Endpunktsicherheit

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users ENDPUNKTSICHERHEIT

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users

A new banking fraudulent operation is targeting customers of Mexican banks, fintech, payment processors, and cryptocurrency exchanges using ClickFix lures....

09. Juli 2026 Keine Kommentare
AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers ENDPUNKTSICHERHEIT

AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers

Sophos looked at a week of its own endpoint data and found that AI coding agents such as Claude Code,...

09. Juli 2026 Keine Kommentare
🟡 CVE-2026-49487: Medium Schwachstelle ENDPUNKTSICHERHEIT

🟡 CVE-2026-49487: Medium Schwachstelle

In Apache Airflow before 3.3.0, the REST API task-instance detail and list endpoints returned a deferred task's trigger kwargs without...

09. Juli 2026 Keine Kommentare
🟠 CVE-2026-59708: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-59708: High Schwachstelle

The GET /api/v1/public/:accessId/portfolio endpoint in ghostfolio accepts private access IDs without validating granteeUserId filtering, allowing unauthenticated access to full portfolio...

09. Juli 2026 Keine Kommentare
🟠 CVE-2026-14476: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-14476: High Schwachstelle

A path traversal flaw was found in SSSD's AD GPO provider. The ad_gpo_extract_smb_components() function does not sanitize .. sequences in...

09. Juli 2026 Keine Kommentare
🟠 CVE-2026-13020: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-13020: High Schwachstelle

A Weak Password Recovery Mechanism for Forgotten Password exists in Esri Portal for ArcGIS versions 12.1 and earlier on Windows,...

09. Juli 2026 Keine Kommentare
🔴 CVE-2026-59800: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-59800: Critical Schwachstelle

9Router before 0.4.44 contains an OS command injection vulnerability in the unauthenticated POST /api/tunnel/tailscale-install endpoint (this route is not covered...

09. Juli 2026 Keine Kommentare
🔴 CVE-2026-13019: Critical Schwachstelle CLOUD-SICHERHEIT

🔴 CVE-2026-13019: Critical Schwachstelle

Esri Portal for ArcGIS versions 12.1 and earlier on Windows, Linux and Kubernetes have a missing authentication for critical function...

09. Juli 2026 Keine Kommentare
🔴 CVE-2026-14345: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-14345: Critical Schwachstelle

The WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell plugin for WordPress is vulnerable to Remote...

09. Juli 2026 Keine Kommentare
Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker ENDPUNKTSICHERHEIT

Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker

U.S. prosecutors linked an alleged Scattered Spider hacker to a break-in at a luxury jewelry retailer using a persistent Windows...

08. Juli 2026 Keine Kommentare