataques por organização em julho, alta de 45%

Cada organização no Brasil sofreu, em média, 4.151 ataques cibernéticos por semana em julho de 2026, um crescimento de 45% em relação ao mesmo período do ano passado, segundo o relatório mensal da Check Point Research (CPR), divisão de inteligência em ameaças da Check Point Softw…

Ameaças Cibernéticas Dark Reading 🇺🇸

Adam Shostack Talks Hugging Face & PHANTOM-B

World-class threat modeler Adam Shostack shared he was "blown away" by OpenAI's revelations about the Hugging Face attack, and explains why his new threat model for LLMs is both "lightweight yet still usable."

Ameaças Cibernéticas The Hacker News 🇺🇸

Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection

Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing i…

Ameaças Cibernéticas The Hacker News 🇺🇸

Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in Israel. Russian cybersecurity company Kaspersky said its ongoing monitoring of the th…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Microsoft confirma patch para zero-day ShieldBreak no Defender

A Microsoft comunicou que está trabalhando em uma correção de segurança para uma vulnerabilidade de dia zero no Microsoft Defender chamada “ShieldBreak“, após divulgação pública pelo pesquisador que usa o pseudônimo “Nightmare Eclipse”. A falha, agora rastreada como CVE-2026-6941…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Microsoft confirms GitHub is down worldwide

GitHub is down for some users as a widespread outage is causing errors across the website, API, Actions, Pull Requests, and several other services. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

How MCP Servers Can Expose Enterprise Secrets

MCP servers can expose enterprise secrets through plaintext configuration files, over-permissioned access and prompt injection, often before security teams even know the server is running. As more organizations adopt AI agents into their systems, that exposure can silently become…

Link copiado!