Saltar al contenido
Vie. Sep 18th, 2026
Trending News: Public Exploits Released for Four Linux Kernel Flaws That Enable Local RootUn hombre conecta su aspiradora robot con un mando de PS5 y obtiene el control de miles de dispositivosLa web para adultos Frivol.com filtra una base de datos, exponiendo casi medio millón de cuentas de emailLa brecha entre inversión en ciberresiliencia y preparación adecuada aumenta la vulnerabilidad de las empresas españolasUn hacker ucraniano se declara culpable de operar OnlyFake, un portal de venta de pasaportes generados con IAEl software para psicólogos Eholo sufre una grave filtración de datosNew WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code ExecutionPlugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding AgentsTransparent Tribe Deploys New Rust Backdoor Using Private GitHub Repositories for C2An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege EscalationWeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension StorageClaimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm StealerIran-Linked Handala Hack Tied to HEAVYGRAM Telegram Backdoor That Can Steal PasswordsCritical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host FilesRatHat Android Malware Abuses ADB to Retain Shell Access After UninstallSelf-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New StoriesCritical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as RootU.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS AttacksCisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active AttacksGyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata RecordsUn ciberataque contra Inditex afecta a sus bases de datos internasHackean a una empresa de ciberseguridad y exponen datos y cámaras de clientesLos datos de los funcionarios del Palacio Real de Marruecos, en manos de un hacker75.000 sospechosos identificados y decenas de infraestructuras DDoS desmanteladas tras un macrooperativo internacionalEl organismo oficial de EE.UU. que clasifica las vulnerabilidades de ciberseguridad no da a bastoBIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPSOpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized UploadsChina-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin AmericaCISO’s Expert Guide to Agentic Pentesting for WebsitesCan You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This WebinarCritical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS ZoneAcronis cPanel Backup Plugin Vulnerability Exploited in Targeted AttacksC1b3rwall se arma contra la crisis de ciberseguridad que amenaza la supervivencia de las empresas españolasCarnival promete relax y lujo en sus cruceros; los hackers encontraron además millones de perfiles personalesUn hacker canadiense de 23 años, detenido por operar la botnet KimwolfUn gigante de la logística sufre una brecha de datos de 840 millones de registrosLos ciberdelincuentes ya no respetan ni los carros de la compraThreat Intelligence Alone Won’t Close the Exploitation GapOne Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and ClaudeThree Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and WipersAttackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command ExecutionParallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can’t Install FixAttacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 RepositoriesA New Challenge for Identity SecurityGoogle Patches Pixel Modem Flaw Amid Signs of Limited Targeted ExploitationActive Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin TokensAttackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web ShellsSi pierdes el móvil este verano, haz esto en los primeros cinco minutos para que no vacíen tus cuentasHalluSquatting, el nuevo truco para engañar a los asistentes de IA y colar malware en tu ordenadorUn hacker adolescente piratea el servicio de streaming de Bandai usando ChatGPTUna agencia de EE.UU. pagó un millón de dólares tras casi un mes de negociación con un grupo de ransomwareUn ciberataque deja sin suministro a KFC y obliga a cerrar temporalmente algunos restaurantesKREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session TokensIranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and JournalistsBambooToken Malware Uses MQTT to Control Windows and Linux SystemsMass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev ServersWhy Testing Individual Techniques Misses the PointHuman Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight SecondsLiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared ServerChina-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGECisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command ExecutionWordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before DistributionTelegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML ExportsPaperCut alerta de ataques activos contra sus programas de gestión de impresorasLas Fuerzas Armadas y la Guardia Civil aceleran su transformación digital ante un ciberespacio cada vez más complejoCuidado con estos anuncios de Facebook: parecen de Google Play, pero conducen a casinos sin licenciaUna filtración revela cómo Rusia ha creado una cantera universitaria para sus ciberoperaciones militaresUn fallo en Lenovo ID permite el acceso sin autorización a unas 5.000 cuentas de Dropbox3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber CredentialsRed Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six CountriesNew DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential ComputingRogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and RootkitsAI Changed the Exposure Problem. Validation Needs to Change With It.Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 UsersAttackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate DataCISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEVWhat It Does to Your SOCOpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc ServersAnthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation AttacksGitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After DisclosureRussian State-Sponsored Hackers Use Claude to Rebuild Malware After DetectionClaude Used to Automate Exploitation and Data Theft Across Multiple VictimsYour Critical Vulnerabilities Might Not Be Your Biggest RiskCisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin RansomwarePaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited FlawsChina-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT BackdoorAttackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More StoriesGigabud Creates Android Work Profiles to Hide From Banking App Malware ChecksGoogle Play Early Access Abused to Push Thousands of Deceptive Android AppsPaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ InstancesCheck Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCECISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch DeadlineAnthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example «sk-1234» Admin KeyFour Spy Groups Used the Same Chrome and Windows Exploit Kit Within a WeekU.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in CryptoSAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code ExecutionResearcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed
Chicago 12, Melborne City, USA
The Digital Fortress
  • Home
  • Blog
  • Sample Page
  • Get Started
Vie. Sep 18th, 2026
Trending News: Public Exploits Released for Four Linux Kernel Flaws That Enable Local RootUn hombre conecta su aspiradora robot con un mando de PS5 y obtiene el control de miles de dispositivosLa web para adultos Frivol.com filtra una base de datos, exponiendo casi medio millón de cuentas de emailLa brecha entre inversión en ciberresiliencia y preparación adecuada aumenta la vulnerabilidad de las empresas españolasUn hacker ucraniano se declara culpable de operar OnlyFake, un portal de venta de pasaportes generados con IAEl software para psicólogos Eholo sufre una grave filtración de datosNew WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code ExecutionPlugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding AgentsTransparent Tribe Deploys New Rust Backdoor Using Private GitHub Repositories for C2An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege EscalationWeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension StorageClaimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm StealerIran-Linked Handala Hack Tied to HEAVYGRAM Telegram Backdoor That Can Steal PasswordsCritical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host FilesRatHat Android Malware Abuses ADB to Retain Shell Access After UninstallSelf-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New StoriesCritical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as RootU.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS AttacksCisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active AttacksGyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata RecordsUn ciberataque contra Inditex afecta a sus bases de datos internasHackean a una empresa de ciberseguridad y exponen datos y cámaras de clientesLos datos de los funcionarios del Palacio Real de Marruecos, en manos de un hacker75.000 sospechosos identificados y decenas de infraestructuras DDoS desmanteladas tras un macrooperativo internacionalEl organismo oficial de EE.UU. que clasifica las vulnerabilidades de ciberseguridad no da a bastoBIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPSOpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized UploadsChina-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin AmericaCISO’s Expert Guide to Agentic Pentesting for WebsitesCan You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This WebinarCritical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS ZoneAcronis cPanel Backup Plugin Vulnerability Exploited in Targeted AttacksC1b3rwall se arma contra la crisis de ciberseguridad que amenaza la supervivencia de las empresas españolasCarnival promete relax y lujo en sus cruceros; los hackers encontraron además millones de perfiles personalesUn hacker canadiense de 23 años, detenido por operar la botnet KimwolfUn gigante de la logística sufre una brecha de datos de 840 millones de registrosLos ciberdelincuentes ya no respetan ni los carros de la compraThreat Intelligence Alone Won’t Close the Exploitation GapOne Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and ClaudeThree Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and WipersAttackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command ExecutionParallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can’t Install FixAttacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 RepositoriesA New Challenge for Identity SecurityGoogle Patches Pixel Modem Flaw Amid Signs of Limited Targeted ExploitationActive Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin TokensAttackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web ShellsSi pierdes el móvil este verano, haz esto en los primeros cinco minutos para que no vacíen tus cuentasHalluSquatting, el nuevo truco para engañar a los asistentes de IA y colar malware en tu ordenadorUn hacker adolescente piratea el servicio de streaming de Bandai usando ChatGPTUna agencia de EE.UU. pagó un millón de dólares tras casi un mes de negociación con un grupo de ransomwareUn ciberataque deja sin suministro a KFC y obliga a cerrar temporalmente algunos restaurantesKREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session TokensIranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and JournalistsBambooToken Malware Uses MQTT to Control Windows and Linux SystemsMass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev ServersWhy Testing Individual Techniques Misses the PointHuman Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight SecondsLiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared ServerChina-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGECisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command ExecutionWordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before DistributionTelegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML ExportsPaperCut alerta de ataques activos contra sus programas de gestión de impresorasLas Fuerzas Armadas y la Guardia Civil aceleran su transformación digital ante un ciberespacio cada vez más complejoCuidado con estos anuncios de Facebook: parecen de Google Play, pero conducen a casinos sin licenciaUna filtración revela cómo Rusia ha creado una cantera universitaria para sus ciberoperaciones militaresUn fallo en Lenovo ID permite el acceso sin autorización a unas 5.000 cuentas de Dropbox3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber CredentialsRed Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six CountriesNew DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential ComputingRogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and RootkitsAI Changed the Exposure Problem. Validation Needs to Change With It.Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 UsersAttackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate DataCISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEVWhat It Does to Your SOCOpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc ServersAnthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation AttacksGitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After DisclosureRussian State-Sponsored Hackers Use Claude to Rebuild Malware After DetectionClaude Used to Automate Exploitation and Data Theft Across Multiple VictimsYour Critical Vulnerabilities Might Not Be Your Biggest RiskCisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin RansomwarePaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited FlawsChina-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT BackdoorAttackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More StoriesGigabud Creates Android Work Profiles to Hide From Banking App Malware ChecksGoogle Play Early Access Abused to Push Thousands of Deceptive Android AppsPaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ InstancesCheck Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCECISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch DeadlineAnthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example «sk-1234» Admin KeyFour Spy Groups Used the Same Chrome and Windows Exploit Kit Within a WeekU.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in CryptoSAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code ExecutionResearcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed
Chicago 12, Melborne City, USA
  • Home
  • Blog
  • Sample Page
The Digital Fortress
  • Get Started

Etiqueta Hundreds

  1. Inicio
  2. U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks
U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks
  • adminadmin
  • Attacks
  • DDoS
  • septiembre 17, 2026
  • 0 Comentarios
U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks

Ravie LakshmananSep 17, 2026Cybercrime / DDoS-for-Hire The U.S. Department of Justice (DoJ) on Tuesday announced the court-authorized seizure of internet domains associated with a distributed denial-of-service (DDoS)-for-hire service known as…

Continue reading
PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances
  • adminadmin
  • Agents
  • Attacker
  • septiembre 10, 2026
  • 0 Comentarios
PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in PaperCut NG/MF and…

Continue reading
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems
  • adminadmin
  • Brazilian
  • Breeze
  • septiembre 1, 2026
  • 0 Comentarios
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

Ravie LakshmananSep 01, 2026Cybercrime / Malware Brazilian financial services, retail, and e-commerce organizations have become the target of a financially motivated threat actor dubbed Breeze Comet (formerly UNC5669) since 2024.…

Continue reading
Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks
  • adminadmin
  • Claude
  • Code
  • agosto 4, 2026
  • 0 Comentarios
Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks

A credential-stealing npm worm that first appeared in keyv@6.0.0 spread beyond the Keyv and Cacheable namespaces into hundreds of packages across multiple organizations on August 4, 2026. SafeDep verified 353…

Continue reading
RubyGems Suspends New Signups After Hundreds of Malicious Packages Are Uploaded
  • adminadmin
  • Hundreds
  • Malicious
  • mayo 12, 2026
  • 0 Comentarios
RubyGems Suspends New Signups After Hundreds of Malicious Packages Are Uploaded

Ravie LakshmananMay 12, 2026Supply Chain Attack / Software Security RubyGems, the standard package manager for the Ruby programming language, has temporarily paused account sign ups following what has been described…

Continue reading

Recent Posts

  • Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root
  • Un hombre conecta su aspiradora robot con un mando de PS5 y obtiene el control de miles de dispositivos
  • La web para adultos Frivol.com filtra una base de datos, exponiendo casi medio millón de cuentas de email
  • La brecha entre inversión en ciberresiliencia y preparación adecuada aumenta la vulnerabilidad de las empresas españolas
  • Un hacker ucraniano se declara culpable de operar OnlyFake, un portal de venta de pasaportes generados con IA

Recent Comments

No hay comentarios que mostrar.

Archives

  • septiembre 2026
  • agosto 2026
  • julio 2026
  • junio 2026
  • mayo 2026
  • abril 2026
  • marzo 2026
  • febrero 2026
  • agosto 2024

Categories

  • Uncategorized

Other Story

Uncategorized

Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root

  • admin
  • septiembre 18, 2026
Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root
Uncategorized

Un hombre conecta su aspiradora robot con un mando de PS5 y obtiene el control de miles de dispositivos

  • admin
  • septiembre 18, 2026
Un hombre conecta su aspiradora robot con un mando de PS5 y obtiene el control de miles de dispositivos
Uncategorized

La web para adultos Frivol.com filtra una base de datos, exponiendo casi medio millón de cuentas de email

  • admin
  • septiembre 18, 2026
La web para adultos Frivol.com filtra una base de datos, exponiendo casi medio millón de cuentas de email
Uncategorized

La brecha entre inversión en ciberresiliencia y preparación adecuada aumenta la vulnerabilidad de las empresas españolas

  • admin
  • septiembre 18, 2026
La brecha entre inversión en ciberresiliencia y preparación adecuada aumenta la vulnerabilidad de las empresas españolas
Uncategorized

Un hacker ucraniano se declara culpable de operar OnlyFake, un portal de venta de pasaportes generados con IA

  • admin
  • septiembre 18, 2026
Un hacker ucraniano se declara culpable de operar OnlyFake, un portal de venta de pasaportes generados con IA
Uncategorized

El software para psicólogos Eholo sufre una grave filtración de datos

  • admin
  • septiembre 18, 2026
El software para psicólogos Eholo sufre una grave filtración de datos
Copyright © 2026 The Digital Fortress | Powered by Desert Themes
Back to Top