DESTAQUES

Últimas Notícias

3470 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries

A flaw in the Linux kernel's traffic-control subsystem can let a local unprivileged user gain root on affected systems. CVE-2026-46331, nicknamed "pedit COW," is an out-of-bounds write in the packet-editing action (act_pedit) that corrupts shared page-cache memory. A public, wor…

Ameaças Cibernéticas The Hacker News 🇺🇸

CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical remote code execution vulnerability impacting PTC Windchill PDMlink and PTC FlexPLM enterprise Product Data Management (PDM) and Product Lifecycle Management (PLM) software to its Known …

Compliance & Regulação HIPAA Clicks 🇺🇸

Okanogan Behavioral Healthcare Settles Class Action Data Breach Lawsuit

Okanogan Behavioral Healthcare, a provider of holistic behavioral health services in Okanogan County, Washington, has agreed to settle a class […] The post Okanogan Behavioral Healthcare Settles Class Action Data Breach Lawsuit appeared first on The HIPAA Journal.

Governança & IA ABIMED 🇧🇷

ABIMED participa do evento sobre o Acordo Mercosul-União Europeia

 Na quarta-feira (24), a ABIMED esteve presente no evento “Acordo Mercosul–União Europeia: Impactos regulatórios e jurídicos para a área da […] O post ABIMED participa do evento sobre o Acordo Mercosul-União Europeia apareceu primeiro em ABIMED.

Ameaças Cibernéticas The Hacker News 🇺🇸

New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets

DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit walkthrough for the flaw on June 25, the first public demonstration for this variant. Tracked as CVE-2026-43503 (CVSS 8.8), it lets a local user cor…

Ameaças Cibernéticas HIPAA Clicks 🇺🇸

High-Severity Vulnerability Identified in OHIF Viewers DICOM

A high-severity vulnerability has been identified in OHIF (Open Health Imaging Foundation) Viewers DICOM, which could be exploited to steal […] The post High-Severity Vulnerability Identified in OHIF Viewers DICOM appeared first on The HIPAA Journal.

Ameaças Cibernéticas Boletim Sec 🇧🇷

Novo ataque contra macOS combina roubo de dados e acesso remoto interativo

Um novo backdoor para macOS, desenvolvido em Rust, está chamando atenção por combinar roubo de dados, acesso remoto interativo e uso do Telegram para enviar arquivos furtados de dispositivos Apple. A ameaça foi identificada no início de junho de 2026, após uma atualização do XPro…

Gestão de Riscos Boletim Sec 🇧🇷

Cibercriminosos capturam autenticação em golpe contra AWS Console

Uma campanha de phishing está mirando credenciais da AWS Console com páginas falsas capazes de capturar senhas e códigos de autenticação em tempo real. O ataque usa a técnica conhecida como adversary-in-the-middle, na qual o site fraudulento fica entre a vítima e o serviço legíti…

Governança & IA The Hacker News 🇺🇸

Guardian Agents: The Next Layer of Identity Governance

AI agents are moving through enterprise environments, inheriting permissions, traversing systems, and executing decisions at machine speed with minimal oversight. The identity infrastructure built to govern human access wasn't designed for autonomous actors, and the gap between w…

Ameaças Cibernéticas The Hacker News 🇺🇸

Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack

Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family that has compromised a new set of npm packages, even as it has propagated to the Go ecosystem. "The latest activity includes ma…

Gestão de Riscos Boletim Sec 🇧🇷

Falha no ManageEngine AD360 pode expor identidades e permissões de usuários

Uma falha de alta gravidade em produtos da ManageEngine pode permitir que invasores sem autenticação prevejam tokens de login único e acessem informações de identidade e permissões de usuários em ambientes integrados ao AD360. A vulnerabilidade foi identificada como CVE-2026-1137…

Link copiado!