DESTAQUES

Ameaças Cibernéticas

1626 notícias
Ameaças Cibernéticas CISO Advisor 🇧🇷

CISA alerta para exploração ativa em servidores SharePoint

A agência de cibersegurança dos EUA (CISA) emitiu ontem um alerta sobre a exploração ativa de três vulnerabilidades em servidores Microsoft SharePoint, classificadas como CVE-2026-32201, CVE-2026-45659 e CVE-2026-56164, e recomendou medidas adicionais de segurança para proteger a…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

CISA warns admins to patch actively exploited SharePoint flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned Tuesday that attackers are actively exploiting three vulnerabilities to hack Internet-exposed on-premises SharePoint Server instances. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet Malware

Four compromised npm packages in the @asyncapi namespace have been observed distributing a multi-stage botnet loader, according to findings from OX Security, SafeDep, Socket, and StepSecurity. The affected packages are listed below - @asyncapi/generator-helpers@1.1.1 @asyn…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

US charges alleged operators of Russian bulletproof hosting service

U.S. federal prosecutors have unsealed charges against three Russian nationals, accusing them of providing bulletproof hosting (BPH) services to ransomware gangs that caused over $62 million in damages to victims worldwide. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands

SonicWall has warned of active exploitation of two zero-day vulnerabilities impacting Secure Mobile Access (SMA) 1000 series appliances, one of which could be exploited to achieve arbitrary command execution. The vulnerabilities are listed below - CVE-2026-15409 (CVSS score:…

Ameaças Cibernéticas The Hacker News 🇺🇸

Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack

Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that attackers are already exploiting. The release covers 622 of Microsoft's own CVEs by its Security Update Guide count, more than triple June's previous high of around 200. Those two …

Ameaças Cibernéticas The Hacker News 🇺🇸

LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts

Cybersecurity researchers have flagged a previously undocumented Rust-based remote access trojan (RAT) codenamed LabubaRAT that masquerades as NVIDIA software to blend into target environments. "LabubaRAT creates a reusable foothold for hands-on activity," Blackpoint Cyber resea…

Ameaças Cibernéticas CISO Advisor 🇧🇷

SAP corrige quatro falhas críticas no Patch Day de julho

A SAP publicou hoje, em seu Patch Day, 16 novos boletins de segurança e três atualizações para notas anteriores, conforme comunicado da empresa. Quatro vulnerabilidades receberam classificação Crítica, com destaque para falhas de corrupção de memória no NetWeaver ABAP, HTTP smugg…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Junho: zero-days sob ataque em MS, Oracle, Ivanti

A Redbelt Security, consultoria brasileira de cibersegurança, divulgou seu relatório mensal de vulnerabilidades de junho de 2026, destacando falhas críticas em plataformas de Microsoft, Oracle, Fortinet, Ivanti e ServiceNow, com ao menos dois casos de exploração ativa antes da pu…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Brasil em 3º nos ransomwares de junho

O Brasil foi o terceiro país que mais sofreu ataques com ransomwares em junho, registrando 23 casos. Os dados são da plataforma Ransomware.live, iniciativa de Julien Mousqueton, CISO da Cohesity, empresa líder em segurança de dados com IA. É a primeira vez que o Brasil aparece en…

Link copiado!