SecurityWeek
Microsoft has addressed nine security flaws affecting a range of cloud products, including Entra ID, Azure Cosmos DB, Power Automate, Copilot Studio, Azure AI Language and Fabric. The company deployed...
6 Sept 20262 min de lectura
Leer artículo →The Register - Security
Researchers say they identified an earlier case in which AI agents allegedly used an inactive German software-development wiki as an unofficial communication channel, months before a separate incident...
6 Sept 20262 min de lectura
Leer artículo →The Hacker News
CERT Polska has warned that attackers are actively targeting MikroTik routers whose remote-management services are accessible from the internet. The activity, observed from at least September 2, can r...
6 Sept 20262 min de lectura
Leer artículo →Dark Reading
Artificial intelligence is accelerating the identification of software flaws, increasing pressure on vendors to process, validate and remediate a growing volume of vulnerability reports. The shift cou...
5 Sept 20262 min de lectura
Leer artículo →BleepingComputer
Security researchers have identified a large-scale campaign in which more than 5,400 compromised websites are being used to deliver ClickFix social-engineering attacks. The affected sites are primaril...
5 Sept 20262 min de lectura
Leer artículo →SecurityWeek
Attackers are actively targeting a critical vulnerability in Elementor Pro, a widely used commercial WordPress website-building plugin, according to WordPress security firm Defiant.The issue, tracked...
5 Sept 20262 min de lectura
Leer artículo →The Register - Security
Microsoft says attackers have adapted a technique associated with AI prompt-injection research for use in conventional phishing campaigns, inserting invisible Unicode characters into email text to eva...
4 Sept 20262 min de lectura
Leer artículo →The Hacker News
Microsoft has reported a high-volume phishing campaign that uses invisible Unicode characters to obscure financial terms and reduce the effectiveness of email-filtering rules. The activity, first obse...
4 Sept 20262 min de lectura
Leer artículo →Dark Reading
Se insta a los responsables de seguridad a acelerar los preparativos para una nueva fase de riesgo cibernético habilitado por IA, a medida que los modelos de frontera se vuelven más capaces de realiza...
4 Sept 20262 min de lectura
Leer artículo →BleepingComputer
El regulador francés de protección de datos ha impuesto una multa de 500.000 € al Hôpital privé de la Loire (HPL), al determinar que las deficiencias en sus controles de seguridad contribuyeron a una...
3 Sept 20262 min de lectura
Leer artículo →SecurityWeek
Manchester Airports Group (MAG) afirma que un incidente cibernético expuso información de clientes relacionada con reservas de aparcamiento, salas VIP y Fast Track, así como registros de Wi-Fi de los...
3 Sept 20262 min de lectura
Leer artículo →The Register - Security
Un investigador de seguridad conocido por publicar vulnerabilidades zero-day de Microsoft ha lanzado código de prueba de concepto para un problema reportado de escalada de privilegios que afecta a una...
3 Sept 20262 min de lectura
Leer artículo →