DESTAQUES

Ameaças Cibernéticas

1625 notícias
Ameaças Cibernéticas Bleeping Computer 🇺🇸

Hackers exploit critical auth bypass in Gitea Docker image

Hackers are actively exploiting a critical vulnerability in the official Docker image for the Gitea self-hosted Git service that allows attackers to impersonate any user, including administrators. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched

Researchers at Ledger's Donjon security team have shown that a precisely timed laser pulse, aimed at the chip inside a Tangem crypto wallet card, can reset the card's password to anything the attacker picks. No old password. No backup card. Once it is reset, whoever did it contr…

Ameaças Cibernéticas The Hacker News 🇺🇸

Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws

Details have emerged about three now-patched security flaws in the OpenClaw personal artificial intelligence (AI) assistant that, if successfully exploited, could enable credential theft, privilege escalation, and arbitrary code execution on the host. A brief description of the …

Ameaças Cibernéticas The Hacker News 🇺🇸

New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic

The China-linked cybercrime group known as Silver Fox has been attributed to a new Rust-based remote access trojan (RAR) called MODBEACON. Chinese cybersecurity company QiAnXin said that while the threat cluster may appear like a low-sophistication, high-activity operation that …

Ameaças Cibernéticas The Hacker News 🇺🇸

Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers

A single wrong variable on one line in XQUIC, Alibaba's QUIC and HTTP/3 library, lets any remote client crash the server with a short burst of completely legal traffic. There is no patch. FoxIO researcher Sébastien Féry disclosed the flaw on July 8 and nicknamed it XRING. He say…

Ameaças Cibernéticas Boletim Sec 🇧🇷

Ataque com inteligência artificial invade ambiente da AWS

Um invasor aparentemente agindo sozinho comprometeu um amplo ambiente da Amazon Web Services em cerca de 72 horas, usando inteligência artificial para acelerar o reconhecimento, adaptar comandos e avançar por diferentes serviços da vítima. O incidente foi investigado pela Sygnia …

Ameaças Cibernéticas The Hacker News 🇺🇸

Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks

A 41-year-old former ransomware negotiator has been sentenced to nearly six years (i.e., 70 months) in prison in the U.S. for their role in conspiring with the now-defunct BlackCat ransomware operators to extort multiple victims and working with two other cybersecurity profession…

Ameaças Cibernéticas CISO Advisor 🇧🇷

GodDamn: ransomware usa driver assinado pela Microsoft

Uma nova variante de ransomware chamada GodDamn, que é na verdade a mais recente reformulação do ransomware Beast (que por sua vez era uma reformulação do Monster, surgido em 2022), está utilizando um driver kernel malicioso assinado pela Microsoft para desabilitar soluções de se…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Forg365: novo PhaaS rouba contas Microsoft 365 com IA

Uma nova operação de phishing-as-a-service (PhaaS) chamada Forg365 está focada em roubar contas do Microsoft 365, combinando métodos de adversário-no-meio (AiTM) e código de dispositivo com geração de iscas assistida por IA. A plataforma também fornece uma extensão de navegador p…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Helix usa vishing e phishing para roubar SharePoint

Um novo grupo de extorsão de dados chamado Helix está usando táticas focadas em identidade, como phishing por voz (vishing), phishing com código de dispositivo e abuso de autenticação multifator (MFA) para roubar dados de ambientes SharePoint. O contato inicial é feito via vishin…

Ameaças Cibernéticas CISO Advisor 🇧🇷

Microsoft corrige vulnerabilidade zero-day RoguePlanet

A Microsoft lançou uma atualização de segurança para corrigir a vulnerabilidade zero-day no Defender conhecida como “RoguePlanet“, divulgada após o Patch Tuesday de junho de 2026. A falha, registrada como CVE-2026-50656, foi revelada pelo pesquisador que usa o pseudônimo “Nightma…

Link copiado!