Radar de seguridad e inteligencia artificial
Noticias
Revisamos cada hora los feeds públicos de 60 fuentes de referencia y clasificamos cada titular por tema y severidad. Aquí verás el titular y un extracto breve: la noticia se lee en su fuente original.
en 24 horas
semana
crítica
en seguimiento
Actualización horaria Última revisión hace 4 min 968 titulares en el archivo
Qué se está publicando
Distribución por tema
- viernes 28 ago
-
Huntress Employee Spotlight: Meet Ben Bernstein
Meet Ben Bernstein, cybersecurity advisor and security badass, in this employee spotlight. See how he makes a difference every day.
Huntress General huntress.com -
Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations with over 26,000 malicious messages
Infosecurity Magazine Amenazas infosecurity-magazine.com -
BotBase for Operators: A clearer path to joining Cloudflare's directory of bots and agents
Bot operators now have a home in the Cloudflare dashboard to manage submissions. This update adds submission status tracking, submission editing, and a behavior model so operators can accurately declare how their bots use content.
Cloudflare Infraestructura blog.cloudflare.com -
CISA identifies security hurdles that led to very different results in two red-team engagements
The agency said its recent simulated cyberattacks offered several key lessons for many organizations.
Cybersecurity Dive Amenazas cybersecuritydive.com -
AI Doesn’t Mean the End of Mathematics—at Least Not Yet
This essay was written with Kasra Rafi, and originally appeared in The Guardian. Earlier this month, about 40 top mathematicians gathered at OpenAI’s offices to discuss the future of their profession. The meeting was off-the-record, but if…
Schneier on Security Seguridad IA schneier.com -
Shai-Hulud hackers: two men charged over TeamPCP’s global supply chain crime spree that hit OpenAI, and thousands more
More than 1,000 organisations, 500,000 stolen credentials, and one self-propagating worm named after a Dune sandworm - two men now face charges over TeamPCP's global hacking spree. Read more in my article on the Hot for Security blog.
Graham Cluley Seguridad IA bitdefender.com -
PaperCut NG/MF Critical Zero-Day Exploited in the Wild
Overview On August 27, 2026, PaperCut Software published an urgent security advisory stating that it is investigating active exploitation of a vulnerability affecting PaperCut NG and PaperCut MF. PaperCut has confirmed customer incidents…
Rapid7 Vulnerabilidades rapid7.com -
Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn
More than 100 companies, including OpenAI, Anthropic, Google and Microsoft, have urged collective action to unlock the power of AI to protect critical public services
Infosecurity Magazine Seguridad IA infosecurity-magazine.com -
El AIBot de la Universidad que ayuda no sólo a los estudiantes
Ya sabéis que le he dedicado algunas horas a jugar con algunos Asistentes IA para aprender cómo de fáciles o difíciles son de saltar algunos de los Guardarraíles y Arneses que se están diseñando para ellos. Ya os dejé un artículo sobre un…
El lado del mal General elladodelmal.com -
How an Atlanta Suburb Ended Up Sharing Flock Data With More Than 2,000 Organizations
Alpharetta, Georgia, cops share data with thousands of Flock users, ranging from federal agencies to a fish and wildlife commission. The reasons why show how vast—and invasive—the network has become.
WIRED · Security General wired.com -
CISA impone un parche urgente por un fallo crítico en Citrix NetScaler con explotación activa
CISA ha metido CVE-2026-8452 en su catálogo Known Exploited Vulnerabilities y obliga a las agencias federales de EEUU a parchear Citrix NetScaler antes del 29 de agosto de 2026. La falla, que empezó describiéndose como un problema de…
Hispasec · Una al día Vulnerabilidades unaaldia.hispasec.com -
Some Malicious PE Stats, (Thu, Aug 27th)
During my last FOR610 session, a student asked me if I had some statistics in mind about the compilers used to generate malicious PE files? A couple of months ago, I shared some stats about the trend in 64bits VS. 32bits malware[1]. Can we…
SANS Internet Storm Center Amenazas isc.sans.edu -
What Zero Trust Can Teach Us About AI Watermarks
I recently wrote about the mess that is watermarking AI-generated text and how Anthropic's move to add watermarks (in response to the EU AI Act's transparency rules) raises more questions than it answers. If you haven't read that blog, the…
Cloud Security Alliance Seguridad IA cloudsecurityalliance.org -
Our decision on Cursor following its acquisition by SpaceX
Our decision to wind down our contract providing OpenAI models to Cursor following its acquisition by SpaceX.
OpenAI Seguridad IA openai.com - jueves 27 ago
-
PaperCut Zero-Day: Active Exploitation and Pre-Auth RCE
PaperCut NG and PaperCut MF are under active exploitation. Huntress reproduced a pre-auth RCE chain and shares urgent patching, exposure, and detection guidance.
Huntress Vulnerabilidades huntress.com -
ISC Stormcast For Friday, August 28th, 2026 https://isc.sans.edu/podcastdetail/10072, (Fri, Aug 28th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
SANS Internet Storm Center General isc.sans.edu -
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
After an affair with a fellow police officer ended, a Georgia cop used Flock to track her movements—and those of a man whose vehicle often showed up near hers, internal investigation records show.
WIRED · Security General wired.com -
Cómo la IA facilita la recopilación de información para fraudes: cualquiera puede ser un objetivo
A los ciberdelincuentes les resulta cada vez más barato y fácil investigar a sus posibles víctimas. Estas son algunas medidas que puedes tomar para dificultar la obtención de datos que utilizan para cometer fraudes.
WeLiveSecurity (ESET) General welivesecurity.com -
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend
In his first Threat Source newsletter, David Bianco explores the critical need for operational sovereignty in customizing AI guardrails to maintain the defender’s advantage.
Cisco Talos Seguridad IA blog.talosintelligence.com -
PCI DSS 4.0.1: Application Requirements You’re Being Assessed On in 2026
Key Takeaways Since March 31, 2025, all 51 former “best practice” requirements in PCI DSS 4.0 have been fully scored. Every 2026 assessment covers them. A large share of the new weight sits in the PCI DSS 4.0.1 application requirements…
Qualys General blog.qualys.com -
Build a More Secure, Always-On Local AI Agent with OpenClaw and NVIDIA NemoClaw
Agents are evolving from question-and-answer systems into long-running autonomous assistants that read files, call APIs, and drive multi-step workflows....
NVIDIA · Ciberseguridad Seguridad IA developer.nvidia.com -
Run Autonomous, Self-Evolving Agents More Safely with NVIDIA OpenShell
AI has evolved from assistants following your directions to agents that act independently. Called claws, these agents can take a goal, figure out how to achieve...
NVIDIA · Ciberseguridad Seguridad IA developer.nvidia.com -
How we saved 100 terabytes of memory by optimizing 1.1.1.1’s DNS cache
Five Rust-level memory optimizations to the DNS cache layout of Big Pineapple cut per-entry memory by 56%, freeing approximately 100 TB of memory across Cloudflare's fleet.
Cloudflare Infraestructura blog.cloudflare.com -
Inside 90 days of attacks on AI infrastructure
Wiz honeypots uncover active campaigns targeting LiteLLM, MCP servers, and AI frameworks through RCE, blind prompt injection, and memory credential theft.
Wiz Seguridad IA wiz.io -
Extend Amazon Bedrock Guardrails to Tool Interactions Using the Strands Agents SDK
If you’re running AI agents in production, Amazon Bedrock Guardrails protects the model boundary. But your agents also invoke tools, fetch external data, and communicate with other systems. That data flows outside the model boundary, where…
AWS Security Seguridad IA aws.amazon.com -
Gemini Omni 1.1 Flash lets you build with more control
Google DeepMind Seguridad IA deepmind.google -
What’s new in Microsoft Security: August 2026
This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments, and enhance security management across their environments. The post What’s…
Microsoft Security Blog General microsoft.com -
OpenClaw went viral. Meet the maintainers building and securing it.
OpenClaw is the fastest-growing project in GitHub history. Peter Steinberger and several maintainers share what they learned in the project's first six months. The post OpenClaw went viral. Meet the maintainers building and securing it…
GitHub Security General github.blog -
From Concept to Context Engine: How Wiz Built AI-Powered Data Discovery
Inside the multi-agent pipeline and feedback loops that turned a bucket scanner into a context engine.
Wiz Seguridad IA wiz.io -
Hundreds of agents went rogue in lead up to Hugging Face breach
OpenAI released a technical breakdown of the historic incident and plans changes to prevent such an occurrence from happening again.
Cybersecurity Dive Seguridad IA cybersecuritydive.com
Del titular al control
Leer noticias no reduce el riesgo
En el blog publicamos análisis propios que traducen esto en decisiones: qué controlar primero, con qué evidencia y en qué orden.