@AMT_Quito@ObrasQuito@MunicipioQuito@pabelml tienen cerrada la coruña y no se ve que estén trabajando, generan un caos en el trafico!!! Al menos pongan agentes de transito a que ayuden!!!!
Tratar a todos los clientes de un MSP con la misma política técnica solo crea ruido de alertas y fallos de cobertura. 📉 La clave para escalar es segmentar en tiers y usar plantillas adaptables según la criticidad.
🖇️ https://t.co/mbqbUcaw7w
#PandoraFMS
🚨 🇪🇨 PREVENTIVE ALERT: ALLEGED COMPROMISE — FINANCIAL AND COOPERATIVE SECTOR (ECUADOR)
[STATUS: UNCONFIRMED / ALLEGED EXFILTRATION, WEBSHELL, AND MIDDLEWARE BYPASS / SOURCE: UNDERGROUND FORUM / DATE: JULY 26, 2026]
Through perimeter technical monitoring of underground cybercrime forums, a post by the actor Carm1nPe has been detected. In the post, the attacker claims to possess privileged access, SSH keys, malicious artifacts (WebShells), and all databases belonging to the cloud infrastructure of Libelula Soft and Nuvem Services (libelulasoft. com and nuvem .cloud), key software and hosting providers for the financial, cooperative, and insurance sectors in the Republic of Ecuador.
The signal is classified as strictly preventative and unconfirmed, remaining under evaluation to determine the veracity or validity of the exposed files.
🗂️ BREAKDOWN OF ALLEGEDLY ASSETS AND RECORDS
According to the manifest published by the alleged attacker, the collection reaches a volume of 87 GB distributed across 140 databases, encompassing:
Transactional and Financial Records: Alleged inclusion of 40 million transactional records (2023–2026 period), with details of SPI transfers, payroll payments, balance inquiries, source/destination accounts, and traceability codes.
Personally Identifiable Information (PII) of Partners/Clients: Alleged exposure of 240,000 complete files containing names, surnames, national identification numbers, fingerprint codes, telephone numbers, email addresses, home addresses, balances, loans, and marital status.
Infrastructure Credentials and Private Keys: Alleged sale of SSH private keys (RSAPrivateKey / .pem), active webshells, exploitation of SQLi vulnerabilities, and middleware bypass.
📂 Allegedly Compromised Entities and Servers:
🇪🇨 Central Services
🇪🇨 CACPECO (Cotopaxi Cooperative)
🇪🇨 Pastaza Savings and Loan Cooperative
🇪🇨 Virgen del Cisne Cooperative
🇪🇨 Santa Rosa Cooperative (COOPACS)
🇪🇨 Oscus Cooperative
🇪🇨 VisionFund Ecuador Bank
🇪🇨 Lucha Campesina Cooperative
🇪🇨 San Antonio Cooperative
🇪🇨 Cooperative Zamora
🇪🇨 Humana Seguros / Aiggo
SIGNAL FORENSIC ANALYSIS
Sensitivity of Exposed Samples: The published samples contain detailed SPI (Interbank Payment System) transaction structures and biometric/fingerprint data from the civil registry.
🛡️ PREVENTIVE TECHNICAL CONTAINMENT RECOMMENDATIONS (SOC / FINANCIAL HARDENING)
🛑 Immediate Rotation of SSH Keys and Middleware Credentials (Priority Action): Invalidate and immediately regenerate all public/private SSH keys, service tokens, and API interconnections between nuvem and the client cooperatives' databases.
🔑 WebShell Hunt and Integrity Audit: Thoroughly inspect production and development web servers (/backoffice, .nuvem.cloud subdomains) for .php and .aspx scripts or other anomalous persistence artifacts.
🛡️ SPI Transaction Monitoring and Strong Authentication: Force the closure of active sessions in the mobile/web banking applications of the institutions in question and implement strict monitoring rules for unusual interbank transfers.
📊 CENTRALIZED MONITORING SYSTEM
Intelligence System: https://t.co/wk9bZJ3laQ
Monitoring Console: https://t.co/5LuqwzZ2HE
#CyberSecurity #Ecuador #LibelulaSoft #NuvemCloud #FinancialBreach #DataLeakClaim #SupplyChainAttack #PreventiveAlerts #ThreatIntelligence #CyberAlert #VECERT #Infosec #UnverifiedIncident
No existe palabras para calificar lo que vivimos en la capital con respecto al transporte! Sobre esta realidad pretenden exigirnos ajustes tarifarios y subsidios para un problema que no generó #Quito.
Realmente existe la justificación necesaria? Estamos más preocupados por el negocio que por el bienestar?
Tenemos una ordenanza vigente con estándares de calidad que son un saludo a la bandera. Las ordenanzas solo las exigen o convienen cuando se trata del negocio… 😶 sin comentarios.. hay sanciones @pabelml@movilidadquito_@Drwandradee
Seguro no! 😔
Las maravillas del @MunicipioQuito, se ponen repavimentar la calle Marquesa de Solanda (Conocoto) pero esta NO NECESITABA repavimentación (interrumpen la movilidad). Ya suficiente se tiene con el cierre del redondel de Conocoto!!! @ObrasQuito@pabelml
Por ultimo, pedir que por favor actualicen el estado de las vias en las plataformas de navegación como Waze o GMaps, al no estar esos cierres activos, el sistema calcula rutas por donde no hay paso!
Lo irónico es que unas cuadras en sentido sur por la calle Abdon Calderon, hay la Calle Panzaleo que está en un estado deplorable hace años, sin mencionar que están atentando contra la movilidad de los peatones. Sería interesante que @VocesCotocollao nos apoye en este caso…
@mlhidalgo@PoliciaEcuador@FiscaliaEcuador Truecaller muestra nombres de como otros usuarios registran esos números en sus contactos. No necesariamente significa que sean, mayormente son call center de llamadas promocionales o de cobranza. Con el esquema actual es difícil controlar a quien se vende una línea o un celular.
@luchitoquiroz Así suelen ser, a muchos agentes de la @AMT_Quito les gusta el trabajo fácil, multar a los mal estacionados, multar por pico y placa pero para hacer respetar en todo sentido les falta mucho
@BancoGuayaquil necesito soporte y su chat automatizado de X a cada rato cierra la conversación por inactividad. No sirve agregar la tarjeta virtual a ApplePay!!!