IT-Sicherheits-Digest (2026-08-22)

IT‑Sicherheits‑Digest (2026-08-22) Aktuelle Security‑News heise security Beinahe militärische Telefonate abgehört: Deutsche Hackerin kaperte ENUM-Domains (2026-08-21 11:00 UTC) Kurz: Einige Inselnationen hatten geschlampt und ihre Telefonie angreifbar gemacht. Die Sicherheitsbehörden reagierten erst spät und nach einem Raketenangriff. Quelle: Link Lücke in WordPress-Plug-in Elementor Pro: 6 Millionen Webseiten gefährdet (2026-08-21 10:24 UTC) Kurz: Eine kritische Sicherheitslücke im WordPress-Plug-in Elementor Pro ermöglicht die komplette Übernahme von WordPress. Quelle: Link Dell ObjectScale: Höhere Nutzerrechte erschleichbar (2026-08-21 09:28 UTC) Kurz: Sicherheitsupdates schließen mehrere Lücken in Dells Object-Storage-Plattform ObjectScale. Quelle: Link BleepingComputer New SynkLoader malware pushed in Microsoft Teams phishing campaign (2026-08-21 18:01 UTC) Kurz: A previously unknown malware family dubbed SynkLoader is being distributed in Microsoft Teams phishing campaigns to steal credentials via a fake lock screen. […] Quelle: Link Hundreds of leaked AWS keys give full control over corporate accounts (2026-08-21 15:55 UTC) Kurz: More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. […] Quelle: Link Microsoft blames Windows gaming issues on RGB lighting devices (2026-08-21 14:54 UTC) Kurz: Microsoft says ongoing issues causing games to crash or fail to launch after installing the August 2026 Windows updates may be caused by peripherals with RGB lighting. […] Quelle: Link The Hacker News 14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2 (2026-08-21 18:53 UTC) Kurz: Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant dubbed RedC2 … Quelle: Link Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot (2026-08-21 15:52 UTC) Kurz: Check Point Research has disclosed a technique that uses Microsoft Defender’s own legitimately signed boot-time remediation driver to perform arbitrary kernel-level file and registry operations on Windows systems ranging from Windows 7 thro… Quelle: Link Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet (2026-08-21 15:41 UTC) Kurz: Cybersecurity researchers have flagged a new malware family that’s specifically designed to infect Android-based vehicle head unit firmware developed by DoFun. Kaspersky, which discovered the threat in June 2026, said the end goal of the ma… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 22, 2026 · 3 min · Betty

IT-Sicherheits-Digest (2026-08-21)

IT‑Sicherheits‑Digest (2026-08-21) Aktuelle Security‑News heise security Zimbra: Warnung vor Angriffen auf Befehlsschmuggel-Lücke (2026-08-21 07:12 UTC) Kurz: Das polnische CERT warnt vor Angriffen auf eine Befehlsschmuggel-Lücke in der Zimbra Collaboration Suite. Ein Update ist verfügbar. Quelle: Link Cyberangriff in Berlin: Behörden weiterhin offline (2026-08-21 05:11 UTC) Kurz: Zwei Senatsverwaltungen sind nach einem Cyberangriff vom Landesnetz isoliert. Das hat auch Auswirkungen auf die Auszahlung von Wohngeld. Quelle: Link Auslegungssache 166: Datenherausgabe auf Zuruf? (2026-08-21 04:10 UTC) Kurz: Neue EU-Regeln erlauben Ermittlern, Daten direkt bei Anbietern im Ausland anzufordern. Wir diskutieren über kurze Fristen und Risiken für Grundrechte. Quelle: Link BleepingComputer Hackers poison arrayref Rust crate to push infostealer malware (2026-08-20 17:53 UTC) Kurz: Hackers compromised the maintainer account behind the widely used Rust crate arrayref to introduce malware that executed on developers’ systems during compilation. […] Quelle: Link Critical Elementor Pro bug exposes WordPress sites to RCE attacks (2026-08-20 14:39 UTC) Kurz: A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server. […] Quelle: Link How MSPs can catch phishing attacks email filters miss (2026-08-20 14:01 UTC) Kurz: AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor identity, email, and endpoint activity to detect and contain attacks that make it past … Quelle: Link The Hacker News Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution (2026-08-21 06:06 UTC) Kurz: Microsoft on Thursday warned of a maximum-severity security flaw in Entra ID that it said has been exploited in the wild, but noted that no customer action is required. The vulnerability, tracked as CVE-2026-69836 (CVSS score: 10.0), is a c… Quelle: Link Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads (2026-08-20 20:22 UTC) Kurz: The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account published releases that added a typosquatted dependency whose build script downloaded and executed a remo… Quelle: Link Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts (2026-08-20 19:59 UTC) Kurz: Three distinct suspected Russian cyber espionage threat clusters have been observed leveraging legitimate authentication flows to single out individuals working in academia, aerospace and defense, governments, and think tanks across Europe,… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 21, 2026 · 3 min · Betty

IT-Sicherheits-Digest (2026-08-20)

IT‑Sicherheits‑Digest (2026-08-20) Aktuelle Security‑News heise security Cisco-Sicherheitslücken: Angreifer können Anmeldung von Secure Workload umgehen (2026-08-20 07:41 UTC) Kurz: Es sind wichtige Sicherheitsupdates für unter anderem Cisco BroadWorks, Crosswork Security und Secure Workload erschienen. Quelle: Link Anonymisierendes Linux: Tails 7.11 pflegt Software und schließt Schwachstellen (2026-08-20 07:36 UTC) Kurz: Die Entwickler der anonymisierenden Linux-Distribution Tails für USB-Sticks aktualisieren in Version 7.11 Kernkomponenten. Quelle: Link Windows-Updates: Microsoft untersucht Spieleprobleme (2026-08-20 06:50 UTC) Kurz: Nach der Installation der Windows-Updates vom August-Patchday erhält Microsoft vermehrt Meldungen zu Problemen mit einigen Spielen. Quelle: Link BleepingComputer Microsoft says August Windows updates may cause gaming issues (2026-08-20 06:51 UTC) Kurz: Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems. […] Quelle: Link OpenAI confirms ChatGPT is down as logins and signups fail (2026-08-20 00:20 UTC) Kurz: ChatGPT is experiencing a major outage, and users are unable to sign in, create accounts, or load chats, including previous conversations. […] Quelle: Link Rogue ransomware affiliate poses as recovery firm to steal payments (2026-08-19 20:59 UTC) Kurz: A suspected ransomware affiliate is posing as a ransomware recovery service called “Ransom Busters,” contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee… Quelle: Link The Hacker News Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code (2026-08-20 06:04 UTC) Kurz: Cybersecurity researchers have disclosed details of a critical flaw in the Elementor Pro WordPress plugin that, if successfully exploited, could lead to remote code execution. The vulnerability, tracked as CVE-2026-32475, carries a CVSS sco… Quelle: Link Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second (2026-08-19 19:02 UTC) Kurz: Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) from a co-located Worker in the production environment at up to 12 bits per second, 360 times the rate… Quelle: Link OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior (2026-08-19 18:06 UTC) Kurz: OpenAI on Tuesday revealed that it paused reinforcement learning (RL) training for its latest artificial intelligence (AI) models for two weeks while it shored up additional defenses and increased the scope of its monitoring to avert anothe… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 20, 2026 · 3 min · Betty

IT-Sicherheits-Digest (2026-08-19)

IT‑Sicherheits‑Digest (2026-08-19) Aktuelle Security‑News heise security Google führt erweiterten Sideloading-Ablauf für Android schrittweise ein (2026-08-19 07:20 UTC) Kurz: Google startet den „Advanced Flow“ für das Sideloading von Apps. Nutzer müssen bei nicht verifizierten Entwicklern künftig eine 24-stündige Wartezeit einplanen. Quelle: Link „Passwort“ Folge 64: Alarmierende Ausbrüche agentischer Angreifer (2026-08-19 07:00 UTC) Kurz: PR-Stunt oder reale Bedrohung? Die Passwort-Hosts finden, dass die Agenten-Angriffe von Anthropic und Co. viel mit Schludrigkeit und Desinteresse zu tun haben. Quelle: Link Warnung vor Angriffen auf Microsoft IKE, SharePoint, VMware vCenter und macOS (2026-08-19 06:04 UTC) Kurz: Die IT-Sicherheitsbehörde CISA warnt aktuell vor Angriffen auf Microsoft IKE, SharePoint, VMware vCenter und macOS. Quelle: Link BleepingComputer Comcast turns your Xfinity WiFi into a home motion detector (2026-08-18 20:14 UTC) Kurz: Comcast is promoting WiFi-based motion detection as a part of its new Xfinity Shield home protection platform, allowing routers and wireless devices to detect people moving through a home without cameras or motion sensors. […] Quelle: Link Clop created custom web shell for Windchill data theft attacks (2026-08-18 17:29 UTC) Kurz: A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files. […] Quelle: Link Your Controls Block Known Attacks. What About the Behavior? (2026-08-18 14:01 UTC) Kurz: Security controls can block a familiar attack method while missing quieter ways to achieve the same objective. Picus Security’s Blue Report 2026 shows how prevention rates can vary dramatically by technique and why behavioral testing is nee… Quelle: Link The Hacker News Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps (2026-08-18 17:47 UTC) Kurz: Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim’s Copilo… Quelle: Link Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets (2026-08-18 17:44 UTC) Kurz: Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automation, are witnessing ma… Quelle: Link Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000 (2026-08-18 16:58 UTC) Kurz: A ransomware affiliate calling itself Ransom Busters has been spotted proactively sending emails to victim organizations and claims to delete stolen data from ransomware groups’ servers in exchange for a fee ranging from $20,000 to $60,000.… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) CVE-2026-21580 — CVSS n/a Kurz: This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security Misconfiguration vulnerability was introduced in versions 7.1.1, 7.4.0, 7.13.0, 7.17.0, 7.19.0, 8.0.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0, 9.2.0, 9.… Quelle: Link CVE-2026-21582 — CVSS n/a Kurz: This High severity BASM (Broken Authentication & Session Management) vulnerability known as CVE-2026-21582 was introduced in version 7.2.1 of Crowd Data Center. This BASM (Broken Authentication & Session Management) vuln… Quelle: Link CVE-2026-21584 — CVSS n/a Kurz: This High severity Improper Authorization vulnerability was introduced in versions 10.0.0, 10.1.0, 10.2.0, 11.0.0, 12.0.0, and 12.1.0 of Bamboo Data Center. This Improper Authorization vulnerability, with a CVSS Score of… Quelle: Link HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 19, 2026 · 3 min · Betty

IT-Sicherheits-Digest (2026-08-18)

IT‑Sicherheits‑Digest (2026-08-18) Aktuelle Security‑News heise security OWASP Top 10 für KI-Anwendungen: Risiken mit Daten belegt (2026-08-18 07:43 UTC) Kurz: Die neue Rangliste der größten Sicherheitsrisiken von KI-Anwendungen nennt wenig Neues. Die Relevanz der bestehenden Punkte unterfüttert OWASP nun mit Daten. Quelle: Link Weitere Sicherheitsupdates: iOS 26.6.1, macOS 26.6.2 und mehr veröffentlicht (2026-08-18 07:18 UTC) Kurz: Kleine Aktualisierung, viele Lücken: Gut 30 Sicherheitslöcher hat Apple in insgesamt sechs Betriebssystemen gestopft. KI dürfte geholfen haben. Quelle: Link Webmailer Roundcube: Updates stopfen zahlreiche Sicherheitslecks (2026-08-18 07:06 UTC) Kurz: Der Webmailer Roundcube ist in aktualisierten Fassungen verfügbar. Sie schließen etwa Lücken, die Einschleusen von Schadcode erlauben. Quelle: Link BleepingComputer Hacker claims 3.6 million Azure account records stolen from major companies (2026-08-17 19:35 UTC) Kurz: A threat actor is selling employee databases allegedly stolen from the Microsoft Azure infrastructure of multiple Fortune 500 companies after gaining access using compromised credentials. […] Quelle: Link Pokémon Center data breach exposes customer info, cancels some orders (2026-08-17 19:12 UTC) Kurz: Pokémon Center is notifying customers in the United Kingdom and Germany that it suffered a third-party data breach after hackers stole customer personal and order information from third-party logistics provider CEVA Logistics. […] Quelle: Link Microsoft confirms GitHub is down worldwide (2026-08-17 14:47 UTC) Kurz: GitHub is down for some users as a widespread outage is causing errors across the website, API, Actions, Pull Requests, and several other services. […] Quelle: Link The Hacker News CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE (2026-08-18 06:34 UTC) Kurz: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. Ray is an open-source, Python-nativ… Quelle: Link Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects (2026-08-17 21:03 UTC) Kurz: GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or… Quelle: Link Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection (2026-08-17 18:44 UTC) Kurz: Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake’s public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to exe… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 18, 2026 · 3 min · Betty

IT-Sicherheits-Digest (2026-08-17)

IT‑Sicherheits‑Digest (2026-08-17) Aktuelle Security‑News heise security Angriffe auf SAP-Commerce-Cloud-Lücke beobachtet (2026-08-17 06:21 UTC) Kurz: SAP hat in der vergangenen Woche eine kritische Lücke in Commerce Cloud geschlossen. Seit dem Wochenende wird sie angegriffen. Quelle: Link Kommentar: Schummelnde KI – einfach nur peinlich (2026-08-17 05:30 UTC) Kurz: OpenAIs KI hackt Hugging Face – um zu schummeln. Dann rühmt sich Anthropic mit ähnlichen Vorfällen. Philipp Steevens findet das vor allem peinlich. Quelle: Link Energie- und Medizintechnikkonzerne wohl Opfer massiven Datendiebstahls (2026-08-17 03:02 UTC) Kurz: Russische Cyberkriminelle wollen Daten von Shell, Philips, GE und weiteren Firmen erbeutet haben. Die ausgenutzten Sicherheitslücken wurden im Juli bekannt. Quelle: Link BleepingComputer SafePal data breach impacts 39,798 customers, stolen info for sale (2026-08-16 23:47 UTC) Kurz: Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data. [… Quelle: Link Anthropic confirms Claude is down in major outage affecting multiple services (2026-08-16 22:28 UTC) Kurz: Claude is experiencing a major outage, with users reporting login problems and degraded performance across several Anthropic services. […] Quelle: Link Large-scale DDoS attacks disrupted Threema secure messaging service (2026-08-16 17:29 UTC) Kurz: Multiple distributed denial-of-service (DDoS) attacks targeted the Threema secure messaging service earlier this week, causing severe disruptions to communications. […] Quelle: Link The Hacker News Keine neuen, nicht bereits gestern gelisteten Meldungen im 36h-Fenster. Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 17, 2026 · 2 min · Betty

IT-Sicherheits-Digest (2026-08-16)

IT‑Sicherheits‑Digest (2026-08-16) Aktuelle Security‑News heise security Lücke in Online-Banking: BKA deckt Millionenschäden auf (2026-08-15 09:22 UTC) Kurz: Eine Gruppe Krimineller soll Bankkunden um Millionen betrogen haben. Ermittler aus Deutschland und Brasilien nahmen nach Durchsuchungen Verdächtige fest. Quelle: Link BleepingComputer New Evooo1Bot Linux botnet turns routers into traffic relay nodes (2026-08-15 14:14 UTC) Kurz: A new Mirai-based modular Linux botnet malware called Evooo1Bot has been targeting internet-facing gateway devices, turning them into SOCKS5 traffic relay nodes. […] Quelle: Link The Hacker News Keine neuen, nicht bereits gestern gelisteten Meldungen im 36h-Fenster. Lageeinschätzung Heute sind nur wenige frische, nicht doppelte Meldungen im 36h-Fenster aufgelaufen. Das ist typisch nach Wochenenden/Feiertagen oder wenn Feeds erst später am Vormittag aktualisieren. Ausgeblendet: 83 ältere oder bereits gestern verwendete Feed-Einträge. Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 16, 2026 · 1 min · Betty

IT-Sicherheits-Digest (2026-08-15)

IT‑Sicherheits‑Digest (2026-08-15) Aktuelle Security‑News heise security Seitenkanal erlaubt Zugriff auf RAM des AMD-Sicherheitscontrollers PSP (2026-08-14 14:11 UTC) Kurz: Bei alten AMD-Prozessoren lässt sich die in Hardware verankerte RAM-Adressverwaltung manipulieren, um auf vermeintlich geschützte Bereiche zuzugreifen. Quelle: Link Apple verschickt Warnungen: Mercenary-Spyware in 110 Ländern (2026-08-14 11:13 UTC) Kurz: Apple hat Nutzer, bei denen das Unternehmen Angriffe mit bösartigen Datenschädlingen durch Regierungs- und Spionage-Kreise erwartet, explizit gewarnt. Quelle: Link Studie zum Umgang mit Passkeys: Nutzer wissen zu wenig Bescheid (2026-08-14 10:58 UTC) Kurz: Passkeys sollen Passwörter ablösen, sie gelten als viel sicherer. In der Praxis fehlt vielen Nutzern noch Wissen, haben US-Forscher herausgefunden. Quelle: Link BleepingComputer How Anthropic plans to watermark Claude’s AI-generated text (2026-08-14 23:24 UTC) Kurz: It could soon become easier to identify AI-generated content, even if it’s not the usual “It’s Not X, it’s Y” type of post you’d come across on LinkedIn and other socials. […] Quelle: Link Hackers arrested over €30M bank fraud exploiting service provider flaw (2026-08-14 18:04 UTC) Kurz: Four cybercriminals were arrested in Brazil, and three others were charged in Europe over allegations that they exploited a vulnerability at a service provider, allowing them to withdraw funds from Commerzbank customers’ bank accounts. […… Quelle: Link Hackers exploit macOS Screen Sharing flaw to deploy Monero miner (2026-08-14 14:59 UTC) Kurz: The Netherlands’ National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. […] Quelle: Link The Hacker News Keine neuen, nicht bereits gestern gelisteten Meldungen im 36h-Fenster. Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 15, 2026 · 2 min · Betty

IT-Sicherheits-Digest (2026-08-14)

IT‑Sicherheits‑Digest (2026-08-14) Aktuelle Security‑News heise security Hunderte irreführende VPN-Erweiterungen im Chrome Store (2026-08-13 21:22 UTC) Kurz: Über 500 betrügerische Browsererweiterungen hat ein Sicherheitsunternehmen im Chrome Web Store gefunden. Google lasse die Herausgeber unbehelligt weitermachen. Quelle: Link Digitale Kaperbriefe: US-Regierung erlaubt Unternehmen offensive Cyberangriffe (2026-08-13 16:42 UTC) Kurz: Im Kampf gegen transnationale kriminelle Akteure will die US-Regierung verstärkt auf die Privatwirtschaft setzen. Unternehmen sollen selbst angreifen dürfen. Quelle: Link Taiwan bestätigt KI-gestützten Cyberangriff auf Behörden (2026-08-13 16:38 UTC) Kurz: Taiwan entdeckte im Juli einen ungewöhnlichen Angriff. Nun bestätigt das Land, dass Hacker dabei autonome KI-Agenten einsetzten, um Netzwerke zu infiltrieren. Quelle: Link BleepingComputer Apple sends new ‘Threat Notification’ alerts over mercenary spyware attacks (2026-08-14 01:19 UTC) Kurz: You’re not alone if you just received an “Apple Threat Notification” saying it detected a “mercenary spyware attack targeted at your iPhone.” […] Quelle: Link Ukraine shuts down 94 fraudulent call centers, seize millions in cash (2026-08-13 21:12 UTC) Kurz: Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain access to bank accounts. […] Quelle: Link Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt (2026-08-13 20:47 UTC) Kurz: An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. […] Quelle: Link The Hacker News Keine neuen, nicht bereits gestern gelisteten Meldungen im 36h-Fenster. Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Atlassian (Jira/Confluence) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 14, 2026 · 2 min · Betty

IT-Sicherheits-Digest (2026-08-13)

IT‑Sicherheits‑Digest (2026-08-13) Aktuelle Security‑News heise security Attacken auf VMware vCenter durch Path-Traversal-Lücke (2026-08-13 06:21 UTC) Kurz: Eine Ende Juli bekannt gewordene Path-Traversal-Lücke in VMware vCenter Syslog Server dient Angreifern zum Einbrechen und Einnisten. Quelle: Link WhatsApp-Benutzernamen: Vor- und Nachteile im Überblick (2026-08-13 04:57 UTC) Kurz: Wie schützt ein WhatsApp-Benutzername vor Betrug – und welche Daten gibt man preis? Verbraucherschützer bewerten den Status quo beim Meta-Messenger. Quelle: Link Phishing-Wellen: Cyberangriffe auf IT-Dienstleister für Hotels (2026-08-13 04:30 UTC) Kurz: Nach einem Sicherheitsvorfall bei einem österreichischen IT-Dienstleister sehen sich Hotels mit gezielten Phishing-Angriffen auf ihre Gäste konfrontiert. Quelle: Link BleepingComputer “City-Forum” data-theft attacks target Salesforce, ServiceNow portals (2026-08-12 23:07 UTC) Kurz: An ongoing data theft campaign uses custom tools to steal data exposed to anonymous users through Salesforce Experience Cloud and ServiceNow customer portals. […] Quelle: Link Android malware combo takes out loans and relays victims’ credit cards (2026-08-12 22:22 UTC) Kurz: A new Android NFC relay malware called WindRelay is being used alongside the SpyNote remote administration tool (RAT) to steal live card data and send it to attackers in real time. […] Quelle: Link Hackers exploit critical Adobe Commerce flaw to hijack customer accounts (2026-08-12 20:54 UTC) Kurz: Attempts to exploit a critical vulnerability (CVE-2026-71362) in Adobe’s Commerce and Magento e-commerce platforms have been detected, potentially allowing attackers to hijack customer accounts. […] Quelle: Link The Hacker News Attackers Exploit SharePoint Authentication Bypass After Public PoC Release (2026-08-13 06:09 UTC) Kurz: Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which refers to a critical s… Quelle: Link Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor (2026-08-12 17:39 UTC) Kurz: The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defense and aerospace compa… Quelle: Link 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One (2026-08-12 14:09 UTC) Kurz: A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route them through a proxy infrastructure. The extens… Quelle: Link Neue CVEs (letzte 24h, NVD‑Abgleich) Fortinet FortiGate (7.4.x) CVE-2026-26035 — CVSS 9.8 (CRITICAL) Kurz: An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11, FortiWeb 7.2.0 through 7.2.12, FortiWeb 7.0.0 throug… Quelle: Link CVE-2026-70465 — CVSS 8.1 (HIGH) Kurz: A buffer copy without checking size of input (‘classic buffer overflow’) vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.11 may allow an unauthenticated attacker in … Quelle: Link CVE-2026-70468 — CVSS 8.1 (HIGH) Kurz: A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManager 7.2.5 through 7.2.9, FortiManager Cloud 7.6.1, FortiManager Cloud 7.… Quelle: Link CVE-2026-71407 — CVSS 5.6 (MEDIUM) Kurz: A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or comm… Quelle: Link CVE-2026-70466 — CVSS 5.3 (MEDIUM) Kurz: A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow attac… Quelle: Link CVE-2026-71408 — CVSS 5.3 (MEDIUM) Kurz: A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack … Quelle: Link Atlassian (Jira/Confluence) CVE-2026-73498 — CVSS 7.7 (HIGH) Kurz: MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, confluence_upload_attachment passes its client-supplied file_path directly to open(file_path, “rb”) in… Quelle: Link HPE/Aruba Switches Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. VMware ESXi/vCenter (7.x) Keine neuen Treffer in den erfolgreich abgefragten NVD‑Daten der letzten 24h. Hinweis CVE‑Treffer sind ein Frühwarn‑Check (NVD) und müssen für eure exakten Versionen/Deployments gegengeprüft werden (Vendor Advisory/Patches). News-Auswahl: nur frische Meldungen aus den letzten 36 Stunden; Dubletten aus dem Vortags-Digest werden ausgeblendet.

August 13, 2026 · 4 min · Betty