Edición del 2 de septiembre de 2026

Ciberseguridad — edición del 2026-09-02

Vulnerabilidad AI's Vulnerability Surge May Be More Manageable Than First Feared
Imagen: Dark Reading
Lo más reciente Vulnerabilidad

AI's Vulnerability Surge May Be More Manageable Than First Feared

New research suggests the coming Vulnpocalypse may not be so overwhelming for enterprise security teams — if they have the right strategies.

Fuente: Dark Reading Publicado: 02/09/2026 · 21:14 UTC No se pudo traducir automáticamente (se muestra el original).
Leer la noticia completa →

Últimas noticias

Ciberseguridad Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
Imagen: The Hacker News
Ciberseguridad

Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs

Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of trusted defenders via a new initiative called the Fairwind Program. "The Fairwind Program gives high-priority defenders (like governments, healthcare providers, and telecommunications services) early access to advanced models that help them…

Fuente: The Hacker News Publicado: 02/09/2026 · 18:27 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
Imagen: The Hacker News
Malware

Fake Software Installers Disable Windows Update and Weaken Microsoft Defender

An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers. "The campaign has targeted users looking to download popular software and has resulted in compromises across multiple organizations and industries, primarily affecting China-based operations of multinational organizations and Chinese-speaking users," Microsoft…

Fuente: The Hacker News Publicado: 02/09/2026 · 16:41 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code
Imagen: The Hacker News
Vulnerabilidad

Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code

Manifold Security has disclosed eight security flaws across seven command-line AI coding agents in which a repository's own Git configuration names a command that the agent runs on the developer's machine, four of them still unpatched at publication. The command executes as the user, outside the agent's sandbox and without an approval prompt, and exploitation requires the repository to arrive…

Fuente: The Hacker News Publicado: 02/09/2026 · 14:06 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Ciberseguridad Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
Imagen: The Hacker News
Ciberseguridad

Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages

A Chinese-speaking cybercrime cluster known as Gambling Goblin has been observed installing malicious Apache modules on compromised web servers run by Brazilian government and educational institutions, and using them to divert visitors to attacker-controlled pages promoting online gambling and sports betting. Check Point Research said it has tracked the campaign since mid-2025. The modules…

Fuente: The Hacker News Publicado: 02/09/2026 · 13:44 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Ciberseguridad BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access
Imagen: The Hacker News
Ciberseguridad

BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor hypervisors sustained root-level compromise. The incident window ran from approximately August 28 at 20:57…

Fuente: The Hacker News Publicado: 02/09/2026 · 13:12 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control
Imagen: The Hacker News
Malware

Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control

Cybersecurity researchers have disclosed details of a new Android banking trojan called StreamRat that was promoted to Spanish-speaking users through a fake television-streaming campaign on Meta and can give operators near-complete control of infected devices. ThreatFabric said the campaign's advertisement focused on Spain and reached an estimated 570,950 Meta accounts in the European Union…

Fuente: The Hacker News Publicado: 02/09/2026 · 12:22 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Ciberseguridad How to Secure Enterprise AI: From Adoption to Incident Readiness
Imagen: The Hacker News
Ciberseguridad

How to Secure Enterprise AI: From Adoption to Incident Readiness

The debate about whether AI delivers business value is over. The challenge now is implementing it at scale and securely across every function while meeting board-level pressure to move fast. Organizations must focus on adopting AI at business speed without losing control of cyber risk. Download the full eBook here. The Business Reality In Sygnia’s 2026 CISO Survey Report, which…

Fuente: The Hacker News Publicado: 02/09/2026 · 11:30 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain
Imagen: The Hacker News
Vulnerabilidad

Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain

SonicWall has released security updates to address two security flaws impacting its Secure Mobile Access (SMA) 1000 series VPN appliances that have been exploited in zero-day attacks. The vulnerabilities, discovered internally by SonicWall's William Perry and Adam Babis, are listed below - CVE-2026-83548 (CVSS score: 10.0) - A pre-authentication SSRF vulnerability in the Appliance…

Fuente: The Hacker News Publicado: 02/09/2026 · 10:53 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Ransomware Ransomware protection for MSPs: A 6-point checklist for faster recovery
Imagen: BleepingComputer
Ransomware

Ransomware protection for MSPs: A 6-point checklist for faster recovery

Ransomware resilience requires more than backups or endpoint detection alone. Acronis outlines six capabilities MSPs should test across client environments, from reducing exposure and detecting attacks to preserving recovery points and restoring operations quickly.

Fuente: BleepingComputer Publicado: 02/09/2026 · 10:02 UTC No se pudo traducir automáticamente (se muestra el original).
Vulnerabilidad GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends
Imagen: The Hacker News
Vulnerabilidad

GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

Two vulnerabilities in GeoNetwork can be chained to achieve unauthenticated remote code execution (RCE) on the open-source geospatial metadata catalog, which sits behind many government and agency geoportals. The project shipped fixes in versions 4.4.12 and 4.2.17 on July 8, 2026, and published the vulnerability details on August 31. GeoNetwork originated at the United Nations Food…

Fuente: The Hacker News Publicado: 02/09/2026 · 09:18 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands
Imagen: The Hacker News
Malware

Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands

The U.S. Department of Justice (DoJ) has charged a Russian national, extradited from Cyprus on August 28, with using roughly 255 fake accounts on a freelance platform to send malware-laced Excel attachments to about 80,000 of its users in 2016 and 2017. Searzhudin Tamirlanovich Aktulaev, 40, was arrested in Cyprus in May 2025, the U.S. Attorney's Office for the Northern District of California…

Fuente: The Hacker News Publicado: 02/09/2026 · 09:10 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another
Imagen: The Hacker News
Vulnerabilidad

Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another

Forescout Research - Vedere Labs said it used Anthropic's Claude to port a working pre-authentication remote code execution (RCE) exploit from one WAGO programmable logic controller (PLC) to another, executing attacker-supplied ARM shellcode on live hardware. The exploit targets CVE-2021-31886, a stack-based buffer overflow in the Nucleus FTP server's handling of the USER command…

Fuente: The Hacker News Publicado: 02/09/2026 · 07:47 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
Imagen: The Hacker News
Vulnerabilidad

Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

Threat actors are exploiting a severe security vulnerability in Sangoma Switchvox, an enterprise VoIP platform, that could allow unauthenticated remote code execution. The vulnerability in question is CVE-2026-9586 (CVSS score: 9.3), a critical unauthenticated SQL injection vulnerability in Sangoma Switchvox SMB Edition 8.3 (104997) that can allow attackers to remotely execute arbitrary code as…

Fuente: The Hacker News Publicado: 02/09/2026 · 07:08 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads
Imagen: The Hacker News
Malware

Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operation. The effort was undertaken on August 31, 2026, by authorities from the U.S., Bulgaria, Hungary, and Romania, in collaboration with private industry partners CrowdStrike and the Shadowserver Foundation. To that…

Fuente: The Hacker News Publicado: 02/09/2026 · 06:56 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.