Ciberseguridad desde Málaga · Redes, anzuelos y amenazas

Noticias de ciberseguridad · semana del 5 al 11 oct 2026

Lo más relevante de la actualidad en ciberseguridad, con enlace a la fuente original.

  1. Wikimedia Foundation: OpenAI agents tried to edit pages and compromise notes tool

    Beyond the potential misuses of its services, Wikimedia said activity by AI agents can be a drain on web platforms that are already operating with limited resources.

    Fuente: The Record ↗
  2. ClingSTUN Turns Vulnerable IoT Devices Into Proxy Nodes

    The Linux backdoor exploits 24 known flaws to compromise IoT devices and uses legitimate public STUN servers to obscure communications.

    Fuente: Dark Reading ↗
  3. Acer impulsa la adopción responsable de la IA en las escuelas europeas

    Para el curso escolar 2026/2027, Acer for Education sigue impulsando la adopción responsable de la inteligencia artificial en las escuelas europeas, basándose en la experiencia de los proyectos piloto puestos en marcha en Reino Unido,…

    Fuente: CyberSecurity News ↗
  4. Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

    A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck. The vulnerability in question is CVE-2026-61500 (CVSS score: 9.3), a case of session forgery stemming…

    Fuente: The Hacker News ↗ También en: SecurityWeek, Una al día, BleepingComputer
  5. Alleged ShinyHunters Leader Arrested in Jordan

    Known as Rey, the suspect is reportedly helping the FBI identify and locate other members of the extortion group.

    Fuente: SecurityWeek ↗ También en: The Record
  6. Patrice Caine, CEO de Thales: «la inteligencia artificial es el gran desafío de la ciberseguridad»

    La inteligencia artificial plantea una gran paradoja para las organizaciones en términos de ciberseguridad: el remedio y la enfermedad nacen de la misma fuente. A la vez que les ayuda a protegerse de manera más eficaz, supone un gran…

    Fuente: Red Seguridad ↗
  7. US, Australia warn of latest Citrix vulnerability after NetScaler advisory

    Citrix confirmed late on Friday that it was “tracking a newly observed issue” related to some customer-managed NetScaler deployments but claimed the problem was not connected to vulnerabilities reported last week that also caused alarm…

    Fuente: The Record ↗
  8. IQVIA fined $7.8 million for failing to properly anonymize health data

    Italy's Data Protection Authority (GPDP) has fined IQVIA €7 million ($7.8M) over poor data-processing practices that the agency says could have put roughly one million patients at risk of data exposure and de-anonymization. [...]

    Fuente: BleepingComputer ↗
  9. Ukraine grocery chain ATB confirms cyberattack as hackers threaten to leak data

    Ukraine’s largest grocery store chain, ATB, confirmed that it was hit by a cyberattack after hackers posted an extortion demand on its website.

    Fuente: The Record ↗
  10. Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes

    Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions. The vulnerability, tracked as CVE-2026-96940,…

    Fuente: The Hacker News ↗
  11. Chinese Hackers Impersonate US Officials for AI Cyber Espionage

    An emerging threat group known as TA419 established seemingly legitimate professional relationships with AI policy experts working for US think tanks, universities, and legal organizations.

    Fuente: Dark Reading ↗
  12. University of Illinois Chicago affected by ransomware attack on medical school

    A ransomware attack that affected the University of Illinois Chicago (UIC) College of Medicine resulted in the theft of some information from its servers.

    Fuente: The Record ↗
  13. Data breach at Denmark’s national population register exposes 8.8 million people

    Denmark is investigating a data breach affecting approximately 8.8 million people after unauthorized users gained access to its national population register.

    Fuente: The Record ↗ También en: BleepingComputer
  14. New Dell System Update flaw lets hackers gain root privileges

    Dell warned customers to patch a critical vulnerability in the System Update (DSU) command-line interface (CLI) deployment tool as soon as possible. [...]

    Fuente: BleepingComputer ↗
  15. Google Narrows Open Source Bug Bounty Amid Wave of Invalid Automated Reports

    Google has temporarily stopped accepting product vulnerability reports through its Open Source Software Vulnerability Reward Program (OSS VRP).

    Fuente: SecurityWeek ↗
  16. South Korea probes bank breaches amid suspected AI-powered attacks

    South Korea's Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country. [...]

    Fuente: BleepingComputer ↗
  17. Belarusian hacktivists spent two years inside Russian healthcare network, researchers say

    Russian cybersecurity researchers attributed a quiet two-year espionage campaign to the Belarusian Cyber Partisans, a group better known for public attacks against governments and infrastructure.

    Fuente: The Record ↗
  18. tenfold CE: Our free Identity Governance tool just got 2 new features

    tenfold has added shared content governance and real-time event auditing to its free Community Edition for organizations with under 150 users. The new features help teams manage Microsoft 365 sharing and investigate suspicious identity…

    Fuente: BleepingComputer ↗
  19. Japanese media group Nikkei discloses cyberattack targeting journalistic sources

    The Japanese media giant Nikkei disclosed a cyber incident involving an employee email account that may have compromised journalistic sources.

    Fuente: The Record ↗
  20. Alleged dev of Ploutus ATM malware appears in US court after arrest

    The U.S. Department of Justice has announced the arrest of the alleged developer of Ploutus malware, used to steal millions of dollars in ATM jackpotting attacks across the United States. [...]

    Fuente: BleepingComputer ↗
  21. Linux Backdoor Abuses STUN Protocol, Exploits Dozens of Flaws

    ClingSTUN operates as a back-connect proxy backdoor, sets up persistence, and contains exploits for self-propagation.

    Fuente: SecurityWeek ↗
  22. Need for Speed: AI-Driven Attacks Are Changing Security Strategies

    AI-powered attacks are fast, relentless, and automated. How security teams can keep up is top of mind, according to the latest Dark Reading reader poll.

    Fuente: Dark Reading ↗
  23. 250,000 Impacted by Data Breaches at New Jersey, Texas Healthcare Firms

    Hackers stole patient information from Clover Health Investments and AngMar Management Services in July.

    Fuente: SecurityWeek ↗
  24. The Credential Layer Is Expanding Faster Than Security Teams Can See It

    Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect,…

    Fuente: The Hacker News ↗
  25. Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

    Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. "Cling is notable not because it introduces a…

    Fuente: The Hacker News ↗
  26. Senate Passes Bipartisan Bill to Strengthen Healthcare Cybersecurity

    More than 730 cyber breaches affected over 270 million Americans last year, costing an average of $10 million per breach.

    Fuente: SecurityWeek ↗
  27. OpenAI will show visual ads in ChatGPT while you generate images

    OpenAI is expanding ads in ChatGPT, and one of the first new formats will show visual ads while you're generating images. [...]

    Fuente: BleepingComputer ↗
  28. Microsoft: Windows KB5124010 update crashes some games and apps

    Microsoft confirmed over the weekend that some games and applications using AC-3 (Dolby Digital) audio decoding will crash after installing the September 2026 KB5124010 Windows 11 preview update. [...]

    Fuente: BleepingComputer ↗
  29. Google halts open-source bug bounty program amid AI spam surge

    Google has now suspended submissions to its Open Source Software Vulnerability Rewards Program (OSS VRP) after being flooded by AI-generated reports. [...]

    Fuente: BleepingComputer ↗
  30. Cinco formas de impulsar a tu equipo con los nuevos ordenadores HP con IA

    La inteligencia artificial (IA) ya no es solo una curiosidad tecnológica: cuando se integra bien en el puesto de trabajo, se traduce en más productividad, mejor colaboración y mayor seguridad para los datos. Pero para aprovecharla de…

    Fuente: Red Seguridad ↗
  31. ● Explotada activamente

    Exploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days Earlier

    Citrix has confirmed that a new zero-day vulnerability, CVE-2026-88779, emerged just days after two other exploited flaws were patched.

    Fuente: SecurityWeek ↗ También en: The Hacker News
  32. TTY Logs and the Data it Captures, (Sun, Oct 4th)

    For an experiment, I created a script [1] that parses and send the TTY logs collected from actors or bots activity that run various commands after they successfully login the DShield sensor. Those TTY logs are sent daily at the end of…

    Fuente: SANS ISC ↗