Chile: Cybersecurity Situation, August 2026
Ransomware led August in Chile, with 24 cases, 16 regulatory moves, and two notable incidents in telecom
Key findings
- Ransomware was the dominant threat in Chile, with 24 of 76 verified events and a sharp jump from July.
- The month’s strongest evidence was the attack on Hospital Clínico Universidad de Chile, attributed to Direwolf.
- Several ransomware cases appeared on leak sites or had incomplete classification, so the real impact remains open.
- Digital fraud stayed active, with signs of vishing, phishing, and generative AI as accelerators.
- Regulation focused on ARC, Law 21.663, personal data, deepfakes, and open finance.
- Telecommunications was under investigation for possible cyberespionage, with no confirmed breach during August.
- Zimbra, Spring Security, and Haiwell dominated the critical vulnerability agenda and should be prioritized for patching.
Monthly reference modules
These modules are automatically completed with the verified facts dated within the period. Each one states its basis and counting criteria, so the figures reconcile across modules. They are the recurring month-to-month reading, and the analysis that follows develops the cases without repeating this summary.
Indicator window: 76 dated facts in August 2026. Facts from earlier months are used only as comparative context in the analysis, never as volume for this period.
Executive summary for the month in Chile
August ended in Chile with ransomware as the dominant threat and a clear increase in extortion pressure on local organizations. The month produced 76 verified incidents, 24 cases with ransomware or extortion as the primary focus, 16 regulatory moves, and two documented fraud or phishing cases. It also mentioned 6 critical CVEs and 16 unclassified incidents, in a context where 71% of the incidents were directly confirmed by the source.
The most visible case was the attack on Hospital Clínico Universidad de Chile, attributed to the Direwolf group and recorded on August 30. That was joined by claims or listings on leak sites linked to Difor, Layher, Incolur, Espinos, and Verbux, plus BlackNevas’s investigation into a French multinational with operations in Quilicura. The material does not always make it possible to distinguish between encryption, exfiltration, or only a mention on a leak site, so much of the month’s extortion activity falls into a middle zone of certainty.
Meanwhile, the regulatory front kept moving, though at a somewhat slower pace than in July. There were advances in the Ley Marco de Ciberseguridad, adjustments to the electrical standard, debate over the data protection law, and concrete signals from the CMF on stronger authentication, the end of the coordinate card, and the open finance system. The legislative agenda on deepfakes and digital integrity also advanced, adding a new layer of pressure on privacy, identity, and proof of authenticity.
The operational reading for the month is high risk. Not because of a single crisis, but because of the combination of active extortion, public incidents in sensitive sectors, a regulatory surface that already demands concrete changes, and growing exposure to AI-assisted fraud. August shows Chile under more attack pressure, more compliance obligations, and more friction in separating noise, potential exposure, and a confirmed incident.
National snapshot for the month in Chile
Chile saw a mix of concrete incidents, extortion campaigns, and regulatory adjustments in August, pushing organizations to raise their standards for monitoring and response. Ransomware was the dominant signal, but it appeared alongside defacements, a cyberespionage investigation in telecoms, pressure on the financial ecosystem, and an intense legislative debate over personal data and digital identity.
The qualitative assessment for the month is high. Severity depends not only on the number of incidents, but on their concentration in sensitive sectors, healthcare, telecommunications, banking, energy, and public agencies. It also matters that several cases remained preliminary or only partially attributed, which complicates crisis management and external communications. In other words, the risk was not only technical, it was also a matter of governance and interpretation.
At the regional level, Chile tracked a broader Latin American trend, more AI use in fraud, more hyper-personalized phishing campaigns, more exploitation of vulnerabilities in corporate products, and a greater role for extortion groups that post victims on leak sites. The difference is that in Chile, that pressure came alongside an especially dense regulatory agenda, with direct impacts on banks, essential service providers, and operators of vital importance.
Chile period indicators
| Indicator | Value |
|---|---|
| Verified facts in the period (base for all indicators) | 76 |
| Indicator time window | 76 facts dated in August 2026 |
| Unclassified incidents (breaches or outages) | 16 |
| Cases with ransomware or extortion as the primary focus | 24 |
| Ransomware breakdown by impact type: Confirmed asset encryption | 3 |
| Ransomware breakdown by impact type: Exfiltration without encryption (simple extortion) | 1 |
| Ransomware breakdown by impact type: Mentioned only on a leak site | 3 |
| Ransomware breakdown by impact type: Cannot be determined from the available material | 17 |
| Documented fraud or phishing cases | 2 |
| Documented regulatory moves | 16 |
| Critical CVEs mentioned | 6 |
| Sectors with at least one documented fact | 8 |
| Main threat of the month | Ransomware (24 of 76 facts) |
| Facts with direct source confirmation | 71% |
Comparative table with the previous month
| Indicator | August 2026 | Previous month | Change |
|---|---|---|---|
| Verified facts in the period | 76 | 68 | +8 |
| Unclassified incidents | 16 | 18 | -2 |
| Cases with ransomware or extortion as the primary focus | 24 | 9 | +15 |
| Documented fraud or phishing cases | 2 | 7 | -5 |
| Documented regulatory moves | 16 | 24 | -8 |
| Critical CVEs mentioned | 6 | no comparable data | n/a |
| Sectors with at least one documented fact | 8 | 7 | +1 |
| Main threat of the month | Ransomware (24 of 76 facts) | Regulation (24 of 68 facts) | shift in focus |
Relevant incidents in Chile
Hospital Clínico Universidad de Chile and the Direwolf campaign
On August 30, Hospital Clínico Universidad de Chile appeared as a ransomware victim attributed to the Direwolf group, with independent reporting in technical trackers and incident monitoring sites. The material matches on the victim name, the health sector, and the date, although it does not provide public confirmation from the hospital on the real scope of the intrusion.
The technical source classifies the case as a breach and a ransomware victimization, but it does not specify exactly what data was compromised or whether encryption was confirmed by the institution. That leaves the case in a relevant operational category, but still incomplete for forensic purposes. In terms of public exposure, it is the clearest health sector incident of the month.
National Migration Service and the defacement with mass email
On August 18, the National Migration Service suffered a website intervention that temporarily blocked the digital services platform and replaced its content with an image and messaging associated with Augusto Pinochet. At the same time, mass email was reported from accounts linked to the service, amplifying the incident beyond a simple visual takeover of the portal.
The institution said the attack began around 5:00 a.m. and that an internal investigation was opened. The reports reviewed indicate that services were restored during the morning, but they do not specify whether there was data exfiltration or compromise of case files. The episode falls squarely within the 16 unclassified incidents in the period.
Investigation into cyberespionage in telecommunications
Between August 8 and 10, several reports covered an investigation by the Metropolitan North Central Prosecutor's Office and the PDI into possible computer attacks against Entel, Movistar, and Telmex, with references to the Lilac Typhoon group and the offense of computer sabotage. The material insists that this was a preliminary complaint, based on information provided from the United States.
This case did not solidify as a confirmed breach during the month. Even so, it left important signals, including the mention of ShadowPad and the possible use of compromised infrastructure for obfuscation. It also opened a political discussion about privacy, national security, and parliamentary oversight. By the end of August, it was still an investigation, not a proven incident.
LiteLLM, ANCI preventive alert, and potential exposure
On August 14 and 15, ANCI activated a preventive protocol over a possible exposure tied to the LiteLLM hack and notified about 20 Chilean institutions. The reports stress that this was a possible exposure, not a confirmed incident, and that the agency had not identified significant impacts at the time it issued its alerts.
The significance of the episode lies less in a confirmed local intrusion and more in how it showed the exposure surface of Chilean organizations to supply chain compromise. The material mentions domains associated with public, financial, educational, and corporate entities. As context, it is useful for understanding defensive prioritization, but not for adding confirmed incidents.
Threats and active campaigns in Chile
Ransomware and extortion dominate in Chile
August was marked by a more visible extortion campaign than July. The month brought 24 cases with ransomware or extortion as the primary focus, including 3 confirmed encryption events, 1 case of exfiltration without encryption, 3 leak site-only mentions, and 17 situations in which the material did not allow for a precise impact assessment. Most of the activity therefore remained in a space of strong attribution but only partial operational effect.
The month’s pattern shows a mix of sectors and verification levels. Direwolf hit Hospital Clínico Universidad de Chile, BlackNevas appeared in an investigation involving a French multinational with a subsidiary in Quilicura, TheGentlemen listed Layher, Incolur, Espinos and Verbux, and Qilin claimed Difor. In several of those cases, the company did not confirm the intrusion, so the primary source is the leak site or a specialized tracker.
Confirmed encryption, exfiltration and leak sites
Only three cases in the period allow for confirmed asset encryption, according to the provided taxonomy. One of them corresponds to Hospital Clínico Universidad de Chile, while other incidents in the month remained at the level of extortion or publication on leak forums without enough technical detail. There was also one identified case of exfiltration without encryption in the material, but the rest could not be conclusively classified.
That calls for caution in reading the month. In practice, leak site noise often overstates the real scope if it is not backed by victim confirmation. In August, Chile saw a mix of criminal posts, incident trackers and very little formal corporate confirmation. The alert is real, but the effective impact is not always proven.
Fraud and phishing in Chile
Fraud had a smaller footprint than ransomware, but a more consistent day-to-day impact. The month recorded 2 documented cases, although the broader context was much larger. The Central Bank reported US$98 million in complaints over fraudulent banking transactions in the first half, and several reports warned about vishing, smishing and scams using RUT, voice cloning or highly personalized AI-generated messages.
The clearest case in August was the description of a bank phone scam that uses the RUT as an entry point and poses as the bank’s fraud department. That was joined by the Central Bank’s warning about AI-generated content impersonating authorities and at least two pieces on the rise of phishing and vishing in Chile. The trend points to more sophisticated social engineering, not just a higher volume of mass messages.
Cyberespionage and pressure on telecoms
The investigation into Lilac Typhoon did not go beyond a preliminary case, but its political and technical weight was high. The material places it as a cyberespionage operation linked to China, with possible effects on Entel, Movistar and Telmex networks, and with references to ShadowPad, network reconnaissance and metadata extraction. There was no public confirmation of an effective breach during August.
For the monthly report, the value of this campaign lies in the mix of media attention, criminal proceedings and parliamentary reaction. If the case advances in later months, it could become one of the year’s most relevant storylines for the telecom sector. For now, it remains a warning sign, not a proven intrusion.
Critical vulnerabilities with impact in Chile
The month's material did not directly link the exploitation of critical vulnerabilities to a confirmed local incident, but it did surface a significant set of alerts Chile should have on its radar. The most relevant exposure was Zimbra, followed by Spring Security, Haiwell IoT Cloud HMI Gateway, and Palo Alto PAN-OS, with potential impact on email, authentication, industrial infrastructure, and perimeter monitoring.
| CVE | Software | Exploitation | Source |
|---|---|---|---|
| CVE-2026-73570 | Zimbra Collaboration Suite | Confirmed active exploitation and added to KEV | NVD, CISA, INCIBE-CERT |
| CVE-2026-59270 | Spring Security | Critical vulnerability published with an official warning; exploitation not confirmed in the Chilean material | HeroDevs, INCIBE-CERT, HunCERT |
| CVE-2026-19188 | Haiwell IoT Cloud HMI Gateway | Critical advisory, with no record of specific public exploitation by the close of the material | CISA, OpenCVE, INCIBE-CERT |
| CVE-2026-0301 | Palo Alto PAN-OS, Prisma Access and Cloud NGFW | Information disclosure, with patching recommended and regional advisories issued | Palo Alto Networks, CSIRT Panama, Rapid7 |
| CVE-2026-32560 | MagicAI for WordPress | LFI advisory, with no evidence of local impact in the material | INCIBE-CERT |
| CVE-2026-12556 | HP Easy Start for macOS | Security advisory, with no direct link to local incidents | INCIBE-CERT |
The takeaway for Chile is preventive. The material did not draw an explicit line between these CVEs and confirmed breaches in the country, but it did signal a strong need for defensive readiness, especially around Zimbra and Microsoft's patch cycle. In a context where email, identity, and remote access are recurring attack vectors, this matters more for potential exposure than for the isolated number of alerts.
Regulation and compliance in Chile
August was a heavy month for regulation. There were 16 documented moves, and the regulatory agenda touched at least four fronts: personal data, cybersecurity, open finance, and digital safety for minors and synthetic identity. The regulatory conversation is no longer just about future compliance, but about deadlines, penalties, reporting, and concrete operating criteria.
Law No. 21.719 remained at the center of the debate. Several media outlets and industry players reported that the government is weighing a delay to its effective date, set for December 1, 2026, because a fully operational enforcement agency is still lacking. Some voices called for a short extension of no more than six months, while others warned that pushing it back by a year would damage both reputation and operations.
At the same time, the CMF moved forward with the rollout of Reinforced Customer Authentication, ending the general use of coordinate cards as of August 1, and continued refining the Open Finance System. NCG 569 extended the SFA implementation timeline and established a pilot scheme, while other technical guidelines set out requirements for availability, reporting, and interoperability that are already forcing banks and other participants to review architecture, continuity, and incident response.
The agenda on deepfakes and digital integrity also moved. On August 24, the Chamber of Deputies approved in general a bill regulating AI-generated content and penalizing deepfakes, in a line that intersects privacy, digital evidence, and platform liability. Outside that bill, the debate over IMSI Catchers and surveillance powers remained active, confirming that digital security now overlaps with privacy, organized crime, and fundamental rights.
Regulation and compliance table
| Date | Milestone | Operational impact |
|---|---|---|
| 2026-08-01 | Full ARC implementation begins and general use of coordinate cards ends | Changes in banking authentication and transfers |
| 2026-08-05 | Guidelines and FAQs on Law 21.663 are released | Greater clarity on incident reporting |
| 2026-08-11 | The Undersecretariat of Energy orders the electric standard to be adjusted and the sector CSIRT to be removed | Reporting is unified under the National CSIRT |
| 2026-08-12 | Decree 295 and reporting obligations to ANCI | Speeds up alert and response windows |
| 2026-08-18 | The National Anti-Transnational Financial Fraud Roundtable is signed | More coordination between the public and private sectors |
| 2026-08-21 | The CNE confirms the elimination of the Electric CSIRT | The energy sector is aligned to a single window |
| 2026-08-24 | The Chamber approves the anti-deepfake law in general | New layer of obligations on digital identity |
| 2026-08-25 to 2026-08-28 | Debate continues on the Data Protection Law and the SFA | Ongoing compliance and governance adjustments |
Most affected sectors in Chile
The monthly signal reached eight sectors, with visible concentration in healthcare, telecommunications, finance, energy, government, technology, construction, and transportation or logistics. Not every sector is backed by the same quality of evidence, but the mix already shows where the real pressure sits and where the main issue is third-party exposure or claims on leak sites.
Healthcare was the clearest case, driven by the attack on Hospital Clínico Universidad de Chile and by its weight in the ransomware figures cited by Sophos. Telecommunications came under investigation without a confirmed breach, and that alone raises scrutiny because it is a highly privacy-sensitive infrastructure. In finance, the focus was more on fraud, authentication, and compliance than on a single public intrusion.
Energy appears on two fronts. First, as a strategic sector affected by the regulatory debate over the technical cybersecurity standard for the electric sector. Second, through the Espinos case listed on a ransomware leak site. Technology also had a clear presence, with Difor and Verbux in extortion claims, while construction and logistics appear in Layher, Incolur, and Servicios Marítimos MG.
The public sector was exposed on two different fronts, one incident-related and one regulatory. The defacement against Migraciones showed a visible operational and communications failure, while ANCI and other agencies continued pushing standards, reports, and preventive alerts. The sector-wide picture does not point to a single failure point, but to cross-cutting pressure that mixes availability, authentication, fraud, and data exposure.
Trends and signals to watch in Chile
Compared with July, August showed a sharp rise in ransomware and a drop in documented fraud or phishing. Cases involving ransomware or extortion rose from 9 to 24, while regulatory activity fell from 24 to 16 and documented fraud declined from 7 to 2. The shift in the dominant threat, from regulation to ransomware, is the clearest signal this month.
The trend was not only numerical. In August, extortion pressure increased because several victims appeared on leak sites without public confirmation, and because the cases with solid evidence were concentrated in healthcare and in at least one company with local operations. The weight of campaigns tied to compromised identities also grew, which aligns with Sophos’ finding that 64% of ransomware attacks originated in credentials, phishing, or brute force.
On the regulatory side, the movement was smaller than in July, but deeper. The debate is no longer about broad principles, but about how to operationalize reporting, deadlines, authentication, continuity and sanctions. The next development to watch is whether a possible delay of Law 21.719 moves forward and how far it goes, because that could change compliance timelines across entire sectors without altering the underlying requirements.
In vulnerabilities, the signal points to persistent exposure in common enterprise software. Zimbra and Spring Security dominated the month on the technical side, while ANCI showed preventive concern about supply chains and AI tools. Monitoring should focus on email, authentication, open integrations, and any product that combines remote administration with Internet exposure.
Security recommendations for teams in Chile
Security teams in Chile should treat August as a preparation month for a more demanding second half of the year. The mix of ransomware, AI-assisted fraud, regulatory pressure, and critical vulnerabilities requires closing gaps in access, monitoring, continuity, and communications, not just technical controls.
First, strengthen defenses against compromised identities. This month’s material shows that this was the most repeated vector in ransomware and also in digital fraud. Teams should review whether MFA is truly enforced, harden account recovery, limit reused credentials, and monitor anomalies in remote access, admin consoles, email, and VPNs. In environments with Zimbra, Spring Security, or embedded LDAP workflows, exposure should be prioritized.
Second, review how incidents are reported and escalated. Law 21.663 and its regulations already impose short notice and update windows for PSE and OIV. That requires operational runbooks, clear owners, time tracking, and communication templates. In practice, many organizations fail not because they cannot detect an incident, but because they cannot organize the sequence of reporting, containment, and evidence.
Third, harden defenses against AI-driven fraud. This month’s coverage shows vishing with voice cloning, highly personalized messages, and impersonation of authorities. That requires dual verification for sensitive operations, stronger protection for voice and email channels, very specific internal awareness campaigns, and monitoring for behavioral patterns rather than fixed rules. The fraud team needs to work with cybersecurity and customer service.
Fourth, prepare for leak sites and unconfirmed claims. August brought several cases of that kind. The practical recommendation is to treat those notices as intelligence signals, but not as final proof of impact without a minimum internal validation. If the organization is named, it should trigger exposure review, log correlation, backup protection, and public response scripts.
Frequently Asked Questions
What changed between July and August ransomware pressure in Chile?
August ended with 24 cases where ransomware or extortion was the primary focus, compared with 9 in July, while regulatory developments fell from 24 to 16. The shift was not only in volume, but also in the dominant threat, because ransomware overtook regulation as the month’s main risk.
Which sectors combine the most technical and regulatory risk in Chile?
Healthcare, telecommunications, and financial services carry the most sensitive signal. Healthcare had the clearest ransomware case, telecommunications came under investigation for possible cyberespionage, and the financial sector absorbed fraud, ARC, SFA, and reporting obligations under Law 21.663. The pattern is spread across Incidents, Regulation, and Sectors.
What type of ransomware dominated in Chile during August?
Extortion dominated, with incomplete certainty about the final impact. Of the 24 cases, 3 involved confirmed encryption, 1 was exfiltration without encryption, 3 were limited to a leak site, and 17 could not be further classified from the available material. That means each claim should be read cautiously, not as proof of effective encryption.
What concrete obligations did Law 21.663 and ARC bring for banks and other actors?
ARC replaced the coordinate card as the general mechanism starting August 1, and Law 21.663 imposes very short reporting deadlines for significant incidents, with early warning, updates, an action plan, and a final closeout. Those requirements apply to banking, financial services, and payment methods, according to the month’s regulatory material.
Which vulnerabilities should a Chilean IT team prioritize today?
This month’s short list includes Zimbra Collaboration, Spring Security, Haiwell IoT Cloud HMI Gateway, and PAN-OS. Zimbra stands out for confirmed active exploitation, Spring Security for critical severity, and Haiwell for its potential impact on industrial environments. The vulnerabilities table summarizes the status of each one.
Why does August point to something more complex than just more attacks?
Because the month combined attacks, leak site claims, AI-enabled fraud, scrutiny of telecommunications, and an intense regulatory agenda. That creates simultaneous pressure on operations, compliance, and communications. An incident was not always confirmed, but it was still enough to force a review of exposure and response times.
Material limitations
This report was built exclusively from the facts dated August 2026 included in the provided material. No internet was used, and no external information was added. Facts without a confirmed date were left out of the indicators and were not counted in any total for the period.
A zero indicator, especially for CVEs or any other axis, means it did not appear in this month’s analyzed material, not that it did not exist in Chile or across the region. In this specific snapshot, 6 critical CVEs were mentioned, but that still does not allow any inference about the absence of other active vulnerabilities outside the received corpus.
The time window for the indicators is the same one stated above, 76 facts dated August 2026. The comparative data comes from the previous month according to the prior report, and it was used only for contrast. Detection telemetry, blocks, or scans were not added to the incident counts.
Sponsored sources, commercial releases, advertorials, and consumer social media not included in the permitted list were also left out as primary evidence. When the material only provided leak-site claims or preliminary alerts, they were treated as such and not as confirmed breaches. In ransomware, that is key to avoiding confusion between a mention and verified impact.
Sources
- Nueva Ley de Protección de Datos: cambio, avance y estrategiaPortal Innova
- Los problemas de la Agencia de Protección de DatosCentro Competencia (CeCo)
- Chile Data Protection & Privacy Regulation MonitorGDPRI / DataProtection.gi
- Los fraudes y estafas con IA más recurrentes en México, Colombia, Chile, Perú y PanamáBloomberg Línea
- Ransomware Group direwolf Hits: Hospital Clínico Universidad de ChileHookphish
- Ciberdefensa con IA: alerta de Sam AltmanANDA
- Publicación sobre Hospital Clínico Universidad de Chile en el leak site de DirewolfRansom-DB
- Registro técnico de incidentes de ransomware – Hospital Clínico Universidad de ChileRansomware.live
- Bancada RN presenta proyecto para fortalecer la persecución del crimen organizado mediante el uso de tecnología IMSI CatcherRadio Agricultura
- Bancada RN presenta proyecto para ampliar uso de IMSI Catcher para interceptar comunicaciones en casos excepcionalesLa Tercera
- Programa de Formadores de Mercado para la deuda soberana en moneda local – Documento para recepción de comentariosMinisterio de Hacienda de Chile
- Ejecutivo otorga suma urgencia a proyecto de Entornos Digitales Seguros y acelera acuerdo transversal por la infanciaMinisterio de Desarrollo Social y Familia de Chile
- Microsoft capacita a 800 alumnos militares en ciberseguridadMicrosoft
- Gobierno estudia aplazar un año la nueva Ley de Protección de Datos por falta de agencia fiscalizadoraBiobío Chile
- Cómo el RUT se convierte en la puerta de entrada a una estafa bancaria que se masifica en ChileThe Clinic
- Chile database leak with 10 million records · Kalir Brief · PulseKalir Pulse
- EE.UU. alerta sobre ciberataques a empresas chilenasMediapolis Chile
- CVE-2026-59270 - Exploits & SeverityFeedly
- Ministra Wulf comenta acuerdo de Meta por adicción a redesCNN Chile
- La CMF avanza en la implementación del SFA: sandbox "Atena" estará disponible en octubreChócale
- Costos y escaso personal entre los desafíos para cumplir controles básicos de ANCINIVEL4 Labs
- Ransomware Group thegentlemen Hits: IncolurHookphish
- 72 horas para eliminar una mentira con IA: Conoce qué país lidera la ley antideepfakes en América LatinaEstamos en Línea
- ¿Cómo la IA está blindando el dinero de los chilenos frente al fraude?Revista Emprende
- Cómo las fintech protegen a Chile del fraude con inteligencia artificialITSitio Chile
- Expresidente del CPLT criticó eventual postergación de un año para la Ley de Protección de DatosRadio Cooperativa
- Ley de Protección de Datos: Gobierno busca postergar su entrada en vigenciaDiario y Radio Universidad de Chile
- Prepararse para responder: el nuevo desafío de la ciberseguridadMundo en Línea
- Gobierno evalúa postergar hasta 2027 entrada en vigencia de la Ley de Protección de DatosADN Radio Chile
- Gobierno pierde en el TC y Kast presiona por votos para su reforma de seguridadEl Mostrador
- Clima Social ICSOH-UDP: 69% de los chilenos usa IA para resolver dudas sobre salud y tratamientosEl Mostrador / ICSOH-UDP
- Chile's Open Finance System: Your Guide to Get StartedOzone API
- ¿Qué es una API financiera y su relevancia para empresas?Buk
- Gitea security advisory (AV26-845)Canadian Centre for Cyber Security
- CVE-2026-59270HunCERT / NKI
- Chile reescribe su ley de IA: del modelo europeo a una ley habilitanteCentro Competencia (CeCo) UDP
- Spring: 91 vulnerabilities patched, one criticalBerigo
- Administrative Access Exposure in Spring Security Embedded LDAP Server (CVE-2026-59270)Mallory
- Security Bulletin: OS Command Injection in Zimbra Collaboration Suite SNMP Notification ProcessingRedlegg Security
- Nueva Ley de Protección de Datos obligará a las empresas a replantear cómo gestionan la información de personasMundo en Línea
- TP-Link Omada: Kritische VPN-Lücke betrifft 18 Gateway-ModelleBlogspan
- What is Data Protection Law in Chile?OneTrust
- "No a la cocina": Oficialismo rechaza retirar del Congreso criticado proyecto de seguridadRadio Cooperativa
- Privacidad diferencial: Ley N° 21.719R&V Soluciones Legales
- Обход WebAuthn в Spring Security и выполнение кода в Spring Integration1275.ru
- Dictámenes CMFCMF Chile
- Ciberseguridad: aprueban Ley contra deepfakes en ChileThe Standard CIO
- Además de un nuevo Estado de excepción, ¿qué propone la reforma de seguridad pública de Kast?Biobiochile
- Fraude bancario, datos personales y el deber de mirar lo que el sistema ya sabeEstadoDiario
- Protección de datosLa Tercera
- CVE-2026-32560 | INCIBE-CERTINCIBE-CERT
- CVE-2026-12556 | INCIBE-CERTINCIBE-CERT
- CVE-2026-73570 — Synacor Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerabilityf4n6 security feed
- CVE-2026-73570 DetailNVD (NIST)
- La difícil implementación de la ley de protección de datos personalesMSN / medio chileno reproducido
- Zimbra Product Security Update Advisory (CVE-2026-73570)AhnLab ASEC
- TheGentlemen Ransomware Attack on Layher in ChileDeXpose
- Ley de IA en Chile: Qué Exige a las EmpresasCercai
- Qilin Ransomware Claims a Chilean Technology Company as Brazil’s Healthcare Sector Faces Another Ransomware Attack + VideoUnderCode News
- Nueva Ley de Protección de Datos obligará a las empresas a replantear cómo gestionan la información de personasPublimetro Chile
- Europa ya multa por fallas en protección de datos y Chile entra en la mira: nuevas exigencias comienzan en diciembrePublimetro Chile
- Ley de Protección de Datos: La cuenta regresiva para las empresas chilenas comienza en diciembrePresslatam
- Difor — QILIN Ransomware AttackBreach House
- Victim: Difor – qilinRansomware.live
- CTI Daily Brief · 2026-08-22CTI Pilot
- El INCIBE-CERT alerta de una vulnerabilidad Spring Security ...Moncloa
- 91 Spring CVEs in a Single Day: Inside the August 2026 BatchHeroDevs
- Hackers Target Zimbra Servers in Active Exploitation CampaignSecurityWeek
- El INCIBE-CERT alerta de ocho vulnerabilidades en el sensor ferroviario Frauscher FDS102, una crítica y cinco altasMoncloa.com
- El INCIBE-CERT alerta de una vulnerabilidad Citrix NetScaler crítica y otra altaMoncloa.com
- El INCIBE-CERT alerta de múltiples vulnerabilidades en productos Cisco como Crosswork Data Gateway y Secure WorkloadMoncloa.com
- Informe de Sistemas de PagoBanco Central de Chile
- Zimbra CVE-2026-73570: Unauthenticated Command Injection via SMTPDev.to
- Violencia Digital: ¿En qué consiste el proyecto de ley que busca modificar el Código Penal?El Tipógrafo
- CISA Warns of Zimbra OS Command Injection Vulnerability Active Exploitation (CVE-2026-73570)Qualys ThreatProtect
- Gobierno activa registro obligatorio de celulares prepago para prevenir estafasCooperativa
- CVE-2026-9244 | INCIBE-CERTINCIBE-CERT
- Mirada Económica - 20 de agosto 202624 Horas
- Alerta por cambio en los bancos: ya cambiaron los requisitos para transferir dineroEl Mostrador
- Entidades públicas y privadas crean mesa contra el fraude financiero transnacionalChócale
- EE.UU. alerta sobre ciberataques a empresas chilenasPortal Innova
- CMF publica actualización de la normativa sobre caducidad de acreenciasDiario Estrategia / CMF
- Nueva Ley de Protección de Datos obligará a las empresas a replantear cómo gestionan la información de personasEstamos en Línea
- Zimbra - CVE-2026-73570CERT Santé (Francia)
- El INCIBE coordina la publicación de cuatro vulnerabilidades de T-Systems TAO 2.0, dos de ellas de severidad altaMoncloa.com
- CVE-2026-59270: Spring Security Embedded LDAP Admin DN ExposureHeroDevs
- CVE-2026-19586 — TP-Link Omada gateways: attacker-supplied data during OpenVPN connection establishment reaches command execution before authentication completes (CVSS 4.0 9.3)CTI Pilot
- Chile Opens LBTR Settlement Access to Non-Bank Financial ...Clearingpost
- Claudio Raddatz, del Banco Central: "Aspiramos a generar las condiciones para que exista interoperabilidad en pagos instantáneos"Chócale
- El paso en falso de Arrau: la accidentada gestación de una reforma que crispó al gabineteLa Tercera
- Nueva Ley de Datos: qué deberán cambiar los edificios en el manejo de información de residentesRadio Agricultura
- Squella y Longton unifican postura para que nuevo estado de excepción requiera acuerdo del CongresoCanal 9
- CMF sanciona a corredora de bolsa por proporcionar información falsa sobre su situación financieraDiario Estrategia
- Ley 21.719 y Ley 21.663 en Chile: qué cambia y qué revisar en tus políticas de datos y ciberseguridadWebdox CLM
- Cuando pensar se vuelva opcional: los límites del proyecto de ley de IAPoder y Liderazgo
- Kast niega carácter "iliberal" de reforma de seguridad y abre puerta a cambios en el CongresoDiario y Radio Universidad Chile
- Normativa y Proyectos referentes al Servicio Nacional del ConsumidorBiblioteca del Congreso Nacional de Chile
- “Alguien podrá decir que confía en el Presidente, pero le preguntaría”: Daniel Matamala pone alarma ante idea de KastLa Cuarta
- Fortalece el sistema nacional de seguridad pública y crea un nuevo estado de excepción constitucional de seguridad pública (ficha iniciativa 18597-07)vLex Chile
- Firman convenio que permitirá constituir una Mesa Nacional en contra del Fraude Financiero TransnacionalEl América
- Organismos públicos y del sector privado financiero crean Mesa Nacional contra el Fraude Financiero TransnacionalABIF
- Autoridades firman convenio que permitirá constituir una Mesa Nacional contra el Fraude Financiero TransnacionalSERNAC
- Ataque a la cadena de suministro de LiteLLM: qué pasó y cómo reaccionarPasquale Pillitteri
- Alerta ante nuevas estafas en pagos digitales: Estas son las tarjetas que enfrentan mayor riesgo en compras onlineCNN Chile
- CVE-2026-62289 | INCIBE-CERTINCIBE-CERT
- Los mejores bancos de Chile en 2026: ranking, tasas y ...Agencia de Prensa Chile
- Hackean sitio web del Servicio Nacional de Migraciones con imagen y discurso de PinochetADN Radio Chile
- Ciberseguridad: Aumentan las estafas en tarjetas de débitoFayerwayer
- Autoridades firman convenio que permitirá constituir una Mesa Nacional contra Fraude Financiero TransnacionalEn la Ciudad
- Presidente de FinteChile: “La Tasa Máxima Convencional genera una distorsión de mercado per se y es antiintuitiva”FinteChile
- CMF alerta y denuncia por presuntos delitos de estafa a entidades que ofrecen créditos en sitios webDiario Estrategia
- Hackeo a Migraciones desató correos masivos con imagen de Pinochet y paralizó temporalmente sus sistemasLinares en Línea
- "Tu vulnerabilidad es nuestra riqueza": el ataque de hackers que golpeó a empresa en ChileBioBioChile
- CVE-2026-73570: Zimbra Collaboration Suite (ZCS) ...Makriva
- Circular No. 2374 — Establishes Adjustments to Chapter 2-13 of the Updated Compilation of Bank Regulations and Circular No. 1 of Non-Bank Payment Card Issuing CompaniesRegAlert Today
- FBI FLASH-20260702-01 Explained: The AI Supply Chain ...CloudSEK
- LiteLLM Supply Chain Attack: 2500+ Companies Exposed ...CloudSEK
- CVE-2026-55674INCIBE-CERT
- CVE-2026-55674 - Vulnerability DetailsOpenCVE
- Crean Mesa Nacional contra el Fraude TransnacionalPaís Lobo
- Asociación del Retail Financiero y creación de Mesa Nacional contra el Fraude Financiero: “La respuesta debe ser inmediata, articulada y resolutiva”Asociación de Retail Financiero
- Hackers Target Zimbra Servers in Active Exploitation Campaign via CVE-2026-73570 SNMP Command Injection — Threadlinqs IntelligenceThreadlinqs Intelligence
- Cyber Security Week in Review: August 21, 2026Cyber Security Help
- CVE-2025-41770: Allocation of Resources Without Limits or Throttling in Phoenix Contact AXC F 1152OffSeq Threat Radar
- ANCI activa alerta preventiva en Chile tras el mayor hackeo a la cadena de suministro de IA del añoRadio Siglo 25
- ANCI activa protocolo preventivo y notifica a veintena de instituciones chilenas por hackeo a LiteLLMBioBioChile
- CMF denuncia a cinco entidades por estafaMSN / Comisión para el Mercado Financiero (CMF)
- ANCI activa protocolo y notifica a posibles afectados por LiteLLMX (usuario @chum1ng0)
- Ley 21.719: la guía de cumplimiento para empresasHackmetrix
- Inside the LiteLLM Hack: 153GB and 2,488 OrganizationsGitGuardian
- CISA Flags Maximum-Severity Command Injection Flaw in Haiwell IoT Gateway Deployed Across Energy, Water SectorsCVETodo
- CVE-2026-19188: Haiwell IoT Cloud HMI Gateway OS Command Injectionexploit.cc
- CVE-2026-19188 - Vulnerability DetailsOpenCVE
- El INCIBE-CERT alerta de una vulnerabilidad crítica en ...Moncloa
- IA contra IA: Santiago reúne a expertos para enfrentar la nueva ola de...TVN
- Palo Alto Networks PAN-OS 10.2.x < 10.2.8 / 11.1.x < 11.1.16-h1 vulnerability pluginTenable
- An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS software enables an unauthenticated user with network access to obtain sensitive information (CVE-2026-0301)OffSeq
- CVE-2026-0301: CWE-908 Use of Uninitialized Resource in Palo Alto Networks Cloud NGFWOffSeq
- CMF postergó norma que prohíbe a bancos dar crédito a sus directores y sociedades aguas abajo con voto disidente en el consejoMSN Chile
- CCS valora aprobación en general del proyecto de ley que moderniza la firma electrónica y destaca su aporte a la transformación digital y de las pymesPortal Innova
- LiteLLM CVEs and AI gateway privilege gaps: what breaks first?NHIMG
- Presentación del Informe de Sistemas de Pago 2026 - Banco Central de ChileBanco Central de Chile
- CMF publica normativa sobre externalización de servicios para compañías de seguros y reasegurosLatino Insurance Boletines
- Tokenización de activos en Chile: Ley Fintech y CMFUnknown Gravity
- Alerta de seguridad: Supply chain attack compromete LiteLLM y expone potencialmente 434.000 pipelines CI/CDCronUp Ciberseguridad
- Una grave alerta de inteligencia emitida por ...DefRevista (X)
- Chile: la CMF consolida la regulación de bolsas de valores e intermediarios y refuerza estándares de riesgosGarrigues
- El INCIBE-CERT alerta de tres vulnerabilidades en ... - MoncloaMoncloa
- CVE-2026-0301 | TenableTenable
- CVE-2026-0301: Palo Alto Networks: An information disclosure vulnerability in URL FilteringRapid7
- CSIRT Panamá Aviso 2026-ago-13: PAN-OS ...CSIRT Panamá
- Johnson Controls C·CURE 9000 RCE Vulnerability: ICSA-26-204-01 Advisory and MitigationOT/ICS Monitor
- CMF publica normativa sobre externalización de servicios compañías seguros y reasegurosDiario Estrategia
- Una ventana de 40 minutos en PyPI alcanzó 434.000 canalizaciones de compilaciónAgenccy.ai
- Filtración LiteLLM credenciales: un ataque a la cadena de suministro de IA expone credenciales de grandes empresasMoncloa.com
- CVE-2026-0301 | Information Disclosure in Palo Alto PAN-OS URL FilteringBaseFortify
- ESET Security Day Chile abordó la transición y obligación de Ley Marco CiberseguridadTabulado.net
- Agencia de Protección de Datos Chile: facultades, sanciones y lecciones desde casos reales en el mercado chilenoEfectus
- La Agencia de Protección de Datos que no llegaEl ProA
- CVE-2026-0301 PAN-OS: Information Disclosure Vulnerability in URL FilteringPalo Alto Networks
- Ciberinteligencia: la pieza clave para cumplir con la nueva ley de ciberseguridad en ChilePublimetro
- Palo Alto Networks corrige 11 vulnerabilidades en PAN-OS, GlobalProtect y PrismaDevel Group
- Circular N°2.368 CMF: qué cambia en cumplimiento normativoGesintel
- Filtración de datos: la deuda de las telecomunicaciones con sus usuariosTrendConomy
- CMF publica nueva normativa sobre externalización de servicios en compañías de seguros y reasegurosSeguroVision
- Ciberseguridad y Protección de Datos Personales en ChileICARE
- El silencio que nadie nos explicó y siguen sin explicarnosEl Mostrador
- Publicación en X sobre vulnerabilidades de Microsoft Update Tuesday agosto 2026Agencia Nacional de Ciberseguridad de Chile (ANCI)
- El INCIBE-CERT alerta de tres vulnerabilidades Johnson ...Moncloa
- Lilac TyphoonInfobae
- Interés, temor y celeridad: ¿cómo avanzan las empresas en el cumplimiento de la Ley Marco de Ciberseguridad?Revista Seguridad & Defensa
- Corte Suprema respalda a la CMF en dos fallos por actuaciones en el caso SartorThe Clinic
- Economía - 11 de agosto 2026 (Senado)Parlamento.ai
- Economía - 11 de agosto 2026 (Cámara de Diputadas y Diputados) – nota de sesiónParlamento.ai
- Economía - 11 de agosto 2026 (Cámara de Diputadas y Diputados)Parlamento.ai
- Marcelo Drago sobre Ley de Protección de Datos Personales: “La ley va a entrar en vigencia; la única discusión es la fecha exacta”DOE Actualidad Jurídica
- Alerta en Chile sobre ciberataques de China, ¿qué se sabe?DefOnline
- Ransomware en Chile: el 64% de los ataques se originan por identidades comprometidasG5 Noticias
- Subestaciones Digitales: innovación y regulación para la red del futuroCNE
- Ministerio de Energía instruye a CNE acelerar norma de ciberseguridad eléctricaElectromineria.cl
- INCIBE-CERT alerta de vulnerabilidades en CPDLC que ...Moncloa
- PDI indaga “posibles ataques informáticos” de un grupo de ciberespionaje asiáticoLa Prensa Austral
- EEUU alertó ciberataques a empresas chilenas de telecomunicaciones ligados a hackers chinosBioBioChile
- Reportes de inteligencia de Estados Unidos alertan sobre actividad maliciosa y uso de malware en los sistemas de las empresas de telecomunicaciones en ChileRevista Seguridad
- PDI y Fiscalía investigan posible ciberespionaje asiático a empresas de telecomunicaciones en ChileVilas Radio
- EE.UU. advirtió a Chile sobre la presencia del APT Lilac TyphoonSecurity-CHU
- Desafíos del Futuro, Ciencia, Tecnología e Innovación - 10 de agosto 2026Parlamento.ai
- Comisión de Ciencias - 10 de agosto 2026Parlamento.ai
- Claude en OpenClaw hackea un gimnasio: alerta para empresasRevenueHub LatAm
- PDI investiga posible espionaje a Entel, Movistar y Telmex tras advertencia de Estados Unidos24 Horas
- Piden esclarecer eventual ciberespionaje a empresas de telecomunicacionesEl Pingüino
- Comisión de Desafíos del Futuro, Ciencia, Tecnología e Innovación – 10 de agosto de 2026TV Senado
- Chile Probes China-Linked Telecom EspionageThe Rio Times
- "De la más absoluta gravedad": Diputados piden ...Emol
- "Cable chino": Indagan a grupo de ciberespionaje asiático y eventuales accesos a empresas chilenasEmol
- "Lilac Typhoon": PDI indaga "posibles ataques informáticos" de un grupo de ciberespionaje asiáticoCooperativa
- El supuesto ciberataque que un grupo chino habría dirigido a compañías de telecomunicaciones chilenasEl Dínamo
- "Lilac Typhoon": PDI indaga posibles ataques informáticos de un grupo ligado a ChinaRadio Cooperativa
- Crecen los fraudes en pagos digitales: Denuncias alcanzan casi US$100 millones en el primer semestreEmol
- Aumenta 30% la estafa por SMS en Chile y expertos alertanDiario El Día
- La ofensiva de BancoEstado por millonaria red de “autofraudes”La Tercera
- Guía completa de la Ley Marco de Ciberseguridad de ChileLey21663.info
- Banco Central advierte aumento de fraudes en pagos digitales: denuncias sumaron US$98 millonesEx-Ante
- Presentación del Informe de Sistemas de Pago 2026Banco Central de Chile
- Informe de Sistemas de Pago agosto 2026Banco Central de Chile
- Preguntas frecuentes sobre la Ley 21.663Ley21663.info
- Check Point Security Management Server vulnerability flagged by CERT-In: What users need to knowMoneycontrol
- Vulnerabilidad Crítica en Check Point – CVE-2026-18574CSIRT Panamá
- sk185222 - CVE-2026-18574Check Point
- Cobertura sobre el quinto Informe de Sistemas de Pago 2026 del Banco Central de ChileEmol
- Ley 21.663: la Ley Marco de Ciberseguridad de Chile explicadaZynap
- Chile evalúa postergar la entrada en vigencia de la Ley de Protección de Datos PersonalesLa República
- Gobierno evalúa postergar la nueva Ley de Protección de Datos: estas son las razonesADN Radio
- 94% de los clientes de BancoEstado ya no usa tarjeta de coordenadasChócale
- ¿Por qué los modelos de IA se están escapando para hacer ciberataques?BioBioChile
- CVE-2026-18574 | INCIBE-CERTINCIBE-CERT
- Fin de la tarjeta de coordenadas: el cambio que ya comenzó en Chile y el fraude que sigue poniendo en riesgo tu dineroRadio Futuro
- Tarjeta de coordenadas: Quiénes podrán seguir usándola y plazos de los bancosEl Mostrador
- Alerta por cambio en los bancos: ya cambiaron los requisitos para transferir dineroEl Mostrador
- Cómo te protege ScotiaScotiabank Chile
- Vishing: la estafa telefónica por la que los bancos alertan a ...El Mostrador
- INCIBE-CERT alerta de tres vulnerabilidades críticas VMwareMoncloa.com
- Avisos | INCIBE-CERTINCIBE-CERT
- Alerta por cambio en los bancos: ya cambiaron los requisitos para transferir dineroEl Mostrador
- Alerta por cambio en los bancos: ya cambiaron los requisitos para transferir dineroEl Mostrador
- Vishing: la estafa telefónica por la que los bancos alertan a sus clientes en ChileEl Mostrador
- Gobierno prepara plan de educación ante aumento de casos de vishingRadio Cooperativa
- Campaña masiva de smishing continúa expandiéndose en ChileCronUp
- Robos y fraudes en el uso de tarjetas e instrumentos financierosBiblioteca del Congreso Nacional de Chile
- Known Exploited Vulnerabilities (KEV) CatalogCISA
- CERT-PY – CERT-PYCERT-PY
- Estas son las tarjetas que enfrentan mayor riesgo en compras onlineMSN Chile
- Mapa de víctimas de ransomware en Chileransomware.live
- Crean Mesa Nacional contra el Fraude Financiero Transnacional en ChileBlog Nivel4
- CNE elimina el CSIRT Eléctrico y prepara consulta pública ...Electromineria
- Ciberseguridad: expertos advierten que un ataque informático puede paralizar operaciones críticas y no solo robar datosAgustinaFM
- “El sector salud es probablemente el más atacado”: expertos llaman a reforzar las medidas de ciberseguridadUniversidad de los Andes
- Hackeo afectó al Servicio Nacional de Migraciones: correo masivo contenía imagen de Augusto PinochetBioBioChile
- Diputados piden esclarecer posible ataque informático a ...Radio Cooperativa
- Las sugerencias norteamericanas a Chile tras "posibles ...Emol
- “Lilac Typhoon”: PDI investiga posibles ciberataques de grupo ligado a China contra empresas chilenasADN Radio
- El INCIBE-CERT alerta de 421 vulnerabilidades Microsoft agosto 2026 en Windows, Exchange, Office y SharePointMoncloa.com
- Actualización de seguridad de Microsoft Patch Tuesday ...CSIRT Telconet
- Patch Tuesday de agosto de 2026: 421 CVE y Zero Days - SplashtopSplashtop
- Microsoft corrige 421 vulnerabilidades en su Patch Tuesday de agostoInfosertecla
- 2026 年 8 月のセキュリティ更新プログラム (月例) - MicrosoftMicrosoft
- “Lilac Typhoon”: PDI investiga posibles ciberataques de grupo ligado a China contra empresas chilenasADN Radio
- “Tu vulnerabilidad es nuestra riqueza”: hackers golpean empresa en ChileReporte Diario
- CVE-2026-68820 - Detalle CVSS, EPSS y CISA KevCVEFind
- CVE-2026-68820Cyberveille
- CVE-2026-68820 — CVSS 7.0, HIGH | CVE SecurityCVE Security
- CVE-2026-68820 - PSIRT.COM - SecurityFocusSecurityFocus / PSIRT
- CVE-2026-68820 Is in KEV. What BOD 26-04 Requires Now | QualysQualys
- CVE-2026-68820: Windows Flaw Is Exploited, Patch UnlistedWindowsForum
- CVE-2026-68820 exploited: patch Windows Server now (KB5120228)Senserva
- CVE-2026-68820: Windows 10 1607 Privilege Escalation FlawSentinelOne
- CVE-2026-68820 - Exploits & Severity - FeedlyFeedly
- Weekly Cyber Alert Report: 3rd Week of August 2026Z Security
- CISO Application Risk Intel Briefing for Week of August 19Veracode
- Cyber Risk Brief: 10 - 16 August 2026Sovereign GRC
- NewsBites Volume XXVIII – Issue 60 August 14, 2026SANS Institute
- CISA KEV Tracker: Exploited CVEs and DeadlinesSQ Magazine
- Post sobre inclusión de CVE-2026-68820 en el KEVCISA Cyber
- Diputado Kunstmann pide investigar ciberataque masivo vinculado al caso "cable chino": "Es de la más absoluta gravedad"G5 Noticias
- PREVENTIVE ALERT: Coordinated website defacement campaign targeting training and e-learning platforms in ChileVECERT Analyzer
- ALLEGED DDoS ATTACK AGAINST Chilean Armed ForcesVECERT Analyzer
- Ransomware Alert: Qilin ransomware group adds Difor Chile as victimFalconFeeds.io
- Difor in Chile was hit by Qilin ransomware, with attack details still unclearCybersecurity News Everyday
- Multas en Europa por fallas en protección de datos: Chile bajo la lupaRadio Atacama
- Postergar la Ley de Datos Personales: un síntoma, no una soluciónTrendTIC
- Profesionales en protección de datos advierten riesgos de postergar la nueva ley y proponen un aplazamiento máximo de seis mesesActualidad Jurídica DOE
- Nuevo Reglamento del Registro Público de Sanciones del SBAPCuatrecasas
- Comisión de Ciencias - 10 de agosto 2026Parlamento.ai
- Ransomware Alert: Servicios Marítimos MG víctima de MS13-089FalconFeeds.io (X)
- Espac Listed by thegentlemen Ransomware GroupGalaxyWarden
- Victim: Hospital Clnico Universidad de Chile – direwolfRansomware.live
- Hospital Clnico Universidad de Chile Listed by DirewolfGalaxyWarden
- DIREWOLF Ransomware Gang: 3 Healthcare & Tech Victims Posted in 24 HoursSecurity Arsenal
- Feed De Noticias De Ciberseguridad [31/08/2026]CronUp
- Victim: Incolur – thegentlemenRansomware.live
- Incolur Listed by Thegentlemen Ransomware GroupGalaxyWarden
- Victim: Espinos – thegentlemenRansomware.live
- Espinos Ransomware Claim (2026) — What’s Alleged & Am I Affected?RecentBreaches
- Verbux Ransomware Claim (2026) — What’s Alleged & Am I Affected?RecentBreaches
- Verbux Listed by The Gentlemen Ransomware GroupGalaxyWarden
- CISA alerta explotación activa en Zimbra y ataques contra infraestructura crítica de Siemens S7Cyberix
- CVE-2026-73570 | INCIBE-CERTINCIBE-CERT
- CVE-2026-73571 | INCIBE-CERTINCIBE-CERT
- CVE-2026-73572 | INCIBE-CERTINCIBE-CERT
- CVE-2026-73574 | INCIBE-CERTINCIBE-CERT
- Zimbra security advisory (AV26-816) – Update 1Canadian Centre for Cyber Security
- ALERTA 78/2026 – Zimbra Collaboration SuiteCTIR Gov (Brasil)
- CVE-2026-73570Tenable
