Anwendungssicherheit

🔴 CVE-2025-71210: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2025-71210: Critical Schwachstelle

A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code and...

23. Mai 2026 Keine Kommentare
Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks ANWENDUNGSSICHERHEIT

Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks

Drupal has released security updates for a "highly critical" security vulnerability in Drupal Core that could be exploited by attackers...

23. Mai 2026 Keine Kommentare
Microsoft Warns of Two Actively Exploited Defender Vulnerabilities ANWENDUNGSSICHERHEIT

Microsoft Warns of Two Actively Exploited Defender Vulnerabilities

Microsoft has disclosed that a privilege escalation and a denial-of-service flaw in Defender has come under active exploitation in the...

23. Mai 2026 Keine Kommentare
NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE ANWENDUNGSSICHERHEIT

NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days...

22. Mai 2026 Keine Kommentare
Drupal to Release Urgent Core Security Updates on May 20, Sites Told to Prepare ANWENDUNGSSICHERHEIT

Drupal to Release Urgent Core Security Updates on May 20, Sites Told to Prepare

Drupal has issued an alert stating that it intends to release a "core security release" for all supported branches on...

22. Mai 2026 Keine Kommentare
DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability ANWENDUNGSSICHERHEIT

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability

Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could...

22. Mai 2026 Keine Kommentare
Making Vulnerable Drivers Exploitable Without Hardware – The BYOVD Perspective ANWENDUNGSSICHERHEIT

Making Vulnerable Drivers Exploitable Without Hardware – The BYOVD Perspective

1 Introduction This article provides a technical analysis of how many Windows kernel mode drivers can be interacted with from...

22. Mai 2026 Keine Kommentare
Grafana GitHub Breach Exposes Source Code via TanStack npm Attack ANWENDUNGSSICHERHEIT

Grafana GitHub Breach Exposes Source Code via TanStack npm Attack

Grafana Labs, on May 19, 2026, said an investigation into its recent breach found no evidence of customer production systems...

22. Mai 2026 Keine Kommentare
Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 Exploit ANWENDUNGSSICHERHEIT

Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 Exploit

Microsoft on Tuesday released a mitigation for a BitLocker bypass vulnerability named YellowKey following its public disclosure last week. The...

22. Mai 2026 Keine Kommentare
GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal Repos ANWENDUNGSSICHERHEIT

GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal Repos

GitHub on Tuesday said it's investigating unauthorized access to its internal repositories after the notorious threat actor known as TeamPCP...

22. Mai 2026 Keine Kommentare