IT‑Sicherheits‑Digest (2026-04-06)

Aktuelle Security‑News

heise security

  • Chatkontrolle: Tech-Riesen wollen trotz ausgelaufener EU-Regeln weiter scannen (2026-04-05 11:45 UTC)
    • Kurz: Die Gesetzesbasis zur anlasslosen Suche nach Missbrauchsmaterial ist erloschen. Google, Meta Microsoft & Co. halten dennoch an der umstrittenen Praxis fest.
    • Quelle: Link
  • Jetzt updaten! Kritische FortiClient-EMS-Lücke wird attackiert (2026-04-05 08:33 UTC)
    • Kurz: Fortinet hat Hotfixes bereitgestellt und rät Admins dringend, sie zügig anzuwenden. Sie stopfen ein angegriffenes Codeschmuggel-Leck.
    • Quelle: Link
  • Missing Link: Wir suchen Terroristen (m/w/d) (2026-04-05 07:00 UTC)
    • Kurz: Das Bundeskriminalamt und der Bundesnachrichtendienst feiern Jubiläen – und fordern zum Geburtstag weitreichende neue Kompetenzen für die digitale Welt.
    • Quelle: Link

BleepingComputer

  • Traffic violation scams switch to QR codes in new phishing texts (2026-04-05 19:44 UTC)
    • Kurz: Scammers are sending fake “Notice of Default” traffic violation text messages impersonating state courts across the U.S., pressuring recipients to scan a QR code that leads to a phishing site demanding a $6.99 payment while stealing persona…
    • Quelle: Link
  • New FortiClient EMS flaw exploited in attacks, emergency patch released (2026-04-05 18:45 UTC)
    • Kurz: Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability that is actively exploited in attacks. […]
    • Quelle: Link
  • Hackers exploit React2Shell in automated credential theft campaign (2026-04-05 14:17 UTC)
    • Kurz: Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnerable Next.js apps. […]
    • Quelle: Link

The Hacker News

  • $285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation (2026-04-05 18:25 UTC)
    • Kurz: Drift has revealed that the April 1, 2026, attack that led to the theft of $285 million was the culmination of a months-long targeted and meticulously planned social engineering operation undertaken by the Democratic People’s Republic of Ko…
    • Quelle: Link
  • 36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants (2026-04-05 05:07 UTC)
    • Kurz: Cybersecurity researchers have discovered 36 malicious packages in the npm registry that are disguised as Strapi CMS plugins but come with different payloads to facilitate Redis and PostgreSQL exploitation, deploy reverse shells, harvest cr…
    • Quelle: Link
  • Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS (2026-04-05 04:32 UTC)
    • Kurz: Fortinet has released out-of-band patches for a critical security flaw impacting FortiClient EMS that it said has been exploited in the wild. The vulnerability, tracked as CVE-2026-35616 (CVSS score: 9.1), has been described as a pre-authen…
    • Quelle: Link

Neue CVEs (letzte 24h, NVD‑Abgleich)

Fortinet FortiGate (7.4.x)

  • Keine neuen Treffer in den letzten 24h.

Atlassian (Jira/Confluence)

  • Keine neuen Treffer in den letzten 24h.

HPE/Aruba Switches

  • Keine neuen Treffer in den letzten 24h.

VMware ESXi/vCenter (7.x)

  • (NVD‑Abfrage fehlgeschlagen für ‘VMware’: HTTP Error 429: Too Many Requests)

VMware ESXi/vCenter (7.x)

  • Keine neuen Treffer in den letzten 24h.

Hinweis

  • CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches).