Radar de seguridad e inteligencia artificial
Noticias
Revisamos cada hora los feeds públicos de 60 fuentes de referencia y clasificamos cada titular por tema y severidad. Aquí verás el titular y un extracto breve: la noticia se lee en su fuente original.
en 24 horas
semana
crítica
en seguimiento
Actualización horaria Última revisión hace 42 min 961 titulares en el archivo
Qué se está publicando
Distribución por tema
150 titulares en General de severidad Info Limpiar filtros ×
- martes 11 ago
-
Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub
Audit logs found no unexpected visitors, but release verification still needs an update
The Register · Security General theregister.com -
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Security researchers invented a cryptocurrency startup, advertised developer jobs, and hired three people they believe were North Korean operatives. Every virtual machine the company issued was recording. The onboarding paperwork is the…
The Hacker News General thehackernews.com -
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that researchers chained to SYSTEM access on a fully updated Windows 11 machine. The same PnP…
The Hacker News General thehackernews.com -
Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G
Researchers find standards-compliant functionality can be abused to hijack modems, downgrade connections, and even execute code
The Register · Security General theregister.com -
Locking your ssh-agent exposed local-only keys until OpenSSH 10.5
Lock your ssh-agent and it should sit there refusing to sign anything until you unlock it. In OpenSSH 10.4, locking it also switched off the check that tells the agent whether a request came from your own machine or arrived down a…
Help Net Security General helpnetsecurity.com -
Mozilla Issues New Firefox GPG Key Following Exposure
The previous GPG signing subkey was inadvertently added to a GitHub repository and Mozilla decided to revoke it. The post Mozilla Issues New Firefox GPG Key Following Exposure appeared first on SecurityWeek.
SecurityWeek General securityweek.com -
Cybersecurity jobs available right now: August 11, 2026
CTI Detection Engineer Department of Parliamentary Services | Australia | Hybrid – View job details As a CTI Detection Engineer, you will lead the detection lifecycle by identifying detection gaps, developing and validating detection…
Help Net Security General helpnetsecurity.com - lunes 10 ago
-
Introducing Muse Glimmer
Introducing Muse Glimmer Meta are back in the open weights game! Muse Glimmer is a brand new 30B model under a clean Apache 2.0 license (a step up from the janky Llama licenses of old). They claim to have optimized it for exactly the kind…
Simon Willison General simonwillison.net -
Tutores de IA en la educación: ¿qué tan seguros son?
Los tutores de IA pueden ofrecer una ayuda útil, pero su calidad y sus medidas de seguridad varían mucho. Estos son algunos aspectos que conviene comprobar antes de incorporarlos al proceso de aprendizaje.
WeLiveSecurity (ESET) General welivesecurity.com - jueves 6 ago
-
CSS:the bomb inside your inbox
Gareth Heyes - gareth.heyes@portswigger.net - @garethheyes It's quite common for webmail clients to render untrusted CSS in a trusted UI. They attempt to make this safe using CSS sanitization. In this
PortSwigger Research General portswigger.net - lunes 3 ago
-
Web scraping: qué es, cómo funciona y cuándo es legal
El web scraping puede ser beneficioso para las empresas, pero también es utilizado por ciberdelincuentes para recopilar y comprometer datos sensibles, lo que representa un riesgo para la seguridad de los usuarios legítimos.
WeLiveSecurity (ESET) General welivesecurity.com -
Welcoming the Nepalese Government to Have I Been Pwned
Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSiteToday, we welcome the 47th government onboarded to Have I Been Pwned’s free gov service: Nepal…
Troy Hunt General troyhunt.com - domingo 2 ago
-
Weekly Update 515: Seeking Caffeine Utopia
Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSiteApparently, Aussies are so obsessed with coffee that it's referred to as the coffee capital of…
Troy Hunt General troyhunt.com - viernes 31 jul
-
Capturas de pantalla falsas: el riesgo de confiar en una prueba digital
Las capturas de pantalla pueden ayudar a documentar pagos, reservas o conversaciones, pero cada vez son menos fiables como evidencia y más fáciles de falsificar.
WeLiveSecurity (ESET) General welivesecurity.com - jueves 30 jul
-
Read This Before You Buy That TV Streaming Stick
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user's Internet connection out to strangers…
Krebs on Security General krebsonsecurity.com -
Building secure Uniswap v4 hooks
Uniswap v4 hooks let developers add custom behavior to pools, including dynamic fees, custom accounting, and external integrations. This flexibility moves some security responsibilities into application and hook code. The Cork and Bunni…
Trail of Bits General blog.trailofbits.com - martes 21 jul
-
LG to Ban Residential Proxies from Smart TV Apps
The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an always-on residential proxy node. The move comes less than a month after researchers found…
Krebs on Security General krebsonsecurity.com - lunes 13 jul
-
What will be left for us to work on?
My keynote at ICML 2026
AI Snake Oil General normaltech.ai -
Rust-proof your code with our new Testing Handbook chapter
We’ve added a new chapter to our Testing Handbook: a comprehensive guide to security testing Rust programs. This chapter covers the tools and techniques we use at Trail of Bits to validate the security of Rust programs and systems. fn…
Trail of Bits General blog.trailofbits.com - miércoles 8 jul
-
Mutation testing comes to DAML
In April we released Mewt, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML…
Trail of Bits General blog.trailofbits.com - martes 7 jul
-
The Call of the Bird
This article was shared in our internal BIML thread and prompted a reflection from my days at Shazam: Before VoiceAI and LLMs… there were birdsongs. This is a great story, success on many levels, of one of the world’s first, far-reaching…
Berryville Institute (BIML) General berryvilleiml.com - martes 30 jun
-
Verifiable Digital Credential Presentment
This blog post is #4 in our series on Verifiable Digital Credentials (VDCs). Our other posts can be found via Post #1, Post #2, and Post #3. In earlier posts, we discussed how verifiable digital credentials (VDCs) are issued and compared…
NIST Cybersecurity General nist.gov - jueves 18 jun
-
Community update regarding Richard Greenberg
For community clarity following several recent announcements by ISSA and Richard Greenberg, OWASP confirms that Richard Greenberg’s membership and participation in all OWASP activities was terminated in August 2023. This followed a formal…
OWASP General owasp.org - lunes 11 may
-
Welcome to the Google Summer of Code 2026!
On behalf of the entire OWASP Foundation, it is our absolute pleasure to welcome 26 new contributors to Google Summer of Code 2026. This summer, you’re not just writing code, you’re helping build a more secure world, one commit at a time…
OWASP General owasp.org - martes 5 may
-
OWASP Foundation Unveils Its Strategic Plan for a World Without Insecure Software
The OWASP Foundation is entering a defining moment. This strategic plan outlines how OWASP will move from being a recognized voice in security to a truly transformative force in the industry. Inside this document, you’ll find a clear…
OWASP General owasp.org - lunes 27 abr
-
The OWASP Foundation appoints Missie Lindsey as Director of Corporate Relations
New Orleans, LA — The OWASP Foundation is pleased to announce the appointment of Missie Lindsey as Director of Corporate Relations. Missie brings more than 18 years of experience in B2B marketing, corporate partnerships, and account-based…
OWASP General owasp.org - jueves 9 abr
-
Protecting Cookies with Device Bound Session Credentials
Posted by Ben Ackerman, Chrome team, Daniel Rubery, Chrome team and Guillaume Ehinger, Google Account Security team Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for…
Google Security Blog General security.googleblog.com - miércoles 1 abr
-
JSAC2026 -Day 1-
JPCERT/CC hosted JSAC2026 from January 21 to 23, 2026. JSAC is an annual conference dedicated to advancing the capabilities of security analysts by fostering the exchange of technical knowledge and operational insights related to incident…
JPCERT/CC General blogs.jpcert.or.jp - lunes 30 mar
-
GitHub for Beginners: Getting started with GitHub security
Learn how to secure your projects and keep them safe with GitHub Advanced Security. The post GitHub for Beginners: Getting started with GitHub security appeared first on The GitHub Blog.
GitHub Security General github.blog -
Security for the Quantum Era: Implementing Post-Quantum Cryptography in Android
Posted by Eric Lynch, Product Manager, Android and Dom Elliott, Group Product Manager, Google Play Modern digital security is at a turning point. We are on the threshold of using quantum computers to solve "impossible" problems in drug…
Google Security Blog General security.googleblog.com
Del titular al control
Leer noticias no reduce el riesgo
En el blog publicamos análisis propios que traducen esto en decisiones: qué controlar primero, con qué evidencia y en qué orden.