Podcast appearances and mentions of bianca garcia

  • 21PODCASTS
  • 753EPISODES
  • 6mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Sep 18, 2026LATEST

POPULARITY

20192020202120222023202420252026


Best podcasts about bianca garcia

Latest podcast episodes about bianca garcia

Cyber Morning Call
1092 - Espionagem ligada à China mira governos de 8 países da América Latina

Cyber Morning Call

Play Episode Listen Later Sep 18, 2026 8:17


Referências do EpisódioBeware the SparroWock: The backdoor that bites, the commands that catchThe Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrentsVídeo sobre DDR em blockchainsHEAVYGRAM: A Telegram-based Surveillance Backdoor Linked to Handala HackStable Channel Update for Desktop - Thursday, September 17, 2026Check Point Fixes Critical CVE-2026-91843 Allowing Root Code ExecutionRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1091 - Cisco publica dezenas de correções críticas e confirma ataques em andamento

Cyber Morning Call

Play Episode Listen Later Sep 17, 2026 5:26


Referências do EpisódioCisco Identity Services Engine Authentication Bypass VulnerabilityCisco Secure Firewall Management Center Software Authentication Bypass VulnerabilityBoletim de atualizações do Pixel: setembro de 2026TrustSink: How a Rogue External MFA Provider Steals PasswordsOracle Critical Security Patch Update, September 2026 ReviewOracle September 2026 Critical Security Patch Update addresses 672 CVEsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1090 - Malware usa protocolo de internet das coisas para espionar empresas na Ásia e na América do Sul

Cyber Morning Call

Play Episode Listen Later Sep 16, 2026 4:49


Referências do EpisódioThe banana stand: brokering and managing infections across Asia using MQTTParaShells: Parallels Desktop Turns Appliance Install Into a Root ShellRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1089 - Falha já sendo explorada permite tomar o controle de e-mail corporativo com uma única mensagem

Cyber Morning Call

Play Episode Listen Later Sep 15, 2026 5:33


Referências do EpisódioCisco Secure Email Gateway SQL Injection VulnerabilityCisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026Silent Push Exposes North Korean IT Worker Recruiting Facilitators Through Discord ServersRed Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkitLiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared ServerMicrosoft confirms KB5002914 Excel update breaks copy and pasteRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1088 - Kit de phishing por sms dá ao golpista controle da tela da vítima

Cyber Morning Call

Play Episode Listen Later Sep 14, 2026 6:15


Referências do EpisódioSmish. Click. Drained: Inside the Smishing Triad's Phishing CockpitThe Fraud Ecosystem: A Transition From Known Marketplaces to a Fragmented EnvironmentDutch NCSC: Critical Check Point VPN flaws exploitation is imminentGitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read – Exploited Within 24 Hours“Eye” spy: Cyclops Blink returns with extended capabilitiesRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

refer controle phishing tima tela bianca garcia cyclops blink
Cyber Morning Call
1087 - A IA eliminou a linha que separava espionagem estatal de criminoso solitário, mostra relatório da Anthropic

Cyber Morning Call

Play Episode Listen Later Sep 11, 2026 8:06


Referências do EpisódioDetecting and countering misuse of AI: September 2026Casbaneiro: A Banking Trojan with Distributed Data-Receiving ServersArtifactory Under Attack: In-the-Wild Exploitation of CVE-2026-42016, CVE-2026-42018 & CVE-2026-82329PuzzleMask: Abusing Plain Prose as a Covert AI Attack VectorSloppyRAT: A New Tool For Ransomware AttacksRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1086 - Falha no Chrome vira arma compartilhada entre grupos de espionagem da China

Cyber Morning Call

Play Episode Listen Later Sep 10, 2026 8:04


Referências do EpisódioOnce in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero-DaysActive exploitation of Cisco Secure Firewall Management Center vulnerabilitiesAgents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MFUntracked Nightmares: The Threats Hiding Behind Commodity InfrastructureThe Shared Clipboard Inside the Sandbox: Cross-Account Data Leakage in ChatGPTNew cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as RootRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

The Clay Edwards Show
DISGUSTING ACT BY CONTENT CREATORS AT SITE OF AMAZON PLANE CRASH

The Clay Edwards Show

Play Episode Listen Later Sep 9, 2026 7:09


Hours after an Amazon cargo plane overran the runway in Miami and killed five people on the ground, content creators showed up to take selfies in front of the smoldering wreckage. Kick streamer Bianca Garcia — turquoise hair, booty pose, “hurry take a picture” — crossed a perimeter barrier while NTSB was still working the scene. Five families lost people sitting in a van and a Corolla. Zero of them were on the plane. Clay's had it with clout culture. An active disaster site isn't a backdrop. There's a time and a place. This wasn't it.

Cyber Morning Call
1085 - Windows recebe a maior atualização de segurança da história da Microsoft, com duas falhas sob ataque

Cyber Morning Call

Play Episode Listen Later Sep 9, 2026 7:43


Referências do EpisódioMicrosoft September 2026 Patch Tuesday fixes 966 flaws, 2 zero-daysMicrosoft discloses two actively exploited zero-days among 974 vulnerabilitiesChaotic Eclipse Released ShieldCrash, A PoC For Microsoft Defender Zero-DayStable Channel Update for Desktop - Tuesday, September 8, 2026SAP Security Patch Day - September 2026Unauthenticated Control of NAT Rules Leading to Exposure of Sensitive InformationJWT used for authentication in web GUI signed with static keyImproper Authentication of FortiPAM ServerSlim Spider Steals Crypto Custody Secrets From Brazilian Financial InstitutionRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1084 - Falha em roteadores Mikrotik permite controle total do equipamento sem senha

Cyber Morning Call

Play Episode Listen Later Sep 8, 2026 5:42


Referências do EpisódioKrytyczne podatności w MikroTik RouterOS są aktywnie wykorzystywane. Zalecana pilna aktualizacjaConnectWise warns of new ScreenConnect flaw without patchUnpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online StoresStyleSmuggler: Magento and Adobe Commerce 0-day RCE (CVE-2026-75650) under active attackUrgent Action Required: Critical Security Update Available for Adobe Commerce (APSB26-146)Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1083 - O caractere invisível que faz o golpe desaparecer do filtro de e-mail

Cyber Morning Call

Play Episode Listen Later Sep 4, 2026 7:45


Referências do EpisódioASCII smuggling crosses over from AI prompt injection to phishing evasionThe Outsider Phishing Kit: A Resilient Threat in the Face of Law Enforcement ActionOne Blank Field Bypasses Direct Send ControlSNWLID-2026-0015 - SonicWall NSM On-Prem Affected By Multiple VulnerabilitiesResearcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike FalconRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1082 - Sites do governo brasileiro estão sendo abusados para empurrar bets

Cyber Morning Call

Play Episode Listen Later Sep 3, 2026 5:37


Referências do EpisódioGaming the system: how a Chinese-speaking actor turned Brazilian government sites into an SEO weaponCisco Nexus 9000 Series Switches Silicon One Remote Code Execution VulnerabilityCisco IOS XR Software Security Hardening Release: September 2026Uncovering StreamRat: From Meta Ads to Full Device TakeoverRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1081 - Falha de severidade 10 abre a porta de redes corporativas e já está sendo explorada

Cyber Morning Call

Play Episode Listen Later Sep 2, 2026 6:54


Referências do EpisódioSonicWall Advisory SNWLID-2026-0016SonicWall warns of actively exploited SMA1000 zero-day flawsWhat Comes After Cards: A Brazilian Magecart Operation Moves into Instant Payments (PIX)Post de Caitlin Condon da VulnCheck sobre exploração da CVE-2026-0768 no LangflowPost da WatchTowr sobre exploração da CVE-2026-82329 no JFrog Artifactory.Stable Channel Update for Desktop - Tuesday, September 1, 2026Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1080 - Criminosos invadem bancos no Brasil para disparar centenas de transferências fraudulentas por Pix

Cyber Morning Call

Play Episode Listen Later Sep 1, 2026 7:56


Referências do EpisódioFinancially Motivated Threat Actor BREEZE COMET Targets BrazilSistema de Transferência de Reservas (STR)Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware setSpring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft TeamsBreaking the Seal: Static Deobfuscation of JSCeal's Compiled V8 BytecodeRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1079 - Por 30 reais, criminosos compram acesso a computadores já invadidos no Brasil

Cyber Morning Call

Play Episode Listen Later Aug 31, 2026 8:24


Referências do EpisódioAnatomy of BraZetsu: How Cybercriminals Fuel the Underground EcosystemThree CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQLFire Ant Evolves: From Hypervisors to Trusted InfrastructureTerminalFix campaign deploys a reverse tunnel through multistage intrusionPaperCut releases second emergency patch for exploited flawsURGENT Security Advisory: PaperCut NG/MF Security Bulletin (27 Aug 2026)UniBLEed: Unauthenticated Root RCE on Any Unitree G1 Humanoid Robot Within Bluetooth RangeRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1078 - Zero-day em sistema de impressão permite invadir servidores sem senha

Cyber Morning Call

Play Episode Listen Later Aug 28, 2026 5:19


Referências do EpisódioURGENT Security Advisory: PaperCut NG/MF Security Bulletin (27 Aug 2026)PaperCut warns of NG, MF flaw exploited in zero-day attacksPaperCut Actively Exploited: A Pre-Auth RCE ChainBlueDelta Targets Defense and Diplomacy with HOOKEDGEAustralia charges two men for TeamPCP supply-chain hacking spreeOpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging FaceSecurity: CVE-2026-65643 Vulnerability in cPanel's Domain Parking Functionality - August 27, 2026Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1077 - Espiões e quadrilhas de ransomware exploram as mesmas falhas em equipamentos de rede, aponta estudo

Cyber Morning Call

Play Episode Listen Later Aug 27, 2026 9:32


Referências do EpisódioEdge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeterDark Caracal Reloaded: New Malware, Same Hunting GroundsUbiquiti patches three max severity security vulnerabilitiesNovaCookies at scale: Inside the $320 Phishing Service Targeting Hundreds of OrganizationsJustice Department and FBI Seize Platforms Operated and Used by China State-Sponsored Hackers to Target U.S. Critical InfrastructureCISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers DoA Reported Log4j RCE Is More Complicated Than It LooksRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1076 - Golpe com IA liga em português para desbloquear iPhones roubados

Cyber Morning Call

Play Episode Listen Later Aug 26, 2026 7:48


Referências do EpisódioExposing AnonyMousKIT: AI-Powered PhaaS Supply ChainTortoiseshell: New Toolset and Operational Infrastructure ExposedClickFix Phishing Pages Discovered in 24 npm PackagesCritical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like PayloadStable Channel Update for Desktop - Tuesday, August 25, 2026Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1075 - Sem senha e com severidade máxima, nova falha está sendo explorada em servidores Oracle

Cyber Morning Call

Play Episode Listen Later Aug 25, 2026 5:46


Referências do EpisódioActively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical DataOracle Critical Patch Update Advisory - January 2026Exploiting SharePoint: CVE-2026-55040 and CVE-2026-63520 RCE ChainHackers infecting Android car systems to build proxy botnetRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1074 - Criminosos usam IA para invadir e desligar o antivírus da vítima, e o Brasil está entre os alvos

Cyber Morning Call

Play Episode Listen Later Aug 21, 2026 10:11


Referências do EpisódioUAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operationsUAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilitiesGoing with the Flow(s): Distinct Clusters Target Individuals of Interest to RussiaBTR Reforged: Weaponizing Defender's Remediation Driver as a Kernel Operation PrimitiveSilkParasite: Tracking a China-Nexus APT Across Central AsiaCVE-2026-69836 - Microsoft Entra ID Remote Code Execution Vulnerability NewU.S. CISA adds an MLflow flaw to its Known Exploited Vulnerabilities catalogGitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of DisclosureFrequently asked questions about the active threat to Siemens S7 Series PLCsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1073 - Grandoreiro leva a fraude bancária brasileira para o México

Cyber Morning Call

Play Episode Listen Later Aug 20, 2026 12:40


Referências do Episódio/bin/live: Proteção infantojuvenil Online com Karina Queiroz e Amanda YumiGrandoreiro goes north: From Brazil to Mexico with a new DLL sideloading campaignBalonx Sistema: The Face Behind the PhaaS Affecting Mexican BankingCisco Crosswork Security Hardening Release: August 2026Cisco Secure Workload Software Security Hardening Release: August 2026Hunting MacSync Stealer infrastructure through behavioral pivotsOperation CameraSwarm:  Over 14,000 Dahua cameras compromised across Ukraine and RussiaOracle Critical Security Patch Update Advisory - August 2026NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2026-19489 and CVE-2026-19490Stable Channel Update for Desktop - Tuesday, August 18, 2026Windows 11 24H2 Home and Pro reach end of support in 2 monthsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1072 - Falha no Copilot permitia acesso a e-mails e arquivos com um único clique

Cyber Morning Call

Play Episode Listen Later Aug 19, 2026 7:42


Referências do EpisódioCoSnitch: When Your AI Assistant Becomes Its Own WhistleblowerPurpleDelta's Fraudulent Employment Operations StubMaker RubyGems Campaign Delivers a Windows InfostealerThousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtectRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1071 - Um agente de IA achou e explorou sozinho uma falha que outra IA tinha criado

Cyber Morning Call

Play Episode Listen Later Aug 18, 2026 8:05


Referências do EpisódioWiz Red Agent Finds Its Way Into Snowflake's Internal Jira Through a Flaw in a GitHub Copilot–Assisted PROperation ASTERIX: Anatomy of a Crypto Fraud PipelineC2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2GitLab Critical Patch Release: 19.2.4, 19.1.6, 19.0.8, 18.11.11Microsoft starts removing WMIC tool used by cybercriminalsApple Patches 122 Flaws including macOS Screen Sharing Flaw (CVE-2026-65400)Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1070 - Espionagem contra governos usa driver que apaga arquivos, processos e conexões da tela

Cyber Morning Call

Play Episode Listen Later Aug 17, 2026 4:00


Referências do EpisódioAPT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkitSAP Commerce Cloud CVE-2026-58231 Exploited in the WildRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1069 - Botnet invade roteadores com falhas de quase 20 anos e rouba as senhas de quem passa pela rede

Cyber Morning Call

Play Episode Listen Later Aug 14, 2026 12:46


Referências do EpisódioMulti-Functional Linux Botnet “Evooo1Bot”Dissecting the JWR phishing frameworkJewelbug: APT Group Runs Espionage and Crypto Fraud Operations Side by SideAdobe Commerce CVE-2026-71362 Comes Under Attack Shortly After Public DisclosureSecurity update available for Adobe Commerce | APSB26-92Attackers Exploit SharePoint Authentication Bypass After Public PoC ReleaseYou're Back In The Room (Citrix NetScaler Pre-Auth RCE CVE-2026-8452(?))Trezor Says ShipMonk Breach Exposed 13,689 CustomersAmnesiaStealer: a multi-stage Rust-based macOS infostealer that hijacks Chromium browsersMalware Crypting Services and the Threat Actors Who Sell ThemRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1068 - Ataques contra VMware são descobertos. Brasil está entre os alvos

Cyber Morning Call

Play Episode Listen Later Aug 13, 2026 9:28


Referências do EpisódioActive exploitation of CVE-2026–59310: 361 victim IPs across 47 countriesVMSA-2026-0006.1: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709)Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote AccessAdobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic FlawsAbuse of alternative runtime environments Deno-tes defender headachesKimwolf v7: An Evolution of the Kimwolf BotnetCATAnA: On the Dangers of SIM-Originating AT CommandsArmored Likho expands its cyber-espionage toolkitRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1067 - Zero-day afetando o Brasil é corrigido pela Microsoft

Cyber Morning Call

Play Episode Listen Later Aug 12, 2026 9:44


Referências do EpisódioZOOMSDAY - How A Security Found a Nation-State Vulnerability in Zoom in One DayAugust 2026 Security Updates Patch Tuesday - August 2026Microsoft and Adobe Patch Tuesday, August 2026 Security Update ReviewMicrosoft's August 2026 Patch Tuesday Addresses 398 CVEs (CVE-2026-68820)Shattering the Dream – When a Job Offer Becomes a Zero-Day AttackMicrosoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-daysShieldBreak: New Windows Zero-Day Bypasses Microsoft's RoguePlanet PatchSAP Security Patch Day - August 2026Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service VulnerabilitySonicWall Email Security Affected By Multiple VulnerabilitiesSonicWall GMS Security Affected By Multiple VulnerabilitiesMozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private RepoRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1066 - Quadrilha de ransomware negocia sem precisar de servidor

Cyber Morning Call

Play Episode Listen Later Aug 11, 2026 7:17


Referências do EpisódioDeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructureAbyssos: Technical Analysis of a New Modular RATCritical Progress LoadMaster flaw now actively exploited in attacksFollow-Up Analysis of the 29 December 2025 Energy Sector Incident Six npm Packages Use Ethereum Transactions to Retrieve Malicious PayloadsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1065 - Zero-day Em Ferramenta de BI Expõe Clientes da Fabricante de Laptops Framework

Cyber Morning Call

Play Episode Listen Later Aug 10, 2026 7:13


Referências do EpisódioMetabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive DataSecurity update available for Metabase - Please upgrade nownatjack - A NEW ATTACK CLASS AGAINST NETWORK INFRASTRUCTURE DEVICESBring Your Own EDR: How to Turn a Commercial EDR into a Trojan HorseXSS2Shell: WordPress Preauth XSS to RCE Chain (CVE-2026-64638)RovoBlast: How One Click Triggered Atlassian's AI Assistant to Leak DataSCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-FreeRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1064 - ShinyHunters: dentro da infraestrutura de phishing que mira bancos, faculdades e cripto

Cyber Morning Call

Play Episode Listen Later Aug 7, 2026 7:30


Referências do EpisódioBehind the Panels: Validating ShinyHunters Cluster A Infrastructure Through Network TelemetryWe infiltrated a criminal phishing panel: here's what we foundUNC6671 Rebrands: Multi-Brand Vishing Extortion Targets Financial Services and Enterprise Cloud EnvironmentsToken Jacking: Cybercriminals Could Be Stealing Your AI ResourcesZapscape KVM Flaw Lets Guest VMs Seize Host RootApple libera macOS Tahoe 26.6.1, com correções de segurançaChrome Stable Channel Update for Desktop - Thursday, August 6, 2026Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1063 - Roteadores vendidos na Amazon têm backdoor ativado de fábrica

Cyber Morning Call

Play Episode Listen Later Aug 6, 2026 5:15


Referências do EpisódioENDLESSDOORS Is Phoning Home. Pick Up.Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026Cisco IOS XE Software Security Hardening Release: August 2026OVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become RootBreaking the PaperclipRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1062 - Worm invade cadeia de suprimentos do NPM e rouba credenciais de nuvem em mais de 2 bilhões de instalações

Cyber Morning Call

Play Episode Listen Later Aug 5, 2026 9:02


Referências do EpisódioKeyv and friends compromised in active Shai-Hulud supply chain attackkeyv and cacheable npm Package Hijacked in Supply Chain AttackAnalyzing SMOKE#SCREEN: ScreenConnect RMM Abuse, Cloudflare Tunnels, and Trusted Software LuresIntroducing DOUBLECUP, a ClickFix Loader Delivering CountLoader and DeviceManager RATsInterlock ransomware gang creates volatile situationcPanel Bug Hands Database Root to Any Hosting CustomerRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1061 - Falhas no login sem senha do Google permitem assumir contas mesmo com verificação ativada

Cyber Morning Call

Play Episode Listen Later Aug 4, 2026 5:11


Referências do EpisódioPass the Passkey: A Novel Attack Surface in Passwordless AuthenticationDarkSword's Panel Sprawl: How One Body Hash Unravels a Six-Panel, Two-Codebase Operator ClusterFrom WSProxy to Root: INC ransomware and SonicWall SMA Exploit ChainRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1060 - Primeira correção não funcionou e adversários tomam controle total de servidores de gestão remota de TI

Cyber Morning Call

Play Episode Listen Later Aug 3, 2026 7:15


Referências do EpisódioN-central 2026.3 Hotfix 1 – Mitigation for CVE-2026-18577N-able Says Attackers Take Over N-central Servers After Initial Fix Proves IncompleteCaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theftAdobe fixed a maximum-severity vulnerability flaw in Campaign ClassicSecurity update available for Adobe Campaign Classic | APSB26-114Série de posts da Galaxy Research sobre ataque contra carteiras da ColdcardThe Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET VersionToy Ghouls' new toy: the GenieLocker ransomwareRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1059 - Amazon liga hackers norte-coreanos a ataques que atingiram bibliotecas de código usadas por milhões de programadores

Cyber Morning Call

Play Episode Listen Later Jul 31, 2026 8:47


Referências do Episódio-North Korean hackers behind major open-source supply chain attacks, Amazon says-Amazon identifies North Korean hacker group behind open-source supply chain attacks-ClickFix, EtherHiding & a DPRK Wallet Trail-Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts-(합동사이버보안권고문) 국가배후 해킹조직의 우리 국민·기업 해킹 공격 주의 권고-Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks-OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia-Investigating three real-world incidents in our cybersecurity evaluationsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1058 - Cisco confirma ataques reais explorando senha fixa em firewalls corporativos

Cyber Morning Call

Play Episode Listen Later Jul 30, 2026 8:57


Referências do EpisódioCisco Secure Firewall Management Center Software Static Credential VulnerabilityCisco warns of FMC static credential flaw exploited in zero-day attacksVMSA-2026-0006: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709)Broadcom Patches Critical VMware ESXi Vulnerability Enabling Host Code ExecutionInside Astaroth's New Spambot ComponentStable Channel Update for Desktop - Wednesday, July 29, 2026KindaRails2Shell - Critical Rails Flaw Leaks Secrets — Patching Isn't EnoughCheck Point SmartConsole Authentication Bypass Technical Analysis (CVE-2026-16232)Coordinated “cyberattack” on Minnesota water utilities: What you need to knowClaude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES AttackRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1057 - Falha crítica deixa roteadores vulneráveis a invasão total com um único pacote de rede

Cyber Morning Call

Play Episode Listen Later Jul 29, 2026 6:17


Referências do EpisódioCritical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as RootFast Remediation Is the New Trust Model: JFrog and OpenAI Collaboration on Zero-Day Security FindingsCritical Security Issue Affecting TeamCity On-Premises (CVE-2026-63077) – Update to 2025.11.7 or 2026.1.3 NowRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1055 - Certighost: falha no AD CS deixa usuário comum se passar por controlador de domínio

Cyber Morning Call

Play Episode Listen Later Jul 27, 2026 4:58


Referências do EpisódioCertighost (CVE-2026-54121)僵尸网络新秀:Dysphoria 演进与深度技术分析Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1054 - Chaos ransomware sequestra o navegador da vítima para montar canal de C2 encoberto

Cyber Morning Call

Play Episode Listen Later Jul 24, 2026 5:52


Referências do EpisódioThe Signs Were There: What the First Autonomous Ransomware Case ConfirmsChaos ransomware's msaRAT: Living off the browser to build a covert C2 channelCISA, NSA, FBI and Partners Warn Zimbra Collaboration Suite Users of Ongoing Russian State-Supported Malicious Threat ActivityTAG-195 Upgrades MaaS Ecosystem with Modular ToolsKimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers SayRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1053 - RefluXFS expõe mais de 16 milhões de sistemas Linux à escalada para root

Cyber Morning Call

Play Episode Listen Later Jul 23, 2026 7:07


Referências do EpisódioCVE-2026-8933: Local Privilege Escalation in Set-Capabilities snap-confineRefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600) JadeProx: Tracing a China-nexus Operation Through an OPSEC MistakeLampion's Portugal-focused phishing campaign delivers multistage malwareAttack Cases by the Kimsuky Group Impersonating Diplomats (PebbleDash, PrxClient)Security Advisory – Action Required – July 2026 Security UpdateHermeticReader: The Vulnerability That Turned Adobe's 300M-Install Extension Into a Full WhatsApp TakeoverRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

china portugal root linux refer sistemas milh es escalada local privilege escalation bianca garcia
Cyber Morning Call
1052 - Extorsão via BitLocker usa impressoras para entregar nota de resgate

Cyber Morning Call

Play Episode Listen Later Jul 22, 2026 6:19


Referências do EpisódioA new extortion cocktail: office printers, small ransoms, and BitLockerSolarWinds Serv-U Privilege Escalation Vulnerability (CVE-2026-28307)SolarWinds Serv-U Remote Code Execution Vulnerability (CVE-2026-28311)SolarWinds Serv-U Broken Access Control Vulnerability (CVE-2026-28321)Oracle Critical Patch Update Advisory - July 2026OpenAI admits it was the source of the agent swarm that attacked Hugging FacePublic PoC triggers active exploitation of critical SharePoint RCE vulnerability CVE-2026-50522Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1051 - Falha crítica na ServiceNow AI Platform está sob exploração ativa

Cyber Morning Call

Play Episode Listen Later Jul 21, 2026 4:12


Referências do EpisódioCritical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code ExecutionCVE-2026-6875 - Sandbox Escape in ServiceNow AI PlatformCookie Crumbles: How Exploitation of CVE-2026-0257 Leads to Qilin RansomwareExploitation in the Wild of wp2shellRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1050 - SonicWall SMA: zero-days encadeados levam a acesso root

Cyber Morning Call

Play Episode Listen Later Jul 20, 2026 8:31


Referências do EpisódioProxying to Compromise: SonicWall Secure Mobile Access 0-day Exploitationwp2shell: Pre Authentication RCE in WordPress CoreWordPress Core "wp2shell" RCE flaws get public exploits, patch nowThree Steps to the Terminal: A Siemens ROX II Zero-Day TrilogyHOLLOWGRAPH: Turning Microsoft 365 Calendars into Covert Command-and-Control ChannelsOpenSSL HollowByte: A DoS Hiding in 11 BytesNew North Korean campaign uses fake coding interviews to steal developer credentialsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1049 - Starland RAT: instaladores trojanizados entregam implante Python com C2 em smart contract

Cyber Morning Call

Play Episode Listen Later Jul 17, 2026 6:47


Referências do EpisódioUAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaignClickLock Stealer: Paste Once, Lose EverythingACR Stealer: Two observed intrusion chains amid increased threat activitySpirals: New Stealthy Ransomware Deployed Against Asian IT CompanyGoSerpent: a persistent threat evolves with sophisticated data collection and exfiltrationRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1048 - Nightmare Eclipse publica novo zero-day no Windows

Cyber Morning Call

Play Episode Listen Later Jul 16, 2026 3:44


Referências do EpisódioChaotic Eclipse Unveils LegacyHive Exploit Affecting Fully Patched Windows SystemsTuxBot v3: Inside an IoT Botnet Framework With LLM-Assisted DevelopmentClaudeFix: Shared Claude Chats Meet ClickFixRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1047 - SonicWall detecta 0-day em ataques contra SMA1000 e Microsoft solta maior patch tuesday da história

Cyber Morning Call

Play Episode Listen Later Jul 15, 2026 6:12


Referências do EpisódioSonicWall SMA1000 Series Appliances Affected By Multiple VulnerabilitiesTwo SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin CommandsMicrosoft July 2026 Security UpdatesSAP Security Patch Day - July 2026Progress confirms ShareFile zero-day flaw behind Storage Zone shutdownRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1046 - Servidor mal configurado expõe três operações de phishing contra o Microsoft 365

Cyber Morning Call

Play Episode Listen Later Jul 14, 2026 7:35


Referências do EpisódioWEBINAR: A CONFIANÇA COMO PORTA DE ENTRADA DO ATACANTEOne Misconfigured Server, Three Active Campaigns: Full exposure of three AiTM Phishing OperatorsImprove Router Hygiene to Protect Against Russian State-Sponsored TargetingCrashStealer: C++ macOS infostealer posing as crash reporterOAuth Client ID Spoofing: Why Fake Client IDs Are Gaining Traction for Stealthy Enumeration Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1045 - Progress manda clientes desligarem servidores do ShareFile por ameaça externa

Cyber Morning Call

Play Episode Listen Later Jul 13, 2026 4:55


Referências do EpisódioWEBINAR: A CONFIANÇA COMO PORTA DE ENTRADA DO ATACANTEProgress Told ShareFile Customers to Pull the Plug on Their Servers. Here's What We Know.Unfit to Boot: Breaking U-Boot's FIT Signature VerificationCritical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User SessionsOne Target, Two Flags | Rival Espionage Actors Converge On Pakistani Law EnforcementRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1044 - Ransomware GodDamn usa driver malicioso assinado pela Microsoft para driblar antivírus

Cyber Morning Call

Play Episode Listen Later Jul 10, 2026 5:18


Referências do EpisódioWEBINAR: A CONFIANÇA COMO PORT A DE ENTRADA DO ATACANTEGodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable DefensesGigaWiper: Anatomy of a destructive backdoor assembled from multiple malwareRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Cyber Morning Call
1043 - Symlink falso engana assistentes de programação com IA e abre brecha para acesso remoto

Cyber Morning Call

Play Episode Listen Later Jul 9, 2026 6:26


Referências do EpisódioWEBINAR: A CONFIANÇA COMO PORT A DE ENTRADA DO ATACANTEGhostApproval: A Trust Boundary Gap in AI Coding AssistantsClickFix to Cash-Out: Anatomy of a Mexican Banking-Fraud ToolkitMicrosoft patches RoguePlanet Defender zero-day vulnerabilityHackers can use 9 of the most popular AI tools to assemble massive botnetsCoordinated npm and PyPI Campaign Typosquats Popular Secure Payment AppsSygnia Investigation Finds AI Accelerated Attack Enabled Lone Threat Actor to Rapidly Compromise Enterprise Cloud EnvironmentJuniper Security AdvisoriesPalo Alto Networks Security AdvisoriesChrome ReleasesRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia