Cloud-Sicherheit

🔴 CVE-2026-77776: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-77776: Critical Schwachstelle

Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at several points...

23. Aug. 2026 Keine Kommentare
Hundreds of leaked AWS keys give full control over corporate accounts CLOUD-SICHERHEIT

Hundreds of leaked AWS keys give full control over corporate accounts

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active...

22. Aug. 2026 Keine Kommentare
NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands CLOUD-SICHERHEIT

NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands

Security researchers at Cycode have disclosed a chain of flaws in AIT-GUI, the browser-based operator console for NASA/JPL's open-source AMMOS...

22. Aug. 2026 Keine Kommentare
Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers CLOUD-SICHERHEIT

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentication...

21. Aug. 2026 Keine Kommentare
Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution CLOUD-SICHERHEIT

Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution

Microsoft on Thursday warned of a maximum-severity security flaw in Entra ID that it said has been exploited in the...

21. Aug. 2026 Keine Kommentare
🟠 CVE-2020-37267: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2020-37267: High Schwachstelle

Renovate versions >=19.180.0 and

21. Aug. 2026 Keine Kommentare
Sakura Internet hack exposes data of up to 1.36 million accounts CLOUD-SICHERHEIT

Sakura Internet hack exposes data of up to 1.36 million accounts

Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract...

20. Aug. 2026 Keine Kommentare
Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second CLOUD-SICHERHEIT

Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second

Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) from a...

20. Aug. 2026 Keine Kommentare
Silent ‚TwinLoot‘ Cyber Threat Operates Entirely From Microsoft’s Cloud CLOUD-SICHERHEIT

Silent ‚TwinLoot‘ Cyber Threat Operates Entirely From Microsoft’s Cloud

The Python-based malware framework takes living-off-the-land tactics to a new heights of stealth, with a modular implant that steals credentials...

19. Aug. 2026 Keine Kommentare
Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps CLOUD-SICHERHEIT

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on...

19. Aug. 2026 Keine Kommentare