CyberComplianceAI
InicioNoticiasIntel Center
CyberForoPrecios
Acceder
The Pulse · Live Intelligence Feed

Intel Center

Una señal es cualquier evento operacional detectado en las últimas 24h–30d: CVEs en KEV explotados activamente, advisories de vendor, exposición cloud, ransomware y avisos regulatorios. Cada señal se prioriza por severidad, freshness y match con tu Digital Twin.

Para análisis editorial y noticias generales visita Noticias.

Priorizado con IA

La priorizacion, resumen y accion recomendada pueden estar enriquecidos por IA y heuristicas. La fuente original permanece visible para verificacion.

Consola en vivo · last 7d
Señales (ventana)48
Última detecciónhace 18 h
Monitorizado porintelligence scouter
30signals
Acción Requerida
Ventana24h7d30d7d / 30d solo en ProSeveridadCríticaAltaLimpiar filtros
Tecnología afectadaMicrosoft129Google56Cisco48Apple39ServiceNow30GitHub30Salesforce28Palo Alto Networks21Adobe21Siemens

Priority Command Strip

What your team should look at right now

6 señales críticas
  1. Action RequiredImmediate18h

    Max severity SAP Commerce Cloud flaw now targeted in attacks

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · CiscoReview signal
  2. Action Required
All48Action Required30Exploited & KEV3Critical Vulns7Vendor Advisories1Cloud & Identity10
Critical VulnsMEDIAAltoNEWGDPRInteligencia operacional

New Android malware relays bank cards to fraudsters while victims still hold them

Group-IB researchers discovered WindRelay, a new Android malware built to capture live payment card data over NFC (Near Field Communication) and relay it to attackers in real time. WindRelay is paired with the SpyNote remote access trojan, which gives attackers remote access to a victim’s device. Attack chain overview (Source: Group-IB) How the scam unfolds The scam starts with a phone call, in which the fraudster claims to be from the victim’s bank and says … More → The post New Android malware relays bank cards to fraudsters while victims still hold them appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Google, Salesforce, ServiceNow. DORA relevance: high.

Filtered for operational relevance. Powered by a curated catalog of vulnerability, CERT, vendor and threat-intelligence sources.View methodology →

CyberComplianceAI

¿Quieres esto priorizado para tu rol cada mañana?

El Morning Brief Pro filtra estas señales por tu rol (CISO, SecOps, risk), sector y framework prioritario, y las convierte en acciones recomendadas listas a las 7:00.

Probar Morning Brief Pro →Ver precio

¿Aún no quieres Pro? Recibe el resumen de cumplimiento gratis cada semana.

3signals
Explotados & KEV
7signals
Vulns Críticas
1signals
Advisories de Vendor
También en el Intel CenterCloud & Identity10
16
Fortinet15
Linux14
Ivanti14
SonicWall14
Immediate
3d

CVE-2026-20349 · Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) : Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability

Explotación activa confirmada. Riesgo material para entornos expuestos.

CISA KEV Catalog · CiscoReview signal
  • Action RequiredImmediate2d

    Critical VMware vCenter RCE flaw exploited for reverse SSH access

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · CiscoReview signal
  • Action RequiredImmediate2d

    Curiouser and Curiouser

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Talos Intelligence Blog · Microsoft · CiscoReview signal
  • Action RequiredImmediate2d

    Cisco fixes vulnerability exploited to DoS its firewalls (CVE-2026-20349)

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Help Net Security · Microsoft · CiscoReview signal
  • Action RequiredImmediate2d

    Hackers exploit critical Adobe Commerce flaw to hijack customer accounts

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · CiscoReview signal
  • Por qué importa

    CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoGoogleSalesforceCISO · Vulnerability Management · IT Ops
    Publicado
    14 ago 2026, 11:08
    Actualizado
    14 ago 2026, 14:02
    Detectado
    14 ago 2026, 14:02
    Fuente
    Help Net Security
    Referencia técnica
    NVD · CVE-2026-20349
    Help Net Security
    Prioridad · 52/100published <24h (+40) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 18 horas
    Critical VulnsALTACríticoNEWGDPRInteligencia operacional

    ZDI-26-583: Clam AntiVirus 7z Archive Parsing Integer Overflow Remote Code Execution Vulnerability

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Clam AntiVirus. Interaction with this product is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The ZDI has assigned a CVSS rating of 8.4. The following CVEs are assigned: CVE-2026-20215. CVEs: CVE-2026-20215. Vendors: Cisco. DORA relevance: high.

    Por qué importa

    CVE de alto impacto sobre Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20215 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:CiscoCISO · Vulnerability Management · IT Ops
    Publicado
    13 ago 2026, 05:00
    Actualizado
    13 ago 2026, 18:02
    Detectado
    13 ago 2026, 18:02
    Fuente
    Zero Day Initiative Advisories
    Referencia técnica
    NVD · CVE-2026-20215
    Zero Day Initiative Advisories
    Prioridad · 48/100published <7d (+25) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 2 días
    Critical VulnsMEDIAAltoNEWGDPRInteligencia operacional

    Ukrainian police raid 94 fraudulent call centers, seize $2 million

    Ukrainian police have disrupted 94 fraudulent call centers during a nationwide operation that involved more than 400 searches and the seizure of thousands of computers, phones, and SIM cards. Ukrainian police raid at a fraudulent call center (Source: Cyberpolice Ukraine) The call centers were linked to schemes involving callers impersonating bank employees, fraudulent investment services, cryptocurrency platforms, and attempts to gain remote access to victims’ devices. Some groups collected personal information about prospective victims and … More → The post Ukrainian police raid 94 fraudulent call centers, seize $2 million appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Salesforce, ServiceNow. DORA relevance: high.

    Por qué importa

    CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoSalesforceServiceNowCISO · Vulnerability Management · IT Ops
    Publicado
    14 ago 2026, 07:56
    Actualizado
    14 ago 2026, 11:00
    Detectado
    14 ago 2026, 11:00
    Fuente
    Help Net Security
    Referencia técnica
    NVD · CVE-2026-20349
    Help Net Security
    Prioridad · 42/100published <7d (+25) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 21 horas
    Critical VulnsMEDIAAltoNEWGDPRInteligencia operacional

    New infosec products of the week: August 14, 2026

    Here’s a look at the most interesting products from the past week, featuring releases from A10 Networks, ScienceLogic, Searchlight Cyber, and SelectHub. ScienceLogic delivers secure AI deployment and smarter IT operations with Skylar AI 2.5 ScienceLogic has announced Skylar AI 2.5, expanding secure deployment options for organizations with stringent security, sovereignty, and compliance requirements, while introducing enhancements that strengthen AI performance, operational intelligence, and enterprise integrations. The release further improves AI accuracy, platform performance, and … More → The post New infosec products of the week: August 14, 2026 appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Salesforce, ServiceNow. DORA relevance: high.

    Por qué importa

    CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoSalesforceServiceNowCISO · Vulnerability Management · IT Ops
    Publicado
    14 ago 2026, 04:00
    Actualizado
    14 ago 2026, 07:00
    Detectado
    14 ago 2026, 07:00
    Fuente
    Help Net Security
    Referencia técnica
    NVD · CVE-2026-20349
    Help Net Security
    Prioridad · 41/100published <7d (+25) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 1 día
    Critical VulnsMEDIAAltoNEWCRACYBERSECURITY ACTHIPAAGDPRInteligencia operacional

    17 draft Cyber Resilience Act standards are open for comment

    A company selling a connected toy in Europe must show by the end of 2027 that the product meets the Cyber Resilience Act. The law states what manufacturers have to achieve and stops there, which leaves the toymaker to work out the technical detail alone. Seventeen draft standards, now open for comment, supply that detail. What following a standard buys you Manufacturers who follow a Harmonised Standard get the presumption of conformity, meaning a regulator … More → The post 17 draft Cyber Resilience Act standards are open for comment appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Salesforce, ServiceNow. DORA relevance: high.

    Por qué importa

    CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoSalesforceServiceNowCISO · Vulnerability Management · IT Ops
    Publicado
    14 ago 2026, 04:30
    Actualizado
    14 ago 2026, 07:00
    Detectado
    14 ago 2026, 07:00
    Fuente
    Help Net Security
    Referencia técnica
    NVD · CVE-2026-20349
    Help Net Security
    Prioridad · 41/100published <7d (+25) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 1 día
    Critical VulnsMEDIAAltoNEWGDPRInteligencia operacional

    The hardest part of agentic AI may be rebuilding the business

    Organizations expect AI agents to change how work gets done, driving productivity and growth while allowing employees to focus on higher-value tasks. Few, however, have the processes and workflows needed to realize those benefits, according to Deloitte’s latest research. Preparing the operating model for AI agents About half of surveyed leaders say they understand how AI agents will affect their future operating model. Three main challenges limit wider adoption: the lack of a unified and … More → The post The hardest part of agentic AI may be rebuilding the business appeared first on Help Net Security. CVEs: CVE-2026-20349, CVE-2026-68820. Vendors: Microsoft, Cisco, Salesforce, ServiceNow. DORA relevance: high.

    Por qué importa

    CVE de alto impacto sobre Microsoft / Cisco. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20349, CVE-2026-68820 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoSalesforceServiceNowCISO · Vulnerability Management · IT Ops
    Publicado
    14 ago 2026, 05:30
    Actualizado
    14 ago 2026, 07:00
    Detectado
    14 ago 2026, 07:00
    Fuente
    Help Net Security
    Referencia técnica
    NVD · CVE-2026-20349
    Help Net Security
    Prioridad · 41/100published <7d (+25) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 1 día
    Critical VulnsMEDIAAltoNEWNIS2Inteligencia operacional

    Multiples vulnérabilités dans les produits Cisco (06 août 2026)

    De multiples vulnérabilités ont été découvertes dans les produits Cisco. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données. CVEs: CVE-2026-20124, CVE-2026-20200, CVE-2026-20263, CVE-2026-20267, CVE-2026-20268. Vendors: Cisco, Apple. DORA relevance: medium.

    Por qué importa

    CVE de alto impacto sobre Cisco / Apple. Planificar ventana de parche.

    Acción recomendada

    Comprueba la exposición a CVE-2026-20124, CVE-2026-20200, CVE-2026-20263 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:CiscoAppleCISO · Vulnerability Management · IT Ops
    Publicado
    06 ago 2026, 00:00
    Actualizado
    12 ago 2026, 15:01
    Detectado
    12 ago 2026, 15:01
    Fuente
    CERT-FR Avis
    Referencia técnica
    NVD · CVE-2026-20124
    CERT-FR Avis
    Prioridad · 31/100published <30d (+10) · high severity (+15) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 3 días