DESTAQUES

Ameaças Cibernéticas

1624 notícias
Ameaças Cibernéticas The Hacker News 🇺🇸

FBI Warns Russian Intelligence Hackers Target Signal Backup Recovery Keys

The FBI and CISA have updated their March warning about Russian intelligence phishing Signal accounts, and the operators have added a step: they now coax targets into handing over their Signal Backup Recovery Key. Hand it over once, and the attacker can restore the account's bac…

Ameaças Cibernéticas The Hacker News 🇺🇸

New SharkLoader Malware Deploys Cobalt Strike in StrikeShark Cyberattacks

A newly discovered cyber attack campaign has been observed delivering a previously undocumented malware family called SharkLoader that acts as a loader for deploying Cobalt Strike Beacon on compromised hosts. Kaspersky, which is tracking the activity under the moniker StrikeShar…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Polymarket customers lose $3 million in supply-chain attack

Polymarket says it will fully reimburse customers who lost an estimated $3 million after hackers injected a malicious script into the platform's frontend following a breach at a third-party vendor. [...]

Ameaças Cibernéticas The Hacker News 🇺🇸

Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign

A Chinese-speaking advanced persistent threat (APT) actor has been linked to a new custom backdoor called TinyRCT as part of cyber attacks aimed at government entities and critical infrastructure in Southeast Asia. The activity, particularly aimed at state-owned enterprises in t…

Ameaças Cibernéticas The Hacker News 🇺🇸

New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries

A flaw in the Linux kernel's traffic-control subsystem can let a local unprivileged user gain root on affected systems. CVE-2026-46331, nicknamed "pedit COW," is an out-of-bounds write in the packet-editing action (act_pedit) that corrupts shared page-cache memory. A public, wor…

Ameaças Cibernéticas The Hacker News 🇺🇸

CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical remote code execution vulnerability impacting PTC Windchill PDMlink and PTC FlexPLM enterprise Product Data Management (PDM) and Product Lifecycle Management (PLM) software to its Known …

Ameaças Cibernéticas The Hacker News 🇺🇸

New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets

DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit walkthrough for the flaw on June 25, the first public demonstration for this variant. Tracked as CVE-2026-43503 (CVSS 8.8), it lets a local user cor…

Ameaças Cibernéticas HIPAA Clicks 🇺🇸

High-Severity Vulnerability Identified in OHIF Viewers DICOM

A high-severity vulnerability has been identified in OHIF (Open Health Imaging Foundation) Viewers DICOM, which could be exploited to steal […] The post High-Severity Vulnerability Identified in OHIF Viewers DICOM appeared first on The HIPAA Journal.

Ameaças Cibernéticas Boletim Sec 🇧🇷

Novo ataque contra macOS combina roubo de dados e acesso remoto interativo

Um novo backdoor para macOS, desenvolvido em Rust, está chamando atenção por combinar roubo de dados, acesso remoto interativo e uso do Telegram para enviar arquivos furtados de dispositivos Apple. A ameaça foi identificada no início de junho de 2026, após uma atualização do XPro…

Ameaças Cibernéticas The Hacker News 🇺🇸

Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack

Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family that has compromised a new set of npm packages, even as it has propagated to the Go ecosystem. "The latest activity includes ma…

Ameaças Cibernéticas Canaltech 🇧🇷

Por que o sistema da Defesa Civil foi invadido tão facilmente

Um alerta falso disparado pelo sistema da Defesa Civil Nacional na madrugada do último sábado (20) acordou milhões de brasileiros com mensagens que incluíam termos como "misantropia", palavra que significa ódio à humanidade. O episódio levou à retirada temporária da plataforma do…

Ameaças Cibernéticas The Hacker News 🇺🇸

Google Details Turla's New STOCKSTAY Backdoor Used in Ukraine Espionage Attacks

The Russian state-sponsored threat actor known as Turla has been attributed to a previously undocumented .NET backdoor called STOCKSTAY that has been deployed against government and military organizations in Ukraine, and entities that have an interest in Italian foreign policy. …

Ameaças Cibernéticas CISO Advisor 🇧🇷

Pacotes npm maliciosos com payload Shai-Hulud

Uma nova onda de pacotes maliciosos no repositório npm está roubando credenciais de desenvolvedores que trabalham com infraestrutura em nuvem e serverless, ao mesmo tempo em que expande seu alcance para o ecossistema Leo/RStreams, um conjunto de bibliotecas usado para processamen…

Link copiado!