Colombia Cybersecurity Situation, August 2026
Ransomware dominated August in Colombia: 122 verified incidents, 66 linked to extortion, 12 fraud cases, and 6 regulatory changes.
Key findings
- Ransomware was the leading threat in Colombia in August, with 66 of 122 verified incidents during the period.
- The attack on the Ministry of Justice remained the month’s most serious incident, with file encryption, partial unavailability, and recovery still underway.
- Fraud and phishing rose sharply from 1 case in July to 12 in August, driven by bank impersonation, Bre-B, and fake support calls.
- Regulatory activity fell from 18 to 6, but remained active in digital identity, personal data, open finance, and AI.
- The material identified 5 cases with encryption, 2 with exfiltration without encryption, and 2 mentioned only on leak sites, underscoring that not all ransomware should be treated as the same phenomenon.
- Only 1 critical CVE was recorded in the Colombian material for the month, but it carried significant exposure potential for public infrastructure and hosting.
- The public and financial sectors concentrated the most sensitive signal, while telecommunications, hosting, and digital services added continuity risk and exposed attack surface.
Monthly reference modules
These modules are completed automatically with verified facts dated within the period. Each one states its source base and counting criterion so the figures reconcile across modules. They are the recurring month-to-month readout; the analysis that follows develops the cases without repeating this summary.
Indicator window: 122 dated facts in August 2026 · 1 from prior months (comparative frame, not month volume) · 2 without confirmed date (excluded from the indicators). Facts from prior months are used only as a comparative frame in the analysis, never as volume for this period.
Executive monthly summary for Colombia
The month’s most concrete event in Colombia was the ransomware attack on the Ministry of Justice, confirmed since August 2 and still in recovery at the end of August, with degraded operational continuity and alternate channels still active. That case set the tone for the period: 122 verified incidents, 66 tied to ransomware or extortion, 12 fraud or phishing cases, 22 unclassified incidents, and 6 regulatory moves.
The dominant signal was clearly offensive. Ransomware accounted for the largest share, and within that set the available material confirmed 5 cases with asset encryption, 2 with exfiltration without encryption, 2 mentioned only on leak sites, and 57 where the exact classification could not be determined. The available source also shows that much of the activity was driven by recurring campaigns and reports, not just a single isolated episode.
At the same time, digital fraud gained ground. There were 12 documented cases, including bank impersonation campaigns, fake SMS messages, deceptive calls, and scams backed by synthetic identities or biometrics. The pressure was visible in the financial system, in immediate payment services, and in migration or operational change processes, where attackers took advantage of user confusion.
The regulatory picture was active, although with lower volume than in July. Six policy moves were documented, down from 18 the previous month, with a focus on disaster relief, responses to identity theft, open finance, data protection, and rules on AI. The combination of a real incident, mass fraud, and regulatory adjustment raises the country risk level to high for August, especially because of the operational severity of the ransomware and the persistence of deception campaigns.
National Snapshot for the Month in Colombia
Colombia ended August with high, visible exposure, shaped by a central ransomware case in the public sector, multiple fraud alerts, and an active but narrower regulatory front than in July. The month’s severity was concentrated in the partial unavailability of services at the Ministry of Justice, especially the SGDEA and related procedures, and in repeated alerts tied to banking and digital impersonation.
The leading threat was ransomware, with 66 of 122 verified incidents during the period. That does not mean the full volume reflected a single intrusion, because the material combines incidents, technical writeups, and follow-up references. It does show sustained pressure on public entities, digital service operators, and organizations with exposed cloud, remote, or perimeter surfaces.
Fraud signals were also consistent. The month’s reports described bank impersonation, fake virtual assistants, text messages about pending payments, calls made in the name of public entities, and deceptive donation campaigns after the earthquake. The pattern was not new, but it was more visible and closer to urgent or operational transition contexts, which increases the effectiveness of the deception.
In sectoral terms, the material touched seven sectors with at least one documented incident. The public sector accounted for the most serious case, while banking, telecommunications, digital services, regulation, critical infrastructure, and health or digital consumer services contributed secondary signals. The mix fits a country where the digital attack surface is broad and where an incident at a single entity can affect continuity, service delivery, and document traceability.
Regionally, Colombia remained one of the most visible countries in Latin America for ransomware incidents and for the combination of accelerated regulation, banking fraud, and service disruption. The month also left an important signal in digital infrastructure, with references to critical vulnerabilities in hosting platforms and network outages that, although not always attributable to cyberattack, reinforce the operating fragility of the environment.
Colombia period indicators
| Indicator | August 2026 | Previous month | Change |
|---|---|---|---|
| Verified events in the period (base for all indicators) | 122 | 76 | +46 |
| Indicator time window | 122 events dated August 2026, 1 from previous months, 2 without confirmed dates excluded from the indicators | 76 events from the previous month | N/A |
| Unclassified incidents (breaches or outages) | 22 | 18 | +4 |
| Cases with ransomware or extortion as the primary focus | 66 | 30 | +36 |
| Confirmed asset encryption | 5 | not reported | N/A |
| Exfiltration without encryption (simple extortion) | 2 | not reported | N/A |
| Leak site mention only | 2 | not reported | N/A |
| Classification not determinable from the material | 57 | not reported | N/A |
| Documented fraud or phishing cases | 12 | 1 | +11 |
| Documented regulatory moves | 6 | 18 | -12 |
| Critical CVEs mentioned | 1 | 1 | no change |
| Sectors with at least one documented event | 7 | 7 | no change |
| Dominant threat of the month | Ransomware (66 of 122 events) | Ransomware (30 of 76 events) | N/A |
| Events with direct source confirmation | 80% | not reported | N/A |
Relevant incidents in Colombia
Ministry of Justice and Law, ransomware with operational impact
The month’s most significant case was the ransomware attack against the Ministry of Justice and Law, which occurred on August 2 and was publicly confirmed the next day. It partially affected technology infrastructure and digital services. The incident remained active throughout the month, with gradual recovery, continuity through alternate channels, and forensic tracing still underway.
The Ministry said COLCERT inspected the datacenter, secured evidence and logs, and supported remediation efforts. It also said it had received no prior alerts and that some systems, including the SGDEA, were temporarily unavailable. Specialized coverage added that services tied to monitoring illicit drugs and judicial processes were compromised.
The available material confirms file encryption and operational degradation, but it does not provide conclusive public evidence of exfiltration. That distinction matters. The incident was not limited to a leak-site claim, but caused real service disruption, with recovery still in progress at month-end.
Ministry of Justice, continuity, recovery, and interagency response
Throughout August, the Ministry kept communicating publicly and rolled out contingency measures. It enabled in-person support, an alternate email address, and a phone line, and later asked that PQRDSF submissions filed through the Virtual Single Window be resent so it could rebuild records affected by the SGDEA outage.
The response expanded through a working group that included the Attorney General’s Office, COLCERT, Microsoft’s DART team, and BID partners. By the end of the month, the Ministry announced a comprehensive technology recovery plan to strengthen its infrastructure and ensure the delivery of essential services.
The sequence points to staggered recovery, but also to a basic weakness in records and citizen-service processes. The impact was not limited to immediate unavailability. It also disrupted traceability, request management, and response times.
CRC, risk to fixed internet users amid dispute between TV Azteca and ATP
On August 22, the Communications Regulatory Commission warned of a potential interruption affecting about 57,000 fixed internet users served by 245 small ISPs in 261 municipalities, because of a contractual dispute between TV Azteca and ATP. The agency clarified that there was no confirmation of an actual cutoff at the time of the notice.
This was not a cybersecurity incident in the strict sense, but it did signal continuity fragility in connectivity infrastructure. For Colombia, the key point is that reliance on smaller providers can amplify the effects of contractual disputes or technical failures for end users.
Movistar, widespread outage of internet, TV, and mobile phone service
On August 13, Movistar users reported widespread outages in fixed and mobile services in several cities across the country. The company said the cause was damage to its fiber-optic network in multiple locations, along with earlier earthquake-related impacts.
The case did not qualify as a cyberincident because the material does not attribute it to an attack. Even so, it was one of the disruptions absorbed by Colombia’s digital market in August, and it helps explain why continuity and resilience were central to the operational agenda.
Alert over critical vulnerability in Microsoft SharePoint Server
COLCERT issued alert AL-20260804-108 about a critical vulnerability in Microsoft SharePoint Server, while international technical coverage identified the flaw as CVE-2026-50522 and reported active exploitation on Internet-facing servers. The material available for Colombia does not include affected versions or full remediation guidance.
The relevance for the country is twofold. First, SharePoint is part of the usual perimeter for public agencies and companies with on-premises deployments. Second, the emergence of an actively exploited critical vulnerability coincided with the period of high operational strain at the Ministry of Justice.
Threats and active campaigns in Colombia
Ransomware in Colombia: confirmed encryption, partial exfiltration, and multiple uncategorized mentions
August was dominated by ransomware, but the material does not support treating the entire signal as a single type of impact. There were 5 cases with confirmed asset encryption, 2 with exfiltration without encryption, 2 that appeared only on a leak site, and 57 where the type could not be established with precision.
The Ministry of Justice falls into the first group. There, files were encrypted, services were degraded, and containment measures were taken, although there was no public proof of data theft. At the same time, the PIO PIO case attributed to Majinahanashi appears as an exfiltration with a threat to leak data, and the AuditTeam entry on a financial institution remains at the level of a leak site mention.
The operational takeaway is more useful than the broad label. In Colombia, August ransomware combined real operational disruption with several levels of extortion pressure, and the available material does not justify counting all of it as the same thing. Attribution also remained open in several cases.
Fraud and phishing in Colombia: bank impersonation, fake messages, and deceptive calls
Digital fraud became denser and more visible, with 12 documented incidents in August. The tactics included messages about a "pending payment" or "pending transfer," fake banking security assistants, emails with court summons or fines, calls from supposed bank officials, and fake donation campaigns after the earthquake.
The clearest cases were concentrated in banking and payments. Bogotá issued alerts about impersonation of Bre-B, the mayor's office warned about fake virtual assistants, and El Colombiano documented banking scams involving supposed security accounts and loans arranged with upfront payments. There were also alerts about fake subsidies from the Registraduría and fraudulent donations.
The month points to a simple pattern. Attackers exploited moments of urgency, customer migrations, process changes, and confusing service channels. That means fraud depends not only on volume, but also on timing and context.
Campaigns and technical exploitation in Colombia: the APT or persistent intrusion signal remained limited
Beyond ransomware and fraud, the month also left a technical signal in vulnerabilities and intrusion campaigns, although without a robust body of facts that would support speaking of a Colombia-focused APT. The SharePoint alert and reports on cPanel/WHM showed a significant risk surface for hosting, SaaS, and shared infrastructure.
The StrikeShark campaign also surfaced, identified by Kaspersky and cited in regional material, which included Colombia among the affected countries. However, the available material does not provide a verified local victim in this period or enough detail to classify it as a fully characterized Colombian campaign.
Critical vulnerabilities affecting Colombia
| CVE | Software | Exploitation | Source |
|---|---|---|---|
| CVE-2026-50522 | Microsoft SharePoint Server | Active exploitation reported on Internet-exposed on-premises servers | Mallory.ai |
| CVE-2026-65643 | cPanel and WHM | Privilege escalation confirmed, with critical risk for hosting and data centers | Threadlinqs Intelligence, CSIRT Telconet |
| CVE-2026-70355 | Microsoft SharePoint Server | Vulnerability patched in August Patch Tuesday, mentioned in regional bulletins | CSIRT Telconet |
| CVE-2026-68820 | Windows afd.sys | Active exploitation in espionage campaigns, with potential impact on Windows endpoints | Microsoft, Greenbone, SC World |
The table brings together the critical identifiers mentioned in this month’s material, but only one is directly tied to a formal Colombian alert, the SharePoint one. The others provide regional exposure context and patch-hardening guidance, not confirmed local incidents.
Regulation and compliance in Colombia
Colombia ended August with an active regulatory front, although more concentrated than in July. There were six documented moves, down from eighteen the month before, with priority given to relief for financial consumers, digital identity, AI, personal data, and the organization of open finance.
| Regulatory focus | Documented action | Practical scope |
|---|---|---|
| Financial consumer protection | External Circular 007 of 2026 and External Circular Letter 54 of 2026 from the Financial Superintendency | Post-disaster relief, fast-track complaints, channel transparency, and refinancing deadlines |
| Digital identity | Statutory Law 2573 of 2026 | Staged obligations for financial, commercial, and telecommunications entities |
| Data protection | SIC Circular 001 of 2025 and the August 25 deadline for the RNBD | Stronger rules on consent, biometrics, and reporting of updates |
| AI | Bill 025 of 2026 and related legislative debates | Risk assessments, human oversight, and governance of AI systems |
| Open finance | Decree 368 of 2026 and a draft external circular dated August 31 | Milestone for mandatory common standards and a technical timeline |
The Financial Superintendency was the most visible agency of the month. It stepped up support for consumers affected by the disaster, published External Circular 007 with deadline limits for refinancing, and kept the "Quejas exprés" complaint system in place. That is not pure cybersecurity, but it is part of the broader digital financial resilience environment.
On personal data, the SIC kept its focus on the RNBD and on the processing of biometrics. The closure order against World Foundation and Tools for Humanity, together with alerts about iris data and impersonation, showed that the regulatory debate is no longer centered only on consent. It is now also about the effective deletion of sensitive data and technical proof of compliance.
In AI, the month left a regulatory framework still under construction, with bill proposals, criticism over how workable the rules may be, and debate over algorithmic surveillance, biometrics, and automated decisions. The field is not settled, but it is becoming a compliance vector that is starting to intersect with fraud, identity, and model audits.
Most Affected Sectors in Colombia
The public sector was the main target in August, with the Ministry of Justice as the central incident and additional signs of impact on public safety, service continuity, and records management. The disruption was not only technical, but administrative as well, with requests being rerouted, alternate channels activated, and case histories rebuilt.
Banking and financial services were the second major focus, not because of a large intrusion incident, but because of the volume of fraud. Alerts about bank impersonation, Bre-B, fake assistants, and customer migrations point to a heavily exploited risk surface, where social engineering remains more profitable than complex technical exploitation.
Telecommunications and digital infrastructure produced two kinds of signal. One was about continuity, with Movistar’s widespread outage and the CRC warning about possible disruptions for smaller ISPs. The other was technical, with the BGP alert and the critical vulnerability in cPanel/WHM, which affect the core of connectivity and hosting.
Regulatory and data protection activity also appeared, especially in supervised entities, fintech, and biometric processing. The mix of sectors is not accidental, the month showed that risk in Colombia crosses documents, identity, payments, connectivity, and government services with far less separation than is often assumed.
Trends and signals to watch in Colombia
The clearest shift from the previous month was the jump in ransomware and fraud. Ransomware rose from 30 cases in July to 66 in August, while fraud and phishing increased from 1 to 12. Regulatory activity, by contrast, fell from 18 to 6, suggesting the month was driven more by incidents and campaigns than by new rules.
| Indicator | July 2026 | August 2026 | Reading |
|---|---|---|---|
| Verified events | 76 | 122 | Information and operational pressure increased |
| Unclassified incidents | 18 | 22 | The noise from inconclusive events rose |
| Ransomware or extortion | 30 | 66 | It became the dominant focus and intensified |
| Fraud or phishing | 1 | 12 | Deception and impersonation signals surged |
| Regulatory moves | 18 | 6 | There was less rulemaking activity than in July |
| Critical CVEs | 1 | 1 | No change in volume, but active risk remained |
| Sectors with events | 7 | 7 | Sector coverage held steady |
The comparison also shows that the country did not change its risk map, only its intensity. The same sectors remained in play, but the public sector was hit harder and the financial system faced more fraud attempts. At the same time, the mention of just one critical CVE does not reduce the technical risk, because August did show active exploitation in widely deployed infrastructure.
Another signal to watch is the coexistence of recovery and exposure. MinJusticia kept restoring services, but alerts around identity, biometric data, open finance, and platform exploitation continued. That makes resilience a process issue, not just a perimeter issue.
August also left a warning about third-party dependence. The Ministry of Justice case involved Microsoft’s DART team and the IDB in recovery efforts, while telecom and hosting cases raised risks tied to smaller vendors, shared infrastructure, and exposed control panels. That is the kind of attack surface that grows fastest when digitalization outpaces operational maturity.
Security recommendations for teams in Colombia
First, review exposure from remote services and the hygiene of privileged accounts. This month showed that ransomware still gets in through credentials, exposed access, and remote administration platforms. Phishing-resistant MFA, closing unnecessary RDP, and real segmentation are not optional.
Second, strengthen controls over email, SMS, calls, and messaging. Fraud campaigns exploited bank impersonation, pending payment messages, fake assistants, and court summons. It makes sense to tighten filters, detect lookalike domains, enable out-of-band validation, and train users with local examples, not generic ones.
Third, protect sensitive and biometric data with a focus on traceability. The iris case in Cartagena, the debate about the SIC, and digital identity obligations point to a problem that does not end with collecting data. Organizations must be able to prove why it was collected, who accessed it, when it was deleted, and how they respond to a complaint.
Fourth, prepare continuity plans specific to document systems and citizen services. MinJusticia showed that a down SGDEA can force teams to rebuild case files, reopen manual workflows, and keep service running through alternate channels. Business continuity plans should account for that kind of degradation, not just a total site outage.
Fifth, prioritize patching hosting panels, SharePoint, and edge components. Alerts on CVE-2026-50522 and CVE-2026-65643 confirm that a well-placed vulnerability can become a critical entry point. If a public service or a third-party provider depends on those products, the exposure window should be treated as urgent.
Frequently Asked Questions
What explains why August saw more ransomware and less regulation in Colombia?
August was dominated by a major ransomware case at the Ministry of Justice and several related campaigns and reports, while regulatory output fell compared with July. The comparison between the two sections shows more operational pressure and less regulatory activity, although digital identity, data, and open finance remained on the agenda.
What is the difference between confirmed ransomware cases and mentions on a leak site?
In August there were 5 cases with confirmed encryption, 2 with exfiltration without encryption, and 2 mentioned only on a leak site. That distinction matters because a leak site by itself does not prove operational impact or verifiable exfiltration. The threat and incident sections separate those levels so extortion is not confused with real disruption.
How are the Ministry of Justice case and the SharePoint alert in Colombia connected?
They are connected by technical surface and timing. The Ministry of Justice suffered ransomware with degraded services, while COLCERT issued an alert about SharePoint Server and international reporting pointed to active exploitation of a critical flaw. The vulnerabilities table and the incidents table show that both issues occurred in the same month.
Which sectors should security teams in Colombia watch most closely?
The public sector, because of the direct impact of ransomware at MinJusticia, and the financial sector, because of the rise in banking fraud and Bre-B impersonation. Telecommunications, hosting, and digital services also need attention, because the month raised signals about continuity, BGP, control panels, and exposed providers.
What concrete controls became more urgent after August?
Phishing-resistant MFA, shutting down unnecessary remote access, rapid patching for SharePoint and cPanel/WHM, monitoring for banking impersonation in SMS and calls, and continuity plans for SGDEA and other document systems. Those priorities come from the incidents, threats, vulnerabilities, and recommendations sections.
Does the indicator of a single critical CVE mean there were no other serious vulnerabilities in the region?
No. It means that in the material analyzed for Colombia during August, only one critical CVE was recorded within the scope of the report. The limitations section makes clear that a low or zero value in an indicator does not mean there was no regional risk, only that no verified records were found in this corpus.
Material limitations
The report was built exclusively from the facts provided for Colombia in August 2026, plus one fact from earlier months used only as a comparison point. The time window for the indicators was the one stated at the start, with 122 facts dated in August, 1 from earlier months used only for comparison, and 2 without a confirmed date excluded from the counts.
An indicator at 0 or without a breakdown, especially for CVEs, does not mean there were no vulnerabilities or exploitation in the region. It means that data point was not recorded in the material analyzed for this period. The same applies to categories where the material did not allow confirmation of whether there was encryption, exfiltration, or only a mention on a leak site.
The analysis did not include aggregated telemetry such as the volume of blocked attempts, because the material did not provide figures of that kind. Nor were trends based solely on sponsored content, commercial releases, or consumer publications without primary corroboration used as support.
Facts without a confirmed date and any material not included in the list of available sources to cite were left out of the indicators. References to social media, when they appeared in the file, were used only if the fact was also supported by a permitted and verifiable source within the corpus.
Sources
- Colombia Strengthens Controls Against Identity Theft | InsightBaker McKenzie
- Finanzas abiertas obligatorias: el Decreto 368 de 2026 y por qué puede cambiarle el acceso al crédito a su pymeContagracia
- Superintendencia Financiera de Colombia – Portal institucional (incluye referencia a Carta Circular 54 de 2026)Superintendencia Financiera de Colombia
- Proyecto de carta circular - Agosto 31 de 2026Superintendencia Financiera de Colombia
- MinJusticia activa plan de recuperación tecnológica luego de vulneración cibernética garantizando servicios esencialesMinisterio de Justicia y del Derecho de Colombia
- La privacidad entra en la era de la IA con una regulación que pide ser actualizadaSemana
- Las fintech corren y la regulación intenta alcanzarlasMSN Noticias Colombia
- ¿Entregó su cédula para un empleo, arriendo o crédito? Le contamos qué pasa después con sus datos y cuándo deben eliminarlos para reducir el riesgo de suplantaciónColombiaFintech
- SIC prohibió el aumento de precios de bienes y servicios necesarios para atender la emergenciaEl País (Colombia)
- La privacidad entra en la era de la IA con una regulación que pide ser actualizadaSemana
- Boletines de seguridad agosto 2026CSIRT Telconet
- IA, ciberseguridad y el futuro de los pagos: la visión de Indra Group en la convención bancariaLa República
- CVE-2026-65643: Arbitrary File Creation in cPanel/WHM Domain Parking Leads to Root-Level Code ExecutionThreadlinqs Intelligence
- Convención bancaria: inversión de la banca en transformación digital creció 9% y sumó $3,6 billonesCaracol Radio
- Abecé del seguro – Terremoto 2026Superintendencia Financiera de Colombia
- Indra Group alerta por fraude digital en la banca nacionalLa FM
- Instrucciones para mitigar el impacto de la situación de desastre sobre los consumidores financieros afectadosSuperintendencia Financiera de Colombia
- Superfinanciera ordena alivios para deudores afectados por el terremoto: así funcionaránEl Colombiano
- Superfinanciera anuncia alivios para deudores afectados por el terremoto: estas son las medidas para créditos y segurosInfobae
- Circular externa 007 de Superintendencia Financiera, 26-08-2026vLex Colombia
- The Week In Breach News: August 26, 2026Kaseya
- La semana en brechas de seguridad 26 de agosto de 2026Kaseya
- Usuarios denuncian créditos tras entregar datos biométricos en CartagenaEl Universal Cartagena
- Colombia is Preparing a Poor Copy of the EU's AI ActTech Policy Press
- Criptoactivos y DIAN en Colombia: impuestos sobre wallets, DeFi, staking y swapsNieto & Nieto Lawyers
- El Ministro de Hacienda y Crédito Público posesionó al superintendente financiero de Colombia Pablo Andrés Rivas HerazoSuperintendencia Financiera de Colombia
- Ministerio de Hacienda y Crédito Público, Decreto 1292 de 2026, 25 de agosto de 2026Centro de Estudios Regulatorios
- Hiperpersonalización en la banca digital colombiana 2026Facephi Observatory
- Colombia tiene documentos sobre IA, lo que no tiene es una políticaSemana
- PSAV en Colombia: qué pasó con el registro y el Travel RuleFluyez
- Colombia's Open Finance Roadmap: Moving from Mandate to OperationalOzone API
- Los pendientes normativos que el Congreso no puede aplazarImpacto TIC
- Colombia's AI Rules: A Caution for Investors and Emerging ...Finance AI Insiders
- La ley de IA de Europa ya alcanza a colombianos que venden servicios digitales desde el paísPortafolio
- El Centro Democrático presentó propuesta para capacitar gratis en tecnología a 100.000 jóvenes cada añoInfobae
- Alerta de Cumplimiento: Fecha límite SIC (25 de agosto)OCH Group
- La IA es un asunto de EstadoImpacto TIC
- Lupa de mintransporte a fotomultas de todo el país; se suman quejas de otros departamentosEl Heraldo
- Termografía con IA para cáncer de mama en ColombiaConsultorSalud
- Denuncian que estarían sacando créditos a nombre de personas que se dejaron escanear el iris por 20000 en CartagenaInfobae Colombia
- ¿Qué es lo que está pasando con las fotomultas en Colombia?Noticias RCN
- CRC advierte riesgo de internet para 57.000 usuarios por pelea entre TV Azteca y ATPComisión de Regulación de Comunicaciones (CRC)
- Comunicaciones sobre riesgo para usuarios de internet por controversia entre TV Azteca y ATPCRC Colombia
- Entregaste tu cédula para un trámite: ¿qué pasa con tus datos después?ENTER.CO
- Procurador General convoca mesa de trabajo por la 'Paz Energética' del paísProcuraduría General de la Nación
- Minjusticia adopta medida temporal de contingencia para la atención de PQRDSFMinisterio de Justicia y del Derecho de Colombia
- Procuraduría alerta por seguridad de infraestructura eléctrica en Tolima tras atentadoProcuraduría General de la Nación (Colombia)
- Proyecto de ley busca ponerle freno a las fotomultas en la Vía al MarEl Heraldo
- COLCERT AL – 20260820 - 114 Alerta: Operation Dream Job utilizada para escalar privilegios en WindowsCOLCERT
- Procuraduría pide reforzar seguridad de redes eléctricas luego de atentados en el TolimaCaracol Radio
- Weekly Threat Bulletin – August 19th, 2026F5
- THEGENTLEMEN Ransomware Gang: 5 New Victims in 72 Hours Cross-Sector Campaign Targeting Defense, Finance and Critical TransportSecurity Arsenal
- María Rocío Cortés fue nombrada superintendente de Industria y ComercioCaracol Radio
- En Colombia crearían un Sistema Nacional de Alerta Sísmica Temprana tras el terremoto de 7,4: unificaría alertas en telefonía, radio y televisiónInfobae Colombia
- Decreto 1225 de 2026 oficializó a María Rocío Cortés como nueva titular de la SICLa República
- Inicia una nueva era: Ley cambiaría el destino de miles de colombianos y pondría fin a miedo ante los terremotosRed+ Noticias
- Proyecto de ley busca crear alerta sísmica nacional en Colombia: ¿Cómo funcionaría en celulares, radio y televisión?RCN Radio / Noticias RCN
- Los ciberataques a la información de la justicia que el ministro Cancino ha tenido que enfrentarLas2orillas
- Microsoft Patches Nearly 400 Flaws, Including Exploited afd.sys ...Mallory.ai
- CISO Application Risk Intel Briefing for Week of August 19Veracode
- Colombia podría tener un sistema de alerta sísmica como el de México y JapónPulzo
- De la tragedia a la prevención: proyecto busca que Colombia se anticipe a futuros terremotosSenado de la República de Colombia (Prensa Senado)
- 17th August – Threat Intelligence ReportCheck Point Research
- Colombia’s Ministry of Justice Hit by Ransomware Attack Disrupting ServicesCyberWarriors Middle East
- Compra y venta de criptomonedas en Colombia seguirá sin reglas claras, pero con la Dian encima haciendo controlesInfobae Colombia
- Ecopetrol Data Leak: Hackers Claim 327095 Files from Colombia's State Oil FirmThe Rio Times
- Segmento de noticias de ciberseguridad sobre ataques a Ministerio de Justicia y EcopetrolYouTube
- Weekly Recap: VMware Exploits, Windows 0-Day, MCP ...The Hacker News
- El Ministerio de Justicia explica cómo avanza la recuperación de sus servicios digitales tras ciberataqueEl Tiempo
- Protección de los datos personales en las Instituciones de Educación SuperiorEL CORREO
- Majinahanashi Ransomware Attack on PIO PIO in ColombiaDexpose
- DPRK's Lazarus Group exploits Windows zero-day in ...SC World
- Lazarus Kernel Zero-Day Hits Defense ContractorsCloud Security Alliance
- Minjusticia activa plan de seguridad luego de sufrir ataque cibernéticoEl Espectador
- Así se recupera el Ministerio de Justicia tras ciberataque que redujo la disponibilidad de algunos serviciosInfobae Colombia
- Ransomware Attack Hits Colombia's Justice Ministry Ahead of Presidential TransitionCyberhub Blog
- Ransomware in Colombia: Paralysis in the Ministry of JusticeTechnoid.gr
- Colombia's Financial Regulator Proposes Emergency Relief Rules For Earthquake-Affected Borrowers And Insurance ClaimantsFinance Colombia
- Colombia Experiences Border Gateway Protocol DisruptionTelecom Observer
- DarkReading #Colombia #CyberCrime #Ransomware #White_Hunters
- THEGENTLEMEN Ransomware Gang: 15 Victims in a Single-Day Surge — Sector Analysis, CVE Correlation & Detection RulesSecurity Arsenal
- Resoluciones 2026 - incluye Resolución 0877 del 11 de junio de 2026Superintendencia Financiera de Colombia
- La proporcionalidad ordena la gobernanza de la IA financiera en América LatinaReal One America
- GatekeeperX analiza el impacto de Bre-B y las Finanzas Abiertas en ColombiaDescubre.vc
- Telecommunications: MinTIC and operators quantify network recoveryEn Colombie
- Movistar explicó falla masiva de internet y TV que afectó varias ciudades de ColombiaInfobae Colombia
- Procuraduría convoca a gremios y sectores interesados en ciberseguridad para analizar proceso de Colombia Compra EficienteProcuraduría General de la Nación
- Movistar se pronunció tras falla masiva en internet y televisiónEl Tiempo
- Fraude digital supera los US$1.900 por víctima y cuestiona tecnologías de validaciónBlu Radio
- Política general de seguridad de la informaciónBanco de la República de Colombia
- Colombia: AML and ABC Compliance Systems UnifiedBaker McKenzie
- SuperFinanciera, Proyecto de Circular Externa, 13-ago-26Centro de Estudios Regulatorios (CERLATAM)
- Colombia Data Protection & Privacy Regulation MonitorGDPRI (Data Protection & Privacy Regulation Monitor)
- Finanzas abiertas: la puerta que se abre para competirAsuntos Legales
- PSAV en Colombia | UIAF, SAGRILAFT y Cumplimiento CriptoCryptoveritas 360
- Colombia - Cryptoveritas 360Cryptoveritas 360
- Proyecto de Normatividad num. 13_2026, Superintendencia FinancieravLex Colombia
- Proyecto de Circular Externa 13 - 2026Superintendencia Financiera de Colombia
- Ransomware en Colombia: El análisis del informe ColCERTeSoft
- Por medio de la cual se crea la armonización de la inteligencia artificial con el derecho al trabajo de las personas, protección laboral frente a la inteligencia artificial (Proyecto de ley 125/26 Senado)Congreso Visible - Universidad de los Andes
- ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, ...The Hacker News
- Superfinanciera activa 'Quejas exprés' para reclamos financieros relacionados con el sismoMSN / medio colombiano sindicado
- Circular Básica Financiera (Circular Externa 004 de 2026)Superintendencia Financiera de Colombia
- Ley 2573: identidad digital como estándar obligatorio en ColombiaLatinpyme
- Ransomware Hits Justice Ministry as Colombia Gets New PresidentDark Reading
- Colombia Justice Ministry Hit With Ransomware — 0dayNews0dayNews
- Proyecto de Ley, Por medio de la cual se establece el Marco Legal para la Promoción, Desarrollo y Uso Responsable de la Inteligencia Artificial en ColombiaUniversidad de los Andes - Sistemas de Algoritmos Públicos
- Proyecto de Ley 025 de 2026C - Inteligencia Artificial (texto oficial)Cámara de Representantes / Universidad de los Andes
- Microsoft Patches 398 Flaws Including a Windows Driver Zero ...Zerodayroom
- Lazarus Windows Exploit Fuels New Espionage CampaignGreenbone
- Boletín Minhacienda Capítulo Superintendencia Financiera - Agosto 2026Superintendencia Financiera de Colombia
- Proyecto de Ley 083 de 2026C - Regulación de plataformas de redes sociales (texto oficial)Cámara de Representantes / Universidad de los Andes
- Actualización de seguridad de Microsoft Patch Tuesday agosto 2026CSIRT Telconet
- Proyecto de Ley 125/2026S - Armonización de la inteligencia artificial con el derecho al trabajoUniversidad de los Andes - Sistemas de Algoritmos Públicos
- Proyecto de Ley 138/2026S - Marco legal para la promoción, desarrollo y uso responsable de la IASenado de la República / Universidad de los Andes
- Proyecto de Ley 065/2026S - Regulación integral de la inteligencia artificialUniversidad de los Andes - Sistemas de Algoritmos Públicos
- Proyecto de Ley, Por medio de la cual se regula la inteligencia artificial en Colombia para garantizar su desarrollo ético y responsable y se dictan otras disposicionesUniversidad de los Andes - Sistemas de Algoritmos Públicos
- PL 125/2026S en el sistema de leyes del Senado (enlace oficial)Senado de la República / Universidad de los Andes
- Bre-B y las finanzas abiertas redefinirá la gestión del riesgo en el segundo semestre de 2026Ladob
- No más menores atrapados en las redesEl Espectador
- ABC de la seguridad digital en Colombia: ¿Cómo lo protege la Ley 2573?Caracol Radio
- Ransomware y protección de datos en el sector hidrocarburosIntexus
- INC Ransomware Gang Leads Attacks Exploiting Critical ...Codekeeper
- Estafa bancaria: así funciona el engaño en el que delincuentes se hacen pasar por funcionarios del bancoEl Colombiano
- Ecopetrol S.A. – Current report filing describing cybersecurity incidentSEC (EDGAR)
- Colombia avanza en la regulación de la inteligencia artificial y se posiciona entre los países líderes de América LatinaTechnocio
- ANPD abre processo contra Discord após caso de suicídio no MSO Globo
- ANPD abre investigação que pode levar à suspensão do Discord no BrasilUOL Tilt
- Los ataques de ransomware aumentan un 16% y apuntan a servicios empresariales, manufactura y tecnologíaTendencia Internacional
- De phishing a deepfakes: la banca refuerza su defensa digital en ColombiaHSB Noticias
- Alerta por fraude digital en Bogotá: así suplantan la plataforma de Bre-B a través de mensajes de textoInfobae
- En agosto de 2026 vence el plazo para reportar al RNBD de la SIC las reclamaciones sobre datos personalesPérez-Llorca
- Cyber Alert sobre ataque de ransomware al Ministerio de Justicia de ColombiaHackmanac
- Critical SharePoint RCE Exploited on Internet-Exposed On-Premises ServersMallory.ai
- Actualización del comunicado oficial sobre el incidente de ciberseguridadMinisterio de Justicia y del Derecho de Colombia
- MinJusticia confirmó ataque cibernético que afectó parte de su infraestructura tecnológicaNoticias Caracol
- Comunicado sobre ataque cibernético con virus tipo ransomware al Ministerio de Justicia (publicación en X)El Tiempo
- Ministerio de Justicia sufrió ciberataque ransomware, similar al de EcopetrolCaracol Radio
- Comunicado del Ministerio de Justicia y del Derecho a la opinión públicaMinisterio de Justicia y del Derecho de Colombia
- Iván Cancino denuncia ciberataque al MinJusticia a días de asumir el cargoEl Colombiano
- Actualización sobre el ataque cibernético al Ministerio de JusticiaMinisterio de Justicia y del Derecho / COLCERT
- Ataque cibernético paraliza servicios digitales del Ministerio de Justicia; autoridades buscan a los responsablesPublimetro Colombia
- Ransomware en el Ministerio de Justicia de ColombiaDataEnforce
- コロンビア法務省がランサムウェア被害を公式発表NexSight Cyber
- Ataque cibernético contra el Ministerio de Justicia: se reportan fallas en algunos serviciosInfobae Colombia
- Ransomware Hits Colombia's Ministry of JusticeDataEnforce
- Ministerio de Justicia de Colombia reporta ataque ransomware pero no hay rastro del grupo responsableMucho Hacker
- Ransomware Hits Justice Ministry as Colombia Gets New PresidentDark Reading
- Responder este mensaje de un asistente virtual podría costarle millones de pesos y hacerle perder sus cuentas bancariasSemana
- Alerta por estafa con falsos préstamos bancarios en Bogotá: así operanCityTv
- SIC prohibió exigir datos biométricos para ingresar a conjuntos residencialesAsuntos Legales
- La SIC prohíbe exigir datos biométricos para ingresar a conjuntos residencialesSemana
- SIC prohíbe a los conjuntos residenciales exigir datos biométricos para el ingresoTropicana FM
- MinJusticia confirmó ataque cibernético que afectó parte de su infraestructura tecnológicaNoticias Caracol
- Publicación en redes sobre riesgo ALTO de ransomware en ColombiaColCERT
- Evite ser víctima de ciberdelincuentes que usan falsos asistentes virtuales para hurtar datos bancariosBogotá
- Ataque ransomware inutiliza Ministerio Justicia ColombiaMenteHackers
- Ransomware Hits Colombian Justice Ministry Ahead of Presidential Transition: Detection, Response, and Hardening GuideSecurityArsenal
- Colombia Justice Ministry Hit With Ransomware — 0dayNews0dayNews
- Colombia's Ministry of Justice Hit by Ransomware AttackNetSecOps
- Desde este viernes, más de 250.000 clientes de Itaú serán trasladados al Banco de Bogotá: siga estas recomendaciones para no ser víctima de fraudeInfobae
- Kaspersky detecta campaña de ciberataques contra América LatinaInfosertecla
- Un ciberataque a Ecopetrol expone información del negocio y de sus empleadosEl País
- Hackean a Ecopetrol: revelan filtración de datos confidenciales de 15 empresasNoticias Caracol
- Ciberataque contra Ecopetrol: la empresa coordina con la Fiscalía y el MinTIC el retiro de archivos filtradosInfobae
- Mantenerse a la vanguardia de los actores de amenazas en la era de la IAMicrosoft
- “La información ya se encuentra en la dark web”: experto sobre ciberataque a EcopetrolCaracol Radio
- La IA potencia los ciberataques en LatamBloomberg Línea
- Identidades creadas con IA: el nuevo peligro de las estafasInfosertecla
- Ciberataque a Ecopetrol: filtran información de 15 empresas del grupoEl Universal (Colombia)
- Así se orquestó el ciberataque a Ecopetrol: Fiscalía investigaCaracol Radio
- Congresistas del Centro Democrático presentan proyecto de ley sobre redes sociales para menoresInfobae Colombia
- Proyectos de ley en el congresoUniversidad de los Andes / Congreso Visible
- Alertas y tips | Equipo de Respuesta a IncidentesCC-CSIRT Policía de Colombia
- Alerta por fraude cibernético en Bucaramanga: 866 denuncias y tres claves para proteger sus cuentasVanguardia
- Fraude financiero: Crecen las estafas con identidades generadas con IATabulado
- Comunicado Ecopetrol refuerza medidas de ciberseguridad en plataformas de nubeEcopetrol
- Comunicado Ecopetrol avanza en investigación sobre posible acceso no autorizado a informaciónEcopetrol
- ABC del Proyecto de Ley de Protección de Datos Personales en ColombiaSuperintendencia de Industria y Comercio (SIC)
- Alerta por ciberestafas en Colombia: así robaron 11 millones de pesos con un portal falsoBlu Radio
- 142 victims for Colombiaransomware.live
- Ministerio de Justicia y del Derecho Ransomware AttackGalaxy Warden
- KYC en Colombia: qué es y quiénes están obligadosHunterX
- Ley 2573 de 2026: ¿cómo protege la identidad digital en Colombia?OlimpiaIT
- Ministerio TIC lanza alerta de ciberseguridad en medio de la posesión de Abelardo de la EspriellaSemana
- PI***al — AUDITTEAM Ransomware Attack | Breach HouseBreach House
- PI***al Listed by AuditTeam Ransomware GroupGalaxyWarden
- Decreto, Por el cual se adiciona el Titulo 31 a la Parte 2 del Libro 2 del Decreto 1078 de 2015, Decreto Único Reglamentario del Sector de Tecnologías de la Información y las Comunicaciones, para reglamentar la Ley 2489 de 2025 a través de disposiciones para la promoción, protección y garantía de entornos digitales sanos y seguros para niños, niñas y adolescentesUniversidad de los Andes
- La desarticulación de las normas sobre educación digital en ColombiaEl Tiempo
- LA NUEVA PROTECCION PARA MENORES EN INTERNETNotaría 19 de Bogotá
- Colombia Sets Child-Safety Duties for Accessible AI SystemsThe Leveraged Years
- Así buscan proteger a los menores en internet sin exponer la privacidad de los usuariosBlu Radio
- Bre-BNuvei
- How Bre-B Instant Payments Work for Expats in ColombiaColombiaMove
- Colombia está entre los países afectados por la filtración de datos de TrezorCriptoNoticias
- Centro de ciberseguridad en Colombia logra certificación internacional para su CyberSOCEl Colombiano
- En Colombia 41% de los adultos han sufrido fraude ...La República
- Alertan por correos con falsas citaciones judiciales y multasEl Colombiano
- Estafa bancaria: así funciona el engaño en el que delincuentes se hacen pasar por funcionarios del bancoEl Colombiano
- La Registraduría alertó por llamadas que suplantan a la entidad para ofrecer subsidios de Prosperidad Social: así operan los ladronesInfobae Colombia
- Cuentas falsas de Bancolombia, Davivienda, llaves de ... y códigos QR para donar son inventados para robar tras terremoto en ColombiaInfobae Tecno
- CRC endurece las medidas contra el fraude móvil con alertasAsuntos Legales
