Skip to content

Segurança Informática

Tópicos atuais sobre segurança da informação. A segurança informática é da responsabilidade de todos.

  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
Segurança Informática
  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
computer security, vulnerability

Google revela, pela segunda vez numa única semana, outra vulnerabilidade no Windows 10

Posted on 21 Fevereiro, 2018
Microsoft-patch-tuesday-end

Mais uma vez, e pela segunda vez numa única semana, e depois dos 90 dias passados e definidos para resolução de problemas de segurança, o Google Project Zero revela outra vulnerabilidade crítica e não corrigida no Windows 10.

computer security, vulnerability

Execução remota de código no uTorrent

Posted on 21 Fevereiro, 201821 Fevereiro, 2018

De acordo com o Google Project Zero, foram identificadas várias vulnerabilidades no uTorrent, incluindo a execução remota de código. O uTorrent é um cliente BitTorrent com mais de 100 milhões de utilizadores ativos.

Malware, vulnerability

Windows 10 null character flaw keeps malware hidden

Posted on 20 Fevereiro, 201820 Fevereiro, 2018
null-character-bug-lets-malware-bypass-windows-10-anti-malware-scan-interface-945x344

A critical flaw in Windows 10 anti-malware scan interface has been discussed. It allows bypass malware code when a null character is read. The February Windows 10 security patch fixes the exploit and should be installed immediately.

Cryptocurrency, Malware

Tesla vítima de crypto-jacking

Posted on 20 Fevereiro, 201820 Fevereiro, 2018
arq-tecnica

A companhia de segurança RedLock, reportou na terça-feira, que os hackers tiveram acesso a informações sensíveis da Cloud da Tesla, e isso permitiu-lhes usar poder de processamento para minerar criptomoedas.

computer security, vulnerability

Novo remendo para vulnerabilidades no RubyGems

Posted on 20 Fevereiro, 2018
maxresdefault

Uma atualização do RubyGems, lançada na semana passada,  remenda vários problemas de segurança e corrige também vários tipos de vulnerabilidades.

computer security, Cryptography

Ligações HTTP irão ser marcadas como not secure

Posted on 19 Fevereiro, 201819 Fevereiro, 2018
google-set-to-name-shame-sites-lacking-https-showcase_image-8-p-2592

O Google vai classificar as ligações “não seguras — tráfego HTTP” como not secure dentro de 5 meses.

computer security, Hacking

Um grupo de hackers faz $3.4 milhoes ao instalarem cryptominers no Jenkins

Posted on 18 Fevereiro, 201819 Fevereiro, 2018
jenkins-open-source-automation-server

Uma organização criminosa ganhou $ 3,4 milhões comprometendo servidores Jenkins e usando um cryptominer para o Monero chamado de JenkinsMiner.

computer security, newsletter

Newsletter, 11-17 February

Posted on 18 Fevereiro, 2018
newsletter

Russian Central Bank comprometido – $31 milhões foram roubados É um facto que, o crescimento de ICOs é diretamente proporcional ao número de fraudes de…

computer security, Hacking

Russian Central Bank comprometido – $31 milhões foram roubados

Posted on 16 Fevereiro, 2018
russian-central-bank-hacked-31-mil-gone

É um facto que, o crescimento de ICOs é diretamente proporcional ao número de fraudes de dinheiro virtual nos dias que correm. Desta vez foi o Banco Central da Russia, que em 2017 sofreu uma fraude de 339.5 de rubles via a rede SWIFT

computer security, vulnerability

Dell EMC addressed two critical vulnerabilities that affect its VMAX enterprise storage systems

Posted on 16 Fevereiro, 2018
dell

The first flaw identified as CVE-2018-1215 is an arbitrary file upload vulnerability that could be exploited by a remote authenticated attacker.  The attacker can upload arbitrary maliciously…

computer security, Mobile

Apple iPhone, iPad ou Mac pode crashar com apenas uma mensagem

Posted on 16 Fevereiro, 201816 Fevereiro, 2018
iphone-crach-telugu-character

Com apenas um carater é possível bloquear um iPhone e negar o acesso à aplicação de mensagens do smartphone. Isto impacta também outras aplicações, como é o caso do WhatsApp, Facebook Messenger, Outlook para iOS e Gmail.

Hacking, Malware, vulnerability

Apache CouchDB estende passadeira ao crypto-jacking

Posted on 15 Fevereiro, 201815 Fevereiro, 2018
CouchDB-1

Criptomoedas estão na moda. Com isso, os ataques para mineração ilicita de moedas digitais também tem aumentado descontroladamente — estamos na era do crypto-jacking. A…

computer security, Hacking, Malware

Crypto-jacking continua a ter um forte impacto nas organizações

Posted on 15 Fevereiro, 201815 Fevereiro, 2018
Bitcoin-theft-1

Crypto-jacking continua a ter um forte impacto nas organizações a nível global. Este malware de criptomoedas tem sido avaçalador em 2018. De acordo com um relatório da Check Point’s, as variantes do Coinhive afetaram 23% das organizações durante o mês de janeiro de 2018.

computer security

Meltdown and Spectre detector in Windows Analytics

Posted on 14 Fevereiro, 201815 Fevereiro, 2018
1515528281_spectremeltdownms_story

These are good news for Windows administrators, Microsoft has added a Meltdown and Spectre detector to its telemetry analysis tool Windows Analytics

Hacking, vulnerability

Hackers usam a vulnerabilidade zero-day do ‘Bitmessage’ para roubar carteiras Bitcoin

Posted on 14 Fevereiro, 201814 Fevereiro, 2018
bitmessage-bitcoin-hacking

Os developers do Bitmessage deixaram um alerta sobre uma vulnerabilidade crítica, uma zero-day-vulnerability, que permite a execução de código remoto na aplicação PyBitmessage, e que estava a ser explorada massivamente pelos hackers.

computer security, vulnerability

Microsoft disponibiliza patch com 14 vulnerabilidades críticas

Posted on 14 Fevereiro, 2018
Microsoft-Valentines-Day

É dia dos namorados, e a gigante Microsoft lançou a atualização mensal de segurança para fevereiro de 2018, relatandono CVE um total de 50 vulnerabilidades nos seus sistemas, Microsoft Windiws, Microsoft Office, web-browsers e outros produtos.

Paginação dos conteúdos

← 1 … 56 57 58 59 60 … 66 →

Search in blog

    Author – Founder

    pedro tavares

    Pedro Tavares is a professional in the field of information security, Head of Offensive Unit of ArtResilia firm and also working as an Ethical Hacker/Pentester, Malware Researcher and a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt.

    In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting, malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. He also launched his GitBook, where he publishes some of his notes entirely online, and took his first steps in podcasting by launching the podcast 'Manhãs em Cibersegurança,' in the Portuguese language."

    Read more here.

    Newsletter

    #0xSI_f33d

    The Portuguese Abuse Open Feed

    si_f33d
    @ VirusTotal offical ingestor

    Add a new phishing / malware campaing into 0xSI_f33d

    Podcast “Manhãs em Cibersegurança”

    Infographic – Threat Report Portugal Q3 & Q4 2022

    si_f33d

    Download [PDF] or [PNG]

    Taking the bait: The modus operandi of massive social engineering waves impacting banks in Portugal

    clickthebait

    The new maxtrilha trojan is being disseminated and targeting several banks

    maxtrilha

    The clandestine Horus Eyes RAT: From the underground to criminals’ arsenal

    qbot

    A taste of the latest release of QakBot

    qbot

    Javali trojan weaponizing Avira antivirus legitimate injector

    javali

    Anubis Network – The evolution of the Phishing schema

    anubis

    Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader

    ursa

    In-depth analysis of a trojan banker impacting Portugal and Brazil

    trojan_portugal_and_Brazil

    Grandoreiro malware May 2020 – Portugal

    The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks

    grandoreiro_portugal_2020

    Brazilian trojan banker is targeting Portuguese users using browser overlay

    predictions

    Trojan Lampion – Portugal

    predictions

    New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloader

    lampion

    Banking Phishing Portugal

    Banking Phishing | Targets Portugal, Spain, Brazil and Chile | From Brazil | Infection process

    Categories

    • APT
    • computer security
    • Cryptocurrency
    • Cryptography
    • Cybercrime
    • darkweb
    • Data Breach
    • Digital Identity
    • Distributed Ledger
    • GDPR
    • Hacking
    • Internet of Things
    • Laws and Regulations
    • Malware
    • Malware and Phishing Analysis
    • Manhãs em Cibersegurança
    • Mobile
    • newsletter
    • Phishing
    • ransomware
    • Reports
    • reverse engineering
    • segurancainformatica
    • Threat Report Portugal
    • tutorials
    • vulnerability

    Social Networks

    youtube_logo



               

    Segurança-Informática

    Partners / Sponsors

    trignosfera

    Tell Us About New Scams Here

    scam

    Support my work

    buymeacoffee



    license

    This work is licensed under a Creative Commons Attribution 4.0 International License. If you have queries about republishing, contact me. Check individual posts and images for licensing details.

    © 2026 Segurança Informática / Powered by WordPress / Theme by Design Lab
    • Research
    • Malware and Phishing Analysis
    • Scam Alerts
    • youtube_mini_logo Youtube
    • youtube_mini_logo 0xSI_f33d
    • Author
    • TERMS AND PRIVACY