🚨 FFmpeg hit with 21 zero-day vulnerabilities discovered by an AI agent!
DepthFirst analyzed 1.5 million lines of code and uncovered dozens of critical issues (heap/stack overflows, integer overflows). Many had been hiding for 10–23 years.
8 already assigned CVE IDs. One allows RCE via a single RTP packet over RTSP.
Total cost of the research: ~$1000.
Full article: https://t.co/AizZTVx3oO
Today, #LatamGPT has been published on Hugging Face 🤗.
Developed by the LatamGPT team at CENIA, LatamGPT is a foundation model built on top of Llama 3.1 70B and trained through Continued Pre-Training and Supervised Fine-Tuning using a corpus of 384M high-quality documents from Latin America and the Caribbean, spanning Spanish, Portuguese, and English across 20 countries, totaling 296.5B tokens.
The model focuses on strengthening the representation of Latin American knowledge in Spanish and Brazilian Portuguese, while supporting instruction following, conversation, and natural language processing tasks in Spanish, Portuguese, and English.
This release is part of a broader effort to make Latin America not only a user of AI, but also an active builder in the AI community.
You can find the model here: https://t.co/cUmvZBLiqq
In the coming weeks, we will also share other artifacts related to the model, including the technical report, datasets, and benchmarks, on the project website: https://t.co/PjIAeFxZ9F
Fun Fact:
Nintendo released the Game Boy Advance in the US in June 2001 for $99.
In January 2002, seven months later, Nintendo announced it would lower the price of the Game Boy Advance to $79 as a result of production efficiencies and to spur mass market adoption.
🚨 UPDATE: INFRASTRUCTURE AND DATA – CHILE 🇨🇱🏛️📱
Persistent and critical activity targeting major telecommunications and public service entities in Chile has been detected. The threat actor "rutify" has published records suggesting the leakage of sensitive data over the past 48 hours.
📅 Detected Today (04/30/2026):
https://t.co/aQpz6XhvkR: Initially classified as "Unclassified," suggesting a breach within the operator's portals or databases.
https://t.co/eBxO5M5Thu: Incident categorized under the "Technology" sector, indicating a compromise of the company's infrastructure.
📅 Detected Yesterday (04/29/2026):
REGISTRO CIVIL, CORREO, CLAVEÚNICA: This finding is of the utmost severity, as it alleges the compromise of citizen identity systems (ClaveÚnica), civil registries, and mail servers.
⚠️ Risk Implications (VECERT Intelligence)
Compromise of National Identity: The alleged compromise of the *ClaveÚnica* (Unique Key) system could allow malicious actors to impersonate citizens in order to conduct legal, banking, and healthcare-related procedures on government portals.
Exposure of Telecommunications Data: The breaches at Claro and WOM expose the private information of millions of users, facilitating SIM swapping attacks, extortion, and telephone fraud.
🛡️ Immediate Response Recommendations
🔒 Urgent *ClaveÚnica* Password Change: Citizens are advised to update their passwords on the official *ClaveÚnica* portal and enable additional authentication methods if available.
🔑 Telco System Audit: Claro and WOM are urged to conduct a forensic review of their customer databases and internal system access logs.
👁️ Email Monitoring: Due to the mention of "CORREO" (Mail), users should remain alert for highly sophisticated phishing attempts that leverage actual leaked data.
Monitor: https://t.co/wk9bZJ3laQ
#CyberSecurity #Chile #RegistroCivil #ClaveUnica #ClaroChile #WOM #DataBreach #CSIRT #VECERT #InfoSec #SinVerificador 🇨🇱🛡️⚠️🚨🔐
🚨 UPDATE: INFRASTRUCTURE AND DATA – CHILE 🇨🇱🏛️📱
Persistent and critical activity targeting major telecommunications and public service entities in Chile has been detected. The threat actor "rutify" has published records suggesting the leakage of sensitive data over the past 48 hours.
📅 Detected Today (04/30/2026):
https://t.co/aQpz6XhvkR: Initially classified as "Unclassified," suggesting a breach within the operator's portals or databases.
https://t.co/eBxO5M5Thu: Incident categorized under the "Technology" sector, indicating a compromise of the company's infrastructure.
📅 Detected Yesterday (04/29/2026):
REGISTRO CIVIL, CORREO, CLAVEÚNICA: This finding is of the utmost severity, as it alleges the compromise of citizen identity systems (ClaveÚnica), civil registries, and mail servers.
⚠️ Risk Implications (VECERT Intelligence)
Compromise of National Identity: The alleged compromise of the *ClaveÚnica* (Unique Key) system could allow malicious actors to impersonate citizens in order to conduct legal, banking, and healthcare-related procedures on government portals.
Exposure of Telecommunications Data: The breaches at Claro and WOM expose the private information of millions of users, facilitating SIM swapping attacks, extortion, and telephone fraud.
🛡️ Immediate Response Recommendations
🔒 Urgent *ClaveÚnica* Password Change: Citizens are advised to update their passwords on the official *ClaveÚnica* portal and enable additional authentication methods if available.
🔑 Telco System Audit: Claro and WOM are urged to conduct a forensic review of their customer databases and internal system access logs.
👁️ Email Monitoring: Due to the mention of "CORREO" (Mail), users should remain alert for highly sophisticated phishing attempts that leverage actual leaked data.
Monitor: https://t.co/wk9bZJ3laQ
#CyberSecurity #Chile #RegistroCivil #ClaveUnica #ClaroChile #WOM #DataBreach #CSIRT #VECERT #InfoSec #SinVerificador 🇨🇱🛡️⚠️🚨🔐