Endpunktsicherheit
🔴 CVE-2026-53787: Critical Schwachstelle
Amasty Order Attributes for Magento 2 before version 4.0.0 contains an unauthenticated arbitrary file upload vulnerability that allows unauthenticated attackers...
Ukrainian national pleads guilty to role in Conti ransomware operation
A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to...
ENDPUNKTSICHERHEIT
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit
Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts...
🟠 CVE-2026-10847: High Schwachstelle
A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may...
ENDPUNKTSICHERHEIT
The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm
A new analysis of The Gentlemen operation has revealed that the financially motivated threat group initially operated as an affiliate...
ENDPUNKTSICHERHEIT
New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML Files
Security researcher Chaotic Eclipse (aka Nightmare-Eclipse and MSNightmare) has released a new Windows BitLocker bypass dubbed GreatXML, a day after...
🟠 CVE-2026-9045: High Schwachstelle
During an internal security assessment, a potential vulnerability was discovered in Lenovo Accessories and Display Manager for Enterprise for Windows...
🟠 CVE-2026-52750: High Luecke in Nsa Ghidra
Ghidra before 12.1 contains a command injection vulnerability in URL annotation handling on Windows where cmd.exe metacharacters are not properly...
🔴 CVE-2026-9067: Critical Schwachstelle
The Schema & Structured Data for WP & AMP WordPress plugin before 1.60 does not check user capabilities on its...
🔴 CVE-2026-53470: Critical Schwachstelle
A flaw was found in migration-planner. An authenticated attacker could exploit an improper access control vulnerability in the `/api/v1/sources/{id}/image-url` endpoint....