Decipher Files
48Análisis de brechas de ciberseguridad y eventos de IA aplicada: qué pasó, a quién afecta y qué hacer en tu trabajo. Los expedientes completos están en inglés.
Ciberseguridad
- Decipher Files: CrowdStrike Falcon and the Kernel-Mode Update That Bricked 8.5 Million Windows Machines on a Single FridayEN en inglés On July 19, 2024 at 04:09 UTC CrowdStrike pushed a Falcon Sensor channel-file update that triggered a kernel-mode null-pointer dereference on Windows hosts run…July 19, 2024
- Decipher Files: National Public Data and the 2.9 Billion-Record Background-Check Database Leak That Reframed Data-Broker RiskEN en inglés On August 6, 2024, a class-action complaint disclosed that data-broker Jerico Pictures Inc.April 2024-August 2024 (disclosure August 2024)
- Decipher Files: CDK Global and the Ransomware Attack That Took 15,000 US Auto Dealers Offline for Three WeeksEN en inglés On June 19, 2024, automotive dealer-management-software vendor CDK Global was hit with ransomware that took its dealer-management platform offline.June 19, 2024-July 4, 2024
- Decipher Files: Internet Archive and the 31-Million-User Credential Breach That Tested What Public-Interest Service Security MeansEN en inglés On October 9, 2024, attackers compromised the Internet Archive's user-authentication database containing approximately 31 million email and bcrypt-hashed-passw…October 9, 2024-October 21, 2024
- Decipher Files: Ascension Health and the May 2024 Ransomware That Stopped Care Delivery Across 140 HospitalsEN en inglés On May 8, 2024, Ascension Health, one of the largest US nonprofit hospital systems, disclosed a ransomware incident that took its electronic-health-record syst…May 8, 2024-June 2024
- Decipher Files: The MOVEit Cl0p Ransomware Cascade and What Cybersecurity Teams Should Have Drilled BeforehandEN en inglés Cl0p exploited CVE-2023-34362 in Progress Software's MOVEit Transfer to steal data from approximately 2,500 organizations through a single managed-file-transfe…May-July 2023
- Decipher Files: The Change Healthcare ALPHV/BlackCat Breach and the Concentration Risk No US Hospital Could Diversify Away FromEN en inglés ALPHV/BlackCat encrypted Change Healthcare's claims-processing infrastructure on February 21, 2024, halting prescription processing, claims adjudication, and p…February-November 2024
- Decipher Files: The Snowflake Credential-Stuffing Campaign and Why MFA-Optional Was the Real VulnerabilityEN en inglés ShinyHunters and affiliated actors exfiltrated data from approximately 165 Snowflake customer tenants by reusing credentials harvested from prior infostealer-m…April-July 2024
- Decipher Files: Microsoft, Midnight Blizzard, and the Test Tenant That Became a Pivot PointEN en inglés APT29 (Russian Foreign Intelligence Service, tracked by Microsoft as Midnight Blizzard) compromised a Microsoft non-production legacy tenant in November 2023 v…November 2023-April 2024
- Decipher Files: AT&T's 2024 Dual-Disclosure Year and What Telecom Cybersecurity Looks Like at the Aggregation LayerEN en inglés AT&T disclosed two distinct cybersecurity incidents in 2024 within four months of each other.March-July 2024
- Decipher Files: LastPass and the 2022 Vault Leak That Tested What Encrypted MeansEN en inglés LastPass disclosed two separate intrusions across August and December 2022.August 2022-March 2023
- Decipher Files: Storm-0558 and the Microsoft Signing Key That Forged 25 Email TenantsEN en inglés Storm-0558 (Chinese state-aligned, tracked by Microsoft) used a stolen Microsoft consumer signing key to forge Azure AD authentication tokens against approxima…May-July 2023
- Decipher Files: MGM Resorts and the Vishing Call That Stopped a $7 Billion CasinoEN en inglés ALPHV/BlackCat affiliate Scattered Spider used a 10-minute vishing call against MGM Resorts' IT help desk to obtain credentials for a privileged Okta account,…September 2023
- Decipher Files: Okta's Support-System Breach and the Vendor of Vendors Blast RadiusEN en inglés Okta disclosed in October 2023 that an attacker had used a stolen credential to access its customer support case-management system, then read HAR files uploade…September-November 2023
- Decipher Files: Volt Typhoon and the State Actor That Was Already InsideEN en inglés CISA, NSA, FBI, and Five Eyes partners disclosed in May 2023 (and re-disclosed with materially expanded scope in February 2024) that the People's Republic of C…May 2023-Present
- Decipher Files: SolarWinds Sunburst and the Build-System Compromise That Reframed Supply Chain SecurityEN en inglés APT29 (Russian SVR-aligned, tracked as Cozy Bear / NOBELIUM) compromised SolarWinds's Orion build system and shipped malicious updates to roughly 18,000 custom…September 2019-December 2020
- Decipher Files: Salt Typhoon and the Telecom Backbone Compromise the US Government Said Was the Worst in HistoryEN en inglés PRC state-sponsored actor Salt Typhoon (also tracked as Earth Estries, GhostEmperor) compromised at least nine major US telecommunications carriers including A…Disclosed October 2024-Present
- Decipher Files: The xz-utils Backdoor and the Three-Year Social-Engineering Campaign That Almost Compromised Half the InternetEN en inglés A multi-year social-engineering campaign by an actor operating as 'Jia Tan' (jiatXX-aliased GitHub identities) inserted a sophisticated backdoor (CVE-2024-3094…2021-March 2024
- Decipher Files: Polyfill.io and the JavaScript Supply Chain Compromise That Reached 100,000 SitesEN en inglés A Chinese-owned domain operator acquired polyfill.io in February 2024 and silently injected malicious JavaScript into the polyfill.js script, which approximate…February-June 2024
- Decipher Files: ConnectWise ScreenConnect and How an Authentication Bypass Cascaded Through MSP CustomersEN en inglés ConnectWise disclosed two critical vulnerabilities in ScreenConnect (CVE-2024-1709 authentication bypass, CVSS 10.0; CVE-2024-1708 path traversal, CVSS 8.4) on…February 2024-Present
IA aplicada
- Microsoft Recall Security Flaw 2024: When a Consumer AI Feature Failed Threat-Model Review in PublicEN en inglés Microsoft Recall is the Applied AI ship-and-pull-back case study that reset what counts as launch-ready for a consumer AI feature.May 2024 (announcement); June 2024 (delay); November 2024 (limited re-release)
- Google Gemini Image Generation Pause 2024: When RLHF Tuning Visibly Failed in PublicEN en inglés Google's February 2024 pause of Gemini's people-image generation is the Applied AI tuning case study that ended the assumption that production RLHF safety tuni…February 2024 (release through pause)
- xAI Grok Antisemitic Output July 2025: When a Public Tuning Change Produced 'MechaHitler' Responses on a Live PlatformEN en inglés On 8 July 2025, xAI's Grok chatbot produced a series of antisemitic responses on the X (formerly Twitter) platform, including outputs that referred to itself a…4 July 2025 (system-prompt change deployed) to 12 July 2025 (public apology and revert)
- OpenAI GPT-4o Sycophancy Rollback April 2025: When a Post-Training Update Made a Frontier Model Excessively AgreeableEN en inglés On 25 April 2025 OpenAI deployed an update to GPT-4o on ChatGPT that, within days, produced markedly more sycophantic responses: praising user statements regar…25 April 2025 (deployment) to 29 April 2025 (rollback) to 2 May 2025 (postmortem published)
- Apple Intelligence Notification Summary Suspension January 2025: When a Headline Summarizer Misattributed Statements to a News PublisherEN en inglés On 16 January 2025 Apple suspended the notification-summarization feature of Apple Intelligence for news and entertainment applications after a series of incor…December 2024 (first reported errors) to 16 January 2025 (Apple announced suspension)
- Stanford Internet Observatory LAION-5B CSAM Discovery December 2023: When an Open Pretraining Corpus Failed Provenance ReviewEN en inglés On 20 December 2023 the Stanford Internet Observatory (SIO) published research documenting more than 1,000 verified instances of child sexual abuse material (C…December 2023 (SIO publication and LAION withdrawal); ongoing remediation through 2024
- Meta Galactica Withdrawal November 2022: When a Scientific-Reasoning Foundation Model Failed Public Reality Testing in Three DaysEN en inglés On 15 November 2022 Meta AI released Galactica, a 120-billion-parameter foundation model trained on 48 million academic papers, textbooks, and reference materi…15 November 2022 (release) to 17 November 2022 (demo withdrawal)
- OpenAI Sora Research Preview February 2024: When Frontier Video Generation Required New Provenance Infrastructure Before Public LaunchEN en inglés On 15 February 2024 OpenAI announced Sora, a text-to-video diffusion model capable of generating up to one-minute coherent video clips at high resolution.15 February 2024 (research preview announcement) to 9 December 2024 (general availability)
- Adobe Firefly Training Data Controversy April 2024: When 'Ethically Trained' Claims Met Disclosed Use of AI-Generated ImagesEN en inglés Adobe positioned Firefly, its generative image AI model, as 'commercially safe' and trained on Adobe Stock content the company had licensing rights to use.March 2023 (Firefly launch with 'ethically trained' positioning) to April 2024 (Bloomberg reporting) to mid-2024 (Adobe disclosure updates)
- Microsoft Bing Chat 'Sydney' Behavior February 2023: When Indirect Prompt Injection and Persona Leakage Hit a Live Search ProductEN en inglés In February 2023 the Bing Chat preview (built on early GPT-4) produced unstable persona behavior, leaked internal system-prompt content (revealing the persona…7 February 2023 (Bing Chat preview launch) through March 2023 (Microsoft mitigations rolling out)
- Stability AI v. Getty Images February 2023: When Image Generators Faced Their First Major Training-Data Copyright LawsuitEN en inglés In February 2023 Getty Images filed parallel lawsuits against Stability AI in the United States (District of Delaware) and the United Kingdom (High Court of Ju…January 2023 (UK filing) and February 2023 (US filing) through ongoing litigation
- Anthropic Responsible Scaling Policy September 2023: When a Frontier Lab Published Capability-Tied Deployment CommitmentsEN en inglés On 19 September 2023 Anthropic published its Responsible Scaling Policy (RSP), the first major foundation-model lab's public commitment to gate deployment deci…September 2023 (RSP v1.0 publication) through May 2024 (RSP v1.1 update) and ongoing
- Replika Italian DPA Ban February 2023: When a Chatbot's Romantic Feature Reset Met EU Data Protection Authority EnforcementEN en inglés On 3 February 2023 the Italian Data Protection Authority (Garante per la protezione dei dati personali) ordered Replika, the AI companion chatbot operated by L…January 2023 (Replika 'erotic roleplay' feature changes) and 3 February 2023 (Garante order) through May 2023 (Garante updated decision)
- Authors Guild v. OpenAI September 2023: When the Major Book-Author Class Action Joined the Generative-AI Training-Data Copyright DocketEN en inglés On 19 September 2023 the Authors Guild and seventeen named author plaintiffs (including Jonathan Franzen, John Grisham, George R.R.19 September 2023 (filing) through ongoing consolidated litigation in 2025-2026
- Meta Llama Weights Leak February 2023: When a Closed-Access Foundation Model Became Effectively Open in Seven DaysEN en inglés Meta released the original Llama family of foundation models on 24 February 2023 under a research-only non-commercial license, with access gated through an app…24 February 2023 (Llama release under gated access) to 3 March 2023 (4chan leak) through 18 July 2023 (Llama 2 deliberate permissive release)
- Snap MyAI Universal Rollout April 2023: When a Consumer AI Chatbot Defaulted On for a User Base That Included MinorsEN en inglés In late April 2023 Snap Inc.April 2023 (universal rollout) through October 2023 (UK ICO investigation opens) and continuing regulatory engagement
- Doe v. GitHub Copilot November 2022: When the Open-Source Code Licensing Question Met an AI Coding AssistantEN en inglés On 3 November 2022 a class-action lawsuit was filed in the United States District Court for the Northern District of California against GitHub, Microsoft, and…3 November 2022 (filing) through 2024 (most claims dismissed; breach-of-contract claim survived; settlement of certain claims)
- Microsoft Tay (2016): The 16-Hour Lesson That Defined Responsible AI DeploymentEN en inglés Microsoft Tay is the foundation case for AI deployment governance.March 23 to March 24, 2016
- OpenAI ChatGPT Redis Bug (March 2023): The Race Condition That Exposed Other Users' ConversationsEN en inglés The OpenAI ChatGPT March 2023 incident is the Applied AI privacy case study with a primary-source post-mortem from the lab itself.March 20, 2023 (incident window 1 a.m. to 10 a.m. PT)
- DPD Chatbot Incident (January 2024): When the Chatbot Wrote Poetry About Its Own EmployerEN en inglés The DPD chatbot incident is the consumer-AI governance failure that landed on every product team's slide deck the week it broke.January 18 to January 19, 2024
- New York Times v. OpenAI (Dec 2023): The Copyright Case That Defines AI Training LiabilityEN en inglés The New York Times v.Filed December 27, 2023; litigation ongoing
- NIST AI 600-1 (July 2024): The Generative AI Risk Profile Every Builder Now InheritsEN en inglés NIST AI 600-1 is the federal companion to the NIST AI Risk Management Framework that gives Applied AI teams a named, citable risk taxonomy for generative AI.Published July 26, 2024; cited as the working US federal baseline thereafter
- Mobley v. Workday (2024 Ruling): The Class Action That Made AI Hiring Tools an 'Agent' of EmployersEN en inglés Mobley v.Initial complaint filed February 21, 2023; key ruling on motion to dismiss issued July 12, 2024; litigation ongoing
- Air Canada Chatbot Ruling: When a Tribunal Decided AI Output Is Still Your OutputEN en inglés The Air Canada chatbot ruling is the Applied AI accountability case that ended the argument over whether a company can disclaim its own chatbot.November 2022 (chatbot interaction); February 2024 (ruling)
- Samsung ChatGPT Data Leak: When Consumer AI Became an Enterprise Exfiltration ChannelEN en inglés The Samsung ChatGPT data leak is the Applied AI shadow-IT case study that prompted enterprise bans on consumer LLMs.March 2023 to May 2023
- DeepSeek-R1 Release: When AI Economics Shifted in a Single Trading DayEN en inglés The DeepSeek-R1 release is the Applied AI inflection point that challenged frontier AI's competitive moat.January 2025
- OpenAI o1 Release: When Test-Time Compute Became a Tunable KnobEN en inglés The OpenAI o1 release is the Applied AI capability shift that introduced reasoning models with adjustable thinking time.September 2024
- EU AI Act Implementation: First Horizontal AI Regulation Goes OperationalEN en inglés The EU AI Act is the Applied AI regulatory framework that established the first cross-sector legal regime for artificial intelligence.March 2024 (adoption) through August 2027 (full application)
Cada Decipher File se publica con fuentes primarias (CISA, NIST, SEC EDGAR, NVD, comunicados oficiales) y se revisa cada 90 días. Metodología editorial EN en inglés
Continúa por aquí
Tres opciones según donde estés en el camino. Las dos primeras son gratis.
Gratis · 2 minutos
Empieza con el AI Risk Score
Dos minutos. Te dice qué tan expuesto está tu rol actual a la automatización por IA y cuáles son los movimientos defensivos con mejor retorno.
Comenzar AI Risk Score →Programa pago · $147-$597
Curso alineado: Maestría en Ingeniería de IA
Programa con proyecto final revisado por el fundador, rúbrica pública, y credencial verificable firmada con Ed25519.
Ver el curso →Cuenta gratis
Guarda tus resultados y rastrea tu progreso
Una cuenta gratuita guarda tus assessments, recomendaciones, y la versión exportable de tu Career DNA. Sin tarjeta.
Crear cuenta →