Radar de seguridad e inteligencia artificial
Noticias
Revisamos cada hora los feeds públicos de 60 fuentes de referencia y clasificamos cada titular por tema y severidad. Aquí verás el titular y un extracto breve: la noticia se lee en su fuente original.
en 24 horas
semana
crítica
en seguimiento
Actualización horaria Última revisión hace 26 min 971 titulares en el archivo
Qué se está publicando
Distribución por tema
- lunes 10 ago
-
OpenAI releases ChatGPT 5.6 Cyber, but it's only for approved users
OpenAI has developed a new model called "GPT 5.6 Cyber," designed for vulnerability research, penetration testing, incident response, and remediation. [...]
BleepingComputer Seguridad IA bleepingcomputer.com -
Tutores de IA en la educación: ¿qué tan seguros son?
Los tutores de IA pueden ofrecer una ayuda útil, pero su calidad y sus medidas de seguridad varían mucho. Estos son algunos aspectos que conviene comprobar antes de incorporarlos al proceso de aprendizaje.
WeLiveSecurity (ESET) General welivesecurity.com -
The Patch Gap: Why Defenders Need to Think in Chains, Not Checklists
It's time to turn from CVSS-backed patching to choke-point patching focused on breaking chains to critical assets.
Dark Reading Vulnerabilidades darkreading.com -
New StormEncryptor ransomware used by former Medusa affiliate
A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. [...]
BleepingComputer Amenazas bleepingcomputer.com -
North Korean spies are running local LLMs to cause AI mischief
Kimsuky's phishing attacks get an AI boost
The Register · Security Seguridad IA theregister.com -
Coruna, DarkSword iOS Exploits Proliferate Globally
Sophisticated iPhone exploit chains previously limited to nation-states are spreading far and wide to organized cybercrime groups.
Dark Reading Vulnerabilidades darkreading.com -
What building an AI-native finance function taught me
OpenAI CFO Sarah Friar shares five lessons for building an AI-native finance function, from automated forecasting to stronger controls and AI ROI.
OpenAI Seguridad IA openai.com -
Gym rat asks AI agent to book him a class, it hacks a waitlist API to bump him up the list
What wouldst thou ask of the monkey's paw?
The Register · Security Seguridad IA theregister.com -
China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called StormEncryptor. The use of StormEncryptor marks a shift from the adversary's…
The Hacker News Amenazas thehackernews.com -
Outdated Cybercrime Laws Put Security Researchers at Risk
A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security research.
Dark Reading Regulación darkreading.com -
Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise
Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and human expertise. The post Microsoft named a Leader in the 2026 IDC MarketScape for…
Microsoft Security Blog Seguridad IA microsoft.com -
Sherlock Holmes was the “OG” Social Engineer
The crime solver wore disguises, spied on targets, and built intelligence networks long before modern-day tactics emerged. He has lessons for today’s ethical- and nonethical-hat hackers.
Dark Reading Amenazas darkreading.com -
Poland uncovers second heat plant cyberattack that went hidden for months
The incident occurred on the same day as coordinated cyberattacks struck more than 30 other renewable energy installations and a larger heat plant, as Poland publicly disclosed in January.
The Record Amenazas therecord.media -
Senate Democrats introduce bill to distribute $300 million annually to shore up water system cybersecurity
Two Democratic senators introduced legislation that would allocate $300 million each year to fund cybersecurity improvements for the water and wastewater sector.
The Record Regulación therecord.media -
Russian military hackers pose as recruiters to target Ukrainian IT workers
Ukraine’s computer emergency response team, CERT-UA, said Saturday that the campaign has been running since at least May and is linked to Sandworm, the notorious hacking unit associated with Russia’s GRU military intelligence agency.
The Record Amenazas therecord.media -
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default. That pretty much covers the mood this week. Old bugs are back, supply…
The Hacker News Seguridad IA thehackernews.com -
DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data leak operations…
Microsoft Security Blog Amenazas microsoft.com -
Cyberattack on Steam hardware shipper leaks names, addresses, and order data
Video game publisher Valve is alerting customers in Europe to a data breach at CEVA Logistics, its Steam hardware shipping partner. Reports from affected customers began surfacing on social media earlier today, after Valve started sending…
Help Net Security Amenazas helpnetsecurity.com -
CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs
CISA has confirmed that ransomware gangs have begun exploiting two recently patched SonicWall SMA1000 vulnerabilities, including a maximum-severity server-side request forgery (SSRF) flaw. [...]
BleepingComputer Vulnerabilidades bleepingcomputer.com -
OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns
The current GPT-5.6-Sol has been assigned a ‘high’ cybersecurity threshold, but Astra could reach the maximum ‘critical’ threshold. The post OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns appeared first on…
SecurityWeek Seguridad IA securityweek.com -
10th August – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 10th August, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES North Carolina Ports, the US authority operating the ports of Wilmington, Morehead City…
Check Point Research General research.checkpoint.com -
IT threat evolution in Q2 2026. Non-mobile statistics
The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as well as internet of things (IoT) devices, during Q2 2026.
Securelist (Kaspersky) Amenazas securelist.com - domingo 9 ago
-
The Hugging Face Hack Was Cheap Persistence at Work
The Hugging Face and OpenAI security incident showed AI doesn't make attackers smarter. It makes persistence cheap, and defenses built for alerts can't keep up.
Recorded Future Seguridad IA recordedfuture.com -
Show, Don't Tell: What Evo Continuous Offensive Security Found in a Real Enterprise SaaS
A real Evo Continuous Offensive Security assessment uncovered 33 confirmed vulnerabilities in a multi-tenant enterprise SaaS, including tenant-wide compromise and critical authorization flaws.
Snyk Vulnerabilidades snyk.io - sábado 8 ago
-
BIML Moderates an NSF Panel on #MLsec
McGraw was honored to host an illustrious panel of academics and security researchers (of the science flavor) discussing the future of machine learning security and privacy. Of course we didn’t stick to the script.
Berryville Institute (BIML) Seguridad IA berryvilleiml.com - viernes 7 ago
-
The Good, the Bad and the Ugly in Cybersecurity – Week 32 (2026)
Snowflake hacker's guilty plea covers a 100M-record breach, Mythos 5 spends 34 hours trying to backdoor real code, and ChainDrop's worm spreads via npm.
SentinelOne Amenazas sentinelone.com -
ICS Security Conference 2026
JPCERT/CC held the ICS Security Conference 2026 on February 10, 2026. This conference aims to share the current threat landscape surrounding Industrial Control System (ICS) in Japan and abroad, as well as initiatives undertaken by…
JPCERT/CC General blogs.jpcert.or.jp - jueves 6 ago
-
CSS:the bomb inside your inbox
Gareth Heyes - gareth.heyes@portswigger.net - @garethheyes It's quite common for webmail clients to render untrusted CSS in a trusted UI. They attempt to make this safe using CSS sanitization. In this
PortSwigger Research General portswigger.net -
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage…
Krebs on Security Amenazas krebsonsecurity.com -
Top MCP security resources — August 2026
August 2026 MCP security roundup: the July 28 spec revision hardens authorization, a confused deputy hijacks Azure DevOps review agents, and scanners arrive.
Adversa AI Seguridad IA adversa.ai
Del titular al control
Leer noticias no reduce el riesgo
En el blog publicamos análisis propios que traducen esto en decisiones: qué controlar primero, con qué evidencia y en qué orden.