Netzwerksicherheit

‚BusySnake‘ Infostealer Slithers Into Critical Infrastructure Networks NETZWERKSICHERHEIT

‚BusySnake‘ Infostealer Slithers Into Critical Infrastructure Networks

A threat group researchers call "Armored Likho" has gained access to government agencies and electrical power entities in Russia, Brazil,...

19. Juli 2026 Keine Kommentare
Police Disrupt a €140M Cyber Fraud Ring in Spain NETZWERKSICHERHEIT

Police Disrupt a €140M Cyber Fraud Ring in Spain

Iberian hackers carried out a variety of cyberattacks and laundered the winnings through complex financial networks....

19. Juli 2026 Keine Kommentare
🟡 CVE-2026-63096: Medium Schwachstelle ENDPUNKTSICHERHEIT

🟡 CVE-2026-63096: Medium Schwachstelle

Dendrite through 0.13.8 contains a server-side request forgery vulnerability that allows unauthenticated attackers to cause the server to open outbound...

19. Juli 2026 Keine Kommentare
🟠 CVE-2026-13410: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-13410: High Schwachstelle

Dancer::Plugin::Auth::Google versions through 0.07 for Perl have TLS verification disabled. The default user agent is initialised with SSL_verify_mode explicitly disabled....

19. Juli 2026 Keine Kommentare
HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload NETZWERKSICHERHEIT

HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload

A vulnerability dubbed HollowByte allows unauthenticated attackers to trigger a denial-of-service (DoS) condition on OpenSSL servers with a malicious payload...

18. Juli 2026 Keine Kommentare
ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files NETZWERKSICHERHEIT

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

ACR Stealer, an infostealer in circulation since 2024, is walking out of enterprise networks with saved browser passwords, live session...

18. Juli 2026 Keine Kommentare
🟠 CVE-2026-63306: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-63306: High Schwachstelle

stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrary URLs...

18. Juli 2026 Keine Kommentare
🔴 CVE-2026-14890: Critical Schwachstelle NETZWERKSICHERHEIT

🔴 CVE-2026-14890: Critical Schwachstelle

SGLang uses an expert-parallel backup subsystem that exposes a ZeroMQ PULL socket on a routable network interface that does not...

18. Juli 2026 Keine Kommentare
Google Gemini CLI abused as a hacking agent, malware botnet operator NETZWERKSICHERHEIT

Google Gemini CLI abused as a hacking agent, malware botnet operator

A Russian-speaking threat actor known as "bandcampro" used Google's open-source Gemini CLI AI tool as a hacking agent and to...

17. Juli 2026 Keine Kommentare
New Spirals ransomware encrypts victim network in under 24 hours NETZWERKSICHERHEIT

New Spirals ransomware encrypts victim network in under 24 hours

A new ransomware actor called Spirals completed a corporate intrusion, from initial access to data theft and encryption, in less...

17. Juli 2026 Keine Kommentare