IT-Sicherheits-Digest (2026-02-22)
IT‑Sicherheits‑Digest (2026-02-22) Aktuelle Security‑News heise security Anthropic launcht Claude Code Security – Cybersecurity-Aktien verlieren (2026-02-21 15:53 UTC) Kurz: Das KI-Tool Claude Code Security von Anthropic analysiert Code kontextbasiert statt regelbasiert. Die Börse reagiert nervös, Aktienkurse geben nach. Quelle: Link Zahlreiche Kernel-Lücken in Dell PowerProtect Data Manager geschlossen (2026-02-20 12:16 UTC) Kurz: Dells Backuplösung PowerProtect Data Manager ist unter anderem für Schadcode-Attacken anfällig. Sicherheitspatches stehen zum Download bereit. Quelle: Link Kommentar: Russlands Cyber-Angriffe erfordern eine Reaktion (2026-02-20 12:07 UTC) Kurz: Jürgen Schmidt sprach sich lange Zeit gegen offensive Cyber-Aktionen aus. Russlands Sabotage-Angriff auf Polens Energieversorgung hat seine Meinung geändert. Quelle: Link BleepingComputer Predator spyware hooks iOS SpringBoard to hide mic, camera activity (2026-02-21 16:13 UTC) Kurz: Intellexa’s Predator spyware can hide iOS recording indicators while secretly streaming camera and microphone feeds to its operators. […] Quelle: Link Amazon: AI-assisted hacker breached 600 Fortinet firewalls in 5 weeks (2026-02-21 13:50 UTC) Kurz: Amazon is warning that a Russian-speaking hacker used multiple generative AI services as part of a campaign that breached more than 600 FortiGate firewalls across 55 countries in five weeks. […] Quelle: Link Japanese tech giant Advantest hit by ransomware attack (2026-02-20 18:30 UTC) Kurz: Advantest Corporation disclosed that its corporate network has been targeted in a ransomware attack that may have affected customer or employee data. […] Quelle: Link The Hacker News AI-Assisted Threat Actor Compromises 600+ FortiGate Devices in 55 Countries (2026-02-21 14:49 UTC) Kurz: A Russian-speaking, financially motivated threat actor has been observed taking advantage of commercial generative artificial intelligence (AI) services to compromise over 600 FortiGate devices located in 55 countries. That’s according to n… Quelle: Link Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanning (2026-02-21 07:58 UTC) Kurz: Artificial intelligence (AI) company Anthropic has begun to roll out a new security feature for Claude Code that can scan a user’s software codebase for vulnerabilities and suggest patches. The capability, called Claude Code Security, is cu… Quelle: Link CISA Adds Two Actively Exploited Roundcube Flaws to KEV Catalog (2026-02-21 07:21 UTC) Kurz: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Roundcube webmail software to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulne… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches).