Radar de seguridad e inteligencia artificial
Noticias
Revisamos cada hora los feeds públicos de 60 fuentes de referencia y clasificamos cada titular por tema y severidad. Aquí verás el titular y un extracto breve: la noticia se lee en su fuente original.
en 24 horas
semana
crítica
en seguimiento
Actualización horaria Última revisión hace 12 min 982 titulares en el archivo
Qué se está publicando
Distribución por tema
454 titulares de severidad Info Limpiar filtros ×
- jueves 16 jul
-
From Indirect Prompt Injection to DNS Exfiltration in macOS Terminal
This is a follow-up to my previous Terminal DiLLMa research, and there is a positive outcome: Apple fixed a macOS Terminal behavior that enabled a DNS-based data exfiltration technique. DNS Requests via ANSI Escape Codes David Leadbeater…
Embrace The Red Seguridad IA embracethered.com - lunes 13 jul
-
What will be left for us to work on?
My keynote at ICML 2026
AI Snake Oil General normaltech.ai -
Lessons Learned from CISA’s Recent GitHub Leak
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for…
Krebs on Security Infraestructura krebsonsecurity.com -
Rust-proof your code with our new Testing Handbook chapter
We’ve added a new chapter to our Testing Handbook: a comprehensive guide to security testing Rust programs. This chapter covers the tools and techniques we use at Trail of Bits to validate the security of Rust programs and systems. fn…
Trail of Bits General blog.trailofbits.com - jueves 9 jul
-
Up the Stack: How AI’s Escape From the Commodity Trap Risks Enterprise Lock-in
Critics and boosters are both looking in the wrong place
AI Snake Oil Seguridad IA normaltech.ai - miércoles 8 jul
-
Mutation testing comes to DAML
In April we released Mewt, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML…
Trail of Bits General blog.trailofbits.com - martes 7 jul
-
The Call of the Bird
This article was shared in our internal BIML thread and prompted a reflection from my days at Shazam: Before VoiceAI and LLMs… there were birdsongs. This is a great story, success on many levels, of one of the world’s first, far-reaching…
Berryville Institute (BIML) General berryvilleiml.com - miércoles 1 jul
-
The Autonomous SOC, Revisited: What 18 Months on the Road Has Taught Us
Explore SentinelOne's Autonomous SOC maturity model to map your journey toward AI autonomy through strict governance.
SentinelOne Seguridad IA sentinelone.com - martes 30 jun
-
Verifiable Digital Credential Presentment
This blog post is #4 in our series on Verifiable Digital Credentials (VDCs). Our other posts can be found via Post #1, Post #2, and Post #3. In earlier posts, we discussed how verifiable digital credentials (VDCs) are issued and compared…
NIST Cybersecurity General nist.gov - martes 23 jun
-
Fake shops target shoppers across Europe with fake Samsung deals, counterfeit goods and World Cup scams
A Bitdefender Labs investigation identified more than 55 fake-shop campaigns targeting consumers across 12 European countries between March and May 2026. The campaigns mimicked some of the world’s most recognizable brands, including…
Bitdefender Labs Amenazas bitdefender.com - jueves 18 jun
-
Community update regarding Richard Greenberg
For community clarity following several recent announcements by ISSA and Richard Greenberg, OWASP confirms that Richard Greenberg’s membership and participation in all OWASP activities was terminated in August 2023. This followed a formal…
OWASP General owasp.org -
Aikido and OWASP bring agentic Code Audit to the global AppSec community
Aikido Security and OWASP launch a new individual member benefit: pentester-grade code audits, powered by AI reasoning. Gent, Belgium [June 18th, 2026] Aikido Security, the all-in-one developer security platform, today announced a new…
OWASP Seguridad IA owasp.org - miércoles 17 jun
-
BIML in the Barn — Important Talks on AI and Machine Learning Security are Happening Here
BIML in the Barn series is an important part of our mission at BIML. We are sparking compelling and insightful talks on AI and machine learning security by bringing leading researchers and experts to our global HQ in Berryville, Virginia…
Berryville Institute (BIML) Seguridad IA berryvilleiml.com -
The Agentic SOC: Solving Security’s Investigation Capacity Crisis in the Frontier AI Era
SentinelOne’s Purple AI Agentic Investigation, now GA, solves the SOC investigation capacity gap with zero-click, machine-speed alert analysis.
SentinelOne Seguridad IA sentinelone.com - domingo 14 jun
-
Anthropic versus US Administration: Fable, Mythos, and the Cyber Cyber
Who wins when the FUD is turned to 11 and the irony is thick enough to cut with a knife? BIML spoke to German TV about that. Have a watch. To prep for the interview by gathering our thoughts, we wrote this.
Berryville Institute (BIML) Seguridad IA berryvilleiml.com - sábado 13 jun
-
Irony: The US Government Issues an Export Control Directive for Fable 5 and Mythos 5
Anthropic, June 12, 2026 “The US government, citing national security authorities, has issued an export control directive to suspend all access to Fable 5 and Mythos 5 by any foreign national, whether inside or outside the United States…
Berryville Institute (BIML) Seguridad IA berryvilleiml.com - viernes 12 jun
-
GUEST BLOG: Your Frontier Provider Is Quietly Limiting Your Capability & Research
We think this blog entry by starseer.ai CEO Tim Schulz is important enough that we asked for permission to reprint it here. Do us a favor and check out starseer’s white box offerings—opening the black box of AI so you know what’s going on…
Berryville Institute (BIML) Seguridad IA berryvilleiml.com - miércoles 10 jun
-
Why AI hasn’t replaced software engineers, and won’t
Coding agents as normal technology
AI Snake Oil Seguridad IA normaltech.ai - martes 9 jun
-
OWASP Dependency-Track 5.0 Is Now Generally Available
The largest redesign in the project’s history brings horizontal scaling, fault tolerance, and software supply chain integrity verification to the widely used open source platform. [Wilmington, DE], June 3, 2026. OWASP Dependency-Track, the…
OWASP Infraestructura owasp.org - lunes 1 jun
-
Inside APAC's malvertising ecosystem: How scams spread through social media ads
Bitdefender Labs has uncovered a large-scale malvertising ecosystem operating across APAC, where scam campaigns are distributed through paid advertising on Meta platforms and quickly generate massive reach. Key takeaways * Bitdefender Labs…
Bitdefender Labs Amenazas bitdefender.com - viernes 22 may
-
Did Google’s AI agents really build an operating system for $916?
The importance of independent evaluation
AI Snake Oil Seguridad IA normaltech.ai - jueves 21 may
-
Do AI Risks Require Extraordinary Government Intervention?
Let’s not skip the hard work of AI governance
AI Snake Oil Seguridad IA normaltech.ai - jueves 14 may
-
Pwn2Own Berlin 2026 - Day One Results
Welcome to Day One of Pwn2Own Berlin 2026! Today, 22 entries took the Pwn2Own stage to target AI Databases, Coding Agents, Local Inferences, and a separate category for NVIDIA products, as the world’s top security researchers push…
Zero Day Initiative Seguridad IA thezdi.com - miércoles 13 may
-
Juice Shop v20.0.0 — a fresh squeeze of features, now with AI
Juice Shop v20.0.0 — a fresh squeeze of features, now with AI After months of work on the develop branch, OWASP Juice Shop v20.0.0 is ready to serve. This is a major version bump packed with new challenges, a redesigned storefront, and a…
OWASP Seguridad IA owasp.org - lunes 11 may
-
Welcome to the Google Summer of Code 2026!
On behalf of the entire OWASP Foundation, it is our absolute pleasure to welcome 26 new contributors to Google Summer of Code 2026. This summer, you’re not just writing code, you’re helping build a more secure world, one commit at a time…
OWASP General owasp.org - martes 5 may
-
OWASP Foundation Unveils Its Strategic Plan for a World Without Insecure Software
The OWASP Foundation is entering a defining moment. This strategic plan outlines how OWASP will move from being a recognized voice in security to a truly transformative force in the industry. Inside this document, you’ll find a clear…
OWASP General owasp.org - miércoles 29 abr
-
Operation Road Trap: Fake toll and parking texts are spreading worldwide
A new mass smishing campaign uncovered by Bitdefender Labs shows that scammers are sending tens of thousands of fraudulent text messages to mobile users across 12 countries, impersonating transport authorities, toll operators, and parking…
Bitdefender Labs Amenazas bitdefender.com - martes 28 abr
-
From DMV to Wallet: Understanding Verifiable Digital Credential Issuance
In our last post in this series, we compared two credential formats that shape the digital identity ecosystem: ISO/IEC 18013-5 and -7 mobile documents (mdocs) and W3C Verifiable Credentials (VCs). Both formats define how a credential is…
NIST Cybersecurity Regulación nist.gov - lunes 27 abr
-
The OWASP Foundation appoints Missie Lindsey as Director of Corporate Relations
New Orleans, LA — The OWASP Foundation is pleased to announce the appointment of Missie Lindsey as Director of Corporate Relations. Missie brings more than 18 years of experience in B2B marketing, corporate partnerships, and account-based…
OWASP General owasp.org - jueves 9 abr
-
Protecting Cookies with Device Bound Session Credentials
Posted by Ben Ackerman, Chrome team, Daniel Rubery, Chrome team and Guillaume Ehinger, Google Account Security team Following our April 2024 announcement, Device Bound Session Credentials (DBSC) is now entering public availability for…
Google Security Blog General security.googleblog.com
Del titular al control
Leer noticias no reduce el riesgo
En el blog publicamos análisis propios que traducen esto en decisiones: qué controlar primero, con qué evidencia y en qué orden.