DESTAQUES

Últimas Notícias

3475 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

New Ghost Phishing Wave Is Breaking Traditional Email Security

A recent EvilTokens campaign targeting businesses across the US and Europe is exposing a new email security blind spot. This “ghost phishing” technique keeps the malicious page hidden until it decrypts and comes to life inside the victim’s browser. For security leaders, the risk…

Ameaças Cibernéticas The Hacker News 🇺🇸

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users

A new banking fraudulent operation is targeting customers of Mexican banks, fintech, payment processors, and cryptocurrency exchanges using ClickFix lures. The activity cluster, tracked by Elastic Security Labs under the moniker REF6045, involves infecting victims through fake C…

Governança & IA Health IT Answers 🇺🇸

The Independent Community Hospital: An Endangered Institution

By Kajol Shah - Healthcare organizations are moving quickly from AI pilots to AI-enabled workflows. What began as administrative chatbots and documentation support is now expanding into AI agents that can assist with scheduling, intake, patient communication, clinical documentati…

Privacidade & Dados Bleeping Computer 🇺🇸

DuckDuckGo browser now blocks YouTube video ads

DuckDuckGo announced that its browser can now block most video ads on YouTube, including those shown before the video starts playing and during playback. [...]

Gestão de Riscos Boletim Sec 🇧🇷

Cibercriminosos testam falha crítica em imagens Docker do Gitea

Cibercriminosos começaram a testar uma vulnerabilidade crítica em imagens Docker do Gitea apenas 13 dias após a divulgação pública da falha. O problema pode permitir acesso elevado sem senha em servidores configurados de forma vulnerável. A brecha, identificada como CVE-2026-2089…

Ameaças Cibernéticas Boletim Sec 🇧🇷

BeyondTrust corrige falhas críticas que permitem acesso sem autenticação

A BeyondTrust corrigiu quatro vulnerabilidades graves em suas soluções Remote Support e Privileged Remote Access, usadas por empresas para suporte remoto e acesso seguro a sistemas internos. Duas falhas receberam pontuação máxima de 9,2 e podem permitir invasões sem necessidade d…

Ameaças Cibernéticas The Hacker News 🇺🇸

The Verification Step Is the New ATO Battleground in 2026

For years, account takeover (ATO) followed a predictable script. Attackers bought stolen credentials in bulk, ran them through automated tools, and waited for matches. Credential stuffing was cheap, scalable, and for defenders, relatively well understood. That era is ending. Not…

Privacidade & Dados Bleeping Computer 🇺🇸

Telco giant KDDI says data breach affects over 12 million people

Japanese telecommunications giant KDDI says that millions of people had their email addresses and passwords exposed after attackers breached an email platform used by five internet service providers (ISPs) in the country. [...]

Governança & IA The Hacker News 🇺🇸

GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code

An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-looking steps inside a code editor. That is the finding of a new study of GitHub Copilot by researchers Abhishek Kumar and Car…

Compliance & Regulação HIPAA Clicks 🇺🇸

Memorial Healthcare Services Settles Pixel Litigation

Memorial Healthcare Services, a nonprofit healthcare provider serving patients in Southern California, has agreed to settle a class action lawsuit […] The post Memorial Healthcare Services Settles Pixel Litigation appeared first on The HIPAA Journal.

Privacidade & Dados Boletim Sec 🇧🇷

Falha no Codex permitia enviar dados sensíveis para servidores externos

Uma vulnerabilidade no aplicativo Codex para macOS poderia permitir o vazamento silencioso de códigos, chaves de API e outras informações sensíveis processadas pelo assistente de programação da OpenAI. A falha, identificada como CVE-2026-14898, afetava versões do Codex Desktop at…

Ameaças Cibernéticas The Hacker News 🇺🇸

China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware

A Chinese threat actor tracked as UAT-7810 is actively refining its bespoke malware to expand its Operational Relay Box (ORB) network by breaking into internet-facing networking devices. According to findings from Cisco Talos, UAT-7810 is an advanced persistent threat (APT) acto…

Link copiado!