🛠️ RedAmon, una nueva plataforma de seguridad ofensiva de código abierto que redefine las pruebas de penetración automatizadas.
Diseño modular y basada en Docker integra en un único flujo de trabajo el reconocimiento, la explotación, la post-explotación, el triaje mediante IA
https://t.co/4vmcH23htD
Kali Linux 2026.2 Release (GNOME 50, KDE 6.6, Helper Scripts, APT Formats & VM Boot Tweaking): It’s the final week of Q2, and Kali Linux 2026.2 is here - right on schedule ;) We have been heads down since our last release, and we are ready to share what… https://t.co/kv4knEBCQs
🚨 CRITICAL CYBERINTELLIGENCE ALERT: MASSIVE NATIONAL IDENTITY BREACH – DIGERCIC ECUADOR 🇪🇨👤📂🔓 [STATUS: EXTREME THREAT]
A catastrophic compromise has been detected within the infrastructure of Ecuador's General Directorate of Civil Registry, Identification, and Cedulation (DIGERCIC). Threat actor "GordonFreeman," operating under the collective L4TAMFUCKERS, claims to have completely breached the national system, exfiltrating the identity data of virtually the entire population holding national ID cards.
🏢 Affected Entity: DIGERCIC (Ecuador's Civil Registry).
👤 Threat Actors: GordonFreeman, Izanagi, and YoSoyGroot (L4TAMFUCKERS).
📂 Compromised Assets: SQL database and a massive repository of identification images.
📊 Leak Volume:
14.8 million data records (10.8 GB in SQL).
10.6 million high-definition images of national ID cards (165 GB).
📅 Publication Date: May 4, 2026.
📊 Breach Scope (PII and Facial Biometrics)
The magnitude of this attack implies that the attackers possess the capability to reconstruct the legal identity of the majority of Ecuadorian citizens:
Alphanumeric Data: Full names, national ID numbers, dates of birth, marital status, digitized fingerprints, and signatures.
Visual Evidence: The 10.6 million HD images correspond to facial photographs captured for the issuance of identity documents, thereby enabling biometric impersonation attacks.
Infrastructure: The use of SQL dumps suggests deep-level access to the Civil Registry's master tables.
🛡️ Immediate Response Recommendations
🔒 Isolation of Critical Servers: DIGERCIC must declare a state of cybersecurity emergency and audit all data exfiltration points within its internal networks.
🔑 Financial System Alert: Banks and credit unions in Ecuador must enhance their identity verification protocols, exercising caution regarding validations based solely on photos of national ID cards.
Monitor: https://t.co/wk9bZJ3laQ
#CyberSecurity #Ecuador #DIGERCIC #DataBreach #L4TAMFUCKERS #RegistroCivil #Identity #PII #VECERT #InfoSec 🇪🇨🛡️⚠️🚨👤
Guía Completa: pfSense con DDNS de Cloudflare, Certificados Let’s Encrypt y HAProxy para Proxy Inverso y Balanceo de Carga de servicios https://t.co/d9Ae5y3eOz
🚀¿Quieres especializarte en ciberseguridad? Apúntate al curso presencial y gratuito de INCIBE y la ULE del 24 de noviembre al 05 de diciembre.
🎓1,7 créditos ECTS
¡Inscríbete ya!🏃♂️
https://t.co/HquOZe3nnE
#Ciberseguridad#INCIBE#ULE#CursoGratis
Curious about hacking APIs? This video can guide you how to get started in the crucial area of web app #pentesting.
Watch it here: https://t.co/6kZziKvbyU
El lado del mal - WhatsApp Forensics: El time-line de los mensajes de "View Once "en WhatsApp Desktop (Incluso en los chats que desaparecen) https://t.co/IcRiLEofeS #WhatsApp#Leak#Privacidad#Forense#Forensics#OSINT
As you refine your skillset with CTFs, don't forget about our Academy! It has 20+ courses that will shape you into a better pentester. https://t.co/P7eDiPwMet
Looking to become more involved with capture-the-flag competitions AKA #CTFs? Here are a few pointers to help you on your way, and some recommendations for why and how to start.
𝗪𝗵𝘆 𝘀𝗵𝗼𝘂𝗹𝗱 𝗜 𝗱𝗼 𝗖𝗧𝗙𝘀? CTFs are clearly a way to refine your pentesting skillset, but let's be more specific. CTFs help participants develop their troubleshooting skills, learn about the underlying technologies they are testing, encourage learning in a safe environment, and can really appeal to people with a more competitive edge.
𝗪𝗵𝗮𝘁 𝗱𝗼 𝗜 𝗹𝗲𝗮𝗿𝗻? You can learn to use scripting languages like Python to automate tasks during the CTF, and you can get more familiar with popular pentesting tools like Burp Suite.
𝗥𝗲𝗮𝗱𝘆 𝘁𝗼 𝘀𝘁𝗮𝗿𝘁? Choose any of the numerous beginner-friendly CTFs! Popular CTFs include OvertheWire, RootMe, and PicoCTF. Be sure to bookmark https://t.co/2r7sl7kYKU if you decide you really want to go further with CTFs.
¡Call for Papers! Sé protagonista de la 1era revista científica CEDIA. Publica tu innovación. Envía tu artículo y haz que tu trabajo forme parte de esta primera edición histórica.
👩💻 SOC Analyst vs. Penetration Tester 🕵️♂️
Here we break down the key differences between the two roles and the mindset you’ll need for each!
Different responsibilities. Different ways of thinking. Both essential to cyber security!
Wherever you see yourself, TryHackMe has you covered with a dedicated learning path to get you started! 😉
➡️ SOC Level 1: https://t.co/H8k5RwaFqw
➡️ Jr Penetration Tester: https://t.co/qxR60STC2m