Skip to content

Segurança Informática

Tópicos atuais sobre segurança da informação. A segurança informática é da responsabilidade de todos.

  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
Segurança Informática
  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
computer security, Cryptography

Metadados dos certificados X.509 podem transportar informações através da firewall

Posted on 6 Fevereiro, 2018
maxresdefault

Um investigador de seguraça, que no ano passado demonstrou que as trocas de certificados X.509 poderiam transportar tráfego malicioso publicou agora uma prova de conceito…

computer security, Cryptography

O código secreto do rei espanhol Fernando de Aragão foi decifrado 500 anos depois

Posted on 6 Fevereiro, 2018
catolico--644x362

Nas suas cartas mais secretas, o rei católico expressou fortemente o seu desacordo com algumas decisões do grande capitão durante a campanha de Nápoles, na…

computer security, Data Breach, vulnerability

A extensão Grammarly expõe praticamente tudo o que o utilizador escreve

Posted on 5 Fevereiro, 201819 Fevereiro, 2018
grammarly

De acordo com um relatório de Tavis Ormandy da equipa da Google Project Zero, a extensão Grammarly, usada por quase 22 milhões de utilizadores, expõem os tokens de autenticação permitindo que qualquer atacante possar aceder aos dados da vítima sem o seu prévio consentimento.

computer security, Hacking, vulnerability

Vulnerabilidade que permite explorar DoS no WordPress

Posted on 5 Fevereiro, 20185 Fevereiro, 2018
wp-featured

Um especialista de segurança de Israel explicou que a falha CVE-2018-6389 é um DoS ao nível aplicacional e que afeta o CMS WordPress  e que poderia ser explorado por um atacante sem a necessidade de uma grande quantidade de tráfego malicioso.

computer security, newsletter

Newsletter, 29-04 February

Posted on 4 Fevereiro, 2018
newsletter

Ransomware-as-a-service russo denominado GandCrab na darkweb Especialistas da empresa de segurança LMNTRIX descobriram um novo serviço de ransomware na darkweb denominado como GandCrab.   Roubados…

computer security, darkweb, Hacking, Malware

Ransomware-as-a-service russo denominado GandCrab na darkweb

Posted on 4 Fevereiro, 20184 Fevereiro, 2018
GandCrab-ransomware

Especialistas da empresa de segurança LMNTRIX descobriram um novo serviço de ransomware na darkweb denominado como GandCrab.

Hacking, Malware, Phishing

Roubados 100s de ETH através de uma campanha de phishing

Posted on 4 Fevereiro, 20184 Fevereiro, 2018
bee-ICO-token-phishing-1024x775-2

Outro dia, outro roube de ICOs, centenas de utilizadores foram vítima de mais uma campanha maliciosa. As vítimas foram enganadas pelos atacantes para enviar mais de US $ 1 milhão de Ethereum para eles como através da Bee Token ICO (Initial Coin Offering).

computer security, Cryptocurrency, Data Breach, Hacking

Japan’s Financial Services Agency invadiu a sede da Coincheck em Tóquio após o hack

Posted on 4 Fevereiro, 20184 Fevereiro, 2018
coindesk-bpi-chart

Uma semana após o data breach da moeda virtual Coincheck, as autoridades japonesas invadiram a empresa. Os hackers roubaram 58 bilhões de yen (US $ 530 milhões), uma quantidade de dinheiro maior que o valor de bitcoins que desapareceram da MtGox em 2014.

computer security, Hacking, vulnerability

Vulnerabilidades críticas no Tinder

Posted on 4 Fevereiro, 20184 Fevereiro, 2018
Tinder-app-693564

A Checkmarx relatou duas vulnerabilidades críticas na aplicação móvel Tinder, e que permite que os hackers tenham acesso às iterações dos utilizadores sem o seu consentimento.

computer security, Hacking, vulnerability

139 variantes de malware que exploram o Meltdown e Spectre

Posted on 3 Fevereiro, 20183 Fevereiro, 2018
139-malware-samples-identified-that-exploit-meltdown-spectre-flaws-2-768x521

Os hackers podem estar perto de desenvolver malware que explora falhas, sugere uma empresa de segurança alemã.

computer security, Cryptocurrency

Bitcoin e a sua queda desastrosa

Posted on 2 Fevereiro, 20182 Fevereiro, 2018
market-price

A criptomoeda Bitcoin caiu 30% esta semana,  a pior semana desde abril de 2013.

computer security, Hacking, Malware

Os websites pornográficos são uma mina de ouro para os hackers

Posted on 2 Fevereiro, 2018
180201-hackers-porn-sites-03

A pornografia está a ser usada como isca para um largo número de fraudes projetadas para roubar dinheiro e informações privadas.

computer security, Digital Identity, GDPR, Laws and Regulations, segurancainformatica

O RGPD como uma janela de oportunidade maliciosa

Posted on 2 Fevereiro, 20182 Fevereiro, 2018
perigodorgpd

O Regulamento Geral de Proteção de Dados (RGPD) representa uma alteração radical naquilo que são os atuais procedimentos das organizações. Poderão os atacantes tirar partido de uma campanha maliciosa de fuga de informação exigindo um pagamento pelo resgate dos dados.

computer security, Distributed Ledger, Internet of Things

A NASA e a blockchain

Posted on 2 Fevereiro, 20182 Fevereiro, 2018
NASA.width-800

Sendo os ledgers distribuídos uma tecnologia emergente nos diversos setores de IT, é sem grande surpresa que também a NASA está a ponderar usar a tecnologia nas suas aplicações.

computer security, Hacking, Malware, vulnerability

Adobe remenda zero-day-vulnerability no Flash

Posted on 2 Fevereiro, 20182 Fevereiro, 2018
flash-Player-zero-day-vulnerability

Uma falha identificada e desconhecida no Adobe Flash está a ser explorada em ataques direcionados a vítimas da Coréia do Sul e será corrigida na semana de 5 de fevereiro.

Cryptocurrency, Hacking, vulnerability

A huge botnet doing Windows servers to mine cryptocurrency

Posted on 1 Fevereiro, 20182 Fevereiro, 2018
microsoft-server-monero

Smominru miner has contaminated at least half a million machine, frequently consisting of Windows servers, and spreads via the EternalBlue exploit.

Paginação dos conteúdos

← 1 … 58 59 60 61 62 … 66 →

Search in blog

    Author – Founder

    pedro tavares

    Pedro Tavares is a professional in the field of information security, Head of Offensive Unit of ArtResilia firm and also working as an Ethical Hacker/Pentester, Malware Researcher and a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt.

    In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting, malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. He also launched his GitBook, where he publishes some of his notes entirely online, and took his first steps in podcasting by launching the podcast 'Manhãs em Cibersegurança,' in the Portuguese language."

    Read more here.

    Newsletter

    #0xSI_f33d

    The Portuguese Abuse Open Feed

    si_f33d
    @ VirusTotal offical ingestor

    Add a new phishing / malware campaing into 0xSI_f33d

    Podcast “Manhãs em Cibersegurança”

    Infographic – Threat Report Portugal Q3 & Q4 2022

    si_f33d

    Download [PDF] or [PNG]

    Taking the bait: The modus operandi of massive social engineering waves impacting banks in Portugal

    clickthebait

    The new maxtrilha trojan is being disseminated and targeting several banks

    maxtrilha

    The clandestine Horus Eyes RAT: From the underground to criminals’ arsenal

    qbot

    A taste of the latest release of QakBot

    qbot

    Javali trojan weaponizing Avira antivirus legitimate injector

    javali

    Anubis Network – The evolution of the Phishing schema

    anubis

    Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader

    ursa

    In-depth analysis of a trojan banker impacting Portugal and Brazil

    trojan_portugal_and_Brazil

    Grandoreiro malware May 2020 – Portugal

    The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks

    grandoreiro_portugal_2020

    Brazilian trojan banker is targeting Portuguese users using browser overlay

    predictions

    Trojan Lampion – Portugal

    predictions

    New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloader

    lampion

    Banking Phishing Portugal

    Banking Phishing | Targets Portugal, Spain, Brazil and Chile | From Brazil | Infection process

    Categories

    • APT
    • computer security
    • Cryptocurrency
    • Cryptography
    • Cybercrime
    • darkweb
    • Data Breach
    • Digital Identity
    • Distributed Ledger
    • GDPR
    • Hacking
    • Internet of Things
    • Laws and Regulations
    • Malware
    • Malware and Phishing Analysis
    • Manhãs em Cibersegurança
    • Mobile
    • newsletter
    • Phishing
    • ransomware
    • Reports
    • reverse engineering
    • segurancainformatica
    • Threat Report Portugal
    • tutorials
    • vulnerability

    Social Networks

    youtube_logo



               

    Segurança-Informática

    Partners / Sponsors

    trignosfera

    Tell Us About New Scams Here

    scam

    Support my work

    buymeacoffee



    license

    This work is licensed under a Creative Commons Attribution 4.0 International License. If you have queries about republishing, contact me. Check individual posts and images for licensing details.

    © 2026 Segurança Informática / Powered by WordPress / Theme by Design Lab
    • Research
    • Malware and Phishing Analysis
    • Scam Alerts
    • youtube_mini_logo Youtube
    • youtube_mini_logo 0xSI_f33d
    • Author
    • TERMS AND PRIVACY