CyberComplianceAI
InicioNoticiasIntel Center
CyberForoPrecios
Acceder
The Pulse · Live Intelligence Feed

Intel Center

Una señal es cualquier evento operacional detectado en las últimas 24h–30d: CVEs en KEV explotados activamente, advisories de vendor, exposición cloud, ransomware y avisos regulatorios. Cada señal se prioriza por severidad, freshness y match con tu Digital Twin.

Para análisis editorial y noticias generales visita Noticias.

Priorizado con IA

La priorizacion, resumen y accion recomendada pueden estar enriquecidos por IA y heuristicas. La fuente original permanece visible para verificacion.

Consola en vivo · last 7d
Señales (ventana)12
Última detecciónhace 15 h
Monitorizado porintelligence scouter
12signals
Acción Requerida
Ventana24h7d30d7d / 30d solo en ProSeveridadCríticaAltaLimpiar filtros
Tecnología afectadaMicrosoft118Cisco53Google43GitHub35Apple32Adobe24Check Point19ServiceNow18Siemens17Ivanti

Priority Command Strip

What your team should look at right now

6 señales críticas
  1. Action RequiredImmediate15h

    Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · Palo Alto NetworksReview signal
  2. Action Required
All12Action Required12Exploited & KEV3Critical Vulns0

Discover muestra 8 señales operativas recientes. Sube a Consultant Pro o Professional Pro para abrir el feed completo, histórico ampliado y el catálogo KEV.

INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...] CVEs: CVE-2026-65400. CISA KEV/exploitation signal detected. Vendors: Microsoft, Palo Alto Networks, Google, SAP, Adobe, Apple, Docker, Check Point. DORA relevance: medium.

Por qué importa

Filtered for operational relevance. Powered by a curated catalog of vulnerability, CERT, vendor and threat-intelligence sources.View methodology →

CyberComplianceAI

¿Quieres esto priorizado para tu rol cada mañana?

El Morning Brief Pro filtra estas señales por tu rol (CISO, SecOps, risk), sector y framework prioritario, y las convierte en acciones recomendadas listas a las 7:00.

Probar Morning Brief Pro →Ver precio

¿Aún no quieres Pro? Recibe el resumen de cumplimiento gratis cada semana.

3signals
Explotados & KEV
Vulns Críticas

Sin CVEs críticas frescas en la ventana actual.

Advisories de Vendor

Sin nuevos advisories PSIRT de vendor en la ventana.

16
PHP15
SonicWall15
Fortinet14
SAP12
Immediate
19h

Shell investigates 'potential incident' after Clop data theft claims

Explotación activa confirmada. Riesgo material para entornos expuestos.

BleepingComputer · Microsoft · SAPReview signal
  • Action RequiredImmediate19h

    Max severity SAP Commerce Cloud flaw now targeted in attacks

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · CiscoReview signal
  • Action RequiredImmediate3d

    SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    SecurityWeek · Microsoft · CiscoReview signal
  • Action RequiredImmediate3d

    Ivanti EPM Update Patches Remotely Exploitable Flaws

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    SecurityWeek · Microsoft · CiscoReview signal
  • Action RequiredImmediate3d

    Fresh Windows Zero-Day Exploited in North Korean Cyberattacks

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    SecurityWeek · Microsoft · CiscoReview signal
  • Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-65400 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftPalo Alto NetworksGoogleSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    14 ago 2026, 14:59
    Actualizado
    14 ago 2026, 18:02
    Detectado
    14 ago 2026, 18:02
    Fuente
    BleepingComputer
    Referencia técnica
    NVD · CVE-2026-65400
    BleepingComputer
    Prioridad · 93/100published <24h (+40) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 15 horas
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    Shell investigates 'potential incident' after Clop data theft claims

    Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data. [...] CVEs: CVE-2026-12569. CISA KEV/exploitation signal detected. Vendors: Microsoft, SAP, Adobe, Salesforce, ServiceNow. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-12569 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftSAPAdobeSalesforceCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    14 ago 2026, 11:55
    Actualizado
    14 ago 2026, 14:02
    Detectado
    14 ago 2026, 14:02
    Fuente
    BleepingComputer
    Referencia técnica
    NVD · CVE-2026-12569
    BleepingComputer
    Prioridad · 93/100published <24h (+40) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 19 horas
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    Max severity SAP Commerce Cloud flaw now targeted in attacks

    A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...] CVEs: CVE-2026-58231, CVE-2026-44761, CVE-2026-22732, CVE-2026-34263. CISA KEV/exploitation signal detected. Vendors: Microsoft, Cisco, VMware, SAP, Adobe, Node.js. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-58231, CVE-2026-44761, CVE-2026-22732 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoVMwareSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    14 ago 2026, 13:45
    Actualizado
    14 ago 2026, 14:02
    Detectado
    14 ago 2026, 14:02
    Fuente
    BleepingComputer
    Referencia técnica
    NVD · CVE-2026-58231
    BleepingComputer
    Prioridad · 93/100published <24h (+40) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 19 horas
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform

    The security defects could allow unauthenticated attackers to execute arbitrary code remotely and read sensitive data. The post SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform appeared first on SecurityWeek. CVEs: CVE-2026-66147, CVE-2026-66145, CVE-2026-66149, CVE-2026-66150. CISA KEV/exploitation signal detected. Vendors: Microsoft, Cisco, VMware, SAP, Adobe, Apple, Ivanti, SonicWall, Siemens, ServiceNow, Zoom. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-66147, CVE-2026-66145, CVE-2026-66149 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoVMwareSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    12 ago 2026, 07:31
    Actualizado
    12 ago 2026, 10:02
    Detectado
    12 ago 2026, 10:02
    Fuente
    SecurityWeek
    Referencia técnica
    NVD · CVE-2026-66147
    SecurityWeek
    Prioridad · 82/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 3 días
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    Ivanti EPM Update Patches Remotely Exploitable Flaws

    The vulnerabilities could be exploited to leak credentials for external SQL connections or crash an agent service. The post Ivanti EPM Update Patches Remotely Exploitable Flaws appeared first on SecurityWeek. CVEs: CVE-2026-18129, CVE-2026-18125, CVE-2026-18127. CISA KEV/exploitation signal detected. Vendors: Microsoft, Cisco, AWS, SAP, Adobe, Apple, Ivanti, SonicWall, Siemens, ServiceNow, Zoom. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-18129, CVE-2026-18125, CVE-2026-18127 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoAWSSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    12 ago 2026, 08:14
    Actualizado
    12 ago 2026, 10:02
    Detectado
    12 ago 2026, 10:02
    Fuente
    SecurityWeek
    Referencia técnica
    NVD · CVE-2026-18129
    SecurityWeek
    Prioridad · 82/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 3 días
    INMEDIATOCríticoACTION REQUIREDGDPRNIS2Inteligencia operacional

    Fresh Windows Zero-Day Exploited in North Korean Cyberattacks

    The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor. The post Fresh Windows Zero-Day Exploited in North Korean Cyberattacks appeared first on SecurityWeek. CVEs: CVE-2026-68820, CVE-2025-49113. CISA KEV/exploitation signal detected. Vendors: Microsoft, Cisco, SAP, Adobe, Apple, Ivanti, SonicWall, Siemens, ServiceNow, Zoom, PHP, Check Point. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-68820, CVE-2025-49113 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoSAPAdobeCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    12 ago 2026, 08:45
    Actualizado
    12 ago 2026, 10:02
    Detectado
    12 ago 2026, 10:02
    Fuente
    SecurityWeek
    Referencia técnica
    NVD · CVE-2026-68820
    SecurityWeek
    Prioridad · 82/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 3 días
    INMEDIATOCríticoACTION REQUIREDGDPRNIS2AI ACTInteligencia operacional

    Patch Tuesday August 2026: A zero-day WinSock driver hole under exploit, and a maximum severity SAP vulnerability

    A currently exploited zero-day elevation of privilege vulnerability that needs to be patched in a Windows driver for WinSock is the highlight of the 398 fixes issued today in Microsoft’s August Patch Tuesday releases. The hole is in Windows’ Ancillary Function Driver for WinSock (CVE-2026-68820), which, according to Todd Schell, principal product manager at Ivanti, has been a recurring target for local privilege-escalation bugs throughout 2026. Past vulnerabilities in this component have let an authorized attacker win a race condition to gain SYSTEM privileges. “Exploitation has already been detected,” noted Jack Bicer, director of vulnerability research at Action1, “making this the highest priority vulnerability in this month’s release.” Separately, SAP issued 29 new and updated security patches, the most severe of which is CVE-2026-58231, with a CVSS score of 10. This is an improper authorization issue in SAP Commerce Cloud’s Data Hub Adapter. 42 critical Microsoft vulnerabilities In total, Microsoft addressed 398 CVEs. Of them, 42 were rated critical, while 355 were rated Important. However, Tyler Reguly, associate director of security R&D at Fortra, noted that 236 CVEs affect Windows and are covered by a cumulative update. Another 98 are Office CVEs that are covered by separate Office cumulative updates, unless you happen to still run Office 2016 In addition to the actively exploited zero-day, Microsoft also warned of two other zero-days. CVE-2026-62832 is an elevation of privilege vulnerability in the Windows User Profile Service, rated Important. Action1 pointed out this has been publicly disclosed, so exploitation is likely; Ivanti noted that it is the flaw behind “LegacyHive,” the unpatched proof-of-concept released by researcher Nightmare-Eclipse just hours after July’s Patch Tuesday. This vulnerability lets a standard user coerce the User Profile Service into loading another user’s registry hive, even an administrator’s, to gain unauthorized access to that CVEs: CVE-2026-68820, CVE-2026-58231, CVE-2026-62832, CVE-2026-72971, CVE-2024-38193. CISA KEV/exploitation signal detected. Vendors: Microsoft, Tenable, Oracle, SAP, Adobe, Ivanti, GitHub. DORA relevance: high.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-68820, CVE-2026-58231, CVE-2026-62832 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftTenableOracleSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    12 ago 2026, 00:45
    Actualizado
    12 ago 2026, 03:00
    Detectado
    12 ago 2026, 03:00
    Fuente
    CSO Online
    Referencia técnica
    NVD · CVE-2026-68820
    CSO Online
    Prioridad · 82/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 3 días
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

    A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. The post August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day appeared first on SecurityWeek. CVEs: CVE-2026-68820, CVE-2025-32709, CVE-2025-21418, CVE-2024-38193, CVE-2026-62832. CISA KEV/exploitation signal detected. Vendors: Microsoft, Cisco, Google, Tenable, SAP, Adobe, Apple, ServiceNow, Zoom. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-68820, CVE-2025-32709, CVE-2025-21418 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftCiscoGoogleTenableCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    11 ago 2026, 18:46
    Actualizado
    11 ago 2026, 20:01
    Detectado
    11 ago 2026, 20:01
    Fuente
    SecurityWeek
    Referencia técnica
    NVD · CVE-2026-68820
    SecurityWeek
    Prioridad · 82/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <7d (+3 cap)
    hace 4 días