Skip to content
Segurança Informática

Segurança Informática

Tópicos atuais sobre segurança da informação. A segurança informática é da responsabilidade de todos.

logotipo


  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author

Categoria: Hacking

computer security, Data Breach, Hacking, Malware

Keylogger campaign infects 2,000 WordPress sites

29 Janeiro, 2018
WP-keylogger

2,000 WordPress sites (possibly more) are infected with a keylogger that’s being loaded on the WordPress backend login page and a crypto jacking script (in-browser cryptocurrency miner) on their frontends.

Cryptocurrency, Data Breach, Hacking

The biggest hack in the cryptocurrency history! $534 Million stolen

27 Janeiro, 2018
468d5bd1-coincheck-www

This time Coincheck, Japanese cryptocurrency exchange has been hacked and lost $534 million in NEM tokens.

computer security, Data Breach, Hacking

Bell Canada – Leaked 100.000 individuals records

24 Janeiro, 2018
bell canada

Bell Canada has been compromised in a breach that reportedly affects up to 100.000 individuals. It was communicated to customers, that their names and personal emails were accessed in a malicious campaign.

computer security, Hacking, Malware

Monero crypto miner leveraging Apache Struts vulnerability

24 Janeiro, 2018
monero-miner-virus-image_pt

Cryptocurrency miners have begun using two older and already patched vulnerabilities to compromise servers to mine the Monero digital currency.

computer security, Hacking, Internet of Things, Malware

New botnet approach infects cryptocurrency replacing wallet address

24 Janeiro, 2018
Satori

After gaining control of the coin-mining software, Satori bot replaces the victim wallet address with the malicious address. In this way, the computer mining currency through the address controlled by the attacker.

computer security, Hacking, Malware

Critical Flaw in All Blizzard Games

23 Janeiro, 2018
dns-rebinding-attack-hacking-exploit

A Google security researcher has discovered a severe vulnerability in Blizzard games, played every month by half a billion users—World of Warcraft, Overwatch, Diablo III, Hearthstone and Starcraft II.

Data Breach, Hacking, Mobile, reverse engineering

Sonic apps in the Google Play published by SEGA leak users’ data

23 Janeiro, 2018

Android apps such as Sonic Dash, Sonic the Hedgehog™ Classic, and Sonic Dash 2: Sonic Boom, that have been totally downloaded millions of times are compromising user’s date.

computer security, Distributed Ledger, Hacking, Malware, segurancainformatica

Crypto-jacking via ARP Poisoning Attack on Wi-Fi Networks

12 Janeiro, 2018
crypto-miner-arp-poisoning

Hackers are using more sophisticated techniques to mine cryptocurrency in an unauthorized manner. They currently using ARP Poisoning to inject malicious code into all web requests on a Wi-Fi network.

computer security, Distributed Ledger, Hacking, segurancainformatica

Hackers are attacking Portuguese websites with crypto-jacking. Are you safe?

8 Janeiro, 2018
dinheirovivo

Crypto jacking detected in Portuguese website. This article refers that Portuguese websites are using this type of resources to mine the cryptocurrency Monero. One of the cases already detected was Dinheiro Vivo, a very well-known Portuguese news website.

Hacking, Malware, segurancainformatica

Attention, chrome extensions are mining cryptocurrency

3 Janeiro, 2018
Archive_poster

Archive Poster Malware – The Chrome store claims that the extension affects 105,000 users, and presumably everyone is mining coins in their computer through this extension running in background.

computer security, Data Breach, Hacking, segurancainformatica

Vulnerabilidades Web em 2017

29 Dezembro, 2017
OWASP-1-1024x512

Top de vulnerabilidades em 2017. Vulnerabilidades do tipo XSS e injeção continuam no TOP 10 da OWASP (2017). Vulnerabilidades na IoT continuam a crescer descontroladamente. PHP e o Wordpress continnuam a liderar a lista de vulnerabilidades nos CMS. Desastres da blockchain e previsões para 2018.

computer security, Hacking, Malware, segurancainformatica

Vetor de ataque vs. payload

4 Julho, 2017
payload vs vetor de ataque

As palavras “vetor de ataque” e “payload” (carga) têm dois significados bastante distintos dentro do contexto da segurança da informação embora por vezes persista alguma…

Hacking, Malware and Phishing Analysis, reverse engineering, segurancainformatica

Phishing – Banque Populaire

31 Janeiro, 2017

Hoje em dia as empresas migraram parte da informação e infraestrutura para a Cloud. Quando se fala neste tema, fala-se p.ex, em documentação, sistemas, plataformas, infraestruturas, nomeadamente os…

computer security, Hacking, segurancainformatica

A bridge to the (in)security

24 Setembro, 2016

Introdução / Introduction Atualmente existem programas de computador para aquela tarefa mais específica. Estamos numa era em que a oferta de software na Internet é gigante, no entanto…

computer security, Hacking, segurancainformatica, tutorials

Advanced Topics in SQLi

16 Julho, 2015

Introdução / Introduction Atualmente vivemos num mundo onde a globalização se tornou indiscutivelmente a chave de ouro. A tecnologia encontra-se disponível cada vez mais em…

computer security, Hacking, segurancainformatica, tutorials

Building a Massive XSS Scanner Tool

17 Junho, 2015

Sumário / Summary Este artigo apresenta algumas linhas relativas a ataques do tipo Cross-site Scripting (XSS). Este é um ataque bastante severo e bem presente…

Paginação dos conteúdos

← 1 … 17 18 19 20 →

Search in blog

    Author – Founder

    pedro tavares

    Pedro Tavares is a professional in the field of information security, Head of Offensive Unit of ArtResilia firm and also working as an Ethical Hacker/Pentester, Malware Researcher and a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt.

    In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting, malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. He also launched his GitBook, where he publishes some of his notes entirely online, and took his first steps in podcasting by launching the podcast 'Manhãs em Cibersegurança,' in the Portuguese language."

    Read more here.

    Newsletter

    #0xSI_f33d

    The Portuguese Abuse Open Feed

    si_f33d
    @ VirusTotal offical ingestor

    Add a new phishing / malware campaing into 0xSI_f33d

    Podcast “Manhãs em Cibersegurança”

    Infographic – Threat Report Portugal Q3 & Q4 2022

    si_f33d

    Download [PDF] or [PNG]

    Taking the bait: The modus operandi of massive social engineering waves impacting banks in Portugal

    clickthebait

    The new maxtrilha trojan is being disseminated and targeting several banks

    maxtrilha

    The clandestine Horus Eyes RAT: From the underground to criminals’ arsenal

    qbot

    A taste of the latest release of QakBot

    qbot

    Javali trojan weaponizing Avira antivirus legitimate injector

    javali

    Anubis Network – The evolution of the Phishing schema

    anubis

    Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader

    ursa

    In-depth analysis of a trojan banker impacting Portugal and Brazil

    trojan_portugal_and_Brazil

    Grandoreiro malware May 2020 – Portugal

    The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks

    grandoreiro_portugal_2020

    Brazilian trojan banker is targeting Portuguese users using browser overlay

    predictions

    Trojan Lampion – Portugal

    predictions

    New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloader

    lampion

    Banking Phishing Portugal

    Banking Phishing | Targets Portugal, Spain, Brazil and Chile | From Brazil | Infection process

    Categories

    • APT
    • computer security
    • Cryptocurrency
    • Cryptography
    • Cybercrime
    • darkweb
    • Data Breach
    • Digital Identity
    • Distributed Ledger
    • GDPR
    • Hacking
    • Internet of Things
    • Laws and Regulations
    • Malware
    • Malware and Phishing Analysis
    • Manhãs em Cibersegurança
    • Mobile
    • newsletter
    • Phishing
    • ransomware
    • Reports
    • reverse engineering
    • segurancainformatica
    • Threat Report Portugal
    • tutorials
    • vulnerability

    Social Networks

    youtube_logo



          

    Segurança-Informática

    Partners / Sponsors

    trignosfera

    Tell Us About New Scams Here

    scam

    Support my work

    buymeacoffee



    license

    This work is licensed under a Creative Commons Attribution 4.0 International License. If you have queries about republishing, contact me. Check individual posts and images for licensing details.

    © 2026 Segurança Informática
    • Research
    • Malware and Phishing Analysis
    • Scam Alerts
    • youtube_mini_logo Youtube
    • youtube_mini_logo 0xSI_f33d
    • Author
    • TERMS AND PRIVACY

    By continuing to use the site, you agree to the use of cookies. more information

    The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.

    Please, see the TERMS AND PRIVACY here!

    Close