Skip to content
Segurança Informática

Segurança Informática

Tópicos atuais sobre segurança da informação. A segurança informática é da responsabilidade de todos.

logotipo


  • Breaking News
    • Hacking
    • Internet of Things
    • Data Breach
    • DarkWeb
    • Laws and Regulations
      • GDPR
    • Malware
      • ransomware
    • Reverse Engineering
    • Vulnerability
    • Cybercrime
    • Phishing
    • Reports
    • twitter On Twitter
  • Research
    • Malware and Phishing Analysis
    • Threat Report Portugal
    • GitBook – Read Teaming and Malware
    • Tutorials
    • Awesome Tools
  • youtube_mini_logo Videos
  • spotify_mini_logo Podcast
  • youtube_mini_logo 0xSI_f33d
  • gitbook GitBook
  • Tools
  • Scam Alerts
  • Contact
  • Author

Etiqueta: wordpress

Hacking, vulnerability

Vulnerabilidade zeroday no plugin ‘Easy WP SMTP’ do WordPress deixa expostos milhares de websites

12 Dezembro, 2020

Vulnerabilidade zeroday no plugin ‘Easy WP SMTP’ do WordPress deixa expostos milhares de websites.

Hacking, vulnerability

Campanha em larga escala está a impactar temas vulneráveis da framework Epsilon do WordPress

18 Novembro, 2020
wordpress-hacking

Campanha em larga escala está a impactar temas vulnerável da framework Epsilon do WordPress.

computer security, Malware and Phishing Analysis, segurancainformatica

Using a WordPress flaw to leverage zerologon vulnerability and attack companies’ Domain Controllers

27 Setembro, 2020

The last weeks were covered by two beasts that used together can produce the perfect formula to compromise an entire company from a black-box perspective…

computer security, Hacking, vulnerability

Criminosos lançaram mais de 130 milhões de ataques atingindo o WordPress na tentativa de identificar websites vulneráveis

5 Junho, 2020

Criminosos lançaram mais de 130 milhões de ataques atingindo o WordPress na tentativa de identificar websites vulneráveis.

Hacking, vulnerability

Stored XSS no plugin WP Product Review Light permite comprometer instalações do WordPress

18 Maio, 2020
wordpress-hacking

Stored XSS no plugin WP Product Review Light permite comprometer instalações do WordPress.

Hacking, Malware

Um novo skimmer identificado no plugin WooCommerce do WordPress

13 Abril, 2020
wordpress-hacking

Um novo skimmer identificado no plugin WooCommerce do WordPress.

Hacking, Malware

Malware WP-VCD do WordPress disseminado via plugins falsos envolvendo o Covid19

26 Março, 2020

Malware WP-VCD do WordPress disseminado via plugins falsos envolvendo o Covid19 que implantam backdoor nos sistemas afetados.

Hacking, vulnerability

Vulnerabilidade bypass afeta os plugins WordPress InfiniteWP Client e WP Time Capsule

16 Janeiro, 2020
wordpress-hacking

Vulnerabilidade bypass afeta os plugins WordPress InfiniteWP Client e WP Time Capsule.

computer security, Hacking, vulnerability

Uma falha crítica no plugin Jetpack expõe milhões de websites com WordPress

21 Novembro, 2019

Uma falha crítica no plugin Jetpack expõe milhões de websites com WordPress.

computer security, Hacking, vulnerability

Várias vulnerabilidades identificadas num plugin do WordPress com mais de 100.000 instalações

14 Novembro, 2019
wordpress-hacking

Várias vulnerabilidades identificadas num plugin do WordPress com mais de 100.000 instalações.

Hacking, Phishing, vulnerability

Campanhas de malvertising utilizam falhas recentes de plugins do WordPress

24 Julho, 2019
wordpress-hacking

Investigadores da Defian descobriram que uma campanha recente de malvertising tirava partido de vulnberabilidades recentemente descobertas em plugins do WordPress.

Malware, Phishing

Hackers estão a utilizar websites WordPress e Joomla  para distribuir variante do ransonware Troldesh

1 Abril, 2019

Hackers estão a utilizar websites WordPress e Joomla  para distribuir variante do ransonware Troldesh.

Hacking, vulnerability

Vulnerabilidade CSRF permitiu tomar total controlo de websites WordPress

15 Março, 2019
wordpress-hacking

Uma vulnerabilidade do tipo CSRF permitiu tomar total controlo de websites WordPress.

computer security

Websites ecommerce do WordPress estão sob ataque

12 Março, 2019

Websites ecommerce do WordPress estão sob ataque depois de identificada uma nova vulnerabilidade num plugin que permite tomar total controlo do CMS.

Hacking, vulnerability

WordPress permaneceu vulnerável a uma falha RCE durante 6 anos

19 Fevereiro, 2019
wordpress-hacking

O popular CMS WordPress permaneceu vulnerável a uma falha RCE durante 6 anos.

Hacking, vulnerability

Falha no plugin ‘Simple Social Buttons’ do WordPress permite tomar controlo do website

12 Fevereiro, 2019
wordpress-hacking

Uma falha no plugin ‘Simple Social Buttons’ do WordPress permite tomar total controlo do website. O plugin foi instalado mais de 40.000 vezes.

Paginação dos conteúdos

1 2 →

Search in blog

    Author – Founder

    pedro tavares

    Pedro Tavares is a professional in the field of information security, Head of Offensive Unit of ArtResilia firm and also working as an Ethical Hacker/Pentester, Malware Researcher and a Security Evangelist. He is also a founding member at CSIRT.UBI and Editor-in-Chief of the security computer blog seguranca-informatica.pt.

    In recent years he has invested in the field of information security, exploring and analyzing a wide range of topics, such as pentesting, malware, exploitation, hacking, IoT and security in Active Directory networks.  He is also Freelance Writer and developer of the 0xSI_f33d – a feed that compiles phishing and malware campaigns targeting Portuguese citizens. He also launched his GitBook, where he publishes some of his notes entirely online, and took his first steps in podcasting by launching the podcast 'Manhãs em Cibersegurança,' in the Portuguese language."

    Read more here.

    Newsletter

    #0xSI_f33d

    The Portuguese Abuse Open Feed

    si_f33d
    @ VirusTotal offical ingestor

    Add a new phishing / malware campaing into 0xSI_f33d

    Podcast “Manhãs em Cibersegurança”

    Infographic – Threat Report Portugal Q3 & Q4 2022

    si_f33d

    Download [PDF] or [PNG]

    Taking the bait: The modus operandi of massive social engineering waves impacting banks in Portugal

    clickthebait

    The new maxtrilha trojan is being disseminated and targeting several banks

    maxtrilha

    The clandestine Horus Eyes RAT: From the underground to criminals’ arsenal

    qbot

    A taste of the latest release of QakBot

    qbot

    Javali trojan weaponizing Avira antivirus legitimate injector

    javali

    Anubis Network – The evolution of the Phishing schema

    anubis

    Threat analysis: The emergent URSA trojan impacts many countries using a sophisticated loader

    ursa

    In-depth analysis of a trojan banker impacting Portugal and Brazil

    trojan_portugal_and_Brazil

    Grandoreiro malware May 2020 – Portugal

    The updated Grandoreiro Malware equipped with latenbot-C2 features in Q2 2020 now extended to Portuguese banks

    grandoreiro_portugal_2020

    Brazilian trojan banker is targeting Portuguese users using browser overlay

    predictions

    Trojan Lampion – Portugal

    predictions

    New release of Lampion trojan spreads in Portugal with some improvements on the VBS downloader

    lampion

    Banking Phishing Portugal

    Banking Phishing | Targets Portugal, Spain, Brazil and Chile | From Brazil | Infection process

    Categories

    • APT
    • computer security
    • Cryptocurrency
    • Cryptography
    • Cybercrime
    • darkweb
    • Data Breach
    • Digital Identity
    • Distributed Ledger
    • GDPR
    • Hacking
    • Internet of Things
    • Laws and Regulations
    • Malware
    • Malware and Phishing Analysis
    • Manhãs em Cibersegurança
    • Mobile
    • newsletter
    • Phishing
    • ransomware
    • Reports
    • reverse engineering
    • segurancainformatica
    • Threat Report Portugal
    • tutorials
    • vulnerability

    Social Networks

    youtube_logo



          

    Segurança-Informática

    Partners / Sponsors

    trignosfera

    Tell Us About New Scams Here

    scam

    Support my work

    buymeacoffee



    license

    This work is licensed under a Creative Commons Attribution 4.0 International License. If you have queries about republishing, contact me. Check individual posts and images for licensing details.

    © 2026 Segurança Informática
    • Research
    • Malware and Phishing Analysis
    • Scam Alerts
    • youtube_mini_logo Youtube
    • youtube_mini_logo 0xSI_f33d
    • Author
    • TERMS AND PRIVACY

    By continuing to use the site, you agree to the use of cookies. more information

    The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.

    Please, see the TERMS AND PRIVACY here!

    Close