DESTAQUES

Ameaças Cibernéticas

1630 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds b…

Ameaças Cibernéticas The Hacker News 🇺🇸

New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root

cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there, run code as the root user. cPa…

Ameaças Cibernéticas The Hacker News 🇺🇸

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances' own PHP scripts, the malware adds the web s…

Ameaças Cibernéticas The Hacker News 🇺🇸

N-able N-central Pre-Auth RCE Flaw Exploited in the Wild

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by Se…

Ameaças Cibernéticas CISO Advisor 🇧🇷

IA já cria frameworks autônomos de ciberameaças

Ameaças cibernéticas estão migrando de interações simples com modelos de linguagem para frameworks de IA multiagentes, capazes de automatizar ataques complexos em velocidade sem precedentes. A constatação é do Google Threat Intelligence Group (GTIG), que publicou ontem um relatór…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Celulares invadidos, sem clique, por malware feito com IA

Uma pequena equipe de pesquisadores da Calif, empresa de segurança sediada em Palo Alto, construiu em pouco mais de uma semana uma ferramenta de hacking alimentada por inteligência artificial capaz de se espalhar pelo WeChat, a popular plataforma de mensagens da China, sem que as…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Rootkit atinge dispositivos F5 BIG-IP APM 

Um programa malicioso que tem como alvo dispositivos F5 BIG-IP APM está interceptando o carregamento de arquivos para injetar um código diretamente na memória, sem escrever conteúdo malicioso em disco. De acordo com análise da Sophos publicada esta semana, o malware é uma etapa s…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Adobe lança correção para zero-day crítico no Magento

A Adobe publicou hoje uma correção emergencial para a vulnerabilidade CVE-2026-75650, um zero-day de gravidade máxima que afeta múltiplas versões do Magento e do Adobe Commerce. A falha, batizada de “StyleSmuggler” pela empresa de segurança Sansec, está sendo explorada ativamente…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

A Linux rootkit targeting devices in F5 BIG-IP APM environments can intercept PHP file loading and inject a fileless web shell directly into memory, avoiding the need to write malicious code to disk. [...]

Link copiado!