Pular para conteúdo

Notícias

Cobertura do cenário global de segurança, reescrita em português pela IA Statecraft a partir de 19 fontes especializadas.

monitoramento ativo54 artigos monitorados
Hoje
2
Ontem
8
BleepingComputerRansomware13h atrás

Rogue ransomware affiliate poses as recovery firm to steal payments

A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee. [...]

#ransomware
BleepingComputerAtaque16h atrás

US warns of AI-powered attacks on Siemens PLCs in critical infrastructure

U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure. [...]

Malwarebytes LabsVulnerabilidade23h atrás

Update Chrome now: Two critical vulnerabilities fixed

Google has released a Chrome desktop update fixing 15 security vulnerabilities, including 2 buffer overflow flaws rated critical.

BleepingComputerVazamento14h atrás

Healthtech firm CareCloud data breach impacts 3.7 million patients

U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals. [...]

#nuvem
The Hacker NewsVazamento15h atrás

Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second

Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) from a co-located Worker in the production environment at up to 12 bits per second, 360 times the rate of an earlier attack demonstrated in 2021. The end-to-end experiment used an attacker Worker and a victim Worker controlled by the researchers,

#nuvem
TI SafeAmeaçaBR18h atrás

O que você precisa saber sobre o agente de IA que escapou do ambiente de testes

O incidente mostra o que pode acontecer quando um agente de IA encontra uma brecha fora do roteiro previsto. O […] O post O que você precisa saber sobre o agente de IA que escapou do ambiente de testes apareceu primeiro em TI Safe.

The Hacker NewsAtaque22h atrás

Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P

Cybersecurity researchers at Hunt.io have disclosed details of a campaign that they say compromised more than 14,530 Dahua devices between June 17 and July 22, 2026, using credential attacks, two authentication-bypass flaws, and a peer-to-peer (P2P) relay technique. The activity, codenamed Operation CameraSwarm, was reconstructed from a 407 MB exposed working directory containing 2,616 files

#identidade
Dark ReadingAtaque1d atrás

China-Linked Hacker Shows AI Capabilities in APAC Attack

In the first purported "near-autonomous" attack on a nation-state, a Chinese-language operator used a complex AI framework to target and compromise government agencies, likely in Taiwan.

terça-feira, 18 de agosto
6
Dark ReadingVulnerabilidade1d atrás

Critical GitLab Zero-Click Flaw Poses Mitigation Challenges

A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.

CVE-2026-19478
Dark ReadingRansomware1d atrás

'Ransom Busters': Ransomware Actor Poses as Incident-Recovery Service

A ransomware affiliate appears to be sidling up to victims with offers of aid, masking its true intention of diverting ransom payments.

#ransomware
Dark ReadingAtaque1d atrás

'CoSnitch' Attack Tricked Copilot Into Mapping Out Architecture

Researchers discovered a "meta-hacking" technique that can manipulate the AI service into revealing its own security weaknesses.

Dark ReadingVazamento1d atrás

The 'Industrial Accidents' Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed

Rich Mogull, chief analyst with the Cloud Security Alliance, joins the Dark Reading News Desk with what defenders need to take away from AI agents escaping their environments to launch attacks.

Palo Alto Unit 42Ataque1d atrás

Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18)

In August 2026, the actor TheHatman claimed to have stolen large volume of credentials from organizations' Microsoft Entra tenants. We provide guidance on mitigating large-scale credential attacks. The post Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) appeared first on Unit 42.

#identidade
Malwarebytes LabsVazamento1d atrás

Heights Finance data breach: What customers need to know

Leaked personal and financial data of around 750,000 US citizens, including SSNs and bank details, could put victims at risk of identity theft and phishing.