DESTAQUES

Ameaças Cibernéticas

1629 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws

The INC Ransomware operation has emerged as the "dominant threat actor" exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances. In a report published over the weekend, Resecurity said it observed the INC Ransomware acc…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Inside the Underground Business of BTMOB RAT

Flare researchers analyzed thousands of underground posts to examine how the BTMOB Android malware operation evolved into a fragmented ecosystem of resellers, source-code vendors, custom versions, and competing sales channels. [...]

Ameaças Cibernéticas Boletim Sec 🇧🇷

FBI revela esquema de infiltração ligado a espionagem e roubo de dados

O FBI e governos aliados emitiram um alerta sobre trabalhadores de tecnologia ligados à Coreia do Norte que usam identidades roubadas para conseguir empregos remotos e acessar redes corporativas. Os salários recebidos são enviados a agências norte-coreanas e ajudam a financiar pr…

Ameaças Cibernéticas The Hacker News 🇺🇸

Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS

An unknown Chinese-threat actor has been observed running a campaign targeting Apple iOS devices by leveraging a publicly leaked version of the DarkSword exploit kit. Attack surface management platform Censys said it identified the threat actor running more than 100 web properti…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Water Makara mira instituições financeiras no Brasil

O grupo Water Makara, descoberto em outubro de 2024, direcionou seus ataques principalmente a instituições financeiras do Brasil com o objetivo de roubar dados, segundo o relatório “2025 APT Group Research Annual Report”, publicado recentemente pela NSFOCUS em parceria com o Inst…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Incidente deixa operadora de telecom 4 dias fora do ar

A Unitel, maior operadora de telecomunicações de Angola, sofreu um ataque cibernético que paralisou seus serviços móveis de voz, dados e acesso à internet em todo o território nacional por quatro dias, a partir das 2h20 do dia 28 de julho. No dia seguinte, a empresa iria estrear …

Ameaças Cibernéticas CISO Advisor 🇧🇷

Ataques a sistemas industriais: América Latina em 2º

A Kaspersky publicou dia 30 de julho seu relatório ICS CERT, revelando que 20,4% dos computadores de Sistemas de Controle Industrial (ICS) da América Latina foram afetados por artefatos maliciosos, posicionando a região como a segunda mais exposta a ameaças de perímetro em nível …

Ameaças Cibernéticas The Hacker News 🇺🇸

Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard, the Bitcoin-only hardware wallet made by Canadian firm Coinkite. A March …

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Rails patches critical Active Storage flaw with RCE potential

A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction

Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation platform, that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-48449, carries a severity score …

Ameaças Cibernéticas The Hacker News 🇺🇸

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

A fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake, a remote access trojan (RAT) that can capture webcam images, microphone audio, and keystrokes, Microsoft said in its latest report. Researchers track the operation as CaptiveCrunch and att…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Online ad firm Adform’s script compromised to steal cryptocurrency

Online advertising firm Adform suffered a supply-chain attack that delivered cryptocurrency-stealing scripts to websites using its ad platform, replacing wallet addresses copied to visitors' clipboards with ones controlled by an attacker. [...]

Link copiado!