Divulgación sobre tecnología y ciberseguridad.
Te ayudo a proteger tus derechos digitales.
| ⚖️ Abogado | 💻 Ing de software | 🧑🏼💻 FullStack
Isaiah 40: 29
Me encontré este vídeo del eclipse por TikTok y la reacción de la persona que ese vídeo es exactamente lo que estoy sintiendo desde hace dos días. Y pensando que iba a escribir para compartirlo con vosotros. Me he dado cuenta que no es que no puedo pensar en otra cosa, es que no quiero pensar en otra cosa.
https://t.co/agsjO5L6cq
🇨🇳 China's satellites are starting to sound a LOT like Skynet
They successfully launched a sea-based Smart Dragon-3 rocket, carrying two AI-powered satellites into orbit.
This isn't just another satellite launch. Sea-based launches make China's space program more flexible, harder to predict, and less dependent on a handful of fixed launch sites. More importantly, the satellites can reportedly process intelligence in orbit instead of waiting for instructions from the ground.
In other words, Beijing isn't just building more satellites; it's building satellites that can think for themselves.
What could possibly go wrong?!?!
Source: @PressTV / Writers: Samuel, Ian
🏴🇲🇽 Wild scenes with massive flags, foam everywhere, and fans bringing the energy ahead of the World Cup Round of 16 clash.
Rain check? Not a chance.
Writer: Daniyal
SpaceX has exercised the option to acquire @cursor_ai in an all-stock transaction with the goal of building the world’s most useful AI models.
For the past few months, SpaceXAI has been jointly training a model with Cursor, which will be released in Cursor and Grok Build soon.
We look forward to working closely with the Cursor team to advance our frontier AI capabilities
🚨 Hackers found a way into Palo Alto’s GlobalProtect VPN without a password.
The flaw, tracked as CVE-2026-0257, lets attackers bypass PAN-OS authentication and establish unauthorized VPN sessions.
Palo Alto says it’s already being used in real attacks.
If you run GlobalProtect, check this now.
Details ➝ https://t.co/OSarZ4i9jF
Introducing Claude Fable 5: a Mythos-class model that we’ve made safe for general use.
Its capabilities exceed those of any model we’ve ever made generally available.
University of Pennsylvania researchers created ModQuad—quadrotors that dock mid-air and self-assemble into larger flying structures, then fly together as one, sharing control and stability.
AI-powered computer worm, a self-replicating agent that reasons its way through a network instead of carrying a fixed exploit list. It steals compute from compromised GPU machines to run its own open-weight LLM, then uses weaker machines as relays for reach. In trials on a corporate testbed, it identified vulnerabilities, exploited systems, and launched replicas across Linux, Windows, and IoT targets. Every new infection can add more infrastructure while costing the attacker almost nothing. Patching one flaw no longer ends the threat, because the worm can operationalise fresh advisories, generate new attack logic, and keep adapting without a human operator. It is not a WannaCry-style worm with one baked exploit and one baked ransomware payload. It can adapt across many vulnerability classes it can discover and operationalise https://t.co/nSupd1h0BG
‼️🚨 A new npm supply-chain attack compromised 57 packages across over 286 malicious versions in under 2 hours. The attackers used self-replicating malware, a new version of the Miasma worm, which also used evasion techniques to stay under the radar.
The payload targets CI/CD and developer credentials, including GitHub Actions secrets, cloud credentials, Vault tokens, SSH keys, npm and GitHub tokens, and password-manager stores. This variant also injects AI coding assistant config files at `.claude`, `.cursor`, `.gemini`, and `.vscode` paths, a separate persistence and repo-poisoning angle.
Microsoft introduces Microsoft Scout, also known as Autopilot.
Scout is always on and has file system and application access "based on your corporate policy".
Best news for Threat Actors in a long time
https://t.co/M3pyfcbTBm
‼️ HackerOne disclosed it was training its AI with "12+ years of real-world vulnerability data," and now is in damage control after backlash over how it marketed its new AI product.
That line set researchers off. Bug bounty hunters accused HackerOne of using researchers' reports and prior bounty findings to train its Hai agentic AI system, framing it as theft.
HackerOne answered the next day. It admitted the messaging "created confusion" and stated that researcher submissions are not used to train, fine-tune, or improve generative AI models. The company said this applies across H1 Continuous Testing, H1 Agentic PTaaS, and Hai, and that third-party model providers are barred from retaining or using researcher data for their own training. It said it updated its website language.
This week the platform launched H1 Continuous Testing, pitched as "continuous assurance built for how attacks actually work." Its own page says the product uses specialized AI agents to find, validate, and prove exploitable risk across applications.
The gap that remains: the marketing still credits "12+ years of real-world vulnerability data," while the denial is scoped tightly to training generative models. HackerOne has not said what that data set actually is, or how it differs from the submissions hunters spent more than a decade filing.
As someone who enjoys malware and malware accessories, I for one believe this to be incredible news and I applaud Satya Nadella for this
As someone who deals with malware defensively, I for one believe this is terrible news and I hate Satya Nadella so much right now it's unreal
We're building a surgical robot capable of reaching any brain region. The goal: a generalized neural interface to help solve any condition that originates in the brain.
We’ve agreed to a partnership with @SpaceX that will substantially increase our compute capacity.
This, along with our other recent compute deals, means that we’ve been able to increase our usage limits for Claude Code and the Claude API.
No es solo una disputa comercial.
El caso Anthropic vs Pentágono puede marcar un precedente sobre quién define los límites del uso estatal de la inteligencia artificial.
#IA#Anthropic#Pentagono#Tecnología
Lee más en 🔗
https://t.co/Oq1vkJ3zIX
La DIAN confirmó un ciberataque a su sistema de citas y denunció un intento de extorsión.
El riesgo no termina en la caída del servicio: también puede abrir la puerta a fraudes, phishing y suplantaciones.
Lee más en:
https://t.co/SxymRESpQE
#DIAN#Ciberataque#Colombia
Google Chrome enfrenta una nueva vulnerabilidad que podría permitir espionaje a usuarios.
La recomendación: actualizar el navegador cuanto antes.
🔎 Más información
https://t.co/lv0USW7y8H
⭕ Habitantes de San Juan de Aragón denunciaron que la construcción de una Utopía en el Deportivo Hermanos Galeana avanza, mientras espacios recreativos como canchas y áreas de ejercicio llevan décadas sin recibir mantenimiento.
https://t.co/b94RkjGUFt