Netzwerksicherheit

‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism NETZWERKSICHERHEIT

‘HalluSquatting’ Turns AI Hallucinations Into Botnet Delivery Mechanism

Researchers demonstrate adversarial hallucination squatting against popular AI assistants to achieve remote code execution. The post ‘HalluSquatting’ Turns AI Hallucinations...

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-10665: High Schwachstelle NETZWERKSICHERHEIT

🟠 CVE-2026-10665: High Schwachstelle

In Zephyr's WireGuard subsystem (subsys/net/lib/wireguard), wg_process_data_message() in wg_crypto.c linearizes an inbound transport-data payload into a fixed pool buffer of CONFIG_WIREGUARD_BUF_LEN...

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-10666: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-10666: High Schwachstelle

parse_ipv4() in subsys/net/ip/utils.c (reached via net_ipaddr_parse() for strings of the form "a.b.c.d:port") copies the port substring into a fixed 17-byte...

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-58596: High Schwachstelle NETZWERKSICHERHEIT

🟠 CVE-2026-58596: High Schwachstelle

Untrusted pointer dereference in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-58281: High Schwachstelle NETZWERKSICHERHEIT

🟠 CVE-2026-58281: High Schwachstelle

Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-61429: High Schwachstelle NETZWERKSICHERHEIT

🟠 CVE-2026-61429: High Schwachstelle

PraisonAI versions before 1.6.78 contain a server-side request forgery vulnerability in the Crawl4AI/Chromium backend that allows attackers to bypass SSRF...

13. Juli 2026 Keine Kommentare
🟠 CVE-2026-61876: High Schwachstelle NETZWERKSICHERHEIT

🟠 CVE-2026-61876: High Schwachstelle

LuCI versions fail to properly encode DHCPv6 lease hostnames before rendering in status tables, allowing adjacent network attackers to inject...

13. Juli 2026 Keine Kommentare
When Too Much Security Data Becomes the Risk NETZWERKSICHERHEIT

When Too Much Security Data Becomes the Risk

Rapid growth turned routine firewall logs into a security and budget liability. One CISO used artificial intelligence to filter what data...

12. Juli 2026 Keine Kommentare
‚BusySnake‘ Infostealer Slithers Into Critical Infrastructure Networks NETZWERKSICHERHEIT

‚BusySnake‘ Infostealer Slithers Into Critical Infrastructure Networks

A threat group researchers call "Armored Likho" has gained access to government agencies and electrical power entities in Russia, Brazil,...

12. Juli 2026 Keine Kommentare
🟠 CVE-2026-60091: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-60091: High Schwachstelle

PraisonAI before 4.6.78 contains an unauthenticated server-side request forgery vulnerability in the Jobs API /api/v1/runs endpoint. The webhook_url parameter is...

12. Juli 2026 Keine Kommentare