DESTAQUES

Ameaças Cibernéticas

1625 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service

A new Android malware operation called RedWing is being rented out on Telegram as a ready-made bank-fraud service. It lets even low-skill criminals take over a victim's phone, steal their banking logins, and capture the one-time codes that protect their accounts. Zimperium's zLa…

Ameaças Cibernéticas The Hacker News 🇺🇸

Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots

A critical flaw in Google's Dialogflow CX could have let an attacker with edit rights on one Code Block-enabled agent compromise other Code Block-enabled agents in the same Google Cloud project. From there, they could read live conversations, steal the data users shared, and mak…

Ameaças Cibernéticas The Hacker News 🇺🇸

DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts

A Microsoft 365 device code phishing campaign has been observed leveraging collaboration-themed lures to take control of victim accounts between the last week of June 2026 and into early July, per findings from ZeroBEC. "The campaign did not depend on a fake Microsoft password p…

Ameaças Cibernéticas Canaltech 🇧🇷

Ransomware com IA acelera ataques, mas ainda depende de ação humana

Pesquisadores da Sysdig identificaram um dos primeiros ataques de ransomware conduzidos por um agente de IA. Atribuído ao operador JadePuffer, o ataque automatiza etapas do golpe que “sequestra” dados de um sistema, mas ainda depende de uma pessoa por trás da operação. Neste cas…

Ameaças Cibernéticas The Hacker News 🇺🇸

Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities

A suspected China-aligned threat activity cluster has been observed exploiting Roundcube webmail software belonging to physics and engineering departments of U.S. and Canadian universities as part of a new campaign. The activity involves the exploitation of now-patched, critical…

Ameaças Cibernéticas The Hacker News 🇺🇸

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware

Several versions of firmware released by Chinese network device manufacturer Tenda have been found to embed an undocumented authentication backdoor that enables administrative access to the devices' web management interfaces, the CERT Coordination Center (CERT/CC) warned Monday. …

Ameaças Cibernéticas The Hacker News 🇺🇸

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

BeyondTrust has released updates to address two critical security flaws affecting Remote Support (RS) and Privileged Remote Access (PRA) products that, if successfully exploited, could allow unauthenticated attackers to take control of susceptible devices. The vulnerabilities ar…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Veil#Drop: campanha usa sites da Google para implantar malware

Pesquisadores da Securonix identificaram uma sofisticada campanha de entrega de malware batizada de Veil#Drop, que combina engenharia social, sites comprometidos, carregadores JavaScript maliciosos, infraestrutura da Google (Blogspot) e execução em memória para implantar o PureLo…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Armored Likho mira governo e energia no Brasil com Stealer

O grupo de ameaça persistente avançada (APT) Armored Likho está conduzindo uma campanha de phishing que visa agências governamentais e o setor de energia elétrica no Brasil, na Rússia e no Cazaquistão, conforme revelou ontem a Kaspersky em relatório técnico. O grupo está utilizan…

Link copiado!