Radar de seguridad e inteligencia artificial
Noticias
Revisamos cada hora los feeds públicos de 60 fuentes de referencia y clasificamos cada titular por tema y severidad. Aquí verás el titular y un extracto breve: la noticia se lee en su fuente original.
en 24 horas
semana
crítica
en seguimiento
Actualización horaria Última revisión hace 11 min 966 titulares en el archivo
Qué se está publicando
Distribución por tema
- martes 1 sep
-
33-hour BGP hijack of Softaculous traffic prompts security scramble
Hosting software vendor tells customers to reset credentials and hunt for malicious packages
The Register · Security General theregister.com -
Rockwell Automation RSLinx Classic
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition on the affected product. The following versions of Rockwell Automation RSLinx Classic are affected: RSLinx…
CISA Advisories Vulnerabilidades cisa.gov -
Rockwell Automation Historian ME
View CSAF Summary Successful exploitation of these vulnerabilities could crash the device being accessed; an out-of-bounds write condition may allow remote code execution. The following versions of Rockwell Automation Historian ME are…
CISA Advisories Vulnerabilidades cisa.gov -
Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix
View CSAF Summary The following versions of Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix are affected: ControlLogix 5580
CISA Advisories General cisa.gov -
Rockwell Automation Logix Platform
View CSAF Summary The following versions of Rockwell Automation Logix Platform are affected: ControlLogix 5580
CISA Advisories General cisa.gov -
Rockwell Automation Redundancy Module Configuration Tool
View CSAF Summary Successful exploitation of these vulnerabilities could allow for an attacker to escalate and execute processes with administrator privileges. The following versions of Rockwell Automation Redundancy Module Configuration…
CISA Advisories Vulnerabilidades cisa.gov -
Rockwell Automation FactoryTalk Activation Manager
View CSAF Summary The following versions of Rockwell Automation FactoryTalk Activation Manager are affected: FactoryTalk Activation Manager V5.02_and_below (CVE-2026-16675) CVSS Vendor Equipment Vulnerabilities v3 7.8 Rockwell Automation…
CISA Advisories Vulnerabilidades cisa.gov -
Healthcare organizations can now connect EHR and additional industry data to ChatGPT
ChatGPT can now connect to trusted healthcare data, helping clinicians securely access patient context, medical research, and more.
OpenAI Seguridad IA openai.com -
Using High-Energy Laser, US Shoots Down Drones Near Mexico Border
The US Army’s laser system is part of a new generation of directed-energy weapons capable of detecting, tracking, and destroying drones with a concentrated beam of light.
WIRED · Security General wired.com -
Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones
The most common way into a company last year was to ask. A web page tells the visitor to prove they are not a robot. While they read the instructions, it quietly places a command on their clipboard. Then it talks them through opening a…
The Hacker News Amenazas thehackernews.com -
Explotan dos fallos críticos en Langflow y Ruby on Rails para robar secretos y desplegar mando y control
Se ha confirmado explotación activa de CVE-2026-0768 en Langflow y CVE-2026-66066 en Ruby on Rails. Los ataques se centran en leer secretos, probar credenciales y preparar infraestructura de mando y control (C2), con riesgo de acabar en…
Hispasec · Una al día Vulnerabilidades unaaldia.hispasec.com -
Introducing Continuous Vulnerability Assessment: Real-Time Defense for the AI Threat Era
Detect exposure to new vulnerabilities the moment they are published with Wiz CVA
Wiz Seguridad IA wiz.io -
Infostealers are hijacking Claude accounts at users’ expense
Anthropic has warned that infostealers are stealing Claude session cookies to access users’ accounts and consume usage at their expense.
Malwarebytes Labs Seguridad IA malwarebytes.com -
Rewiring Democracy Series on The Renovator
Nathan E. Sanders and I are writing a series of essays on real-world examples of democratic technologies for The Renovator. I haven’t been posting the full text on the blog because they’re a bit long, but here are links. Part 1 is about…
Schneier on Security General schneier.com -
Financial Stability Board Sounds the Alarm Over Frontier AI Risks
The Financial Stability Board has warned G20 banking leaders about the cyber risks of frontier AI
Infosecurity Magazine Seguridad IA infosecurity-magazine.com -
Five Venezuelans plead guilty to ATM jackpotting attacks in US
Five Venezuelan nationals pleaded guilty to attempting to empty automated teller machines (ATMs) using malware in a series of ATM jackpotting attacks. [...]
BleepingComputer Amenazas bleepingcomputer.com -
Attackers Steal METR API Key and Consume AI Credits Worth About $600,000
METR (short for Model Evaluation and Threat Research and pronounced "Meter"), a research non-profit that evaluates frontier artificial intelligence (AI) models for their ability to carry out long-horizon, agentic tasks, disclosed that it…
The Hacker News Seguridad IA thehackernews.com -
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis
Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine with an aim to interfere with artificial intelligence…
The Hacker News Seguridad IA thehackernews.com -
Healthcare Giant McKesson Investigates Data Breach Incident
ShinyHunters claims to have stolen 284 million records from McKesson
Infosecurity Magazine Amenazas infosecurity-magazine.com -
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - CVE-2026-0768 (CVSS score: 9.8) - A lack of proper…
The Hacker News Vulnerabilidades thehackernews.com -
Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set
Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.
Securelist (Kaspersky) Amenazas securelist.com -
14 Edición del Máster Online en Seguridad Ofensiva del Campus Internacional de Seguridad 2026-2027: Comienzo el 8 de Octubre
Para los que tenéis pasión por ser expertos en la disciplina de "Offensive Security" y poder trabajar profesionalmente en las áreas de ciberseguridad de Ethical Hacking & Red Team, si estás planeando tu futuro laboral, tienes la…
El lado del mal General elladodelmal.com -
The Crypto Wallet That Never Opened: Tampered Exodus Installer Hides a Modular RAT
Exodus crypto wallet analysis by Huntress uncovered tampered installers hiding a modular RAT focused on stealing credentials, not coins.
Huntress General huntress.com - lunes 31 ago
-
ISC Stormcast For Tuesday, September 1st, 2026 https://isc.sans.edu/podcastdetail/10076, (Tue, Sep 1st)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
SANS Internet Storm Center General isc.sans.edu -
How law firm Gilbert + Tobin governs and scales AI with OpenAI
See how Gilbert + Tobin combines CEO-led commitment, rigorous governance, and human accountability to scale ChatGPT Enterprise and Codex across the firm.
OpenAI Seguridad IA openai.com -
The Agentic SOC – From AI Theater to Real Defense
Experts from Recorded Future and Accenture offer perspectives on navigating the path to becoming an agentic SOC. Find out how to plan moving beyond “AI theater” by prioritizing measurable KPIs, proactively mitigating autonomous security…
Recorded Future Seguridad IA recordedfuture.com -
Introducing wrapture
Introducing wrapture New from Graham Dumpleton (of wrapt, mod_wsgi, and New Relic's Python agent fame), who describes Wrapture as taking the monkeypatching ideas from wrapt and extending them to apply to testing and tracing at the same…
Simon Willison Vulnerabilidades simonwillison.net -
Multiple Threat Actors Rapidly Exploit React2Shell: A Case Study of Active Compromise
On December 3, 2025 (local time), a vulnerability allowing unauthenticated remote code execution in React Server Components (RSC) (CVE-2025-55182) was disclosed. JPCERT/CC has received multiple incident reports related to this attack…
JPCERT/CC Vulnerabilidades blogs.jpcert.or.jp -
Quoting Andrew Digby
325 #kakapo! The chicks from this year's record breeding season are now juveniles and so have been added to the population. In 1995 there were just 51 kākāpō left. Recovery of critically endangered species is possible with sustained…
Simon Willison General simonwillison.net -
Healthcare cyberattacks hit pacemakers and millions of patient records
McKesson admits breach as ShinyHunters demands $55.2M
The Register · Security Amenazas theregister.com
Del titular al control
Leer noticias no reduce el riesgo
En el blog publicamos análisis propios que traducen esto en decisiones: qué controlar primero, con qué evidencia y en qué orden.