Podcast appearances and mentions of bianca garcia

  • 20PODCASTS
  • 524EPISODES
  • 6mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Sep 11, 2025LATEST

POPULARITY

20172018201920202021202220232024


Best podcasts about bianca garcia

Latest podcast episodes about bianca garcia

Cyber Morning Call
863 - Framework pouco conhecido vira trunfo em campanhas criminosas

Cyber Morning Call

Play Episode Listen Later Sep 11, 2025 8:23


Referências do EpisódioWEBINAR Black Friday: Cibersegurança pra além do básico, sem esquecer o básicoAdaptixC2: A New Open-Source Framework Leveraged in Real-World AttacksChillyHell: A Deep Dive into a Modular macOS BackdoorNewly Identified Domains Likely Linked to Continued Activity from PoisonSeed E-Crime ActorEggStreme Malware: Unpacking a New APT Framework Targeting a Philippine Military CompanyFrankenstein Variant of the ToneShell Backdoor Targeting MyanmarTechnical Analysis of kkRATRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
862 - Patch Tuesday traz correções urgentes da SAP, Microsoft, Adobe e Sophos

Cyber Morning Call

Play Episode Listen Later Sep 10, 2025 4:55


Referências do EpisódioSAP Security Patch Day - September 2025September 2025 Security UpdatesAdobe Latest Product Security UpdatesSecurity update available for Adobe Commerce | APSB25-88Resolved Authentication Bypass Vulnerability in Sophos AP6 Series Wireless Access Points Firmware (CVE-2025-10159)Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
861 - Phishing contra dev compromete pacotes com 2Bi de downloads semanais

Cyber Morning Call

Play Episode Listen Later Sep 9, 2025 6:10


Referências do Episódionpm debug and chalk packages compromisedSalt Typhoon and UNC4841: Silent Push Discovers New Domains; Urges Defenders to Check Telemetry and Log DataAPT37 Targets Windows with Rust Backdoor and Python LoaderUnmasking The Gentlemen Ransomware: Tactics, Techniques, and Procedures RevealedBlurring the Lines: Intrusion Shows Connection With Three Major Ransomware GangsHackers breached Salesloft 's GitHub in March, and used stole tokens in a mass attackRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
860 - Vulnerabilidade crítica do SAP S/4HANA está sendo explorada em ataques

Cyber Morning Call

Play Episode Listen Later Sep 8, 2025 2:44


Referências do EpisódioCritical SAP S/4HANA vulnerability now exploited in attacksCritical SAP S/4HANA code injection vulnerability (CVE-2025-42957) exploited in the wild - patch immediatelyRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
859 - TP-Link: ataques exploram falhas em roteadores obsoletos

Cyber Morning Call

Play Episode Listen Later Sep 5, 2025 7:59


Referências do EpisódioCISA Adds Two Known Exploited Vulnerabilities to CatalogCISA Flags TP-Link Router Flaws CVE-2023-50224 and CVE-2025-9377 as Actively ExploitedTechnical News and Reports about Quad 7 (7777) Botnet aka CovertNetwork-1658GhostRedirector poisons Windows servers: Backdoors with a side of PotatoesContagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel PlatformsVídeo que fiz sobre ClickFixViewState Deserialization Zero-Day Vulnerability in Sitecore Products (CVE-2025-53690)25,000 IPs Scanned Cisco ASA Devices — New Vulnerability Potentially IncomingRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
858 - Google corrige 2 zero-days no Android

Cyber Morning Call

Play Episode Listen Later Sep 4, 2025 4:37


Referências do EpisódioGoogle fixes actively exploited Android flaws in September updateTrojanized ScreenConnect installers evolve, dropping multiple RATs on a single machineMassive IPTV Piracy Network Uncovered by Silent PushModel Namespace Reuse: An AI Supply-Chain Attack Exploiting Model Name TrustRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
857 - Cloudflare registra o maior ataque de DDoS da história (até o momento)

Cyber Morning Call

Play Episode Listen Later Sep 3, 2025 5:11


Referências do EpisódioCloudflare blocks largest recorded DDoS attack peaking at 11.5 TbpsAzure DDoS Protection—2021 Q3 and Q4 DDoS attack trendsLazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePEFrom Deepfakes to Dark LLMs: 5 use-cases of how AI is Powering CybercrimeRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
856 - Aplicações com json exposto podem comprometer Azure AD, revela estudo.

Cyber Morning Call

Play Episode Listen Later Sep 2, 2025 3:57


Referências do EpisódioAzure AD Client Secret Leak: The Keys to CloudPredators for Hire: A Global Overview of Commercial Surveillance VendorsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
855 - WhatsApp tem novo zero-day sob ataque

Cyber Morning Call

Play Episode Listen Later Sep 1, 2025 5:36


Referências do EpisódioWhatsApp Security Advisories - 2025 Updates - August UpdateWhatsApp Patches Zero-Click Exploit Targeting iOS and macOS Devices849 - Apple corrige 0-day sob ataque. Falha afeta IPhones, IPads e MacsAtaque hacker em empresa que opera o sistema Pix desvia R$ 420 milhões; BC bloqueia R$ 350 milhõesOperation HanKook Phantom: North Korean APT37 targeting South KoreaAmazon disrupts watering hole campaign by Russia's APT29Roteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
854 - APT SilverFox tem nova campanha baseada em driver

Cyber Morning Call

Play Episode Listen Later Aug 29, 2025 4:29


Referências do EpisódioHuman Risk Conference Brazil 2025Chasing the Silver Fox: Cat & Mouse in Kernel ShadowsCorruption and Control: How Turkmenistan turned internet censorship into a businessPasswordstate dev urges users to patch auth bypass vulnerabilityResearchers Find VS Code Flaw Allowing Attackers to Republish Deleted Extensions Under Same NamesRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
853 - Operação de espionagem reúne atores russos e chineses

Cyber Morning Call

Play Episode Listen Later Aug 28, 2025 6:30


Referências do EpisódioShadowSilk: A Cross-Border Binary Union for Data ExfiltrationStorm-0501's evolving techniques lead to cloud-based ransomwareTAOTH Campaign Exploits End-of-Support Software to Target Traditional Chinese Users and DissidentsMystRodX: The Covert Dual-Mode Backdoor ThreatFreePBX servers hacked via zero-day, emergency fix releasedSomeone Created First AI-Powered Ransomware Using OpenAI's gpt-oss:20b ModelCountering Chinese State-Sponsored Actors Compromise of Networks Worldwide to Feed Global Espionage SystemRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
852 - Citrix corrige zero-day sob ataque no Netscaler

Cyber Morning Call

Play Episode Listen Later Aug 27, 2025 5:20


Referências do EpisódioNetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2025-7775, CVE-2025-7776 and CVE-2025-8424CWE-119: Improper Restriction of Operations within the Bounds of a Memory BufferWidespread Data Theft Targets Salesforce Instances via Salesloft DriftZipLine Campaign: A Sophisticated Phishing Attack Targeting US CompaniesRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
851 - Docker corrige falha que permite controlar o host

Cyber Morning Call

Play Episode Listen Later Aug 26, 2025 2:50


Referências do EpisódioDocker Fixes CVE-2025-9074, Critical Container Escape Vulnerability With CVSS Score 9.3Deception in Depth: PRC-Nexus Espionage Campaign Hijacks Web Traffic to Target DiplomatsRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
850 - MURKY PANDA abusa de relações de confiança na nuvem

Cyber Morning Call

Play Episode Listen Later Aug 25, 2025 5:06


Referências do EpisódioHuman Risk Conference Brazil 2025MURKY PANDA: A Trusted-Relationship Threat in the CloudThe Ghost in the Machine: The Complete Dossier on TA-NATALSTATUS and the Cryptojacking Turf WarThink before you Click(Fix): Analyzing the ClickFix social engineering techniqueRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
849 - Apple corrige 0-day sob ataque. Falha afeta IPhones, IPads e Macs

Cyber Morning Call

Play Episode Listen Later Aug 21, 2025 4:11


Referências do EpisódioApple fixes new zero-day flaw exploited in targeted attacksRussian state-sponsored espionage group Static Tundra compromises unpatched end-of-life network devicesA Cereal Offender: Analyzing the CORNFLAKE.V3 BackdoorVídeo que fiz sobre ClickFixRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
848 - Malware explora vuln e aplica patch para evitar quadrilhas rivais

Cyber Morning Call

Play Episode Listen Later Aug 20, 2025 5:28


Referências do Episódio/bin/live - WOMCYPatching for persistence: How DripDropper Linux malware moves through the cloudCVE-2023-46604Warlock: From SharePoint Vulnerability Exploit to Enterprise RansomwareSECURITY ALERT: Microsoft SharePoint On-prem Vulnerabilities (CVE-2025-49704, CVE-2025-49706, CVE-2025-53770, CVE-2025-53771)GodRAT – New RAT targeting financial institutionsStable Channel Update for ChromeOS / ChromeOS FlexRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
847 - PipeMagic explorou zero-day no Windows. Alvos no Brasil foram confirmados.

Cyber Morning Call

Play Episode Listen Later Aug 19, 2025 4:52


Referências do EpisódioEvolution of the PipeMagic backdoor: from the RansomExx incident to CVE-2025-29824Dissecting PipeMagic: Inside the architecture of a modular backdoor frameworkNoodlophile Stealer Evolves: Targeted Copyright Phishing Hits Enterprises with Social Media Footprints Roteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
846 - FortiWeb: Vunl crítica tem exploit parcial publicado

Cyber Morning Call

Play Episode Listen Later Aug 18, 2025 4:01


Referências do EpisódioUAT-7237 targets Taiwanese web hosting infrastructureResearcher to release exploit for full auth bypass on FortiWebCVE-2025-52970 - Authentication bypass via invalid parameterShould Security Solutions Be Secure? Maybe We're All Wrong - Fortinet FortiSIEM Pre-Auth Command Injection (CVE-2025-25256)CVE-2025-25256 - Remote unauthenticated command injectionRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
845 - Falha CVSS 10 afeta controlador de firewalls da Cisco

Cyber Morning Call

Play Episode Listen Later Aug 15, 2025 2:33


Referências do EpisódioCisco Secure Firewall Management Center Software RADIUS Remote Code Execution Vulnerability  Roteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
844 - PhantomCard: malware brasileiro rouba dados de cartão via NFC

Cyber Morning Call

Play Episode Listen Later Aug 14, 2025 3:54


Referências do EpisódioPhantomCard: New NFC-driven Android malware emerging in Brazil

Cyber Morning Call
843 - Patch Tuesday tem 0-day no Windows e falha crítica no FortiSIEM

Cyber Morning Call

Play Episode Listen Later Aug 13, 2025 6:36


Referências do EpisódioMicrosoft's August 2025 Security UpdatesBadSuccessor: Abusing dMSA to Escalate Privileges in Active DirectoryCVE-2025-25256 - Remote unauthenticated command injectionSAP Security Patch Day - August 2025Objet: Multiples vulnérabilités dans les produits SiemensCISA Releases Seven Industrial Control Systems AdvisoriesSecurity Affairs: BadCam: Linux-based Lenovo webcam bugs enable BadUSB attacksNew Ransomware Charon Uses Earth Baxia APT Techniques To Target EnterprisesSleepwalk: a sophisticated way to steal encryption keys | Kaspersky official blogMalvertising campaign leads to PS1Bot, a multi-stage malware frameworkDon't Phish-let Me Down: FIDO Authentication DowngradeMuddled Libra's Strike Teams: Amalgamated EvilRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
842 - GPT 5 sofre jailbreak 24 após seu lançamento

Cyber Morning Call

Play Episode Listen Later Aug 12, 2025 5:10


Referências do EpisódioTenable Jailbreaks GPT-5, Gets It To Generate Dangerous Info Despite OpenAI's New Safety TechNorth Korean Kimsuky hackers exposed in alleged data breachRansomware Diaries Volume 7: “I Had to Take the Guilt For Everyone” – The Kaseya Hacker Breaks His SilenceCasus: Citrix kwetsbaarheid (Update 11-08-2025)Roteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
841 - Zero-day no WinRAR está sob exploração

Cyber Morning Call

Play Episode Listen Later Aug 11, 2025 5:59


Referências do EpisódioWinRAR zero-day exploited to plant malware on archive extractionWinRAR Zero-Day Under Active Exploitation – Update to Latest Version ImmediatelyWinRAR 7.13 Final releasedCVE-2025-8088Paper Werewolf атакует Россию с использованием уязвимости нулевого дня в WinRARFrom Chrome renderer code exec to kernel with MSG_OOBWin-DoS Epidemic: A Crash Course in Abusing RPC for Win-DoS & Win-DDoSRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
840 - SonicWall bota uma pedra no assunto sobre possível zero-day

Cyber Morning Call

Play Episode Listen Later Aug 8, 2025 5:20


Referências do EpisódioGen 7 and newer SonicWall Firewalls – SSLVPN Recent Threat ActivityCVE-2024-40766 - SonicOS Improper Access Control VulnerabilityTechnical Advisory: SonicWall Targeted by Ransomware GroupNew Infection Chain  and ConfuserEx-Based Obfuscation for DarkCloud StealerHuman Risk Conference 2025Roteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
839 - Novo AV Killer é documentado no Brasil

Cyber Morning Call

Play Episode Listen Later Aug 7, 2025 5:32


Referências do EpisódioDriver of destruction: How a legitimate driver is being used to take down AV processesMicrosoft Exchange Server Hybrid Deployment Elevation of Privilege Vulnerability - CVE-2025-53786Microsoft Releases Guidance on High-Severity Vulnerability (CVE-2025-53786) in Hybrid Exchange DeploymentsExchange Server Security Changes for Hybrid DeploymentsTurning Camera Surveillance on its AxisAxis Security AdvisoryCVE-2025-54987, CVE-2025-54948: Trend Micro Apex One Command Injection Zero-Days Exploited In The WildRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
838 - Campanha usa IA pra clonar sites do governo brasileiro

Cyber Morning Call

Play Episode Listen Later Aug 6, 2025 7:05


Referências do EpisódioGenAI Used For Phishing Websites Impersonating Brazil's GovernmentAndroid Security Bulletin—August 2025Project AK47: Uncovering a Link to the SharePoint Vulnerability AttacksITW CRITICAL SECURITY BULLETIN: Trend Micro Apex One (On-Premise) Management Console Command Injection RCE VulnerabilitiesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
837 - Novo backdoor pra Linux abusa de módulo PAM

Cyber Morning Call

Play Episode Listen Later Aug 5, 2025 3:46


Referências do EpisódioWebinar Tempest - Ciclo das águas: Ameaças e golpes do primeiro semestre de 2025Plague: A Newly Discovered PAM-Based Backdoor for LinuxArctic Wolf Observes July 2025 Uptick in Akira Ransomware Activity Targeting SonicWall SSL VPNRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
836 - Novo backdoor pra Linux abusa de módulo PAM

Cyber Morning Call

Play Episode Listen Later Aug 4, 2025 4:31


Referências do EpisódioWebinar Tempest - Ciclo das águas: Ameaças e golpes do primeiro semestre de 2025Plague: A Newly Discovered PAM-Based Backdoor for LinuxArctic Wolf Observes July 2025 Uptick in Akira Ransomware Activity Targeting SonicWall SSL VPNRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
835 - Rússia usa AiTM pra atacar diplomatas em Moscou

Cyber Morning Call

Play Episode Listen Later Aug 1, 2025 4:05


Referências do EpisódioFrozen in transit: Secret Blizzard's AiTM campaign against diplomatsMicrosoft OAuth App Impersonation Campaign Leads to MFA PhishingO que é Acesso Condicional?Before ToolShell: Exploring Storm-2603's Previous Ransomware OperationsFrom Laptops to Laundromats: How DPRK IT Workers Infiltrated the Global Remote EconomyRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
834 - Pesquisa identifica patentes do APT Silk Typhoon

Cyber Morning Call

Play Episode Listen Later Jul 31, 2025 4:46


Referências do EpisódioChina's Covert Capabilities | Silk Spun From HafniumAnalysis of the latest Silver Fox attack campaign disguised as a Flash pluginNew Lenovo UEFI firmware updates fix Secure Boot bypass flawsRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
833 - Novos ataques contra o SAP NetWeaver são documentados

Cyber Morning Call

Play Episode Listen Later Jul 30, 2025 6:39


Referências do EpisódioAuto-Color Backdoor: How Darktrace Thwarted a Stealthy Linux IntrusionCVE-2025-31324: Zero-Day Vulnerability in SAP NetWeaver Exploited in the WildCMC # 771 - SAP tem 0-day sob exploraçãoSealed Chain of Deception: Actors leveraging Node.JS to Launch JSCealThe Covert Operator's Playbook: Infiltration of Global Telecom NetworksUnveiling LIMINAL PANDA: A Closer Look at China's Cyber Threats to the Telecom SectorApple releases iOS 18.6, macOS 15.6, and other updates as current gen winds downGOLD BLADE Remote DLL Sideloading Attack Deploys RedLoaderGunra Ransomware Group Unveils Efficient Linux VariantRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
832 - Sploitlight: falha no Spotlight do macOS permite roubar dados do Apple Intelligence

Cyber Morning Call

Play Episode Listen Later Jul 29, 2025 4:00


Referências do EpisódioSploitlight: Analyzing a Spotlight-based macOS TCC vulnerabilityRevisiting UNC3886 Tactics to Defend Against Present RiskXWorm V6: Advanced Evasion and AMSI Bypass Capabilities RevealedRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
831 - ToolShell segue rendendo assunto

Cyber Morning Call

Play Episode Listen Later Jul 25, 2025 5:27


Referências do EpisódioToolShell, SharePoint, and the Death of the Patch Window | Team CymruToolShell: An all-you-can-eat buffet for threat actorsToolShell: a story of five vulnerabilities in Microsoft SharePointExploit module for Microsoft SharePoint ToolPane Unauthenticated RCE (CVE-2025-53770 and CVE-2025-53771) #20409Dropping Elephant APT Group Targets Turkish Defense Industry With New Campaign and Capabilities: LOLBAS, VLC Player, and Encrypted ShellcodeLaptop farmer behind $17M North Korean IT worker scam locked up for 8.5 yearsHacker sneaks infostealer malware into early access Steam gameUnmasking the new Chaos RaaS group attacksRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
830 - Fire Ant: Campanha foca em ambientes VMware

Cyber Morning Call

Play Episode Listen Later Jul 24, 2025 4:05


Referências do EpisódioFire Ant: A Deep-Dive into Hypervisor-Level EspionageKey figure behind major Russian-speaking cybercrime forum targeted in UkraineRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
829 - China é responsável por ataques ao SharePoint, afirma a Microsoft

Cyber Morning Call

Play Episode Listen Later Jul 23, 2025 7:11


Referências do Episódio/bin/live: Gustavo GusDisrupting active exploitation of on-premises SharePoint vulnerabilitiesCisco confirms active exploitation of ISE and ISE-PIC flawsBack to Business: Lumma Stealer Returns with Stealthier MethodsCoyote in the Wild: First-Ever Malware That Abuses UI AutomationRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
828 - Tensão entre Irã e Israel impulsiona malware para Android

Cyber Morning Call

Play Episode Listen Later Jul 22, 2025 5:47


Referências do EpisódioEstúdio News - 19/07/2025/bin/live: Gustavo GusLookout Discovers Iranian APT MuddyWater Leveraging DCHSpy During Israel-Iran ConflictOver 1,000 CrushFTP servers exposed to ongoing hijack attacksHardcoded credentials found in HPE Aruba Instant On Wi-Fi devicesAfter a tip, ExpressVPN updates its Windows app to strengthen protectionsRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
827 - Zero-day sob ataque no SharePoint recebe correção emergencial

Cyber Morning Call

Play Episode Listen Later Jul 21, 2025 5:00


Referências do EpisódioSharePoint 0-day uncovered (CVE-2025-53770)CVE-2025-53770: Frequently Asked Questions About Zero-Day SharePoint Vulnerability ExploitationMicrosoft Releases Guidance on Exploitation of SharePoint Vulnerability (CVE-2025-53770)CVE-2025-53770 Microsoft SharePoint Server Remote Code Execution VulnerabilityCVE-2025-53771 Microsoft SharePoint Server Spoofing VulnerabilityCustomer guidance for SharePoint vulnerability CVE-2025-53770The SOC files: Rumble in the jungle or APT41's new target in AfricaRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
826 - Campanha contra Wordpress abusa do Google Tag Manager

Cyber Morning Call

Play Episode Listen Later Jul 18, 2025 3:51


Referências do EpisódioPhish and Chips: China-Aligned Espionage Actors Ramp Up Taiwan Semiconductor Industry Targeting WordPress Redirect Malware Hidden in Google Tag Manager CodeRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
825 - Nova campanha mira o SonicWall SMA 100 para roubar credenciais

Cyber Morning Call

Play Episode Listen Later Jul 17, 2025 6:04


Referências do EpisódioOngoing SonicWall Secure Mobile Access (SMA) Exploitation Campaign using the OVERSTEP BackdoorUNC6148 Backdoors Fully-Patched SonicWall SMA 100 Series Devices with OVERSTEP RootkitNew Fortinet FortiWeb hacks likely linked to public RCE exploitsFrom a Teams Call to a Ransomware Threat: Matanbuchus 3.0 MaaS Levels UpLookout Discovers Mobile Forensics Tooling Masisstant In Use by Chinese Gov | Threat IntelSigned and stealing: uncovering new insights on Odyssey infostealer.GhostContainer backdoor: malware compromising Exchange servers of high-value organizations in AsiaKAWA4096's Ransomware Tide: Rising Threat With Borrowed StylesCisco Identity Services Engine Unauthenticated Remote Code Execution VulnerabilitiesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
824 - Mais um 0-day sob ataque é corrigido no Chrome

Cyber Morning Call

Play Episode Listen Later Jul 16, 2025 5:35


Referências do EpisódioStable Channel Update for DesktopUnmasking AsyncRAT: Navigating the labyrinth of forksKonfety Returns: Classic Mobile Threat with New Evasion TechniquesHyper-volumetric DDoS attacks skyrocket: Cloudflare's 2025 Q2 DDoS threat reportA summer of security: empowering cyber defenders with AIOracle July 2025 Critical Patch Update Addresses 165 CVEsGLOBAL GROUP: Emerging Ransomware-as-a-Service, Supporting AI Driven Negotiation and Mobile Control Panel for Their AffiliatesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
823 - CitrixBleed 2 vem sendo explorada desde junho, afirma pesquisador

Cyber Morning Call

Play Episode Listen Later Jul 15, 2025 3:58


Referências do EpisódioCitrixBleed 2 situation update — everybody already got ownedContagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware LoaderRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
822 - FileFix: primeiros ataques reais são detectados

Cyber Morning Call

Play Episode Listen Later Jul 14, 2025 3:58


Referências do EpisódioKongTuke FileFix Leads to New Interlock RAT VariantIntroducing FileFix – A New Alternative to ClickFix AttacksIntroducing FileFix – A New Alternative to ClickFix AttacksVídeo que fiz sobre ClickFixWing FTP Server Remote Code Execution (CVE-2025-47812) Exploited in the WildEvolving Tactics of SLOW#TEMPEST: A Deep Dive Into Advanced Malware TechniquesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
821 - ZuRu ressurge trojanizado em client SSH

Cyber Morning Call

Play Episode Listen Later Jul 11, 2025 4:52


Referências do EpisódiomacOS.ZuRu Resurfaces | Modified Khepri C2 Hides Inside Doctored Termius AppCVE-2025-48384: Git vulnerable to arbitrary file write on non-Windows systemsArbitrary code execution through broken config quotingCVE-2025-48384: Breaking Git with a carriage return and cloning RCECISA Adds Citrix NetScaler CVE-2025-5777 to KEV Catalog as Active Exploits Target EnterprisesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
820 - Juniper corrige Blast-RADIUS e falha crítica em interface web

Cyber Morning Call

Play Episode Listen Later Jul 10, 2025 5:05


Referências do Episódio2025-07 Security Bulletin: Junos OS and Junos OS Evolved: Vulnerability in the RADIUS protocol for Subscriber Management (Blast-RADIUS) (CVE-2024-3596)Blast-RADIUS2025-07 Security Bulletin: Juniper Security Director: Insufficient authorization for multiple endpoints in web interface (CVE-2025-52950)ServiceNow Flaw CVE-2025-3648 Could Lead to Data Exposure via Misconfigured ACLsFrom Click to Compromise: Unveiling the Sophisticated Attack of DoNot APT Group on Southern European Government EntitiesIranian group Pay2Key.I2P ramps Up ransomware attacks against Israel and US with incentives for affiliatesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
819 - Patch Tuesday tem 0-day no SQL Server e falha séria no FortiWeb

Cyber Morning Call

Play Episode Listen Later Jul 9, 2025 2:47


Referências do EpisódioJuly 2025 Security UpdatesCVE-2025-25257 - Unauthenticated SQL injection in GUIPublic exploits released for Citrix Bleed 2 NetScaler flaw, patch nowRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

refer falha day no sql server patch tuesday citrix bleed netscaler bianca garcia
Cyber Morning Call
818 - Ransomware Bert afeta alvos Windows e Linux

Cyber Morning Call

Play Episode Listen Later Jul 8, 2025 4:33


Referências do EpisódioBERT Ransomware Group Targets Asia and Europe on Multiple PlatformsBatavia spyware steals data from Russian organizationsGamers hacked playing Call of Duty: WWII—PC version temporarily taken offlineRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
817 - Mais de 620 drivers são usados em ataques nos últimos 5 anos, afirma estudo

Cyber Morning Call

Play Episode Listen Later Jul 7, 2025 5:49


Referências do EpisódioExploiting Trust: How Signed Drivers Fuel Modern Kernel Level Attacks on WindowsExclusive disclosure of the attack activities of the APT group NightEagle.Critical Sudo Vulnerabilities Let Local Users Gain Root Access on Linux, Impacting Major DistrosLocal Privilege Escalation via host optionHow Much More Must We Bleed? - Citrix NetScaler Memory Disclosure (CitrixBleed 2 CVE-2025-5777)Roteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
816 - Ataque contra empresa de software resulta em quase um R$1 bi em pix fraudulentos

Cyber Morning Call

Play Episode Listen Later Jul 3, 2025 6:45


Referências do EpisódioNa madrugada, um PIX de R$ 18 milhões. Começava o assaltoBMP diz que suas contas reserva no BC foram acessadas em ataque hacker à C&M Software, outras 5 instituições foram afetadasPF investiga ataque a sistemas de instituições financeiras ligada ao BCComo o BC conseguiu reverter parte do Pix movimentada em ataque hacker de quase R$ 1 biCisco Unified Communications Manager Static SSH Credentials VulnerabilitymacOS NimDoor | DPRK Threat Actors Target Web3 and Crypto Platforms with Nim-Based MalwareWindows Shortcut (LNK) Malware StrategiesGamaredon in 2024: Cranking out spearphishing campaigns against Ukraine with an evolved toolsetPro-Russian hacktivism: Shifting alliances, new groups and risksSilent Push Uncovers Chinese Fake Marketplace e-Commerce Phishing Campaign Using Thousands of Websites to Spoof Popular Retail BrandsCrowdStrike Services Observes SCATTERED SPIDER Escalate Attacks Across IndustriesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Cyber Morning Call
815 - Google corrige mais um 0-day no Chrome

Cyber Morning Call

Play Episode Listen Later Jul 2, 2025 3:39


Referências do EpisódioStable Channel Update for Desktop (CVE-2025-6554)Update your Chrome to fix new actively exploited zero-day vulnerabilityDCRAT Impersonating the Colombian GovernmentIBM X-Force Threat Analysis: DCRat presence growing in Latin AmericaOkta observes v0 AI tool used to build phishing sitesRoteiro e apresentação: Carlos Cabral e Bianca OliveiraEdição de áudio: Paulo ArruzzoNarração de encerramento: Bianca Garcia

Gravy
Got (Raw) Milk? The Small Family Dairy Farms Behind a Big Controversy

Gravy

Play Episode Listen Later Mar 26, 2025 31:29


In “Got (Raw) Milk? The Small Family Dairy Farms Behind a Big Controversy,” Gravy producer Bianca Garcia takes listeners to Milky Way Farm, the last dairy in Anderson County, South Carolina, where raw milk sales are keeping the Peeler family afloat.   Their neighbors have succumbed to the pressures that have defined a generation of farmers. Between 2003 and 2022, South Carolina—where the state beverage is a glass of cold milk—lost 75 percent of licensed dairy operations. They have found their market in a niche constituency, though the wider public might disapprove. Raw milk is a risky product, often considered a public health risk.   Raw milk is unpasteurized, meaning it hasn't been through a sanitizing kill step. Scientists worry that it can make consumers vulnerable to bacterial or viral infection, but raw milk lovers can't get enough of the creamy taste and allegedly healthful properties.   This debate is situated in what seems to be a public health emergency. Reports of bird flu infecting dairy cattle leave public health officials worried that drinking raw milk can spread disease. Under the Trump presidency, Secretary of the Department of Health and Human Services Robert F. Kennedy Jr. has vowed to increase public access to raw milk as a part of his Make America Healthy Again agenda. Raw influencers and “tradwives” promote it endlessly on social media. Through all this noise, it's easy to lose sense of the fact that this is an issue that starts on the farm.   In this episode, you will hear from L.D. Peeler, acting patriarch of Milky Way Farm, his daughter, Iris, and son, Davis. Each plays a role on their small family farm, which raises 120 Jersey cows: Davis works on the farm, L.D. manages the finances, and Iris does the public relations. They each have different, but entangled, stories to tell.   At Milky Way Farm, we are reminded that, just like any other food, raw milk starts with the land, the animals, and the people that make it possible. Guided by the community's desire for a tasty and safe product, the Peelers have shaped their business to meet this need. Thus, in the face of economic pressures of the dairy industry and cultural pressures around the product, they have risen above—like the cream beneath the lid of their bottled pints. Learn more about your ad choices. Visit megaphone.fm/adchoices