Este reporte corresponde a una selección de las últimas noticias, alertas de seguridad, vulnerabilidades, ataques y casos de estudio observados durante las últimas horas. Esta información ha sido recopilada para entregar un panorama general de las amenazas más importantes del momento. El objetivo principal es dar visibilidad rápida sobre los cambios en la tendencia y la evolución del cibercrimen para generar conciencia y estrategias de protección en base a estos riesgos emergentes.
Noticias y Casos de Estudio
- Royal Mail trials ‘operational workarounds’ following suspected ransomware attack – The Record from Recorded Future News
- Ransomware profits drop 40% in 2022 as victims refuse to pay (bleepingcomputer.com)
- The Media Industry Is the Most Vulnerable to Cyber Attacks, Report Shows (darkreading.com)
- No evidence of personal data leak amid national security probe: NHIA (databreaches.net)
- Microsoft pushes KB5021751 to check for outdated Office installs (bleepingcomputer.com)
- Enterprises remain vulnerable through compromised API secrets – Help Net Security
- WhatsApp Hit with €5.5 Million Fine for Violating Data Protection Laws (thehackernews.com)
- The Evolution of Account Takeover Attacks: Initial Access Brokers for IoT (darkreading.com)
- Autoridades Del Orden Arrestan Al Co-fundador Del Exchange Bitzlato Por Colaborar Con Ciberdelincuentes | CronUp Ciberseguridad
Ciberataques e Incidentes
- Mailchimp discloses a new incident, the second one in 6 monthsSecurity Affairs
- Canada’s largest alcohol retailer infected with card skimming malware twice since December – The Record from Recorded Future News
- Ransomware gang steals data from KFC, Taco Bell, and Pizza Hut brand owner (bleepingcomputer.com)
- ICE releases thousands of immigrants affected by data breach (databreaches.net)
- Costa Rica’s Ministry of Public Works and Transport crippled by ransomware attack – The Record from Recorded Future News
- T-Mobile confirms another data breach affecting 37 million customer accounts – The Record from Recorded Future News
- PayPal notifies 34942 users of data breachSecurity Affairs
- More than 19,000 records released in B.C. school district data breach (databreaches.net)
- More data leaked from St. Rose Hospital ransomware incident (databreaches.net)
- ODIN Intelligence website is defaced as hackers claim breach (databreaches.net)
- LAUSD says Vice Society ransomware gang stole contractors’ SSNs (bleepingcomputer.com)
Vulnerabilidades
- Update now! Two critical flaws in Git’s code found, patched (malwarebytes.com)
- Hackers exploiting vulnerability affecting Zoho ManageEngine products: Rapid7 – The Record from Recorded Future News
- Aumentan Las Sospechas De Un Grupo APT Chino Que Estaría Explotando Una Vulnerabilidad ZERO-DAY De Fortinet SSL-VPN | CronUp Ciberseguridad
Malware
- New ‘Blank Image’ attack hides phishing scripts in SVG files (bleepingcomputer.com)
- Roaming Mantis’ Android malware adds DNS changer to hack WiFi routers (bleepingcomputer.com)
Ransomware (nuevas víctimas publicadas)
Fecha de Publicación | Título de la Publicación | Actor de Amenazas |
---|---|---|
2023-01-20 | Guardian Analytics (US) | daixin |
2023-01-20 | flatironssolutions.com | lockbit3 |
2023-01-20 | Monmouth College | vicesociety |
2023-01-19 | NextGen | alphv |
2023-01-19 | Fresh Del Monte | alphv |
2023-01-19 | Pharmacare | alphv |
2023-01-18 | tvk.nl | lockbit3 |

Alerta Temprana de Riesgos Cibernéticos (ATRc®)
Attack Surface Management
Cyber Threat Intelligence