Five Venezuelans plead guilty to ATM jackpotting attacks in US
Five Venezuelan nationals pleaded guilty to attempting to empty automated teller machines (ATMs) using malware in a series of ATM jackpotting attacks. [...]
Five Venezuelan nationals pleaded guilty to attempting to empty automated teller machines (ATMs) using malware in a series of ATM jackpotting attacks. [...]
METR (short for Model Evaluation and Threat Research and pronounced "Meter"), a research non-profit that evaluates frontier artificial intelligence (AI) models for their ability to carry out long-horizon, agentic tasks, disclosed that it suffered "two notable security incidents" …
A D-Link corrigiu duas falhas de segurança no roteador DIR-X1860Z que permitem a um invasor conectado à rede local alterar a senha de administrador e acessar informações da configuração Wi-Fi sem autenticação. Os problemas estão na interface de gerenciamento ubus JSON-RPC, basead…
Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine with an aim to interfere with artificial intelligence (AI)-assisted analysis. The idea, ESET said in…
Two security vulnerabilities in the PaperCut NG and MF print management software, patched last week after being exploited as zero-days, are now being abused in data theft attacks. [...]
Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - CVE-2026-0768 (CVSS score: 9.8) - A lack of proper validation of a user-supplied input vulnerabi…
Um pesquisador identificado como MSNightmare publicou um código de prova de conceito (PoC) chamado HardBreacher, que alega explorar uma vulnerabilidade de escalonamento de privilégio local no Kaspersky Endpoint Security em sistemas Windows 11 totalmente atualizados, de acordo com…
A threat actor used a variety of infostealers to collect session information and access Claude accounts belonging to an unknown number of users.
The ClickFix-style campaign features a sophisticated, multistage attack chain that includes reverse tunnels into victim organizations' networks.
A new ClickFix variant dubbed TerminalFix uses fake Cloudflare CAPTCHA prompts on compromised websites to trick victims into running malicious PowerShell commands in Windows Terminal. [...]
Um levantamento da Redbelt Security identificou 778 sites fraudulentos de venda de ingressos entre novembro de 2025 e fevereiro de 2026, que imitavam bilheterias oficiais de shows, festivais e eventos esportivos. Os golpistas se aproveitam da alta demanda e da urgência dos consum…
Threat actors with ties to the Democratic People's Republic of Korea (aka DPRK or North Korea) have been observed seeking job opportunities beyond the information technology (IT) sector, with recent investigations identifying suspected workers employed in sales and marketing and …
The researchers discovered Fire Ant's new tactic after finding an active GRE (Generic Routing Encapsulation) tunnel interface on a Cisco IOS XR router that could not be explained by a running configuration or commit history. [...]
A Boston Scientific informou que novos dispositivos de monitoramento cardíaco implantados após o ataque cibernético identificado em 25 de agosto não podem ser ativados para enviar dados a sistemas remotos de gerenciamento de pacientes, conforme comunicado atualizado pela empresa …
The boring parts caused most of the trouble. A router shipped ready to listen. A fake check turned the user into the installer. Trusted systems collected traffic and passwords, then cleaned the logs. Old bugs formed new attack chains. Even an AI agent decided its assigned task w…
The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under a trusted process to slip past users who add such software to their antivirus exclusions. Russian cybersecurity …
A campanha foi atribuída com confiança moderada ao BlueDelta, grupo ligado à inteligência militar russa e também conhecido como APT28. O objetivo aparente é espionagem contra organizações estratégicas europeias. Os ataques ocorreram entre setembro de 2025 e abril de 2026 e atingi…
Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX's artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security. The two independent analyses are ba…
O grupo de ransomware TITAN afirma estar usando inteligência artificial para analisar grandes volumes de dados roubados e aumentar a pressão sobre vítimas. Segundo a operação, sua plataforma consegue processar até 700 GB de informações por hora. Ativo desde maio de 2026, o TITAN …
ShinyHunters Claims Theft of 284M Records from Healthcare Giant McKesson The HIPAA Journal