Nuevo esquema de phishing explota la inscripción de claves de acceso de Microsoft Entra para comprometer cuentas de Microsoft 365

Nuevo esquema de phishing explota la inscripción de claves de acceso de Microsoft Entra para comprometer cuentas de Microsoft 365 Descripción General del Ataque Ha surgido una nueva campaña de phishing sofisticada, que apunta a organizaciones de diversos sectores con solicitudes de seguridad fraudulentas que engañan a los usuarios de Microsoft 365 para inscribir nuevas…

New Phishing Scheme Exploits Microsoft Entra Passkey Enrollment to Compromise Microsoft 365 Accounts

New Phishing Scheme Exploits Microsoft Entra Passkey Enrollment to Compromise Microsoft 365 Accounts Overview of the Attack A sophisticated new phishing campaign has emerged, targeting organizations across various sectors with fraudulent security requests that deceive Microsoft 365 users into enrolling new Entra passkeys. This tactic, used by a group of threat actors identified as O-UNC-066…

CISA Strengthens Cybersecurity Posture Following Major Credential Leak

CISA Strengthens Cybersecurity Posture Following Major Credential Leak

CISA Strengthens Cybersecurity Posture Following Major Credential Leak Background and Context The Cybersecurity and Infrastructure Security Agency (CISA) has recently come under intense scrutiny following a significant credential leak that occurred in May 2023. This incident, characterized by the exposure of privileged Amazon AWS GovCloud Keys, was labeled as one of the most severe breaches…

Microsoft aborda la crítica vulnerabilidad RoguePlanet en Defender con una actualización de seguridad urgente

Microsoft aborda la crítica vulnerabilidad RoguePlanet en Defender con una actualización de seguridad urgente Descripción general de la vulnerabilidad RoguePlanet Microsoft ha lanzado recientemente una actualización de seguridad significativa en respuesta a una vulnerabilidad crítica en su software antivirus Microsoft Defender, denominada RoguePlanet. La falla, rastreada como CVE-2026-50656, se divulgó al público casi un mes…

Microsoft Addresses Critical RoguePlanet Vulnerability in Defender with Urgent Security Update

Microsoft Addresses Critical RoguePlanet Vulnerability in Defender with Urgent Security Update Overview of the RoguePlanet Vulnerability Microsoft has recently rolled out a significant security update in response to a critical vulnerability in its Microsoft Defender antivirus software, termed RoguePlanet. The flaw, tracked as CVE-2026-50656, was disclosed to the public nearly a month prior to the…

Latvian Forestry Company Struggles to Recover from Ransomware Attack

Latvian Forestry Company Struggles to Recover from Ransomware Attack

Latvian Forestry Company Struggles to Recover from Ransomware Attack Background and Context The recent ransomware attack on Latvijas Valsts Mezi (LVM), a state-owned forestry company in Latvia, has sent shockwaves through the nation’s cybersecurity landscape. This incident underscores a troubling trend where state-owned enterprises, often perceived as less vulnerable due to their public sector backing,…

The Evolution of Account Takeover: Verification Steps and the Rise of Passkeys in 2026

The Evolution of Account Takeover: Verification Steps and the Rise of Passkeys in 2026 The Changing Landscape of Account Takeover (ATO) Account takeover (ATO) has long been a persistent issue for both users and organizations. Traditionally, attackers would utilize credential stuffing, leveraging bulk buying of stolen login information from data breaches. Automation tools made it…

Unpatched Backdoor in Tenda Firmware Exposes Devices to Unauthenticated Access

Unpatched Backdoor in Tenda Firmware Exposes Devices to Unauthenticated Access

Unpatched Backdoor in Tenda Firmware Exposes Devices to Unauthenticated Access Background and Context The discovery of a serious vulnerability in Tenda firmware, tracked as CVE-2026-11405, has raised alarm bells within the cybersecurity community. This unpatched backdoor allows unauthenticated attackers to gain access to the web management interface of affected devices, effectively granting them full administrative…

Cómo los ID de dispositivos de Windows son clave para rastrear a los cibercriminales: El caso de Peter Stokes

Cómo los ID de dispositivos de Windows son clave para rastrear a los cibercriminales: El caso de Peter Stokes Introducción al caso En un desarrollo significativo en el ámbito de las investigaciones sobre cibercrimen, los fiscales estadounidenses han utilizado un ID de dispositivo de Windows persistente para conectar al joven de 19 años Peter Stokes…