OpenAI: Neue, erschreckende Details zum Hugging-Face-Vorfall (2026-08-07 11:16 UTC)
Kurz: Mitarbeiter von OpenAI enthüllen weitere Details rund um den Einbruch ihrer KI-Agenten bei anderen Firmen und offenbaren erschreckende Fahrlässigkeit.
Lieferketten-Angriff auf keyv: Shai-Hulud-Wurm infiziert mehr als 440 npm-Pakete (2026-08-07 10:54 UTC)
Kurz: Die populäre Key‑Value‑Datenbank keyv und andere weit verbreitete npm-Pakete waren Ziel einer Lieferkettenattacke. Der potenzielle Schaden ist groß.
Verschlüsselte iPhone-Backups: Apple kämpft gegen Londoner Begehrlichkeiten (2026-08-07 10:49 UTC)
Kurz: Auch unter dem neuen Labour-Premierminister Burnham verlangt der britische Staat Hintertüren von Apple. Dessen Anwälte versuchen, sich zu wehren.
Kurz: A critical Metabase SQL injection vulnerability was exploited in zero-day attacks to breach customer instances in data theft attacks, known to impact Framework and Tally. […]
Unlimited Technology Systems breach impacts 3.8 million people (2026-08-07 19:30 UTC)
Kurz: Healthcare software company Unlimited Technology Systems reported that more than 3.8 million people were impacted by a data breach incident that occurred in October 2025. […]
Levi Strauss & Co. says hackers stole corporate data in cyberattack (2026-08-07 15:48 UTC)
Kurz: Levi Strauss & Co. (Levi’s) says that hackers used social engineering on three of its employees to gain access to and steal corporate data stored on their machines. […]
Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication (2026-08-08 06:58 UTC)
Kurz: Metabase has warned that a maximum-severity security flaw impacting its business intelligence and data visualization software package has been exploited in the wild as a zero-day. The vulnerability (CVSS score: 10.0), which does not carry a…
N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist (2026-08-08 06:57 UTC)
Kurz: N-able has released a fresh round of hotfixes for N‑central as part of its investigation into ongoing exploitation of a recently disclosed security flaw in the Remote Monitoring and Management (RMM) product. “We are proactively expanding pr…
Kurz: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical-severity security flaw impacting Progress Kemp LoadMaster to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploita…