CYBERBOX THREAT INTELLIGENCE

Do ruído global à decisão local.

Vulnerabilidades com exploração confirmada e notícias do setor, pontuadas de 0 a 100 para mostrar o que corrigir primeiro.

FONTES SINCRONIZADASAtualizado em 11 de set. de 2026, 16:32 · 5/5 fontes · janela de 15 min · TLP:CLEAR
CYBERBOX // THREAT PULSEVISÃO GLOBAL DE AMEAÇAS
LIVE
PRIORIDADE CRÍTICA00na janela atual
KEVs MONITORADAS18exploração confirmada
SINAIS EDITORIAIS14fontes abertas
CVE-2026-20079Cisco · Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management79
CVE-2026-48710Kludex · Starlette64
CVE-2026-75650Adobe · Commerce and Magento61
CVE-2026-84869ConnectWise · ScreenConnect60
FONTES ATIVAS5/5
RANSOMWARE00 sinais
JANELA DE ATUALIZAÇÃO15 minutos
CLASSIFICAÇÃOTLP:CLEAR
RADAR CYBERBOX

O que está acontecendo agora.

14 notícias e 18 vulnerabilidades no filtro Todos.

INTELIGÊNCIA ABERTA

Sinais que merecem contexto.

14 registros
IA e DadosThe Hacker News

When the Whole Company Adopts AI: What It Does to Your SOC

Over the past year, we watched a new class of alert appear in enterprise security operations centers and grow faster than anything else in the stream: alerts that were triggered by AI tools and agents. Not attacks against AI, but the ordinary, everyday footprint of an organization using it, from developers running coding agents and non-technical staff signing consumer AI tools into corporate

CONTEXTO CYBERBOXVerifique exposição de dados, permissões e controles de uso de IA antes de ampliar a adoção corporativa.
Analisar
AtaquesThe Hacker News

OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers

The "major malicious attack" that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a new report published by researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx. On May 12, Maciej Mensfeld, senior product manager for software supply chain security at Mend.io, disclosed details of a coordinated cyber attack that targeted the package manager for the

CONTEXTO CYBERBOXCorrelacione os indicadores divulgados com sua telemetria e reavalie os controles preventivos associados.
Analisar
IA e DadosBleepingComputer

Hackers abused Claude to extract secrets from 1.8M Android apps

Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model for malicious purposes. [...]

CONTEXTO CYBERBOXVerifique exposição de dados, permissões e controles de uso de IA antes de ampliar a adoção corporativa.
Analisar
AtaquesBleepingComputer

Florida confirms DMV database breached via stolen police account

The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach, saying the attackers gained access using credentials belonging to a police department employee. [...]

CONTEXTO CYBERBOXCorrelacione os indicadores divulgados com sua telemetria e reavalie os controles preventivos associados.
Analisar
AtaquesBleepingComputer

Passkey-themed phishing attacks lead to Microsoft 365 data theft

Microsoft says threat actors linked to ShinyHunters, Helix, and other extortion gangs are using passkey and single sign-on-themed social engineering attacks to compromise corporate Microsoft accounts and steal data from Microsoft 365 services. [...]

CONTEXTO CYBERBOXCorrelacione os indicadores divulgados com sua telemetria e reavalie os controles preventivos associados.
Analisar
VulnerabilidadesThe Hacker News

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild probes within hours of public disclosure. The vulnerability in question is CVE-2026-85706 (CVSS score: 10.0), a path traversal issue in the repository commits API that could allow an unauthenticated user to read arbitrary files from the GitLab server under

CONTEXTO CYBERBOXAvalie se a tecnologia afetada existe no ambiente e priorize correções com base em exposição e exploração ativa.
Analisar
VulnerabilidadesBleepingComputer

Artifactory flaws chained in attacks deploying backdoor malware

Threat actors are exploiting critical and high-severity vulnerabilities in JFrog Artifactory to bypass authentication, gain administrative privileges, and deploy a Rust backdoor on vulnerable self-hosted servers. [...]

CONTEXTO CYBERBOXAvalie se a tecnologia afetada existe no ambiente e priorize correções com base em exposição e exploração ativa.
Analisar
IA e DadosThe Hacker News

Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks

Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax. Knowledge distillation by itself is a legitimate training method. It refers to a machine learning technique where a large, powerful AI model assumes the role of a "teacher" to

CONTEXTO CYBERBOXVerifique exposição de dados, permissões e controles de uso de IA antes de ampliar a adoção corporativa.
Analisar
VulnerabilidadesThe Hacker News

Claude Used to Automate Exploitation and Data Theft Across Multiple Victims

Anthropic has warned that cybercriminals and state-sponsored hackers alike are using its Claude models for cyber attacks, weapons design, propaganda, and mass surveillance between December 2025 and August 2026. The threat actors, which the artificial intelligence (AI) company has branded Generative Threat Groups (GTGs), span state-sponsored groups, financially motivated criminals, commercial

CONTEXTO CYBERBOXAvalie se a tecnologia afetada existe no ambiente e priorize correções com base em exposição e exploração ativa.
Analisar
IA e DadosThe Hacker News

Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection

Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted workflow to get ahead of the detection curve. The operation has been attributed to a cyber espionage group it calls GTG-20006 (where "GTG" stands for Generative Threat Group), which aligns with broader reporting linking the cluster to Midnight

CONTEXTO CYBERBOXVerifique exposição de dados, permissões e controles de uso de IA antes de ampliar a adoção corporativa.
Analisar
IA e DadosBleepingComputer

How Threat Actors Are Turning Trusted AI Platforms Into an Attack Surface

Threat actors are abusing trusted AI platforms to host malicious content, poison search results, and trick users into installing malware. Huntress examines campaigns targeting AI users through weaponized Claude Artifacts, shared AI conversations, sponsored search results, and ClickFix-style lures. [...]

CONTEXTO CYBERBOXVerifique exposição de dados, permissões e controles de uso de IA antes de ampliar a adoção corporativa.
Analisar
VulnerabilidadesThe Hacker News

Your Critical Vulnerabilities Might Not Be Your Biggest Risk

Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining which of those vulnerabilities actually create a path to compromise. A critical vulnerability may look alarming on a scanner report, but if it sits behind strong segmentation, identity controls, and other defenses that prevent an attacker

CONTEXTO CYBERBOXAvalie se a tecnologia afetada existe no ambiente e priorize correções com base em exposição e exploração ativa.
Analisar
VulnerabilidadesBleepingComputer

GitLab urges users to patch max severity path traversal flaw

GitLab urged users on Thursday to patch their servers immediately against a maximum-severity path traversal vulnerability tracked as CVE-2026-85706. [...]

CONTEXTO CYBERBOXAvalie se a tecnologia afetada existe no ambiente e priorize correções com base em exposição e exploração ativa.
Analisar
PRIORIDADE CYBERBOX

Severidade sozinha não define urgência.

Cada CVE recebe de 0 a 100 pontos somando quatro evidências públicas. Acima de 80, prioridade crítica.

01

Exploração ativa

CISA KEV

45 pts
02

Probabilidade

FIRST EPSS

25 pts
03

Severidade

NVD / CVSS

15 pts
04

Ransomware

Evidência de campanha

15 pts
FONTES E TRANSPARÊNCIA

Inteligência com origem verificável.

Cada registro preserva a fonte original, a data e a separação entre fato publicado e leitura Cyberbox.

Este produto usa dados da API do NVD, mas não é endossado ou certificado pelo NVD. As pontuações Cyberbox são orientativas e devem ser correlacionadas com o contexto de cada ambiente.

PRÓXIMA CAMADA

Leve o radar para dentro do seu ambiente.

Conecte inteligência externa ao inventário e às vulnerabilidades identificadas pelo Cyberbox GV.

Conhecer Cyberbox GV
CONTATO COMERCIAL

Conecte o próximo passo da sua segurança.

Conte um pouco sobre o seu ambiente. A equipe Cyberbox entra em contato para entender o cenário e indicar um caminho de validação.

ATENDIMENTO ESPECIALIZADOConversa técnica, sem compromisso.
Seus dados não são armazenados no navegador.