Skip to content

Segurança Informática

Tópicos atuais sobre segurança da informação. A segurança informática é da responsabilidade de todos.

  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
Segurança Informática
  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author
computer security, segurancainformatica

Exploring Information Leakage in the Cloud Infrastructure

Posted on 6 Outubro, 201629 Janeiro, 2018

Introdução / Introduction A Cloud apresenta-se como uma nova tendência e a virtualização por sua vez é amplamente usada neste tipo de paradigma. Hoje em…

computer security, Hacking, segurancainformatica

A bridge to the (in)security

Posted on 24 Setembro, 201629 Janeiro, 2018

Introdução / Introduction Atualmente existem programas de computador para aquela tarefa mais específica. Estamos numa era em que a oferta de software na Internet é gigante, no entanto…

computer security, segurancainformatica

Web Traffic Generator and Anomaly Detection based on Machine Learning

Posted on 20 Janeiro, 201629 Janeiro, 2018

Introdução Atuamente é comum falar-se em tráfego web malicioso, botnets, C&C Servers, APIs maliciosas na Cloud, aplicações vulneráveis, malware, bom, extingue-se o sol e não…

computer security, Hacking, segurancainformatica, tutorials

Advanced Topics in SQLi

Posted on 16 Julho, 201529 Janeiro, 2018

Introdução / Introduction Atualmente vivemos num mundo onde a globalização se tornou indiscutivelmente a chave de ouro. A tecnologia encontra-se disponível cada vez mais em…

computer security, Hacking, segurancainformatica, tutorials

Building a Massive XSS Scanner Tool

Posted on 17 Junho, 201529 Janeiro, 2018

Sumário / Summary Este artigo apresenta algumas linhas relativas a ataques do tipo Cross-site Scripting (XSS). Este é um ataque bastante severo e bem presente…

segurancainformatica

Essentials on Automation Tests

Posted on 31 Maio, 201529 Janeiro, 2018

  Introdução / Introduction Hoje em dia são enumeras as empresas a acoplar muito do seu esforço numa abordagem mais faseada e efetiva no contexto…

computer security

Understanding /etc/shadow file and brute-force dictionary attack

Posted on 18 Abril, 201513 Fevereiro, 2022

Sumário / Summary O presente artigo oferece ao leitor uma breve explicação sobre os ficheiros “/etc/passwd” e “/etc/shadow” dos sistemas UNIX. É, também, apresentado um…

computer security, reverse engineering, segurancainformatica

Top de palavras-passe portuguesas

Posted on 1 Março, 201519 Fevereiro, 2018

O propósito deste artigo não é o estimulo dos(as) leitores(as), mas sim alertar para um assunto sobejamente importante no mundo da tecnologia: “a minha palavra-passe…

computer security, segurancainformatica

[Patch] – Revolution Slider (revslider) LFI vulnerability without update

Posted on 21 Fevereiro, 201529 Janeiro, 2018

Em dezembro de 2014 milhares de páginas baseadas no WordPress foram alvo de ataques informáticos. O problema resume-se a uma vulnerabilidade do tipo Local File…

computer security, Data Breach, Hacking, segurancainformatica, tutorials

ShellShock

Posted on 31 Janeiro, 201529 Janeiro, 2018

Tutorial ShellShock () { :; } ;   O autor deste documento entende que este tutorial serve apenas para demonstrar a exploração da vulnerabilidade ShellShock…

segurancainformatica

B0t – Travian

Posted on 31 Janeiro, 201529 Janeiro, 2018

Hoje em dia existem determinados bots a operar diretamente via navegador de Internet, especialmente plugins para o Mozilla Firefox, que gerem de forma automatizada a…

computer security, Hacking, segurancainformatica

A bíblia do Cross-site Scripting (XSS)

Posted on 26 Julho, 201413 Fevereiro, 2022

Nos dias que correm, Cross-site Scripting (XSS, facilmente confundido com CSS) é dos ataques mais preocupantes e perigosos. Uma vulnerabilidade XSS quando explorada por um…

computer security, segurancainformatica

Palavras-passe e Honey Words

Posted on 19 Julho, 201429 Janeiro, 2018

Nos dias que correm, processos e mecanismos para brute-force de palavras-passe são empregados sobejamente por profissionais de segurança e fulanos mal-intencionados (definidos como “atacantes” ao…

computer security, segurancainformatica, tutorials

Conhecendo o Nmap

Posted on 20 Junho, 201413 Fevereiro, 2022

O Nmap (“Network Mapper”) é uma ferramenta de código aberto para análise de rede e auditoria de segurança. Ela foi desenhada para varrer de forma…

computer security, Hacking, segurancainformatica

Conhecendo e Explorando o Bug HeartBleed

Posted on 17 Maio, 201413 Fevereiro, 2022

Caríssimos leitores, No dia 1 de Abril de 2014, foi comunicado à equipa de segurança do OpenSSL um bug no recurso denominado Heartbeat. Este foi…

computer security

Auditoria de Malware

Posted on 9 Maio, 201427 Setembro, 2016

Versão atual: Beta 1.0 Auditoria de Malware é uma ferramenta disponibilizada gratuitamente pela comunidade seguranca-informatica.pt. Esta permanece ainda na sua fase embrionária, e permite efetuar…

Paginação dos conteúdos

← 1 … 62 63 64 65 66 →

Search in blog

    Author – Founder

    pedro tavares

    Pedro Tavares is a professional in the field of information security, Head of Offensive Unit of ArtResilia firm and also working as an Ethical Hacker/Pentester, Malware Researcher and a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt.

    In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting, malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. He also launched his GitBook, where he publishes some of his notes entirely online, and took his first steps in podcasting by launching the podcast 'Manhãs em Cibersegurança,' in the Portuguese language."

    Read more here.

    Newsletter

    #0xSI_f33d

    The Portuguese Abuse Open Feed

    si_f33d
    @ VirusTotal offical ingestor

    Add a new phishing / malware campaing into 0xSI_f33d

    Podcast “Manhãs em Cibersegurança”

    Infographic – Threat Report Portugal Q3 & Q4 2022

    si_f33d

    Download [PDF] or [PNG]

    Taking the bait: The modus operandi of massive social engineering waves impacting banks in Portugal

    clickthebait

    The new maxtrilha trojan is being disseminated and targeting several banks

    maxtrilha

    The clandestine Horus Eyes RAT: From the underground to criminals’ arsenal

    qbot

    A taste of the latest release of QakBot

    qbot

    Javali trojan weaponizing Avira antivirus legitimate injector

    javali

    Anubis Network – The evolution of the Phishing schema

    anubis

    Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader

    ursa

    In-depth analysis of a trojan banker impacting Portugal and Brazil

    trojan_portugal_and_Brazil

    Grandoreiro malware May 2020 – Portugal

    The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks

    grandoreiro_portugal_2020

    Brazilian trojan banker is targeting Portuguese users using browser overlay

    predictions

    Trojan Lampion – Portugal

    predictions

    New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloader

    lampion

    Banking Phishing Portugal

    Banking Phishing | Targets Portugal, Spain, Brazil and Chile | From Brazil | Infection process

    Categories

    • APT
    • computer security
    • Cryptocurrency
    • Cryptography
    • Cybercrime
    • darkweb
    • Data Breach
    • Digital Identity
    • Distributed Ledger
    • GDPR
    • Hacking
    • Internet of Things
    • Laws and Regulations
    • Malware
    • Malware and Phishing Analysis
    • Manhãs em Cibersegurança
    • Mobile
    • newsletter
    • Phishing
    • ransomware
    • Reports
    • reverse engineering
    • segurancainformatica
    • Threat Report Portugal
    • tutorials
    • vulnerability

    Social Networks

    youtube_logo



               

    Segurança-Informática

    Partners / Sponsors

    trignosfera

    Tell Us About New Scams Here

    scam

    Support my work

    buymeacoffee



    license

    This work is licensed under a Creative Commons Attribution 4.0 International License. If you have queries about republishing, contact me. Check individual posts and images for licensing details.

    © 2026 Segurança Informática / Powered by WordPress / Theme by Design Lab
    • Research
    • Malware and Phishing Analysis
    • Scam Alerts
    • youtube_mini_logo Youtube
    • youtube_mini_logo 0xSI_f33d
    • Author
    • TERMS AND PRIVACY