Cloud-Sicherheit

🟠 CVE-2026-67620: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-67620: High Schwachstelle

Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity.ts, where the DEFAULT_DENY_LIST omits...

10. Aug. 2026 Keine Kommentare
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model CLOUD-SICHERHEIT

AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model

Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an...

09. Aug. 2026 Keine Kommentare
Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses CLOUD-SICHERHEIT

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses

Cybersecurity researchers have disclosed a security issue with Apple's iCloud Private Relay tool that can expose a user's real IP...

09. Aug. 2026 Keine Kommentare
🟡 CVE-2026-15359: Medium Schwachstelle CLOUD-SICHERHEIT

🟡 CVE-2026-15359: Medium Schwachstelle

The Templately WordPress plugin before 3.7.1 does not have an authorisation check on one of its request handlers, allowing unauthenticated...

09. Aug. 2026 Keine Kommentare
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets CLOUD-SICHERHEIT

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners...

08. Aug. 2026 Keine Kommentare
UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data CLOUD-SICHERHEIT

UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data

A recent wave of cyber attacks targeting financial services, private equity, and professional services has been attributed to a data...

08. Aug. 2026 Keine Kommentare
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories CLOUD-SICHERHEIT

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among...

07. Aug. 2026 Keine Kommentare
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score Bugs CLOUD-SICHERHEIT

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score Bugs

Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part...

07. Aug. 2026 Keine Kommentare
Canadian pleads guilty to Snowflake cloud data-theft attacks CLOUD-SICHERHEIT

Canadian pleads guilty to Snowflake cloud data-theft attacks

A Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing...

06. Aug. 2026 Keine Kommentare
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug CLOUD-SICHERHEIT

Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug

HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and...

06. Aug. 2026 Keine Kommentare