Noticias de Ciberseguridad
Mantente informado sobre las amenazas, vulnerabilidades y tendencias que pueden impactar la seguridad de tu empresa.
CIBERSEGURIDAD EN ESPAÑOL
Noticias y tendencias de ciberseguridad seleccionadas de fuentes especializadas para nuestra región.
- Ataques de phishing selectivos contra empresas de manufactura | Blog oficial de Kaspersky
Mediante ataques de phishing selectivos de varias etapas, los ciberdelincuentes buscan hacerse con credenciales de empresas de manufactura.
- Cómo funciona la verificación de números de teléfono de Google y si debes deshabilitarla | Blog oficial de Kaspersky
Por qué y cómo comprueba Google tu número de teléfono, y los posibles riesgos de privacidad involucrados.
- Ataques con prompts para el asistente de IA Gemini y Google Workspace con Gemini | Blog oficial de Kaspersky
Analizamos los ataques contra los asistentes de IA de Google y te explicamos cómo proteger tus dispositivos.
- Combata ataques BEC con tecnología de IA | Blog oficial de Kaspersky
Kaspersky Secure Mail Gateway ahora cuenta con tecnología diseñada para detectar correos electrónicos de ataque BEC generados por IA.
- Cómo proteger tus datos después de una ruptura | Blog oficial de Kaspersky
Qué hacer después de una ruptura para que tu ex no siga teniendo acceso a tus cuentas, suscripciones y dispositivos.
CIBERSEGURIDAD INTERNACIONAL
Las amenazas, vulnerabilidades y tendencias que están marcando el panorama global.
- Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
Attacker-controlled instructions can make Atlassian's Rovo assistant collect Jira or Confluence data that a signed-in user can access, then send it to an outside server. Two security firms found that behavior independently, by different routes. Only one of those routes is confirmed closed. PromptArmor, an AI security firm, hid the instructions in content Rovo reads. It said an uploaded file was
- New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
New research shows content inside an email can escape its message boundary and interfere with the webmail interface. Across attack chains spanning Outlook, Gmail, Fastmail, Proton Mail, Yahoo Mail, and AOL Mail, the techniques can capture passwords, take over third-party accounts, leak tokens, hijack trusted UI actions, and manipulate AI tools that read email. PortSwigger researcher Gareth
- Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
Metabase has warned that a maximum-severity security flaw impacting its business intelligence and data visualization software package has been exploited in the wild as a zero-day. The vulnerability (CVSS score: 10.0), which does not carry a CVE identifier, allows an unauthenticated remote attacker to inject arbitrary SQL into the Metabase application database, enabling them to gain
- N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist
N-able has released a fresh round of hotfixes for N‑central as part of its investigation into ongoing exploitation of a recently disclosed security flaw in the Remote Monitoring and Management (RMM) product. "We are proactively expanding protections in response to ongoing monitoring of threat actors as they evolve their attack techniques," the company said. "This is not a duplicate of our
- Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit Attempts
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical-severity security flaw impacting Progress Kemp LoadMaster to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild. The vulnerability, tracked as CVE-2026-8037 (CVSS score: 9.6), is a command injection flaw that could be weaponized to achieve arbitrary










