Una señal es cualquier evento operacional detectado en las últimas 24h–30d: CVEs en KEV explotados activamente, advisories de vendor, exposición cloud, ransomware y avisos regulatorios. Cada señal se prioriza por severidad, freshness y match con tu Digital Twin.
Para análisis editorial y noticias generales visita Noticias.
Consola en vivo · last 7d
Señales (ventana)70
Última detecciónhace 3 h
Monitorizado porintelligence scouter
Acción Requerida
Sin señales activamente explotadas ni parches de emergencia.
Discover muestra 8 señales operativas recientes. Sube a Consultant Pro o Professional Studio para abrir el feed completo, histórico ampliado y el catálogo KEV.
Authorities in the Netherlands have arrested a 23-year-old convicted cybercriminal on suspicion of aiding in data thefts and extortions by the prolific hacker group ShinyHunters. In the days immediately following the suspect's arrest, remaining ShinyHunters members dramatically escalated their attacks, stealing highly sensitive data from the FBI and extorting the Russian ransomware group Cl0p. CVEs: CVE-2026-35273. Vendors: Microsoft, Google, Oracle. DORA relevance: high.
Filtered for operational relevance. Powered by a curated catalog of vulnerability, CERT, vendor and threat-intelligence sources.View methodology →
Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks
Explotación reportada sobre Microsoft / Google. Verificar exposición real en el inventario.
SecurityWeek · Microsoft · GoogleReview signal
Por qué importa
ShinyHunters mantiene una actividad activa de robo de datos y extorsión, con posible impacto en organizaciones de sectores regulados y exposición adicional asociada a CVE-2026-35273.
Acción recomendada
Verifica de inmediato la exposición a CVE-2026-35273, revisa indicadores de compromiso y actividad de exfiltración, y notifica a los responsables de los entornos Microsoft, Google y Oracle.
Vendors:MicrosoftGoogleOracleSectores:bankingpublic sectorhealthcarecloud/SaaSCISO · Vulnerability Management · SecOps · IT Ops
Mapeo regulatorio · riesgo 80
La actividad activa de ShinyHunters y la posible explotación de CVE-2026-35273 exigen reforzar la detección, gestión y clasificación de incidentes y vulnerabilidades TIC conforme a DORA.
DORA · Art. 10 Detection (direct) · Art. 13 Learning and evolving (direct) · Art. 15 Further harmonisation of ICT risk management tools, methods, processes and policies (direct)
CISA added CVE-2026-65660 to its KEV catalog, giving federal agencies a patching deadline of September 28. The post Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks appeared first on SecurityWeek. CVEs: CVE-2026-65660. Vendors: Microsoft, Google, F5, Docker, WordPress. DORA relevance: medium.
Por qué importa
CVE-2026-65660 afecta a Microsoft SharePoint, figura en el catálogo KEV de CISA y está siendo explotada en ataques, por lo que requiere validación y remediación inmediata.
Acción recomendada
Comprueba hoy la exposición a CVE-2026-65660, aplica el parche o mitigación disponible de Microsoft y verifica indicios de explotación en los sistemas SharePoint.
Vendors:MicrosoftGoogleF5DockerSectores:insurancepublic sectorcloud/SaaSCISO · Vulnerability Management · SecOps · IT Ops
Mapeo regulatorio · riesgo 75
La explotación activa de una vulnerabilidad crítica en SharePoint exige aplicar medidas técnicas y organizativas adecuadas para proteger los datos personales tratados.
Here’s a look at the most interesting products from the past week, featuring releases from BlackFog, Genea, Vega, and Thales. Vega II brings security-trained AI and lasting memory to the SOC Vega has introduced Vega II, its biggest platform release since emerging from stealth. The update brings frontier AI trained for security operations into the SOC, gives teams a lasting record of what they have learned, and removes the legacy SIEM and data pipeline barriers … More → The post New infosec products of the week: October 2, 2026 appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix. DORA relevance: medium.
Por qué importa
Se han reportado nuevas vulnerabilidades asociadas a proveedores críticos (Cisco, Google, Citrix) que requieren validación en el inventario de activos.
Acción recomendada
Verificar la presencia de los productos afectados en el inventario y aplicar los parches de seguridad correspondientes según los boletines oficiales de cada proveedor.
Vendors:CiscoGoogleCitrixCISO · Vulnerability Management · IT Ops
Companies are putting more money into AI while naming attacks on AI systems as the threat they are least ready to face. PwC surveyed 3,934 business and technology leaders in 71 countries between May and July 2026. Half of the security and technology executives among them ranked such attacks in their top five preparedness gaps, ahead of every other threat on the list. More than half of the leaders asked about AI-enabled attacks put three … More → The post Botnets, adversarial attacks and data poisoning top leaders’ AI threat list appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix. DORA relevance: high.
Por qué importa
La identificación de vulnerabilidades en productos de proveedores críticos junto con la creciente amenaza de ataques adversarios a sistemas de IA representa un riesgo significativo para la resiliencia operativa bajo DORA.
Acción recomendada
Auditar el inventario de activos para identificar despliegues de Cisco, Google y Citrix afectados por CVE-2026-76504 y CVE-2026-88772 y evaluar la exposición de los modelos de IA a técnicas de envenenamiento de datos.
The Pentagon’s Defense Manpower Data Center (DMDC) is notifying millions of people that hackers gained access to their personal data. The breach affects 2.76 million living individuals, a group that can include current and former defense personnel and their dependents, along with 294,000 deceased individuals, a Defense Department official told CNN. Established in 1974, DMDC serves as a central hub for US Department of Defense data on military personnel, service status and benefits eligibility. According … More → The post Pentagon breach exposes personal data of more than 3 million people appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix. DORA relevance: high.
Por qué importa
Brecha de seguridad confirmada con impacto masivo en datos personales, vinculada a vulnerabilidades en infraestructura crítica de proveedores comunes.
Acción recomendada
Auditar inmediatamente el inventario de activos frente a CVE-2026-76504 y CVE-2026-88772 y aplicar parches de seguridad en los entornos Cisco, Google y Citrix.
La brecha confirmada afecta a más de tres millones de personas y exige evaluar medidas de seguridad, notificación a la autoridad en 72 horas y comunicación a los interesados conforme al GDPR.
GDPR · Art. 32 Security of processing (direct) · Art. 33 Notification of a personal data breach to the supervisory authority (direct) · Art. 34 Communication of a personal data breach to the data subject (direct)
Sophos has launched Sophos CISO Advantage, an agentic AI-enabled solution that connects security operations to security strategy. The solution gives organizations a picture of their cyber risk, a prioritized plan to reduce it, and measurable proof of progress, in plain language that business leaders can understand, fund, and act on. Sophos CISO Advantage defines a new category in the market, turning security data into strategy and measurable improvement, driven by agentic AI. The offering assesses … More → The post Sophos uses agentic AI to show businesses which security fixes deserve funding appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix, Sophos. DORA relevance: medium.
Por qué importa
Se han identificado dos CVEs asociadas a múltiples proveedores críticos (Cisco, Google, Citrix, Sophos) que requieren validación de impacto en el inventario de activos.
Acción recomendada
Auditar el inventario de activos para identificar versiones vulnerables de Cisco, Google, Citrix y Sophos y aplicar los parches de seguridad correspondientes.
Vendors:CiscoGoogleCitrixSophosCISO · Vulnerability Management · IT Ops
RadarFirst has announced the general availability of Radar AI Incident Management, a purpose-built solution that helps organizations investigate, manage, and document AI-related incidents. As organizations deploy AI across customer experiences, employee workflows, business operations, and decision-making processes, adverse events can create risks that span privacy, security, legal, compliance, and product teams. Harmful outputs, biased outcomes, sensitive data exposure, unexpected AI actions, and policy failures can quickly require a coordinated response. Radar AI Incident Management provides … More → The post RadarFirst helps teams investigate AI bias, data exposure and unintended actions appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix. DORA relevance: medium.
Por qué importa
Se han reportado vulnerabilidades asociadas a proveedores críticos (Cisco, Google, Citrix) que requieren validación de impacto en el inventario de activos.
Acción recomendada
Auditar el inventario de activos para identificar versiones afectadas de Cisco, Google y Citrix asociadas a los CVEs mencionados y aplicar parches si están disponibles.
Vendors:CiscoGoogleCitrixCISO · Vulnerability Management · IT Ops
DeepKeep has announced AI Lens for Developers, a new extension to the company’s AI usage control and runtime protection modules to secure software developers and their coding agents that can write, modify, and execute code on their behalf. The capability gives security teams policy enforcement, audit visibility, and runtime security over coding agents such as Cursor and Claude Code, closing a critical gap most security programs have ever had to cover before. 90% of developers … More → The post DeepKeep’s AI Lens flags coding agent data leaks and routes destructive commands for approval appeared first on Help Net Security. CVEs: CVE-2026-76504, CVE-2026-88772. Vendors: Cisco, Google, Citrix, GitHub. DORA relevance: medium.
Por qué importa
La aparición de vulnerabilidades críticas asociadas a agentes de codificación y herramientas de IA representa un riesgo de ejecución de código no autorizado y fuga de datos sensibles en el ciclo de vida de desarrollo.
Acción recomendada
Auditar el uso de agentes de IA en el entorno de desarrollo, verificar la exposición a los CVEs mencionados en los stacks de Cisco, Google, Citrix y GitHub, y restringir permisos de ejecución automática.
Vendors:CiscoGoogleCitrixGitHubMITRE:T1195 Supply Chain CompromiseCISO · Vulnerability Management · IT Ops