El ransomware The Gentlemen usa 21 técnicas de ejecución remota para cifrar redes enteras
Ha surgido una nueva cepa de ransomware llamada The Gentlemen , considerada una de las amenazas más agresivas de este año
https://t.co/dTgMOVlvsC
Desactivan Defender, Sysmon y WAF antes de robar credenciales con Mimikatz
Un actor de amenazas ha implementado una técnica alarmante para cegar a los equipos de seguridad antes de robar contraseñas
https://t.co/AVFqoPQy7J
Bomba HTTP/2: exploit DoS remoto afecta a nginx, Apache, IIS, Envoy y Cloudflare Pingora
Se ha revelado un nuevo exploit de denegación de servicio remoto llamado "HTTP/2 Bomb", que afecta a las configuraciones predeterminadas de los servidores web más utilizados, como nginx, Apache httpd, Microsoft IIS, Envoy y Cloudflare Pingora. Este fallo permite que un único atacante, utilizando una conexión doméstica, agote decenas de gigabytes de memoria del servidor en cuestión de segundos
https://t.co/I2r1YoPAEE
🔴🔴ALERTA | Gran parte de República Dominicana entrará en un proceso de emergencia meteorológica en las próximas 24 horas debido a que la vaguada estará más fortalecida y el sistema frontal 35 se mantendrá incidiendo en el Caribe: las lluvias torrenciales y el potencial de inundaciones significativas aumentarán esta tarde y esta noche.
🔴La humedad y el aire cálido del Mar Caribe están activando la producción de precipitaciones importantes: esto se reflejará en los desbordamientos de ríos y cañadas, deslizamientos de tierra, ráfagas de viento, descargas eléctricas y granizadas hoy domingo.
Sigue ⬇️
As a result of an #FBI Boston investigation, four Dominican nationals have been extradited to the U.S. for their alleged roles in connection with a transnational "call center" operation in the Dominican Republic that tricked hundreds of elderly victims in the U.S. into believing their grandchildren or other close family members were in trouble and needed money. Learn more: https://t.co/1taUGsOltv
🚨 CISA Warns of Windows SMB Vulnerability Actively Exploited in Attacks
Read more: https://t.co/aI1XoMTYlA
CISA issued an urgent alert on October 20, 2025, highlighting a severe vulnerability CVE-2025-33073 in Microsoft's Windows SMB Client.
The vulnerability exploits the Server Message Block (SMB) protocol, a cornerstone of Windows file sharing and network communications.
This forced authentication grants unauthorized access, potentially allowing full control over the compromised device.
Attackers leverage this vulnerability through social engineering or drive-by downloads, where users accidentaly execute the malicious payload.
To Get Daily Security Updates, add Cyber Security News ® as your preferred source on Google -> https://t.co/N1wthFjc7B
#cybersecuritynews
🚨 M365 Copilot Prompt Injection Vulnerability Allows Attackers to Exfiltrate Sensitive Data
Read more: https://t.co/NhCFFUk90p
A sophisticated vulnerability in Microsoft 365 Copilot (M365 Copilot) that allows attackers to steal sensitive tenant data, including recent emails, through indirect prompt injection attacks.
The attack begins when a user asks M365 Copilot to summarize a maliciously crafted Excel spreadsheet.
Hidden instructions, embedded in white text across multiple sheets, use progressive task modification and nested commands to hijack the AI’s behavior.
#cybersecuritynews
🆕New version of our #ransomware mapping is out on our GitHub!
➡️https://t.co/M9vmt1UZzj
V28 (!) includes latest newcomers and recent ecosystem evolutions.🔍
As always, feedback is welcome!
#cti#threatintel#blackbasta#ransomhub#lockbit
The U.S. Department of State offers up to $10 million for locating Guan Tianfeng and others from the Sichuan Silence Company for their part in creating and deploying malware on firewall devices. Contact Rewards for Justice if you have any information:
https://t.co/iu3FTT9dhw
La #InteligenciaArtificial permite decirle adiós al reguetón.
Roni Bandini, es un maker argentino que recientemente ha llamado la atención por desarrollar 'Reguetón Be Gone', un dispositivo inspirado en el antiguo TV-B-Gone, diseñado para identificar sonidos similares al reguetón con inteligencia artificial y, en caso de detectar ese ritmo en particular, enviar un ataque a los parlantes Bluetooth para impedir que el reguetón se escuche adecuadamente. Para esto, ha usado inteligencia artificial y una Raspberry Pi. Este sistema, aunque no logra silenciar completamente los altavoces ajenos, interfiere efectivamente con la señal, dificultando la audición del #reguetón.
Revisa el artículo donde detalla la información en https://t.co/V6io1QKau8
1\ My thoughts on the Chinese APT contractor leak 🇨🇳
Specifically, I want to talk about the leaked
- iOS Spyware
- Physical implantable devices
- Email surveillance system
Let's consider detection and how these would be installed.