Cloud-Sicherheit

In Other News: Apple Patches Beats Eavesdropping Flaw, DOT Closes Delta CrowdStrike Probe, AWS Conti CLOUD-SICHERHEIT

In Other News: Apple Patches Beats Eavesdropping Flaw, DOT Closes Delta CrowdStrike Probe, AWS Conti

Other noteworthy stories that might have slipped under the radar: Android TV botnet Popa linked to Israeli firm, Velvet Ant...

20. Juni 2026 Keine Kommentare
Salesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer Data CLOUD-SICHERHEIT

Salesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer Data

Salesforce has revealed that it disabled the Klue Battlecards app integration within its platform in response to a security incident...

20. Juni 2026 Keine Kommentare
F5 issues out-of-band patches for critical NGINX vulnerabilities CLOUD-SICHERHEIT

F5 issues out-of-band patches for critical NGINX vulnerabilities

Cybersecurity company F5 has released out-of-band security updates to address multiple NGINX web server vulnerabilities, including two critical-severity flaws that...

19. Juni 2026 Keine Kommentare
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories CLOUD-SICHERHEIT

ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories

The internet did not break this week. It got used exactly as designed, which is worse. Searches were siphoned through...

19. Juni 2026 Keine Kommentare
🟠 CVE-2026-8176: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-8176: High Schwachstelle

The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Privilege Escalation to Administrator...

18. Juni 2026 Keine Kommentare
Joomla, LiteSpeed Vulnerabilities Exploited in Attacks CLOUD-SICHERHEIT

Joomla, LiteSpeed Vulnerabilities Exploited in Attacks

The flaws allow attackers to execute arbitrary PHP code and gain root privileges on shared hosting servers. The post Joomla,...

17. Juni 2026 Keine Kommentare
Critical Fortinet FortiSandbox flaws now exploited in attacks CLOUD-SICHERHEIT

Critical Fortinet FortiSandbox flaws now exploited in attacks

Attackers are now exploiting several critical vulnerabilities in Fortinet's FortiSandbox cyber threat detection platform, according to threat intelligence company Defused....

17. Juni 2026 Keine Kommentare
🟠 CVE-2026-54420: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-54420: High Schwachstelle

LiteSpeed cPanel plugin before 2.4.8 (as distributed in LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks provided by a user with...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-7368: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-7368: High Schwachstelle

The Yarbo cloud does not enforce per-device or per-user authorization. Any client possessing valid credentials, whether the shared hard-coded credentials...

14. Juni 2026 Keine Kommentare
🔴 CVE-2026-50084: Critical Schwachstelle CLOUD-SICHERHEIT

🔴 CVE-2026-50084: Critical Schwachstelle

The Aqara Cloud Production API (open-cn.aqara.com/v3.0/open/api) would authorize any valid developer token for access to any account. This is an...

14. Juni 2026 Keine Kommentare