DESTAQUES

Últimas Notícias

3477 notícias
Governança & IA Health IT Answers 🇺🇸

Patient Access AI Has Three Jobs, But Most AI Tools Only Do One.

By Sanjeev Menon - Automation was always the floor, not the ceiling. The next phase of patient access depends on two capabilities the first generation was never built to deliver. The post Patient Access AI Has Three Jobs, But Most AI Tools Only Do One. appeared first on Health IT…

Ameaças Cibernéticas Bleeping Computer 🇺🇸

Hugging Face discloses breach linked to autonomous AI agent

The Hugging Face artificial intelligence repository disclosed that attackers gained access to internal datasets and credentials after breaching its production infrastructure using an autonomous AI agent system. [...]

Gestão de Riscos Boletim Sec 🇧🇷

OpenSSL corrige falha que pode causar negação de serviço em conexões TLS

Uma vulnerabilidade chamada HollowByte pode permitir ataques de negação de serviço contra servidores que usam versões não corrigidas do OpenSSL. A falha pode ser acionada por uma requisição TLS maliciosa de apenas 11 bytes. O problema não recebeu CVE nem alerta formal do projeto …

Ameaças Cibernéticas Boletim Sec 🇧🇷

Ransomware atinge sistemas de produção da Coca-Cola

A Fairlife, empresa pertencente à Coca-Cola, interrompeu temporariamente sua produção nos Estados Unidos após identificar acesso não autorizado a parte de seus sistemas em um incidente de ransomware. O caso foi divulgado pela Coca-Cola em 16 de julho de 2026. Segundo a companhia,…

Gestão de Riscos The Hacker News 🇺🇸

Mythos Didn't Break Your Security Program. Your Exposure Window Could.

The industry spent the initial months after Anthropic's April 7 Mythos reveal focused on volume. How many new CVEs would Mythos add to an already overloaded pipeline? How quickly would the flood of AI-driven discovery overwhelm triage capabilities? How long would it take adversar…

Privacidade & Dados Boletim Sec 🇧🇷

EY confirma violação de dados em plataforma de suporte

A EY confirmou uma violação de dados envolvendo uma plataforma terceirizada usada para suporte a serviços fiscais de clientes. O incidente permitiu que um invasor acessasse e baixasse documentos armazenados em chamados de atendimento. Segundo a EY, os sistemas centrais da companh…

Ameaças Cibernéticas The Hacker News 🇺🇸

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with the end goal of serving additional payloads. The rogue gems are listed below - git_credentia…

Ameaças Cibernéticas CISO Advisor 🇧🇷

wp2shell: falha crítica no núcleo do WordPress permite RCE

Pesquisadores da Searchlight Cyber identificaram uma vulnerabilidade de execução remota de código (RCE) sem autenticação no núcleo do WordPress, apelidada de “wp2shell”, que afeta as versões 6.9.0 a 6.9.4 e 7.0.0 a 7.0.1. De acordo com o comunicado publicado ontem, o ataque não r…

Link copiado!