Cloud-Sicherheit

The ‚Industrial Accidents‘ Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed CLOUD-SICHERHEIT

The ‚Industrial Accidents‘ Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed

Rich Mogull, chief analyst with the Cloud Security Alliance, joins the Dark Reading News Desk with what defenders need to...

25. Aug. 2026 Keine Kommentare
🟠 CVE-2026-10582: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-10582: High Schwachstelle

Hugo's security.http.urls allowlist is the only control on outbound fetches made by resources.GetRemote, and it inspects the URL text alone....

25. Aug. 2026 Keine Kommentare
Silent ‚TwinLoot‘ Cyber Threat Operates Entirely From Microsoft’s Cloud CLOUD-SICHERHEIT

Silent ‚TwinLoot‘ Cyber Threat Operates Entirely From Microsoft’s Cloud

The Python-based malware framework takes living-off-the-land tactics to a new heights of stealth, with a modular implant that steals credentials...

24. Aug. 2026 Keine Kommentare
The ‚Industrial Accidents‘ Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed CLOUD-SICHERHEIT

The ‚Industrial Accidents‘ Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed

Rich Mogull, chief analyst with the Cloud Security Alliance, joins the Dark Reading News Desk with what defenders need to...

24. Aug. 2026 Keine Kommentare
N-able Bug Exposes Password Vault Master Keys CLOUD-SICHERHEIT

N-able Bug Exposes Password Vault Master Keys

The popular "Passportal" password manager, favored by MSPs and SMBs, remains risky even after its patch, thanks to its cloud-based...

23. Aug. 2026 Keine Kommentare
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit CLOUD-SICHERHEIT

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-47827: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-47827: High Schwachstelle

Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell commands...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-77775: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-77775: High Schwachstelle

Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_openai_upstream_base in headroom/proxy/handlers/openai.py accepts the...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-61400: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-61400: High Schwachstelle

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache CloudStack's run and get diagnostics functionality...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-50112: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-50112: High Schwachstelle

SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a template pointing to an attacker-controlled metalink file containing...

23. Aug. 2026 Keine Kommentare