Visualização normal

Ontem — 8 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Do Son
    Pegasus spyware infected a Serbian activist through a zero-click iMessage exploit, part of Serbia's largest spyware wave. Update iOS now. Related Posts: Node.js Malware Attacks Target Tech and Finance Sectors Python NodeStealer Adds Keylogging and Screen Capture Spyware Packagist Themes iOS Spyware Steals Crypto Wallet Seeds The post Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage appeared first on Daily CyberSecurity.
     
Antes de ontemCybersecurity News
  • ✇Security | CIO
  • What Nvidia’s $13B acquisition of Hugging Face means for AI model choice
    When Nvidia said Thursday that it plans to pay $13 billion to acquire Hugging Face, the question arose of whether the open AI platform would remain open when it becomes a unit of Nvidia. And the current lack of a single viable open alternative that does everything Hugging Face does for enterprises adds further complications for CIOs. Rumors of the pending deal have been circulating for at least a week.  In its announcement, Nvidia said, “Hugging Face will remain an o
     

What Nvidia’s $13B acquisition of Hugging Face means for AI model choice

3 de Setembro de 2026, 17:55

When Nvidia said Thursday that it plans to pay $13 billion to acquire Hugging Face, the question arose of whether the open AI platform would remain open when it becomes a unit of Nvidia. And the current lack of a single viable open alternative that does everything Hugging Face does for enterprises adds further complications for CIOs.

Rumors of the pending deal have been circulating for at least a week. 

In its announcement, Nvidia said, “Hugging Face will remain an open platform for the entire AI ecosystem. Developers will choose the models they want, the frameworks they want, the clouds and inference service providers they want and the computing platforms they want. Nvidia compute will not be required to build on or deploy through Hugging Face.”

It added that Hugging Face will continue to support open source and open weight models from every model builder, and “continue to support multi-cloud and multi-accelerator development and deployment, so builders can use the hardware and infrastructure that best fit their work.”

Hugging Face CEO Clément Delangue took to his X account to also reassure customers, noting, “open-source AI is at an inflection point” and pointing out that, for the business to scale, it needs “more compute, more support, more collaboration and more visibility. That’s why we went to talk to [Nvidia CEO] Jensen [Huang], who offered to do exactly that with us.”

Preserving the Hugging Face team

Nvidia is also attempting to retain some of the Hugging Face workforce. As part of the deal, according to Nvidia’s 8-K filing, the purchase price is $11.9 billion, with “approximately $1 billion” earmarked for “an equity-based retention program” for Hugging Face employees who agree to join Nvidia. It has yet to be announced how many members of the Hugging Face workforce, estimated to be almost 750, will be offered roles at Nvidia.

But despite the reassurances from Nvidia about maintaining the open nature of Hugging Face, analysts and consultants suggested that the truth may not be known until months, or even a year, after the acquisition finalizes sometime next year; the transaction is expected to close “in the first half of 2027.”

Cause for optimism

Enterprise CIOs can only wait and see what Nvidia will ultimately do. 

But in the meantime, there is cause for optimism, given the history of recent open source acquisitions, said Jason Andersen, principal analyst at Moor Insights & Strategy. 

“There is always a ‘sky is falling’ narrative” with these transactions, Andersen said, but in recent years, open source acquisitions have often turned out quite well.

“What happened to Red Hat after IBM bought it? Things got better,” Andersen said. “The same can be said for GitHub after Microsoft bought it. Or Google’s acquisition of Gemma. There are just too many examples of it going the right way.”

Justin Greis, CEO of consulting firm Acceligence, also sees this acquisition as potentially good news for enterprise CIOs. 

“If Nvidia turned [Hugging Face] into a walled garden or an obvious funnel toward Nvidia hardware, it could undermine the community and network effects it just paid nearly $13 billion to acquire,” he pointed out. “Nvidia is being unusually explicit that Hugging Face will remain model-, framework-, cloud- and accelerator-agnostic, including saying that Nvidia compute will not be required.” 

And, he added, Nvidia could indeed make Hugging Face even more enterprise friendly. 

“Nvidia itself points to the opportunity to improve Hugging Face’s reliability, safety, model evaluation, inference, and deployment capabilities. That is potentially a very big deal,” Greis said, noting that enterprises don’t simply need access to more models, they need confidence that those models can operate within complex environments with governance, security, performance, resilience, and lifecycle management around them.

Those needs make the combination compelling, he said: “Nvidia has the engineering depth, infrastructure expertise and ecosystem reach to significantly raise that bar. Hugging Face has been enormously successful as a developer and open-model platform. Nvidia now has the opportunity to help make it much more enterprise-grade: a place where companies can discover models, datasets, and AI components, but also increasingly evaluate, test, secure, operationalize, and deploy them with the level of confidence and rigor expected inside a large enterprise.”

Avoid a single dependency

Still, said Shashi Bellamkonda, a principal research director at Info-Tech Research Group, there are various practical steps that CIOs can and should soon take to preserve what they have already created within Hugging Face.

“This should be a clarion call for CIOs to treat Hugging Face and open source models as part of their enterprise supply chain, and if a production system depends on an artifact hosted on Hugging Face, keep a verified copy in a second registry, whether that is GitLab, Amazon S3, or an internal artifact store,” he said. “Enterprises should also consider the source for open models and develop a fallback plan such as the model developer’s own repository or another hub, because Hugging Face is the dominant platform today, but no enterprise should depend on one company’s availability, governance, or roadmap.”

Bellamkonda also pointed out that, by owning Hugging Face, Nvidia would gain valuable visibility into which models are gaining traction, how developers are deploying them, and which hardware ecosystems they run on. It would then “hold a powerful position in the distribution of new open models, so that combination of infrastructure ownership, market intelligence, and hardware influence should factor into CIO planning,” he said.

Mike Wilkes, enterprise CISO at Aikido Security, added that one of the factors that makes a CIO’s 2027 contingency planning in the face of Hugging Face’s new ownership difficult is that there are not that many large open source companies that could directly replace Hugging Face for an enterprise.

“No true replacement exists for Hugging Face at its scale, but there are ways to avoid making it a single point of dependency,” he said. “Azure AI Foundry is probably the closest enterprise alternative regarding model breadth, now advertising more than 11,000 models and supporting models from OpenAI, Anthropic, Meta, Mistral and others. AWS SageMaker JumpStart is another option, as enterprises can create private curated model hubs with their own governance controls. Google’s Model Garden is a third viable choice and supports both managed and self-deployed open models inside the customer’s own cloud environment.”

But adopting any of those alternatives means a move from an independent Hugging Face to Microsoft, Amazon, or Google, “so they change the concentration risk rather than eliminating it,” Wilkes noted. “The best enterprise strategy is not to search for another Hugging Face, but to separate model discovery from model custody. We can continue using Hugging Face to discover and evaluate models while mirroring approved models into an internal repository or registry under our control.”

Risk of increasing AI control by Nvidia

IDC’s Ashish Nadkarni, a group VP, said CIOs must also remember that the Nvidia move could give it various levers to even further tighten its control over global AI developments. 

“Hugging Face is like GitHub for AI. It is the default front door for open AI innovation: it’s where data scientists, machine learning engineers, and developers discover pretrained models, fine-tune them, and push them into production, or find open datasets to train their own models,” he said. “Owning that front door gives Nvidia a major position in the mindshare of today’s AI development personas.”

Consultant Brian Levine, executive director of FormerGov, also advised CIOs to stay alert. He predicted that Nvidia will exert greater control over Hugging Face efforts, but it will happen so gradually that it might not be noticed.

“The risk isn’t a dramatic reverse course. It’s a slow drift, where the Nvidia-optimized path quietly becomes the easy path, and everything else becomes the friction path,” he said. “Stop treating Hugging Face as a vendor-neutral utility and start treating it as a strategically-owned platform. That doesn’t mean leave. It means keep your options real and tested, not theoretical.”

Unanswered questions

And, from an enterprise CIO’s perspective, there’s another worry.

“Nvidia’s openness commitment is precise where it is cheap, and silent where it is expensive,” said Sanchit Vir Gogia, chief analyst at Greyhound Research. “The release promises that Nvidia compute will not be required, that multi-cloud and multi-accelerator support continues, and that developers choose their own models, each of which is a commitment about availability rather than about terms. Nothing in it addresses ranking, search placement, or default routing, and those are what decide which models a developer ever sees. Nobody has to be banned for the field to tilt. Gravity is enough and gravity is the part the pledge does not mention.”

This article originally appeared on InfoWorld.

  • ✇Blog oficial da Kaspersky
  • O que fazer ao encontrar um cartão bancário de outra pessoa Kaspersky Team
    Os grupos de bairro frequentemente ficam cheios de mensagens sobre cartões bancários perdidos que foram encontrados. As pessoas têm boas intenções e querem ajudar um vizinho, então publicam uma foto do cartão com o número e outros dados completamente visíveis. Outras pessoas dizem no grupo que deixaram o cartão com um segurança, caixa ou gerente da loja ou estabelecimento onde o encontraram, ou do mais próximo. Hoje vamos explicar por que nenhuma dessas opções é uma boa ideia e o que você realme
     

O que fazer ao encontrar um cartão bancário de outra pessoa

5 de Setembro de 2026, 08:00

Os grupos de bairro frequentemente ficam cheios de mensagens sobre cartões bancários perdidos que foram encontrados. As pessoas têm boas intenções e querem ajudar um vizinho, então publicam uma foto do cartão com o número e outros dados completamente visíveis. Outras pessoas dizem no grupo que deixaram o cartão com um segurança, caixa ou gerente da loja ou estabelecimento onde o encontraram, ou do mais próximo. Hoje vamos explicar por que nenhuma dessas opções é uma boa ideia e o que você realmente deve fazer se encontrar o cartão bancário de outra pessoa.

O que NÃO fazer ao encontrar um cartão perdido e por quê

Vamos explicar por que você não deve publicar em um grupo uma foto do cartão com os dados visíveis, ficar com ele ou entregá-lo a um desconhecido. O primeiro motivo é o mais óbvio, mas vale a pena reforçar: os dados do cartão são informações privadas e não devem ser compartilhados com pessoas que não têm motivo para vê-los. Uma foto publicada em um grupo pode acabar nas mãos de criminosos, que podem tentar usar esses dados para fazer compras fraudulentas pela internet. O pior cenário é uma foto mostrando os dois lados do cartão e também expondo o código de segurança de três dígitos, conhecido como CVC, CVV ou CVP, que fica no verso.

Agora, um ponto menos óbvio: por que você não deve publicar que encontrou um cartão, mesmo com o número borrado na foto, e ficar com ele até o proprietário aparecer. Como não há garantia de que você foi a primeira pessoa a pegar o cartão, fazer isso pode colocar você sob suspeita caso desapareça dinheiro da conta. Mesmo que você não tenha absolutamente nada a ver com qualquer furto, o simples fato de o cartão ter ficado em sua posse por algum tempo ainda pode fazer com que você tenha que dar explicações ao proprietário ou à polícia.

A mesma lógica se aplica a entregar o cartão a terceiros. Um segurança, caixa ou gerente é tão desconhecido quanto qualquer pessoa, e nenhum deles tem autoridade especial para assumir a responsabilidade por um cartão bancário encontrado. Entregar o cartão a essas pessoas dá a elas a oportunidade de usar o dinheiro de outra pessoa e, se isso acontecer, você pode acabar sob investigação.

A abordagem “o que os olhos não veem, o coração não sente”, ou seja, deixar o cartão onde o encontrou ou movê-lo para um local mais visível, é mais segura para você, mas ainda assim não é a atitude correta. Se você fizer isso, outra pessoa vai encontrá-lo, e não há garantia de que será uma pessoa bem-intencionada. Ela pode tentar retirar dinheiro da conta do verdadeiro proprietário. Portanto, essa também não é uma boa opção.

O que você DEVE fazer com um cartão bancário encontrado

Agora vamos falar sobre o que você deve fazer. A atitude correta pode surpreender você: ligue para o banco que emitiu o cartão, informe que encontrou o cartão e, depois… destrua o cartão. É possível que o proprietário ainda nem tenha percebido o desaparecimento do cartão. Com o uso de pagamentos por aproximação, um cartão físico pode ficar bastante tempo sem ser usado na carteira. O banco bloqueará o cartão, avisará o proprietário de que o cartão desapareceu e emitirá um novo.

Essa última etapa, destruir o cartão, pode surpreender e até gerar resistência, mas mantemos nossa recomendação: um cartão encontrado deve ser destruído. Dessa forma, ninguém poderá usá-lo, e você não precisará ficar com a propriedade de outra pessoa nem correr o risco de ser considerado suspeito caso desapareça dinheiro da conta. A maneira mais simples e confiável de destruir um cartão é cortá-lo cuidadosamente em pequenos pedaços com uma tesoura de cozinha e jogá-los no lixo ou reciclá-los.

Vale a pena ter algo em mente: atualmente, um cartão físico não representa uma perda tão grande para seu verdadeiro proprietário. Para começar, os bancos reemitem cartões de forma rápida e fácil. Na maioria dos bancos, você nem precisa ir a uma agência, pois o novo cartão é entregue diretamente na sua casa.

Além disso, a emissão de um novo cartão normalmente não impede o proprietário de fazer pagamentos. Em muitos casos, basta usar um cartão virtual ou outra forma de pagamento. Portanto, um cartão destruído causa muito menos transtorno ao proprietário do que o risco de ele cair nas mãos erradas e ser usado para retirar dinheiro da conta.

E se, de alguma forma, o proprietário irritado conseguir encontrar você e fizer perguntas, basta mostrar este artigo para que ele entenda o problema que você ajudou a evitar.

Quando você não deve destruir um cartão encontrado

Além dos cartões bancários, existem também cartões de múltiplas funções, como os emitidos para crianças e estudantes, que combinam algumas funções, como cartão de acesso à escola ou universidade e cartão de transporte público. Crianças, especialmente as mais novas, perdem esse tipo de cartão com bastante frequência. Restabelecer todas as funções desses cartões pode levar muito mais tempo do que reemitir um cartão bancário, e os valores armazenados neles geralmente são pequenos. Por isso, se você encontrar um desses cartões, o melhor a fazer é levá-lo à escola ou universidade indicada no cartão e entregá-lo ao segurança ou à recepção.

Em resumo: o que fazer ao encontrar um cartão bancário de outra pessoa

Para resumir, se um cartão bancário perdido chegar às suas mãos:

  1. Procure o número de telefone do banco no cartão. Normalmente, ele está impresso no próprio cartão. Caso não esteja, você pode encontrá-lo facilmente no site oficial do banco. Depois, ligue para o banco. Informe que você encontrou o cartão de outra pessoa.
  2. Depois da ligação, destrua o cartão: corte-o em pequenos pedaços com uma tesoura e jogue-os fora.

E mais um lembrete sobre o que não fazer: não publique fotos do cartão ou de seus dados em grupos de conversa ou nas redes sociais, não fique com o cartão na esperança de localizar o proprietário e não o entregue a desconhecidos.

Também recomendamos acompanhar nosso blog para ficar por dentro das ameaças online mais recentes. E fique à vontade para compartilhar este artigo no grupo do seu bairro, para que seus vizinhos saibam exatamente o que fazer caso encontrem o cartão bancário de outra pessoa.

Quanto à proteção do seu próprio dinheiro, vale a pena usar uma solução de segurança robusta e em várias camadas, que proteja seu dinheiro, cartões, carteiras e pagamentos. Saiba mais em Cinco tecnologias da Kaspersky que vão proteger suas finanças.

Quais outros riscos ocultos os cartões bancários apresentam? Descubra em nossos outros posts:

  • ✇Security Affairs
  • Pegasus and NoviSpy Used Against Serbian Protesters Pierluigi Paganini
    Serbian activists were targeted with zero-click Pegasus and NoviSpy spyware, exposing a major surveillance campaign ahead of elections. A member of Serbia’s student protest movement had their iPhone infected with NSO Group‘s Pegasus spyware without ever clicking a link or opening a file. The Citizen Lab confirmed the infection in collaboration with the SHARE Foundation, tracing it to an iMessage zero-click exploit and identifying high-confidence indicators of compromise between December 2025
     

Pegasus and NoviSpy Used Against Serbian Protesters

3 de Setembro de 2026, 17:17

Serbian activists were targeted with zero-click Pegasus and NoviSpy spyware, exposing a major surveillance campaign ahead of elections.

A member of Serbia’s student protest movement had their iPhone infected with NSO Group‘s Pegasus spyware without ever clicking a link or opening a file. The Citizen Lab confirmed the infection in collaboration with the SHARE Foundation, tracing it to an iMessage zero-click exploit and identifying high-confidence indicators of compromise between December 2025 and January 2026, with the possibility of additional infections not ruled out.

“In collaboration with the SHARE Foundation, the Citizen Lab analyzed forensic artefacts from the iPhone of a member of Serbia’s student protest movement after they received an Apple Threat Notification warning of targeting with mercenary spyware.” reads the report published by Citizen Lab. “Our analysis confirmed that an iMessage zero-click exploit was used to infect the device with NSO Group’s Pegasus spyware. “

The attack required no action from the victim, which makes zero-click attacks especially dangerous. Citizen Lab said the Pegasus infection could stay hidden while giving the attacker full access to the phone, including messages, photos, notes, microphone, and camera. Apple later fixed this specific exploit through security updates in iOS 18.4.1.

“We believe that the zero-click exploit used in this attack targeted Apple iMessage, and has subsequently been patched by Apple as of iOS 18.4.1.” continues the report. “A zero-click infection with Pegasus spyware would not have been visible to the target, and would give the Pegasus attacker total access to the device. Pegasus allows an attacker to do anything that a user can do, ranging from accessing private data like notes, pictures and even encrypted messages. Pegasus also has the ability to covertly enable the phone’s microphone and camera.”

This one confirmed infection sits inside something considerably bigger. The SHARE Foundation has documented at least 14 individuals targeted with advanced spyware since early 2026, spanning student movement members, civil society activists, an opposition member of parliament, and a local councilor, which the organization is calling the largest documented surveillance wave in Serbia’s history. Twelve people approached SHARE’s digital forensics team in August after receiving Apple’s own threat notifications, warnings the company sends when it detects likely state-sponsored spyware targeting; eleven of those devices remain presumed infected pending further forensic confirmation.

The timing lines up uncomfortably well with Serbia’s political calendar. This surveillance wave coincides with local elections held on March 29, 2026, and stretches toward planned early parliamentary elections in October, following months of student-led anti-government and anti-corruption protests.

“These notifications and forensic confirmation highlight the aggressive mercenary spyware targeting of the peaceful pro-democracy movement with mercenary spyware ahead of key 2026 election cycles.” continues the report.

Targeting activists and opposition figures specifically in the run-up to elections isn’t subtle, and it fits a pattern Serbia has shown before.

Serbia has a history of using commercial spyware. Citizen Lab previously documented Pegasus targeting civil society and the use of Cellebrite tools to install the locally developed NoviSpy on activists’ phones. In this case, SHARE Foundation and Amnesty Tech found a new version of NoviSpy on a student activist’s Android phone after Serbian authorities seized it during police questioning.

Amnesty International’s Security Lab head, Donncha Ó Cearbhaill, connected the dots plainly between state custody and spyware installation.

“The forensic findings by SHARE prove that Serbian students continue to be targeted with invasive Android spyware tools, installed while detained by Serbian authorities” he said.

If you’ve received an Apple Threat Notification, whether in Serbia or anywhere else, the Citizen Lab’s guidance is unambiguous: treat it as a presumed infection and get expert help immediately rather than waiting to see if anything seems wrong. Individuals in Serbia should contact the SHARE Foundation directly, and anyone elsewhere can reach Access Now’s Digital Security Helpline, which supports journalists, human rights defenders, and other high-risk civil society targets worldwide. Anyone who suspects they might be a target based on their work or public role should also turn on Lockdown Mode, Apple’s built-in feature that significantly narrows what a zero-click exploit can actually reach, and keep every device updated, since the patch that closed this specific hole has already existed for well over a year for anyone who installed it.

“We believe that the zero-click used in this attack has been rendered ineffective by a patch from Apple in recent iOS versions. We urge everyone, especially those facing increased risks because of who they are or the work they do, to keep all devices updated.” concludes the report. “Click HERE for instructions on how to keep your iPhone up to date.”

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, Pegasus)

  • ✇Blog oficial da Kaspersky
  • Pontos cegos na detecção: como os arquivos poliglotas são criados Stan Kaminsky
    Arquivos criados com a técnica poliglota têm aparecido cada vez mais em ciberataques nos últimos anos. Eles permitem que os invasores façam o malware passar pelos filtros de e-mail e pelos verificadores de arquivos, enganem as vítimas em ataques de phishing e dificultem as investigações de incidentes. Para conseguir isso, os invasores constroem deliberadamente um arquivo que o sistema pode interpretar como formatos diferentes, dependendo do aplicativo em que ele é aberto.  Um exemplo clássico é
     

Pontos cegos na detecção: como os arquivos poliglotas são criados

4 de Setembro de 2026, 08:00

Arquivos criados com a técnica poliglota têm aparecido cada vez mais em ciberataques nos últimos anos. Eles permitem que os invasores façam o malware passar pelos filtros de e-mail e pelos verificadores de arquivos, enganem as vítimas em ataques de phishing e dificultem as investigações de incidentes. Para conseguir isso, os invasores constroem deliberadamente um arquivo que o sistema pode interpretar como formatos diferentes, dependendo do aplicativo em que ele é aberto.  Um exemplo clássico é um arquivo que pode ser tratado como uma imagem PNG ou um arquivo ZIP. Basta alterar a extensão do arquivo ou simplesmente usar um ou outro aplicativo para abri-lo.

Vamos entender por que é possível criar arquivos desse tipo, quais combinações de formatos já foram usadas em ataques reais e como as organizações podem se proteger contra essa ameaça.

Por que é possível criar arquivos poliglotas

Os formatos de dados por trás dos arquivos poliglotas raramente são exóticos. Tudo se resume a uma combinação inteligente de formatos comuns que são estruturalmente compatíveis. Os poliglotas exploram pelo menos uma das seguintes peculiaridades em determinados formatos de arquivo:

  • A maioria dos formatos de arquivo precisa ser decodificada a partir do primeiro byte, mas alguns precisam ser lidos a partir do final. O exemplo mais claro é um arquivo ZIP: um início corrompido ou ausente não impede que os aplicativos leiam o arquivo, porque todos os cabeçalhos necessários ficam no final. Isso permite que os invasores simplesmente concatenem dois arquivos (no exemplo acima, um PNG e um ZIP). A parte inicial é lida como uma imagem PNG válida, enquanto a parte final é lida como um arquivo ZIP válido.
  • Muitos formatos funcionam como bonecas russas matrioscas: embora externamente tenham uma extensão específica correspondente ao uso pretendido, internamente o arquivo é, essencialmente, um arquivo ZIP que contém os dados necessários. Esse grupo inclui documentos modernos do Office (DOCX/XLSX/PPTX), pacotes de instalação do Android (APK), arquivos de biblioteca Java (JAR) e muitos outros.
  • Alguns formatos não têm requisitos estruturais rígidos ou têm requisitos suficientemente flexíveis para que o aplicativo que processa o arquivo consiga localizar o trecho de que precisa, mesmo quando esse trecho não está no início.

O repositório Polydet no GitHub apresenta vários exemplos de combinações possíveis de arquivos para criar um arquivo poliglota. De acordo com a classificação da MITRE, essa técnica se enquadra na categoria Masquerading (T1036.008, Masquerade File Type).

Exemplos de arquivos poliglotas em ciberataques conhecidos

Análises de campanhas de malware disponíveis publicamente revelam diversos tipos de arquivos poliglotas. Os invasores adaptam todo o cenário do ataque a uma combinação específica de tipos de arquivo.

O grupo Head Mare entregou o malware PhantomPyramid como um anexo ZIP. O arquivo consistia em código executável do Windows (EXE), com um pequeno arquivo ZIP concatenado ao final. Quando a vítima abriu o arquivo compactado, ele continha um arquivo com a extensão PDF.LNK que, então, iniciava esse mesmo anexo poliglota, desta vez como um arquivo executável.

No ataque documentado pela JPCERT, os invasores criaram um arquivo que começava como PDF e era detectado como PDF pela maioria dos verificadores, mas tinha uma extensão DOC e era aberto nos aplicativos do Office como um arquivo DOC válido contendo macros maliciosas.

Os ataques que disseminaram os cavalos de Tróia StrRAT e Ratty usaram um arquivo poliglota criado a partir de um pacote de instalação assinado do Windows (MSI), com código Java malicioso (JAR) anexado ao final.

Os ataques do StrelaStealer usaram um arquivo poliglota com extensão HTML: uma biblioteca do Windows (DLL) com um documento HTML de chamariz concatenado ao final. Um atalho no arquivo compactado iniciou o arquivo duas vezes: uma vez por meio do comando start (o equivalente a um clique duplo, que abriu um navegador exibindo o documento HTML) e outra por meio do rundll32 (que iniciou a DLL maliciosa).

Em um ataque simulado, mas engenhoso, os pesquisadores concatenaram dois arquivos ZIP comuns e descobriram que diferentes ferramentas populares de compactação exibiam o arquivo combinado de maneiras diferentes: algumas mostravam apenas o primeiro arquivo compactado, outras apenas o segundo, e outras mostravam ambos ao mesmo tempo, como se fossem um único arquivo compactado com conteúdo compartilhado. Se o invasor estiver familiarizado com a infraestrutura da vítima e souber quais softwares estão instalados, poderá usar essa combinação para mostrar um arquivo às ferramentas de segurança e outro à vítima.

Os invasores empregaram uma complexa matriosca de malware em uma campanha que distribuiu o infostealer IcedID. Eles anexaram um arquivo ZIP aos e-mails de phishing; descompactá-lo produziu um arquivo ISO. Esse ISO, por sua vez, era descompactado em um arquivo CHM (Ajuda do Windows) criado com a técnica poliglota. Quando a vítima o abriu com a ferramenta padrão de Ajuda do Windows, o arquivo executou um script JavaScript incorporado ao conteúdo da ajuda, que iniciou o aplicativo padrão mshta (host de aplicativos HTML da Microsoft) e o direcionou para esse mesmo arquivo CHM. Os autores da campanha empacotaram um aplicativo HTA dentro do arquivo CHM de forma que sua presença não interferisse na leitura do arquivo como um documento de ajuda inócuo. O manipulador de HTA, por sua vez, simplesmente ignora todos os dados irrelevantes no início do arquivo até encontrar o script HTA.

Como as ferramentas de segurança lidam com arquivos poliglotas

Os exemplos acima deixam claro como esse truque de leitura dupla permite que os invasores implantem malware no computador da vítima. Mas como os filtros de e-mail e os sistemas EDR realmente lidam com arquivos desse tipo? A resposta depende inteiramente da solução específica, portanto, isso precisa ser verificado, seja por meio da análise da documentação técnica do fornecedor, seja pela execução de um teste controlado na infraestrutura corporativa, com todas as devidas precauções.  De modo geral, apenas dois pontos são válidos em todos os casos:

  • A maioria das soluções de segurança não confia na extensão informada de um arquivo; em vez disso, verifica seu início para determinar sua estrutura real. É por isso que, no ataque descrito acima, o arquivo PDF com extensão DOC foi analisado como um PDF inofensivo, enquanto a macro maliciosa estava na parte DOC concatenada.
  • Se um arquivo começar como algo inofensivo (por exemplo, uma imagem) e sua extensão corresponder, uma análise mais sofisticada provavelmente não será aplicada a ele. Os invasores podem explorar isso: as instruções que acompanham o arquivo podem orientar a vítima a renomeá-lo para que o comportamento do sistema acabe associado à segunda carga útil, e não à imagem.

Como proteger uma organização contra ataques de arquivos poliglotas

A defesa contra arquivos poliglotas não requer soluções técnicas ou organizacionais complexas. O que exige são boas práticas de segurança sólidas e consistentes em toda a organização:

  • use listas fechadas de aplicativos autorizados a serem executados nas estações de trabalho dos funcionários. exclua aplicativos do Windows desatualizados, ferramentas administrativas da Microsoft não utilizadas, softwares de acesso remoto e de transferência de arquivos e qualquer outro software considerado potencialmente perigoso ou obsoleto.
  • use soluções de segurança de e-mail avançadas e equipadas com CDR (tecnologia de Desarme e Reconstrução de Conteúdo, que desarma anexos suspeitos e os reconstrói em versões mais seguras) e tecnologia de detonação (que executa anexos suspeitos em um ambiente isolado para análise). configure a análise aprofundada para anexos que apresentem sinais externos de serem arquivos poliglotas: todos os arquivos compactados e do Office, arquivos com extensões não padrão e assim por diante.
  • da mesma forma, configure a solução EDR para realizar uma análise aprofundada de possíveis arquivos poliglotas.
  • crie regras de monitoramento que gerem alertas para combinações incomuns entre um processo e os arquivos que ele recebe para processamento, como um arquivo CHM iniciado por meio do mshta ou um arquivo HTML iniciado por meio do rundll32, como nos exemplos acima.
  • adicione informações básicas sobre arquivos poliglotas ao programa de conscientização em segurança utilizado pela organização, para que os usuários fiquem atentos quando forem orientados a alterar a extensão de um arquivo ou a manipulá-lo de alguma forma incomum, por exemplo, abrindo-o em um aplicativo específico.

  • ✇Security Affairs
  • 2,000 Leaked Documents Reveal How Russia Turns Engineering Students Into GRU Cyber Operators Pierluigi Paganini
    2,000 leaked files expose Bauman University’s hidden Department No. 4, which trained GRU-linked hackers and propagandists linked to APT28 and Sandworm. Leaked Documents Expose Bauman University’s Hidden Department That Trained Hackers, Propagandists, and Malware Developers for the GRU More than 2,000 internal documents from Bauman Moscow State Technical University have been reviewed by an international media consortium, and the picture they describe is not a conventional cybersecurity pro
     

2,000 Leaked Documents Reveal How Russia Turns Engineering Students Into GRU Cyber Operators

3 de Setembro de 2026, 05:12

2,000 leaked files expose Bauman University’s hidden Department No. 4, which trained GRU-linked hackers and propagandists linked to APT28 and Sandworm.

Leaked Documents Expose Bauman University’s Hidden Department That Trained Hackers, Propagandists, and Malware Developers for the GRU

More than 2,000 internal documents from Bauman Moscow State Technical University have been reviewed by an international media consortium, and the picture they describe is not a conventional cybersecurity program. The files span academic and administrative records through 2025.

“Recently leaked records show that Bauman Moscow State Technical University’s Department No. 4 operated as a long-term training pipeline for Russian military intelligence and cyber operations.” reads the report published by DomainTools. “The department served several elements of the Russian General Staff and trained roughly 250 career and reserve students across three specialties: special intelligence (“Служба специальной разведки”), operational information-technical effects (“Применение сил и средств информационно-технического воздействия и защиты от информационно-технического воздействия”), and information-technology protection (”3ащита информационных технологий”). “

Department No. 4, also called “Special Training,” operated inside Bauman’s Military Training Center and doesn’t appear anywhere on the university’s public organizational chart. The GRU’s talent pipeline tends not to announce itself.

The investigation was carried out by a group of media outlets including The Insider, The Guardian, Le Monde, Der Spiegel, Delfi, VSquare, and FRONTSTORY.PL. DomainTools researchers also analyzed the leaked files independently. A DarkForums user known as “Losyash” may have shared the data, but it has not been confirmed that the account originally obtained the records.

The department trained students in three military specialties. These covered special intelligence, information and cyber operations, and the protection of IT systems. In practice, the courses included espionage, offensive cyber operations, electronic reconnaissance, secure systems, and influence operations.

Around 250 career and reserve students went through the program over six academic years. Researchers estimate that 10 to 15 students each year were selected for GRU-related assignments before graduating.

“Technical protection training covered cryptography and steganography, as well as code analysis and intrusion detection. Students were also trained in hardware inspection, the discovery of physical implants, and the identification of undocumented device functions. These subjects point to possible assignments in technical counterintelligence and supply chain security, as well as firmware analysis and embedded system inspection. Other likely functions include secure procurement and the protection of specialized military platforms.” continues the report. “The files also reveal an underreported malware-analysis and cyber threat intelligence program.”

One advanced practical assignment required the creation of a social-media video built around what the course materials called “manipulation, pressure, and hidden propaganda.” This counted as coursework.

Course materials defined “information-technical weapons” as tools and methods designed to alter, destroy, copy, block, or manipulate information. Red-team and blue-team functions were treated as a single discipline, not separate tracks, which mirrors how Russian military doctrine actually deploys cyber operators.

The personnel links are what make this more than a training curiosity. The leaked records identify Major General Viktor Netyksho as involved in Department No. 4’s oversight. Netyksho was the former commander of Military Unit 26165, the GRU formation publicly associated with APT28, also tracked as Fancy Bear, Sofacy, and STRONTIUM. He was among the 12 GRU officers indicted by the United States in 2018 for interference in the 2016 presidential election.

Reporting identified graduates assigned to GRU Military Unit 26165 (associated with APT28) and Military Unit 74455 (associated with Sandworm), and linked senior officers, including former Unit 26165 commander Viktor Netyksho, to student oversight.” continues the report. “The data also connected senior GRU officers to the supervision and evaluation of Bauman students. Viktor Netyksho, the former commander of Unit 26165 and the 85th Main Special Service Center, is part of the department’s teaching and oversight structure.”

The reporting also identifies Aleksei Kondrashov, a 2024 Department No. 4 graduate, as linked to Military Unit 74455: the GRU’s Main Center for Special Technologies, known publicly as Sandworm, or APT44. That unit has been associated with the 2017 NotPetya attack and ongoing destructive operations against Ukraine. DomainTools also connected graduates and senior staff to Military Unit 29155, a GRU formation linked to sabotage and assassination operations in Europe.

A necessary precision: the reports establish unit placements, not individual operational involvement. A documented assignment to Military Unit 74455 doesn’t establish that a specific person participated in a specific attack. That distinction matters for both attribution work and legal proceedings.

What the leak does establish is the factory behind the names. APT28 and Sandworm are the threat groups that security teams track, attribute, and brief about. Department No. 4 is where some of the people running those operations were systematically trained, assessed, and selected.

For defenders, DomainTools summarizes the implication precisely: Russian operations should be tracked as a combined threat in which espionage, destructive attacks, military reconnaissance, technical surveillance, and influence campaigns draw on the same personnel pipelines and the same underlying doctrine. The Bauman material makes that pipeline visible for the first time at this level of institutional detail.

“The documents show that Department No. 4 is a small part of a larger long-term military training system, not a single hacking unit. The program prepared personnel for espionage and offensive cyber operations within a larger Russian technical university system.” concludes the report. “Its doctrine treated cyber warfare as more than network intrusion. Students were taught not only adversarial cyber warfare, but also a larger holistic doctrine of cyber war using both defense and attack to be better able to carry out successful campaigns.”

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, Russia)

Microsoft Teams Has Become a Haven for Scammers in China

28 de Agosto de 2026, 15:23
Fraudsters are exploiting enterprise chat apps like Teams and Webex to trick Chinese victims into transferring large sums of money, fueling a wave of complaints.

  • ✇Security Affairs
  • Russian APT BlueDelta Uses HOOKEDGE to Target Defense and Diplomatic Organizations Pierluigi Paganini
    BlueDelta (APT28) uses webhook.site and Microsoft Edge to hide HOOKEDGE espionage traffic targeting European governments. Recorded Future’s Insikt Group documented a campaign by BlueDelta, the Russian GRU-linked group that overlaps with the group APT28, running an entire espionage operation against European government targets using webhook.site, a service built for developers to test HTTP requests, as its command-and-control backbone. The campaign ran from late September 2025 through earl
     

Russian APT BlueDelta Uses HOOKEDGE to Target Defense and Diplomatic Organizations

28 de Agosto de 2026, 08:26

BlueDelta (APT28) uses webhook.site and Microsoft Edge to hide HOOKEDGE espionage traffic targeting European governments.

Recorded Future’s Insikt Group documented a campaign by BlueDelta, the Russian GRU-linked group that overlaps with the group APT28, running an entire espionage operation against European government targets using webhook.site, a service built for developers to test HTTP requests, as its command-and-control backbone.

The campaign ran from late September 2025 through early April 2026, targeting government and diplomatic organizations in Romania, Spain, and Türkiye.

“The campaigns delivered a lightweight Windows batch-script backdoor, dubbed “HOOKEDGE,” via macro-enabled Microsoft Word documents using diplomatic-themed lures, including material impersonating Spain’s Ministry of the Presidency, Justice and Relations with the Cortes, created shortly after a September 2025 meeting between Spanish and Moldovan officials.” states the report by Insikt Group.

“Insikt Group assesses with moderate confidence that this activity was conducted by BlueDelta (which overlaps with APT28, Fancy Bear, and Forest Blizzard), a Russian state-sponsored threat group attributed to the Main Directorate of the General Staff of the Armed Forces of the Russian Federation (GRU).”

The attackers used a fairly old-school trick: macro-enabled Word documents. One of them looked like a real meeting agenda from Spain’s Ministry of the Presidency and appeared shortly after an actual meeting between Spanish and Moldovan officials. The timing was interesting because it came just before Moldova’s September 2025 parliamentary elections. The document looked credible enough to make the phishing attempt believable.

The backdoor, called HOOKEDGE, is surprisingly simple. It uses a Windows batch script and relies on two webhooks. One receives commands, while the other sends the stolen data back to the attackers. Every 30 minutes, a scheduled task downloads a command file through Microsoft Edge, runs it and sends the results to another endpoint. The malware uses Edge to make the traffic look like normal web activity, making it harder for security tools to spot.

That reliance on a real browser for both tasking and exfiltration is the cleverest part of the whole design.

“A notable aspect of HOOKEDGE is its use of msedge.exe for both tasking and exfiltration. By generating network traffic through a legitimate web browser rather than a commonly abused LotL binary (LOLBin) or a custom binary, the malware blends its communications with normal enterprise browsing activity.” continues the report.

Recorded Future explains, and that’s really the entire evasion strategy in one sentence: don’t build something exotic, just make your traffic look exactly like an employee checking a website.

BlueDelta didn’t build HOOKEDGE from scratch either. It shares deep code and structural overlap with HEADLACE, a backdoor the same group used years earlier, right down to identical JavaScript variable names and the same base64 encoding scheme for automated downloads.

“HOOKEDGE’s code and structural design have significant overlap with HEADLACE, a backdoor used by BlueDelta in previous campaigns.” states the report.

Recorded Future assesses with moderate confidence that HOOKEDGE is a direct evolutionary successor, maintained by the same operators rather than a fresh tool built by a different team, which fits BlueDelta’s long-documented habit of refining working tradecraft instead of reinventing it.

The operation also included a triage mechanism worth understanding on its own. Once a victim showed signs of being worth deeper attention, active communication with the initial webhook endpoints, BlueDelta deployed a second HOOKEDGE payload configured to check in every five minutes instead of thirty, giving operators much faster interactive control over higher-value targets. That two-tier setup also solved a practical infrastructure problem: webhook.site’s free tier caps out at 100 requests per endpoint, so spreading routine and high-priority tasking across separate endpoints kept any single one from getting exhausted mid-operation.

BlueDelta kept tuning the operation continuously rather than treating it as a finished product. Beaconing intervals stretched from 30 minutes to 61, deliberately timed to slip past sandbox environments that typically only watch a sample’s behavior for an hour. The group added canary tracking pixels named things like mailopened.jpg and docopened.jpg to monitor exactly when a phishing email got opened versus when the document itself got opened versus when macros actually executed, essentially building analytics for their own phishing funnel.

“The malicious document also contains a hidden image referencing a remote webhook URL: hxxp://webhook[.]site/62114596-33f5-47fb-9012-0223529e5a13/docopened[.]jpg. This serves as a document-open “canary,” alerting BlueDelta operators when a victim opens the lure. Later variants used the filename doc.jpg in place of docopened.jpg.” states Insik. “Insikt Group also identified webhooks using the filename mailopened.jpg, indicating that BlueDelta likely used a similar canary mechanism to monitor when recipients opened phishing emails, providing operators with visibility into campaign delivery success before any payload execution.”

That kind of detailed tracking of what victims do would look very familiar to a marketing team. The difference is that here the targets are victims, not customers.

For defenders, the useful indicators are quite clear. Block macros in documents downloaded from the internet, monitor scheduled tasks that launch scripts from user-writable folders, and flag Microsoft Edge running in headless mode or making automated connections to file-sharing and webhook services that the organization does not normally use. You don’t need sophisticated tools to spot these behaviors. Even a well-configured monitoring system should be able to detect them early. The worrying part is that a persistent, state-backed group can still rely on a small set of behaviors that defenders can identify and block.

For defenders, the actionable pieces here are concrete rather than abstract. Block macro execution from documents that arrived over the internet, watch for scheduled tasks spawning script interpreters from user-writable folders, and specifically flag Microsoft Edge running in headless mode or making automated requests to file-hosting and webhook services your organization doesn’t actually use for anything legitimate. None of this requires exotic tooling to catch, which is oddly reassuring: a threat group this persistent and state-backed is still, at its core, relying on the same handful of detectable behaviors that a properly configured monitoring setup would catch on day one.

“BlueDelta is likely to continue conducting initial access campaigns against European government and diplomatic organizations in support of Russian intelligence collection. Given the enduring strategic importance of European governance, NATO-related affairs, and diplomatic engagement with former Soviet republics, the intelligence requirements driving this activity are unlikely to diminish in the near term.” concludes the report.

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, BlueDelta)

  • ✇Cybersecurity News
  • SilkParasite APT Hits Central Asian Governments With 7 RATs Do Son
    SilkParasite APT ran China-nexus cyberespionage across Central Asia, using 7 custom RATs, DLL sideloading, and AI-assisted malware. Related Posts: FBI Seizes QScan and QTRouter Platforms Run by China State Hackers Operation CameraSwarm: 14,500 Dahua Cameras Compromised Across Ukraine and Russia Core Werewolf Deploys New CoreRAT Malware Against Russian Targets The post SilkParasite APT Hits Central Asian Governments With 7 RATs appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • NVIDIA Hugging Face Acquisition Rumors Surface Do Son
    Rumors suggest NVIDIA seeks a Hugging Face acquisition exceeding $13 billion. Discover how this colossal deal could reshape the global open-source AI community. Related Posts: uBlock Origin v1.74.0 Is the Final Version for Chrome Before Google's Delisting Microsoft Unveils the AI at Work Roadmap Google Launches Gemini 3.5 Transcribe With Sub-Second Streaming Latency The post NVIDIA Hugging Face Acquisition Rumors Surface appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • NVIDIA Releases Security Fixes for UFM Enterprise and DGX Spark Do Son
    Critical NVIDIA security updates patch multiple flaws in UFM and DGX Spark systems, addressing CVE-2026-24170 and CVE-2026-24262. Related Posts: CVE-2026-19042: TeamViewer Command Injection Enables Remote Code Execution CVE-2026-72137 (CVSS 9.8): Linux Kernel Flaw Enables Root Privilege Escalation, PoC Public CISA Adds Six Exploited Vulnerabilities Including Citrix NetScaler Flaw The post NVIDIA Releases Security Fixes for UFM Enterprise and DGX Spark appeared first on Daily CyberSecurity.
     
  • ✇Security Affairs
  • OpenAI banned Russian ChatGPT accounts backing covert influence operation Pierluigi Paganini
    OpenAI banned Russian ChatGPT accounts backing a fake think tank, IBI, that used AI posts and a fake “sovereignty” index to push pro‑Russia narratives. OpenAI says it has banned a cluster of ChatGPT accounts that likely originated in Russia and were used to support a covert influence operation. The campaign promoted an organisation called the International Burke Institute, or IBI, a supposed expert community that claimed to be based in Israel. The operation did not rely on dramatic deepf
     

OpenAI banned Russian ChatGPT accounts backing covert influence operation

27 de Agosto de 2026, 01:39

OpenAI banned Russian ChatGPT accounts backing a fake think tank, IBI, that used AI posts and a fake “sovereignty” index to push pro‑Russia narratives.

OpenAI says it has banned a cluster of ChatGPT accounts that likely originated in Russia and were used to support a covert influence operation. The campaign promoted an organisation called the International Burke Institute, or IBI, a supposed expert community that claimed to be based in Israel.

The operation did not rely on dramatic deepfakes or a viral bot army. It used a more familiar method: build something that looks credible, fill it with enough content to seem legitimate, then use social media to push people toward it. Credibility is often cheaper to fake than to earn.

OpenAI says the operators prompted ChatGPT in Russian to generate comments and posts, mostly in English, for X, Facebook, LinkedIn, Telegram and Substack. They specifically asked the model to avoid linguistic signals that might reveal a Russian origin, and used VPNs to bypass OpenAI’s restriction on access from Russia.

“We banned a cluster of ChatGPT accounts that very likely originated in Russia. The operators prompted in Russian to generate social media comments that were posted on Substack, Telegram, X, Facebook and LinkedIn.” reads the report published by OpenAI, “Most of the comments they generated were in English, and the operators instructe. ChatGPT to hide any linguistic clues that they were Russian. As we do not allow access to our models from Russia, they used VPNs to access our platform.”

The social media content promoted IBI articles or urged readers to follow IBI-linked channels. Some posts came from accounts bearing the institute’s name and logo, while others appeared to come from ordinary users whose main activity was sharing the same material.

The website behind the brand was registered in February 2025 and presented itself as an Israel-based community of international experts. It claimed links to well-known names such as Francis Fukuyama and Noam Chomsky, but OpenAI’s review found that 34 of 36 sampled articles published under expert profiles had been copied from elsewhere online.

“Some of these articles were years old; others were attributed to the wrong authors. For example, one article on the China-Pakistan Economic Corridor appears to have been copied from a Cambridge University Press original, but incorrectly attributed to a professor at the University of Nottingham whose expertise is in South Asian politics.” continues the report.

This was not a case of ChatGPT writing every false article on the site. OpenAI says the website content itself was not generated by its models, and some material appeared to have been written by a Slavic-language speaker and machine-translated. The AI’s role was narrower but still useful: it helped create the promotional layer that sent people toward the site and made the operation appear more active and organic.

“What began as an investigation into AI-generated social media posts led us to a much broader influence operation, built around a website containing copied and misattributed academic work, a “sovereignty” index that cast Russia in a favourable light, and efforts to disguise the operators’ Russian origins.” states OpenAI. “Although the campaign appears to have reached relatively small audiences, its elaborate construction distinguishes it from other Russia-linked⁠(opens in a new window) influence⁠(opens in a new window) operations⁠(opens in a new window) we have disrupted⁠(opens in a new window) since the start of the war in Ukraine.”

The centrepiece was the so-called Sovereignty Index, also called the Burke Index. It ranked countries across political, economic, technological, information, cultural, cognitive and military dimensions, and consistently gave Russia a favourable place while criticising Western states, especially France, Germany, the European Union and the United States. openai

A made-up index can be effective because numbers carry authority even when the method is vague, selective or impossible to audit. Add charts, expert profiles, academic-looking articles and a professional website, and a claim can travel much further than a Telegram post from an anonymous account.

OpenAI found one Telegram channel, “Lahme Ente,” that published German-language posts attacking Ukraine, the EU and the German government while calling for closer ties with Russia. Another operator used ChatGPT to create logos for channels focused on Germany, France, Poland, Türkiye and the United States, then repeatedly asked for Russian-language summaries of their activity.

“As well as generating content about IBI, one of the operators generated German-language posts that were posted on a Telegram channel called “Lahme Ente” (“lame duck”). These posts routinely criticized Ukraine, the EU and the German government, and advocated for better relations with Russia.” continues the report. “A second operator, alongside their IBI-related content, generated logos for a dozen Telegram channels (including Lahme Ente) focused on Germany, the USA, France, Poland and Türkiye. “

One American-facing channel called “American Observer” included awkward English that suggested it was not run by a native speaker. The operators were trying to hide their origin, but language remains a stubborn problem: a VPN can change an IP address, not always a sentence.

The campaign’s immediate reach appears limited. OpenAI says most social posts received few views and the official IBI accounts had low subscriber counts, although its Telegram channels reportedly attracted around 10,000 to 20,000 followers each. Using the Brookings Breakout Scale, OpenAI rated the effort at the lower end of Category Three: activity across multiple platforms with some signs of reaching genuine audiences.

That does not make it irrelevant. Influence operations are often built for scale, reuse and timing rather than instant virality. A network with a website, a recognisable brand, social accounts, apparent experts and ready-made narratives can remain quiet until a political event, election, protest or crisis gives it an opening.

This case also shows what AI changes and what it does not. It does not eliminate the need for operators, infrastructure, stolen material, audience research or political intent. It makes routine tasks cheaper: drafting posts, translating them, changing tone, generating replies, creating branding and monitoring channels at a pace that a small team can sustain.

“The significance of the operation lies less in the audience it reached, however, than in the infrastructure it had built. While the actors only used ChatGPT to produce isolated promotional posts, those posts pointed to an otherwise credible-appearing institution, complete with purported experts, republished academic work and a purported proprietary risk index.” concludes the report. “This illustrates how influence actors can use AI as a supporting tool within a broader effort to manufacture authority, obscure the source of favored narratives, and establish assets that could be scaled over time. It also illustrates how their supporting use of AI can lead to the broader operation being exposed.”

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, OpenAI)

US Navy tells sailors and their families: scrub your social media, enemies are watching

27 de Agosto de 2026, 06:46
The US Navy has told its entire workforce of 340,000 active-duty personnel, 58,000 reservists, and 210,000 civilian employees to clean up their social media profiles, because adversaries might be using them to determine who they are, where they live, and when they may not be at home. Read more in my article on the Hot for Security blog.

TikTok Agrees to $400M Settlement Over Children’s Privacy

25 de Agosto de 2026, 14:41

TikTok and ByteDance agree to pay up to $400 million to settle US allegations involving children’s data, parental consent and account deletion.

The post TikTok Agrees to $400M Settlement Over Children’s Privacy appeared first on TechRepublic.

  • ✇Cybersecurity News
  • NVIDIA NemoClaw and OpenShell: CVE-2026-65093 (CVSS 9.9) Enables Code Execution Do Son
    NVIDIA patched 20 NemoClaw and OpenShell flaws. The worst, CVE-2026-65093 (CVSS 9.9), enables code execution via sandbox escape. Update now. Related Posts: GitLab Updates Fix Arbitrary Command Execution Vulnerability FreeBSD Patches Eight Kernel Vulnerabilities UniFi CVE-2026-77537 (CVSS 10.0): Command Injection Flaws Hit 22 Ubiquiti Products The post NVIDIA NemoClaw and OpenShell: CVE-2026-65093 (CVSS 9.9) Enables Code Execution appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • EA Anti-Cheat Secures Support for RTX SPARK Do Son
    NVIDIA confirms EA and Ubisoft are adapting anti-cheat software for the RTX SPARK platform, solving critical multiplayer gaming issues on Windows on Arm. Related Posts: Reverse Engineering Reveals Microsoft's Hidden InvisMark Watermark in Paint Google Cloud Launches Gemini Enterprise for Finance and Law Uber Fined $966 Million for Automated Driver Terminations The post EA Anti-Cheat Secures Support for RTX SPARK appeared first on Daily CyberSecurity.
     
  • ✇Blog oficial da Kaspersky
  • Como diferenciar um livro escrito por IA de um escrito por um especialista Alanna Titterington
    Um artigo recente publicado na The Atlantic trazia o título contundente The End of Reading Is Here (O fim da leitura chegou). Segundo a matéria, uma pesquisa do National Endowment for the Arts (NEA) constatou que menos de 50% dos adultos americanos leram sequer um livro em 2022, e apenas 38% leram um romance ou conto. Ao mesmo tempo, o mercado editorial nos Estados Unidos continua quebrando recordes de publicação ano após ano. Em 2025, por exemplo, o número de novos títulos ultrapassou quatro mi
     

Como diferenciar um livro escrito por IA de um escrito por um especialista

26 de Agosto de 2026, 09:00

Um artigo recente publicado na The Atlantic trazia o título contundente The End of Reading Is Here (O fim da leitura chegou). Segundo a matéria, uma pesquisa do National Endowment for the Arts (NEA) constatou que menos de 50% dos adultos americanos leram sequer um livro em 2022, e apenas 38% leram um romance ou conto.

Ao mesmo tempo, o mercado editorial nos Estados Unidos continua quebrando recordes de publicação ano após ano. Em 2025, por exemplo, o número de novos títulos ultrapassou quatro milhões, um aumento de um terço em relação a 2024. Uma enorme parcela desse total, 3,5 milhões de títulos, veio da autopublicação, e um dos principais motores desse mercado é o Kindle Direct Publishing (KDP), da Amazon.

Minha teoria para essa discrepância é a seguinte: ninguém mais lê livros, porque todo mundo está ocupado demais escrevendo-os. Brincadeiras à parte, se ainda houver algum leitor por aí, provavelmente já terá adivinhado aonde quero chegar: à toda-poderosa IA. Um tempo atrás, uma jornalista de tecnologia do New York Times se surpreendeu ao encontrar sua própria biografia na Amazon. Uma rápida olhada confirmou que ela havia sido escrita por IA. Ao investigar mais a fundo o universo da publicação de livros por IA, ela se deparou com o trabalho de um consultor de cibersegurança aposentado e extraordinariamente prolífico. O que aconteceu depois, e onde encontrar informações confiáveis na era da IA, é o tema deste post.

O começo da história: como uma jornalista seguiu o Coelho Branco e caiu na toca

Vamos começar do início. No verão de 2026, a jornalista de tecnologia do New York Times Kashmir Hill descobriu por meio de um conhecido que uma biografia sua havia sido publicada na Amazon um ano antes. O título era The Biography of Kashmir Hill: The New York Times Technology Journalist Who Exposed Clearview AI, Challenged Big Tech and Redefined Privacy in the Digital Age. E ela ficou mais do que surpresa, pois ninguém havia entrado em contato com ela ou com qualquer pessoa que conhecesse para fazer uma pesquisa sobre o livro.

“Alice pôs-se de pé num salto, pois lampejou-lhe na mente que nunca antes vira um coelho com um bolso de colete, nem com um relógio para tirar dele… “

O autor era um certo John Crane Miller, e a foto em sua página na Amazon era uma imagem genérica de banco de imagens de um homem branco do tipo que aparece por toda a Internet. Hill não conseguiu encontrar nenhum detalhe pessoal nem informação de contato sobre ele. Ao investigar mais a fundo o perfil dele na Amazon, porém, descobriu outra coisa: em uma única semana no verão de 2025, ele publicou biografias de Hill e de mais nove jornalistas americanos. Até o leitor mais crédulo teria dificuldade para acreditar que um gênio literário conseguiria produzir tamanho volume sem uma ajudinha robótica.

Biografia de Kashmir Hill gerada por IA

A biografia da jornalista Kashmir Hill gerada por IA, que ela encontrou por acaso na Amazon. Fonte

Ainda assim, a edição de capa dura da biografia de Kashmir Hill custava US$ 26,99, embora tivesse apenas 90 páginas. Depois de lê-la, Hill descobriu toda uma série de “fatos” sobre si mesma que jamais conhecera, incluindo uma descrição detalhada de seu ritual de preparo do café que, como observa a jornalista, na verdade é tarefa do marido. Miller chegou a afirmar no texto que havia lido o diário de infância de Kashmir Hill.

“…e, ardendo de curiosidade, correu pelo campo atrás dele, e felizmente chegou a tempo de vê-lo entrar de chofre numa toca de coelho grande sob a sebe. “

Hill não conseguiu localizar o autor de sua biografia. Deixou um comentário na página do livro na Amazon pedindo que ele entrasse em contato. Ninguém respondeu e, pouco depois, todos os livros do perfil de John Crane Miller desapareceram.

Mas isso lhe deu uma pista sobre vários outros autores de IA na Amazon. Em particular, ela encontrou um certo Bill Johns, cuja página de autor exibia impressionantes 445 livros. Sem esperar que desse em muita coisa, perguntou a Johns se ele aceitaria conceder uma entrevista e ficou bastante surpresa quando ele concordou. Foi provavelmente nesse momento que a investigação de Kashmir Hill se transformou em uma verdadeira viagem pela toca do coelho da IA…

“No momento seguinte, lá se foi Alice atrás dele, sem considerar, nem por um momento, como no mundo sairia de lá novamente. “

As IAventuras de Bill no País das Maravilhas

Bill Johns se aposentou em 2024, depois de construir carreira como consultor de cibersegurança. Em 2025, decidiu experimentar o ChatGPT e, em algumas semanas, usou a ferramenta para gerar seu primeiro livro. O tema era cibersegurança, mais especificamente a história do hacking, e a obra foi publicada com o nada original título Ghosts in the Machine. Johns vendeu apenas alguns exemplares, mas isso não o impediu de gerar outros 444 livros no ano seguinte.

445 livros, um autor

Página de autor de Bill Johns na Amazon. Em um único ano, ele publicou 445 livros, sobre temas que vão de cibersegurança e… Pontes a esportes, biografias e filosofia. Fonte

Esse número impressionante inclui, por exemplo, uma série de 13 livros sobre cibersegurança que, além da já mencionada história do hacking, contém os seguintes títulos (em tradução livre):

  • The Cybersecurity Blueprint: Building and Operationalizing a Complete Defensive Strategy (O Plano diretor de cibersegurança: Construindo e operacionalizando uma estratégia defensiva completa)
  • Hardware Fortress: The Role of Data Diodes in Protecting Critical Infrastructure (Fortaleza do hardware: O papel dos diodos de dados na proteção de infraestruturas críticas)
  • Zero Trust: Redefining Security in a Perimeterless World (Zero confiança: Redefinindo a segurança em um mundo sem perímetros)
  • Evolving Threats, Evolving Chains: Cybersecurity for the Modern Supply Chain (Ameaças em evolução, cadeias em evolução: cibersegurança para a cadeia de suprimentos moderna)
  • The Integration Imperative: Cybersecurity for Legacy OT/ICS: Overcoming the Challenges of Digital Transformation in Critical Infrastructure (O imperativo da integração: Cibersegurança para OT/ICS legados — superando os desafios da transformação digital em infraestruturas críticas

A cibersegurança está longe de ser o único tema, ou sequer o principal, na mente desse prolífico autor. Além dela, a obra de Bill Johns abrange esportes, pontes, bebidas alcoólicas de todos os tipos, como saquê e uísque, biografias de personalidades, aviação militar e filosofia. Em resumo, é difícil pensar em um assunto sobre o qual Johns ainda não tenha escrito um livro.

O “processo criativo” de Johns consiste em planejar os capítulos de um livro com o ChatGPT e depois escrever cada um gradualmente. Segundo o próprio Johns, pedir à IA que gere um capítulo inteiro de uma só vez não funciona muito bem (para surpresa de ninguém…). Então, é melhor produzir o texto aos poucos. Quando necessário, ele pede ao ChatGPT que faça revisões. Depois da publicação, compra na Amazon um exemplar de cada um de seus 445 livros, mas apenas para colocá-lo na estante, já que lê-los provavelmente não faz parte do plano. Na visão de Johns, ele leu os livros enquanto estavam sendo gerados. E isso basta.

A meta desse titã literário é gerar 10 livros por semana, exatamente o máximo que a Amazon permite nesse período. Há apenas três anos, esse limite era duas vezes maior. Dito isso, ao contrário do autor da biografia de Kashmir Hill, os livros de Johns costumam ser consideravelmente mais longos.

O toque final no retrato desse incansável autor de autopublicação é, bem, o próprio retrato que aparece em sua página de autor na Amazon e na contracapa de todos os seus livros. Johns não esconde que a imagem também foi gerada por IA e explica a escolha com sua praticidade e franqueza características: “Era isso ou vestir um terno e tirar selfies.”

Retrato de Bill Johns gerado por IA

Johns deixou a IA cuidar até da sua foto de autor. Vestir-se bem e tirar uma selfie aparentemente dava trabalho demais. Fonte

A economia do País das Maravilhas da IA: curioso, cada vez mais curioso

Qualquer leitor minimamente atento inevitavelmente se pergunta: por que Bill Johns e outros produtores de livros gerados por IA se dão a esse trabalho, e em tamanha escala? Claro, alguém poderia “escrever” um livro só para colocar o link no currículo, acrescentar com orgulho “autor na Amazon” às bios das redes sociais e contar a desconhecidos no bar que é escritor. Talvez, por garantia, produzir mais alguns. Mas por que gerar mais de 400 livros?

A resposta está no modelo econômico que a Amazon criou muito antes de a IA entrar em cena. Ao contrário das editoras tradicionais, a Amazon não imprime uma tiragem antecipadamente. A maioria dos livros publicados pelo Kindle Direct Publishing segue um modelo de impressão sob demanda: o exemplar físico só é impresso quando um cliente faz o pedido na Amazon.

É assim que um autor consegue lançar um livro praticamente sem custo inicial. E, principalmente, sem o risco de acumular em um depósito exemplares não vendidos que já foram pagos e impressos. Em outras palavras, listar centenas de livros na loja on-line custa quase nada tanto para a Amazon quanto para o autor.

Com custos de investimento próximos de zero, até uma demanda modesta pode gerar lucro real. Bill Johns, por exemplo, vende algumas centenas de livros por mês a leitores desavisados. Em uma temporada de festas de fim de ano, de dezembro ao início de janeiro, as vendas chegaram a 821 exemplares, rendendo cerca de US$ 6.000 como complemento à aposentadoria.

Alguns livros de IA rendem ainda mais dinheiro aos autores. É o caso da biografia gerada por IA do ativista político americano Charlie Kirk, que se tornou um best-seller na Amazon após seu assassinato. Os leitores não ficaram satisfeitos e, depois de dezenas de avaliações com expressões como “entorpecente”, “golpe” e “uma vergonha”, a Amazon retirou o livro da plataforma. Ainda assim, é provável que o serviço tenha vendido milhares de exemplares da biografia antes disso, gerando um lucro considerável tanto para a Amazon quanto para o autor.

Como distinguir um corvo de uma escrivaninha

Em um mundo saturado de IA, distinguir o que é feito por humanos do que é feito por máquinas é cada vez mais relevante. E a Amazon está longe de ser o único marketplace on-line que alimenta ativamente a disseminação de lixo de IA, portanto há todos os motivos para acreditar que a situação só tende a piorar.

Para evitar mais uma leva de alucinações nada inspiradoras produzidas por chatbots, recomendamos recorrer a fontes confiáveis quando o assunto realmente importa. Em matéria de conhecimento especializado sobre cibersegurança, por exemplo, nosso blog é um bom ponto de partida. Ao contrário de certos consultores aposentados superprodutivos, escrevemos tudo por conta própria e assumimos a responsabilidade por cada palavra.

Para saber mais sobre cibersegurança em livros e filmes, confira outras publicações do nosso blog:

  • ✇Cybersecurity News
  • Core Werewolf Deploys New CoreRAT Malware Against Russian Targets Do Son
    CoreRAT malware powers Core Werewolf attacks on Russian defense and government targets, using fake military PDFs and Telegram phishing. Related Posts: Balonx Sistema: Mexican PhaaS Adds AI Vishing and RAT StopAndProtect Malware Turns Hacked WordPress Sites Into a Botnet Cisco Talos Exposes UAT-10147 Agentic AI Attacks The post Core Werewolf Deploys New CoreRAT Malware Against Russian Targets appeared first on Daily CyberSecurity.
     
  • ✇Security | CIO
  • Nvidia to hike prices by 15%, on top of an even larger increase in July
    On top of July’s 30% price hikes across almost all of its product lines, Nvidia is reportedly preparing to raise prices of servers, including those powered by Vera Rubin and Grace Blackwell chips, by 15%, due to skyrocketing memory prices. That 15% increase for systems being delivered in early 2027, reported by Bloomberg and other business media, is seen as part of a series of expected price hikes throughout AI deployments. Scott Bickley, advisory fellow at Info-Tech
     

Nvidia to hike prices by 15%, on top of an even larger increase in July

24 de Agosto de 2026, 20:06

On top of July’s 30% price hikes across almost all of its product lines, Nvidia is reportedly preparing to raise prices of servers, including those powered by Vera Rubin and Grace Blackwell chips, by 15%, due to skyrocketing memory prices.

That 15% increase for systems being delivered in early 2027, reported by Bloomberg and other business media, is seen as part of a series of expected price hikes throughout AI deployments.

Scott Bickley, advisory fellow at Info-Tech Research Group, said that he sees Nvidia’s move as one that is only passing along its own rapidly increasing costs. But rather than price gouging because of its close-to-monopoly market control, Bickley’s calculations suggest that Nvidia is likely eating some of its costs, and is only passing along a fraction of them to its largest customers.

But not all AI-related costs are increasing; per-token prices appear to be dropping, he said. That gives CIOs a potential strategy to manage costs by pushing approaches that will reduce the reliance on memory.

“The workload cost is going down per token while the underlying hardware and infrastructure costs are going up,” Bickley said. “If you are directly building out your own clusters, this is an automatic uplift to an already egregiously expensive solution. If you are buying your own hardware, you’re going to have to suck it up. You are not going to negotiate your way out of this.”

But, he added, CIOs should also be able to get more mileage out of the clusters they are currently running, via techniques such as model routing, compression, and batch processing.  

Gaurav Gupta, VP analyst at Gartner, noted that the Nvidia price hikes are reflective of the many pricing increases throughout the AI environment. 

“Memory prices are going up, especially HBM and LPDDR5, but there are other aspects, like leading-edge foundry wafers, advanced packaging, and other component shortages,” Gupta said, adding that those issues generate “longer lead-times, which typically translates to higher prices.” And he does not expect the situation to improve any time soon. 

“In the current environment of strong demand and limited supply, we expect this situation to continue in the near to mid-term,” he said. “This means higher costs for those deploying these servers/systems and for those renting compute in the cloud, including software vendors/model builders, and others.”

Flavio Villanustre, CISO for the LexisNexis Risk Solutions Group, agreed.

“This is a supply and demand problem, and it’s likely to reach a plateau and eventually improve once memory production ramps up to meet the current demand due to AI, but I don’t think this will happen in the next few months,” Villanustre said. “For now, CIOs will need to contend with the current market conditions.”

But he also agreed with Bickley’s suggestion that CIOs try to squeeze more value from the RAM they already have.

“Some AI model vendors are adapting their models to run better in memory constrained environments,” Villanustre noted. “For example, Gemma E4B and similar models by Google now use a hierarchical tiered model that allows them to pull only the necessary parts of the model into memory instead of holding the entire model in RAM. These models have a much larger effective number of parameters than the memory that they require.”

And, added Mike Wilkes, enterprise CISO at Aikido Security, this means that the Nvidia price hikes may do some good if they convince enterprises to adopt a more thoughtful approach to AI deployments. 

“Enterprises have spent the last few years treating frontier-model tokens almost as an infinitely elastic utility, sending workloads to the biggest model whether or not the task required frontier-level reasoning,” he said. “Higher infrastructure and token costs should force much better workload discrimination.”

He observed that the right enterprise AI architecture is increasingly hybrid: reserve 10% for frontier model consumption for problems that genuinely require it, while pushing classification, extraction, summarization, routine agent actions, and other bounded workloads toward small language models (SLMs) and open-weight models running on infrastructure that the enterprise controls.

“That gives CIOs leverage against price gouging or unilateral price setting,” he pointed out.

This article originally appeared on NetworkWorld.

❌
❌