CVE-2025-15467, el fallo de OpenSSL que sólo importa cuando la ruta de análisis del mensaje es real Seguir leyendo
Claude Code Remote Control Security Risks — When a “Local Session” Becomes a Remote Execution Interface Seguir leyendo
El marco ATT&CK de MITRE, la forma práctica de utilizarlo en la ingeniería de seguridad de 2026 Seguir leyendo
CVE-2024-3094 and the XZ Utils liblzma Backdoor, why a routine update almost became a trust crisis Seguir leyendo
Moonshot CVE, separando la señal del ruido en torno a CVE-2026-25046 y la superficie de ataque de la tubería de compilación. Seguir leyendo
CVE-2026-20127 — Cisco Catalyst SD-WAN Authentication Bypass Under Active Exploitation Seguir leyendo
MITRE CVE Funding, the April 2025 scare and what it revealed about vulnerability infrastructure Seguir leyendo