CyberComplianceAI
InicioNoticiasIntel Center
CyberForoPrecios
Acceder
The Pulse · Live Intelligence Feed

Intel Center

Una señal es cualquier evento operacional detectado en las últimas 24h–30d: CVEs en KEV explotados activamente, advisories de vendor, exposición cloud, ransomware y avisos regulatorios. Cada señal se prioriza por severidad, freshness y match con tu Digital Twin.

Para análisis editorial y noticias generales visita Noticias.

Priorizado con IA

La priorizacion, resumen y accion recomendada pueden estar enriquecidos por IA y heuristicas. La fuente original permanece visible para verificacion.

Consola en vivo · last 7d
Señales (ventana)39
Última detecciónhace 13 h
Monitorizado porintelligence scouter
13signals
Acción Requerida
Ventana24h7d30d7d / 30d solo en ProSeveridadCríticaAltaLimpiar filtros
Tecnología afectadaMicrosoft129Google56Cisco48Apple39ServiceNow30GitHub30Salesforce28Palo Alto Networks21Adobe21Siemens16

Priority Command Strip

What your team should look at right now

6 señales críticas
  1. Action RequiredImmediate13h

    Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    BleepingComputer · Microsoft · Palo Alto NetworksReview signal
  2. Action Required
All39Action Required13Exploited & KEV3Critical Vulns2Vendor Advisories13Cloud & Identity11

Discover muestra 8 señales operativas recientes. Sube a Consultant Pro o Professional Pro para abrir el feed completo, histórico ampliado y el catálogo KEV.

INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...] CVEs: CVE-2026-65400. CISA KEV/exploitation signal detected. Vendors: Microsoft, Palo Alto Networks, Google, SAP, Adobe, Apple, Docker, Check Point. DORA relevance: medium.

Por qué importa

Filtered for operational relevance. Powered by a curated catalog of vulnerability, CERT, vendor and threat-intelligence sources.View methodology →

CyberComplianceAI

¿Quieres esto priorizado para tu rol cada mañana?

El Morning Brief Pro filtra estas señales por tu rol (CISO, SecOps, risk), sector y framework prioritario, y las convierte en acciones recomendadas listas a las 7:00.

Probar Morning Brief Pro →Ver precio

¿Aún no quieres Pro? Recibe el resumen de cumplimiento gratis cada semana.

3signals
Explotados & KEV
2signals
Vulns Críticas
13signals
Advisories de Vendor
También en el Intel CenterCloud & Identity11
Fortinet15
Linux14
Ivanti14
SonicWall14
Immediate
22h

Hackers Exploiting Unpatched GeoServer Zero-Day

Explotación activa confirmada. Riesgo material para entornos expuestos.

SecurityWeek · Microsoft · FortinetReview signal
  • Action RequiredImmediate33d

    CVE-2008-4128 · Cisco IOS: Cisco IOS Cross-Site Request Forgery Vulnerability

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    CISA KEV Catalog · Cisco · AppleReview signal
  • Action RequiredImmediate90d

    CVE-2025-43520 · Apple Multiple Products: Apple Multiple Products Classic Buffer Overflow Vulnerability

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    CISA KEV Catalog · AppleReview signal
  • Action RequiredImmediate90d

    CVE-2025-43510 · Apple Multiple Products: Apple Multiple Products Improper Locking Vulnerability

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    CISA KEV Catalog · AppleReview signal
  • Action RequiredImmediate90d

    CVE-2025-31277 · Apple Multiple Products: Apple Multiple Products Buffer Overflow Vulnerability

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    CISA KEV Catalog · AppleReview signal
  • Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Comprueba la exposición a CVE-2026-65400 en el inventario de activos y las herramientas de vulnerabilidades.

    Vendors:MicrosoftPalo Alto NetworksGoogleSAPCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    14 ago 2026, 14:59
    Actualizado
    14 ago 2026, 18:02
    Detectado
    14 ago 2026, 18:02
    Fuente
    BleepingComputer
    Referencia técnica
    NVD · CVE-2026-65400
    BleepingComputer
    Prioridad · 93/100published <24h (+40) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 13 horas
    INMEDIATOCríticoACTION REQUIREDGDPRInteligencia operacional

    Hackers Exploiting Unpatched GeoServer Zero-Day

    The security defect is described as an SQL injection that could allow attackers to achieve remote code execution. The post Hackers Exploiting Unpatched GeoServer Zero-Day appeared first on SecurityWeek. CISA KEV/exploitation signal detected. Vendors: Microsoft, Fortinet, VMware, Oracle, Adobe, Apple, Ivanti, SonicWall, WordPress. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Prioriza la remediación por explotación in-the-wild; no esperes al ciclo mensual de parcheo.

    Vendors:MicrosoftFortinetVMwareOracleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    14 ago 2026, 07:01
    Actualizado
    14 ago 2026, 09:02
    Detectado
    14 ago 2026, 09:02
    Fuente
    SecurityWeek
    Referencia técnica
    Original advisory
    SecurityWeek
    Prioridad · 83/100published <7d (+25) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · source authority (+2) · updated <24h (+5 cap)
    hace 22 horas
    INMEDIATOCríticoACTION REQUIREDInteligencia operacional

    CVE-2008-4128 · Cisco IOS: Cisco IOS Cross-Site Request Forgery Vulnerability

    [CISA KEV actively exploited] Vendor: Cisco | Product: IOS | Cisco IOS 12.4 contains multiple cross-site forgery vulnerabilities that allows remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /level/15/exec/- URI, and (2) a certain "alias exec" command to the /level/15/exec/-/configure/http URI. | Required action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines. | Due date: 2026-07-16 | Ransomware use: Unknown | Added: 2026-07-13 CVEs: CVE-2008-4128. CISA KEV/exploitation signal detected. Vendors: Cisco, Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

    Vendors:CiscoAppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    13 jul 2026, 00:00
    Actualizado
    13 jul 2026, 19:00
    Detectado
    13 jul 2026, 19:00
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2008-4128
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 33 días
    INMEDIATOCríticoACTION REQUIREDNIS2CRAInteligencia operacional

    CVE-2025-43520 · Apple Multiple Products: Apple Multiple Products Classic Buffer Overflow Vulnerability

    [CISA KEV actively exploited] Vendor: Apple | Product: Multiple Products | Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-04-03 | Ransomware use: Unknown | Added: 2026-03-20 CVEs: CVE-2025-43520. CISA KEV/exploitation signal detected. Vendors: Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

    Vendors:AppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    20 mar 2026, 00:00
    Actualizado
    17 may 2026, 13:01
    Detectado
    17 may 2026, 13:01
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2025-43520
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 90 días
    INMEDIATOCríticoACTION REQUIREDNIS2CRAInteligencia operacional

    CVE-2025-43510 · Apple Multiple Products: Apple Multiple Products Improper Locking Vulnerability

    [CISA KEV actively exploited] Vendor: Apple | Product: Multiple Products | Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected changes in memory shared between processes. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-04-03 | Ransomware use: Unknown | Added: 2026-03-20 CVEs: CVE-2025-43510. CISA KEV/exploitation signal detected. Vendors: Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

    Vendors:AppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    20 mar 2026, 00:00
    Actualizado
    17 may 2026, 13:01
    Detectado
    17 may 2026, 13:01
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2025-43510
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 90 días
    INMEDIATOCríticoACTION REQUIREDNIS2CRAInteligencia operacional

    CVE-2025-31277 · Apple Multiple Products: Apple Multiple Products Buffer Overflow Vulnerability

    [CISA KEV actively exploited] Vendor: Apple | Product: Multiple Products | Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corruption. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-04-03 | Ransomware use: Unknown | Added: 2026-03-20 CVEs: CVE-2025-31277. CISA KEV/exploitation signal detected. Vendors: Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

    Vendors:AppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    20 mar 2026, 00:00
    Actualizado
    17 may 2026, 13:01
    Detectado
    17 may 2026, 13:01
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2025-31277
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 90 días
    INMEDIATOCríticoACTION REQUIREDNIS2CRAInteligencia operacional

    CVE-2023-43000 · Apple Multiple Products: Apple Multiple products Use-After-Free Vulnerability

    [CISA KEV actively exploited] Vendor: Apple | Product: Multiple Products | Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to the processing of maliciously crafted web content that may lead to memory corruption. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-03-26 | Ransomware use: Unknown | Added: 2026-03-05 CVEs: CVE-2023-43000. CISA KEV/exploitation signal detected. Vendors: Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

    Vendors:AppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    05 mar 2026, 00:00
    Actualizado
    17 may 2026, 13:01
    Detectado
    17 may 2026, 13:01
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2023-43000
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 90 días
    INMEDIATOCríticoACTION REQUIREDNIS2CRAInteligencia operacional

    CVE-2021-30952 · Apple Multiple Products: Apple Multiple Products Integer Overflow or Wraparound Vulnerability

    [CISA KEV actively exploited] Vendor: Apple | Product: Multiple Products | Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted web content that may lead to arbitrary code execution. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-03-26 | Ransomware use: Unknown | Added: 2026-03-05 CVEs: CVE-2021-30952. CISA KEV/exploitation signal detected. Vendors: Apple. DORA relevance: medium.

    Por qué importa

    Explotación activa confirmada. Riesgo material para entornos expuestos.

    Acción recomendada

    Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

    Vendors:AppleCISO · SecOps · Incident Response · Vulnerability Management
    Publicado
    05 mar 2026, 00:00
    Actualizado
    17 may 2026, 13:01
    Detectado
    17 may 2026, 13:01
    Fuente
    CISA KEV Catalog
    Referencia técnica
    NVD · CVE-2021-30952
    CISA KEV Catalog
    Prioridad · 69/100publication is historical (+0) · active exploitation/KEV/ransomware signal (+50) · critical severity (+25) · regulatory relevance (+15) · CISA KEV Catalog authority (+12)
    hace 90 días