IT‑Sicherheits‑Digest (2026-07-24)

Aktuelle Security‑News

heise security

  • Adobe-Chrome-Erweiterung ermöglichte Datenklau (2026-07-24 07:52 UTC)
    • Kurz: In der Chrome-Erweiterung Adobe Acrobat mit 312 Millionen Nutzern klaffte eine Schwachstelle. Dadurch konnten Angreifer Daten stehlen.
    • Quelle: Link
  • Russische Angreifer missbrauchen Zero-Click-Lücke in Zimbra (2026-07-24 06:21 UTC)
    • Kurz: Russische Angreifer attackieren seit Juli 2025 westliche Regierungen und Einrichtungen durch eine Zero-Click-Lücke in Zimbra.
    • Quelle: Link
  • Auslegungssache 164: Angriff auf die Informationsfreiheit (2026-07-24 04:54 UTC)
    • Kurz: Die Regierung will das Informationsfreiheitsgesetz “modernisieren”. Im c’t-Podcast warnt ein prominenter Gast vor der faktischen Abschaffung eines Grundrechts.
    • Quelle: Link

BleepingComputer

  • Clop ransomware targets Windchill, FlexPLM in data theft attacks (2026-07-24 07:36 UTC)
    • Kurz: The Clop ransomware gang (also tracked as Cl0p) is targeting Internet-exposed PTC Windchill and FlexPLM instances in a new data theft extortion campaign. […]
    • Quelle: Link
  • New Dolphin X malware uses AI to rank high-value targets (2026-07-23 21:20 UTC)
    • Kurz: A new Dolphin X remote access trojan claims to use an AI-powered profiling feature to score and rank infected users, helping cybercriminals identify which victims should be targeted first. […]
    • Quelle: Link
  • Australian energy provider Origin says data breach exposes client data (2026-07-23 20:14 UTC)
    • Kurz: Origin Energy has confirmed that an unauthorized party accessed and subsequently leaked customer data online, exposing sensitive personally identifiable information (PII), among others. […]
    • Quelle: Link

The Hacker News

  • Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks (2026-07-24 06:50 UTC)
    • Kurz: The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that’s dressed up as a Notepad++ plugin to compromise Windows systems. The activity has been attributed by t…
    • Quelle: Link
  • Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes (2026-07-23 18:36 UTC)
    • Kurz: A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra’s webmail client. The payload goes after the last 90 days of email, the organization’s entire email directory, the passwo…
    • Quelle: Link
  • ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories (2026-07-23 15:02 UTC)
    • Kurz: Most of this week’s trouble came dressed as something useful. A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Other threats hid in open systems, weak code…
    • Quelle: Link

Neue CVEs (letzte 24h, NVD‑Abgleich)

Fortinet FortiGate (7.4.x)

  • Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h.

Atlassian (Jira/Confluence)

  • Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h.

HPE/Aruba Switches

  • Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h.

VMware ESXi/vCenter (7.x)

  • Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h.

Hinweis

  • CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches).
  • News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.