Ingeniero de sistemas y seguridad.Gamer en los ratos libres.Quiero compartir con todo sobre el mundo de la tecnología de manera mas fácil de entender y acercarla cada vez mas.
TuxBot v3 Evolution: The Intersection of AI and IoT Botnet Development Introduction to TuxBot v3 Evolution Cybersecurity researchers have revealed the emergence of a new Internet-of-Things (IoT) botnet framework known as TuxBot v3 Evolution. This development marks a significant milestone in the ongoing battle between cybercriminals and cybersecurity experts. What makes this iteration particularly noteworthy…
SonicWall Customers Under Siege: Exploitation of Two Critical Zero-Day Vulnerabilities Background and Context The ongoing battle between cybersecurity and cybercriminals has taken a significant turn with the recent disclosure of two zero-day vulnerabilities affecting SonicWall products, specifically the SMA1000 series appliances. This incident highlights a growing trend where cyber attackers are increasingly exploiting vulnerabilities in…
Amenaza Emergente: Suplantación de ID de Cliente OAuth en Microsoft Entra ID Objetivo de Cibercriminales Introducción a la Suplantación de ID de Cliente OAuth Investigaciones recientes en ciberseguridad han puesto de relieve una nueva técnica de ataque conocida como suplantación de ID de cliente OAuth. Esta técnica está siendo explotada por múltiples actores de amenaza…
Emerging Threat: OAuth Client ID Spoofing in Microsoft Entra ID Targeted by Cybercriminals Introduction to OAuth Client ID Spoofing Recent cybersecurity research has brought to light a novel attack technique known as OAuth client ID spoofing. This technique is being exploited by multiple threat actors to bypass traditional security measures and perform credential validation attacks…
LabubaRAT: The New Rust-Based Remote Access Trojan Threatening Windows Environments Background and Context The cybersecurity landscape has witnessed a significant evolution in threats, especially with the emergence of sophisticated remote access trojans (RATs). One of the more alarming developments is the recent discovery of a previously undocumented RAT known as LabubaRAT, which has been reported…
Google y Microsoft Retiran ModHeader de las Tiendas de Extensiones Tras el Descubrimiento de un Colector Oculto Resumen de la Controversia de ModHeader Google y Microsoft han tomado recientemente la decisión de retirar ModHeader, una extensión de edición de encabezados muy utilizada, de sus respectivas tiendas web de Chrome y Edge. Con aproximadamente 1.6 millones…
Google and Microsoft Remove ModHeader from Extension Stores After Discovery of Hidden Collector Overview of the ModHeader Controversy Google and Microsoft recently made the decision to remove ModHeader, a widely-used header-editing extension, from their respective Chrome and Edge web stores. With approximately 1.6 million installs, ModHeader was popular among developers and users who required the…
July 2026 Cybersecurity Landscape: A Surge in Data Breaches and AI Threats Background and Context The cybersecurity landscape has seen a significant uptick in data breaches and vulnerabilities as organizations increasingly rely on digital platforms. The week of July 13, 2026, exemplified this trend with several high-profile incidents, affecting millions of individuals and exposing sensitive…
Explotaciones Críticas de Cero Días Descubiertas en Extensiones de Joomla: iCagenda y Balbooa Forms Descripción General de las Vulnerabilidades Informes recientes de la Agencia de Seguridad Cibernética e Infraestructura de EE. UU. (CISA) han despertado alarmas dentro de la comunidad de ciberseguridad acerca de dos vulnerabilidades graves que afectan a las populares extensiones de Joomla:…
Critical Zero-Day Exploits Discovered in Joomla Extensions: iCagenda and Balbooa Forms Overview of the Vulnerabilities Recent reports by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) have raised alarm within the cybersecurity community regarding two severe vulnerabilities affecting popular Joomla extensions: iCagenda and Balbooa Forms. Both vulnerabilities, identified with a maximum severity rating of 10.0…