Tempest Security Intelligence

Cyber Morning Call

Podcast de cibersegurança produzido pela Tempest com episódios diários, publicados logo pela manhã com aquilo que foi mais relevante nas últimas vinte e quatro horas em termos de novos ataques, vulnerabilidade ou ameaças. Tudo em menos de dez minutos e traduzido para uma linguagem fácil, produzido para que você possa ajustar o curso do seu dia de modo a tomar as melhores decisões de cibersegurança para sua empresa.

Author

Tempest Security Intelligence

Category

Technology

Podcast website

tempest.com.br

Latest episode

Jul 10, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

820 - Juniper corrige Blast-RADIUS e falha crítica em interface web 10.07.2025

Referências do Episódio 2025-07 Security Bulletin: Junos OS and Junos OS Evolved: Vulnerability in the RADIUS protocol for Subscriber Management (Blast-RADIUS) (CVE-2024-3596) Blast-RADIUS 2025-07 Security Bulletin: Juniper Security Director: Insufficient authorization for multiple endpoints in web interface ( CVE-2025-52950 ) ServiceNow Flaw CVE-2025-3648 Could Lead to Data Exposure via Misconfig...

819 - Patch Tuesday tem 0-day no SQL Server e falha séria no FortiWeb 09.07.2025

Referências do Episódio July 2025 Security Updates CVE-2025-25257 - Unauthenticated SQL injection in GUI Public exploits released for Citrix Bleed 2 NetScaler flaw, patch now Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

818 - Ransomware Bert afeta alvos Windows e Linux 08.07.2025

Referências do Episódio BERT Ransomware Group Targets Asia and Europe on Multiple Platforms Batavia spyware steals data from Russian organizations Gamers hacked playing Call of Duty : WWII—PC version temporarily taken offline Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

817 - Mais de 620 drivers são usados em ataques nos últimos 5 anos, afirma estudo 07.07.2025

Referências do Episódio Exploiting Trust : How Signed Drivers Fuel Modern Kernel Level Attacks on Windows Exclusive disclosure of the attack activities of the APT group NightEagle . Critical Sudo Vulnerabilities Let Local Users Gain Root Access on Linux, Impacting Major Distros Local Privilege Escalation via host option How Much More Must We Bleed? - Citrix NetScaler Memory Disclosure ( CitrixBlee...

816 - Ataque contra empresa de software resulta em quase um R$1 bi em pix fraudulentos 03.07.2025

Referências do Episódio Na madrugada, um PIX de R$ 18 milhões . Começava o assalto BMP diz que suas contas reserva no BC foram acessadas em ataque hacker à C&M Software, outras 5 instituições foram afetadas PF investiga ataque a sistemas de instituições financeiras ligada ao BC Como o BC conseguiu reverter parte do Pix movimentada em ataque hacker de quase R$ 1 bi Cisco Unified Communications...

815 - Google corrige mais um 0-day no Chrome 02.07.2025

Referências do Episódio Stable Channel Update for Desktop ( CVE-2025-6554 ) Update your Chrome to fix new actively exploited zero-day vulnerability DCRAT Impersonating the Colombian Government IBM X-Force Threat Analysis: DCRat presence growing in Latin America Okta observes v0 AI tool used to build phishing sites Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruz...

814 - Fazendas de laptops, facilitadores e VPNs: Microsoft descreve IT Workers 01.07.2025

Referências do Episódio Jasper Sleet: North Korean remote IT workers’ evolving tactics to infiltrate organizations DOJ raids 29 ‘laptop farms’ in crackdown on N. Korean IT worker scheme Identities of More Than 80 Americans Stolen for North Korean IT Worker Scams Crypto investment fraud ring dismantled in Spain after defrauding 5 000 victims worldwide Europol Dismantles $540 Million Cryptocurrency...

813 - Falhas em chip Bluetooth permitem grampo em headphones 30.06.2025

Referências do Episódio Security Advisory: Airoha-based Bluetooth Headphones and Earbuds Tracing Blind Eagle to Proton66 CVE-2025-5777, CVE-2025-6543: Frequently Asked Questions About CitrixBleed 2 and Citrix NetScaler Exploitation Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

812 - Meu brother, troque a senha da sua impressora Brother 27.06.2025

Referências do Episódio Brother printer bug in 689 models exposes default admin passwords APT42 impersonates cyber professionals to phish Israeli academics and journalists DeepSeek Deception : Sainbox RAT & Hidden Rootkit Delivery CapCut Con : Apple Phishing & Card-Stealing Refund Ruse Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerr...

811 - CitrixBleed2: Nova falha permite roubar credenciais do Netscaler 26.06.2025

Referências do Episódio CitrixBleed 2 : Electric Boogaloo — CVE-2025–5777 NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2025-5349 and CVE-2025-5777 NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2025-6543 Citrix users hit by actively exploited zero-day vulnerability Cisco Identity Services Engine Unauthenticated Remote Code Execution Vulnerabilities In the Wild: Malw...

810 - Variante da técnica de ClickFix é documentada 25.06.2025

Referências do Episódio Introducing FileFix – A New Alternative to ClickFix AttacksIntroducing FileFix – A New Alternative to ClickFix Attacks Vídeo que fiz sobre ClickFix Threat Actors Modify and Re-Create Commercial Software to Steal Users’ Information CyberAv3ngers : From Infrastructure Hacks to Propaganda Machines in the Iran-Israel Cyber War Cryptominers’ Anatomy: Shutting Down Mining Botnets...

809 - Echo Chamber Attack: Nova técnica burla segurança de LLMs 24.06.2025

Referências do Episódio Echo Chamber : A Context-Poisoning Jailbreak That Bypasses LLM Guardrails DRAT V2 : Updated DRAT Emerges in TAG-140’s Arsenal Canada says Salt Typhoon hacked telecom firm via Cisco flaw Analyzing the Gonjeshke Darande attack on Iranian crypto exchange Nobitex Middle East Cyber Escalation : From Hacktivism to Sophisticated Threat Operations Sysdig Threat Bulletin: Iranian Cy...

808 - SparkKitty: novo trojan é encontrado na App Store e no Google Play 23.06.2025

Referências do Episódio SparkKitty , SparkCat’s little brother: A new Trojan spy found in the App Store and Google Play Resurgence of the Prometei Botnet Anondoor discloses — The latest componentized backdoor of the Confucius ADS 之殇,Confucius 组织利用 ADS 隐藏载荷攻击宗教相关人士 (sobre o WooperStealer ) Sobre o comprometimento das 16 bilhões de senhas   Roteiro e apresentação: Carlos Cabral e...

807 - Sitecore tem senha “b” chumbada no código 18.06.2025

Referências do Episódio /bin/live - hackerspaces Vulnerabilities Resolved in Veeam Backup & Replication 12.3.2 Is b For Backdoor? Pre-Auth RCE Chain In Sitecore Experience Platform Exploring a New KimJongRAT Stealer Variant and Its PowerShell Implementation A Wretch Client: From ClickFix deception to information stealer deployment 僵尸永远不死: RapperBot 僵尸网络近况分析 Google Chrome Zero-Da...

806 - Operação derruba mercado de drogas na dark web 17.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 /bin/live - hackerspaces Europe-wide takedown hits longest-standing dark web drug market Critical Langflow Vulnerability ( CVE-2025-3248 ) Actively Exploited to Deliver Flodrix Botnet CVE-2025-3464 - Asus Armoury Crate AsIO3.sys authorization bypass vulnerability Hackers switch to targeting U.S. insurance companies Roteiro e apresentação:...

805 - Ransomware Fog é equipado com wipe 16.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 /bin/live - hackerspaces Anubis : A Closer Look at an Emerging Ransomware with Built-in Wiper GrayAlpha Uses Diverse Infection Vectors to Deploy PowerNet Loader and NetSupport RAT Fog Ransomware : Unusual Toolset Used in Recent Attack Fileless AsyncRAT Distributed Via Clickfix Technique Targeting German Speaking Users Warning Against Dist...

804 - Spyware: Novos estudos revelam atividade recente do Graphite e do Predator 13.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 Graphite Caught : First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted About the security content of iOS 15.8.4 and iPadOS 15.8.4 Predator Still Active , with New Client and Corporate Links Identified Trend Micro fixes critical bugs in Apex Central and TMEE PolicyServer Roteiro e apresentação: Carlos C...

803 - Primeira vuln zero-click em IA é documentada 12.06.2025

Referências do Episódio Zero-click AI data leak flaw uncovered in Microsoft 365 Copilot 20,000 malicious IPs and domains taken down in INTERPOL infostealer crackdown Servidores expostos com a CVE-2025-49113 SmartAttack : Air-Gap Attack via Smartwatches Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

802 - Patch Tuesday tem vuln sendo explorada por APT do Emirados Árabes Unidos 11.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws CVE-2025-33053, Stealth Falcon and Horus : A Saga of Middle Eastern Cyber Espionage   Stealth Falcon SAP Security Patch Day - June 2025 Security Advisory Ivanti Workspace Control ( CVE-2025-5353, CVE- CVE-2025-22463, CVE-2025-22455 ) CVE-2025-31104 no FortiADC Adobe Rele...

801 - SentinelOne detalha ataques persistente de grupos chineses 10.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets An Introduction to Operational Relay Box (ORB) Networks - Unpatched, Forgotten, and Obscured What 7,000+ NodeZero RAT Attempts Show Us About Cyber Security Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de...

800 - Ransomware Qlin tem atacado dispositivos Fortinet 09.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 SOC Tempest com Google SecOps Critical Fortinet flaws now exploited in Qilin ransomware attacks Analysis of the latest Mirai wave exploiting TBK DVR devices with CVE-2024-3721 New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally Blitz Malware : A Tale of Game Cheats and Code Repositories BadBox 2.0...

799 - Nova falha afeta UEFI da AMD com firmware da AMI 06.06.2025

Referências do Episódio Turing Day 2025 – 5º edição - 17/06 SMM Callout Vulnerabilities in UEFI Power Automate Elevation of Privilege Vulnerability ( CVE-2025-47966 ) BladedFeline : Whispering in the dark DuplexSpy RAT : Stealthy Windows Malware Enabling Full Remote Control and Surveillance Hacker selling critical Roundcube webmail exploit as tech info disclosed Roteiro e apresentação: Carlos Cabr...

798 - Falha crítica afeta produtos Cisco em nuvem 05.06.2025

Referências do Episódio Cisco Identity Services Engine on Cloud Platforms Static Credential Vulnerability Hello, Operator? A Technical Analysis of Vishing Threats The strange tale of ischhfd83 : When cybercriminals eat their own From open-source to open threat: Tracking Chaos RAT’s evolution Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerram...

797 - Crocodilus: novo trojan para Android se torna global 04.06.2025

Referências do Episódio Crocodilus Mobile Malware : Evolving Fast, Going Global Roundcube ≤ 1.6.10 Post-Auth RCE via PHP Object Deserialization Prova de conceito da Positive Technologies  How Threat Actors Exploit Human Trust: A Breakdown of the 'Prove You Are Human' Malware Scheme Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramen...

796 - 0-days sob ataque afetam Chrome e drivers da Qualcomm 03.06.2025

Referências do Episódio Stable Channel Update for Desktop New Chrome Zero-Day Actively Exploited ; Google Issues Emergency Out-of-Band Patch Qualcomm June 2025 Security Bulletin Qualcomm fixed three zero-days exploited in limited, targeted attacks DevOps Tools Targeted for Cryptojacking Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento:...

Listen to the Cyber Morning Call podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.