Edición del 3 de septiembre de 2026

Ciberseguridad — edición del 2026-09-03

Ciberseguridad Large Enterprises Targeted in Fake Merger & Acquisition Scams
Imagen: Dark Reading
Lo más reciente Ciberseguridad

Large Enterprises Targeted in Fake Merger & Acquisition Scams

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.

Fuente: Dark Reading Publicado: 03/09/2026 · 20:18 UTC No se pudo traducir automáticamente (se muestra el original).
Leer la noticia completa →

Últimas noticias

Phishing ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
Imagen: The Hacker News
Phishing

ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories

The worst part is how normal these attacks look. A call from IT. A shared file. A trusted app. A simple request to click “Allow.” Why break in when someone might open the door? That idea runs through this edition. Attackers use real tools, fake login pages, old account links, and software guides that point to unsafe downloads. One wrong letter in a web address can be enough. There is also…

Fuente: The Hacker News Publicado: 03/09/2026 · 18:02 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root
Imagen: The Hacker News
Vulnerabilidad

Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root

Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR hardening release bundling 7 umbrella CVEs, 2 of which are rated 9.8, with no workaround for any IOS XR version. The Nexus vulnerability, tracked as CVE-2026-20212 (CVSS score: 9.8), is…

Fuente: The Hacker News Publicado: 03/09/2026 · 15:52 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
Imagen: The Hacker News
Malware

BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory

Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing access to compromised hosts. "Unlike the standard infostealer model, BraZetsu is a comprehensive master toolkit that empowers Initial Access Brokers (IABs) by turning compromised systems into highly valuable commercial…

Fuente: The Hacker News Publicado: 03/09/2026 · 15:26 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Filtración de datos Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
Imagen: The Hacker News
Filtración de datos

Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data

Thomson Reuters disclosed on Wednesday that an unauthorized party obtained files from C-Track, the court case management platform sold by its West Publishing Corporation unit, in March 2026, affecting courts in 11 U.S. states, the U.S. Virgin Islands, and Ontario, Canada. West Publishing said it discovered the activity on June 30, 2026. A subset of court records could contain individuals' names…

Fuente: The Hacker News Publicado: 03/09/2026 · 14:39 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Phishing US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries
Imagen: The Hacker News
Phishing

US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries

An RMM phishing campaign initially associated with Canadian targeting due to its use of Canada Revenue Agency (CRA) tax forms as lures has turned out to be part of a broader campaign spanning 46 countries. Around 45% of observed activity was associated with the United States, making it the campaign's top geographic target. ANY.RUN research connected 601 cases to the wider operation, which uses…

Fuente: The Hacker News Publicado: 03/09/2026 · 11:58 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks
Imagen: The Hacker News
Malware

Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks

Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put to use in attacks targeting government departments, technology companies, and hotels since February 2026. "The technique's appeal is that node.exe (the…

Fuente: The Hacker News Publicado: 03/09/2026 · 10:43 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means
Imagen: The Hacker News
Malware

Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means

In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for credentials across 469 locations across developer environments, Continuous Integration/Continuous Deployment (CI/CD) tooling, cloud configurations, and even AI tool configs. Earlier variants of the infostealer worm only checked 189 paths. The jump says a lot. Attackers have…

Fuente: The Hacker News Publicado: 03/09/2026 · 10:36 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Malware Your Employee’s Password Appeared in an Infostealer Log. Now What?
Imagen: BleepingComputer
Malware

Your Employee’s Password Appeared in an Infostealer Log. Now What?

Infostealers can expose far more than passwords, including authenticated sessions that may let attackers bypass MFA. Flare explains how defenders can prioritize compromised identities, determine whether stolen access is still usable, and respond before it leads to account takeover.

Fuente: BleepingComputer Publicado: 03/09/2026 · 09:50 UTC No se pudo traducir automáticamente (se muestra el original).
Vulnerabilidad Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member's iPhone
Imagen: The Hacker News
Vulnerabilidad

Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member's iPhone

The iPhone belonging to a member of Serbia's student protest movement was infected with NSO Group's Pegasus spyware, according to new findings from the Citizen Lab in collaboration with the SHARE Foundation. "Our analysis confirmed that an iMessage zero-click exploit was used to infect the device with NSO Group's Pegasus spyware," the Citizen Lab said. "We found high-confidence indicators…

Fuente: The Hacker News Publicado: 03/09/2026 · 08:43 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad Múltiples vulnerabilidades en Ocsreports de OCS Inventory NG
Imagen: INCIBE-CERT - Avisos
Vulnerabilidad

Múltiples vulnerabilidades en Ocsreports de OCS Inventory NG

Múltiples vulnerabilidades en Ocsreports de OCS Inventory NG Jue, 03/09/2026 - 10:00 Aviso Recursos Afectados Ocsreports 2.12.4. Descripción INCIBE ha coordinado la publicación de 5 vulnerabilidades, 1 de severidad crítica y 4 de severidad alta, que afectan a Ocsreports de OCS Inventory NG, una solución de código abierto para la gestión e inventario de activos hardware y software de una infraestructura informática. Las vulnerabilidades han sido descubiertas por Marc Monfort Muñoz.

Fuente: INCIBE-CERT - Avisos Publicado: 03/09/2026 · 08:00 UTC
Vulnerabilidad Múltiples vulnerabilidades en productos de SonicWall
Imagen: INCIBE-CERT - Avisos
Vulnerabilidad

Múltiples vulnerabilidades en productos de SonicWall

Múltiples vulnerabilidades en productos de SonicWall Jue, 03/09/2026 - 09:50 Aviso Recursos Afectados Modelos SMA1000 - 6210, 7210, 8200v: versión 12.4.3-03453 (platform-hotfix) y anteriores, y versión 12.5.0-02835 (platform-hotfix) y anteriores. Descripción SonicWall ha publicado 2 vulnerabilidades de severidad crítica que, en caso de ser explotadas, podrían permitir a un atacante obtener acceso no autorizado a funciones sensibles o la ejecución remota de código.

Fuente: INCIBE-CERT - Avisos Publicado: 03/09/2026 · 07:50 UTC
Vulnerabilidad Researcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike Falcon
Imagen: The Hacker News
Vulnerabilidad

Researcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike Falcon

The security researcher known as Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has dropped a new zero-day dubbed FalconFlank, a proof-of-concept (PoC) for a privilege escalation flaw impacting Crowdstrike Falcon. "FalconFlank is a 0-day privilege escalation that abuses the office malicious macros remediation in CrowdStrike Falcon Sensor," the researcher said…

Fuente: The Hacker News Publicado: 03/09/2026 · 06:26 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.
Vulnerabilidad CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
Imagen: The Hacker News
Vulnerabilidad

CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in attackers' crosshairs. The vulnerabilities are as follows - CVE-2026-83548 (CVSS score: 10.0) - A server-side request forgery vulnerability in SonicWall SMA 1000 Appliances that could allow a remote unauthenticated…

Fuente: The Hacker News Publicado: 03/09/2026 · 05:19 UTC No se pudo traducir automáticamente (se muestra el original). Resumen parcial: la fuente no incluye más detalle en su RSS; lee la noticia completa en la fuente.