IT-Sicherheit · Aktuell

IT Security News

Aktuelle Meldungen zu IT-Sicherheit, Cyberbedrohungen und Datenschutz — automatisch kuratiert aus führenden Quellen.

BleepingComputer04. Aug. 2026

TP-Link patches Omada ZTP flaws allowing hackers to breach networks

TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE). [...]

Weiterlesen
BleepingComputer04. Aug. 2026

Phishing service spoofs RingCentral to steal Microsoft 365 accounts

The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]

Weiterlesen
BleepingComputer04. Aug. 2026

New XCSSET variant targets macOS devs via compromised Xcode projects

A new version of the XCSSET malware is targeting thousands of macOS users through compromised Xcode projects and GitHub repositories. [...]

Weiterlesen
BleepingComputer04. Aug. 2026

77 Open VSX extensions found harvesting developer info

77 extensions on the Open VSX marketplace impersonated legitimate developer tools while transmitting information about the systems and development environments where they were installed. [...]

Weiterlesen
Microsoft Security04. Aug. 2026

Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps

Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSe

Weiterlesen
Microsoft Security04. Aug. 2026

128 Seconds to disruption: Microsoft Defender stops ransomware at QNET

Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops

Weiterlesen
The Hacker News04. Aug. 2026

Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens

The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a rapidly growing cyber threat that abuses the legitimate OAuth 2.

Weiterlesen
BleepingComputer04. Aug. 2026

Massive ChainDrop npm supply-chain attack infects hundreds of packages

Self-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion monthly downloads on the Node Package Manager (npm) registry. [...]

Weiterlesen
BleepingComputer04. Aug. 2026

Varonis Agent IBAC keeps AI agents within their intended boundaries

AI agents need broad access to be useful, but traditional access controls cannot determine whether an action aligns with a user's intent. Varonis explains how Agent IBAC detects intent drift and enforces real-time guardr

Weiterlesen
The Hacker News04. Aug. 2026

Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks

A credential-stealing npm worm that first appeared in keyv@6.0.0 spread beyond the Keyv and Cacheable namespaces into hundreds of packages across multiple organizations on August 4, 2026. SafeDep verified 353 poisoned ve

Weiterlesen
The Hacker News04. Aug. 2026

Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access

Cybersecurity researchers have disclosed details of an active, multi-wave campaign that employs social engineering lures themed around Adobe and Zoom software updates, business document reviews, and system maintenance ut

Weiterlesen
Fortinet FortiGuard04. Aug. 2026

QuickFox Supply Chain Attack Used to Deploy FDMTP Implant

The FortiGuard Labs Incident Response team analyzes a QuickFox supply chain attack that used trojanized Windows installers, selective targeting, and an evolving FDMTP implant           

Weiterlesen
SANS ISC04. Aug. 2026

Botnet Hunting for Vulnerabilities in Diagnostic Tools, (Tue, Aug 4th)

This morning, I noticed specific sources "hunting" for vulnerabilities in URLs that I haven&&#x23&#x3b;x26&#x3b;&#x23&#x3b;39&#x3b;t noticed before. All of these URLs appear to be associated with diagnostic tools: 

Weiterlesen
Heise Security04. Aug. 2026

Check Point: Angreifer können Security-Management-Server übernehmen

Aufgrund einer Sicherheitslücke können Angreifer die IT-Sicherheitslösung Security Management von Check Point attackieren. Hotfixes stehen zum Download.

Weiterlesen
Kaspersky SecureList04. Aug. 2026

How legitimate cloud platforms enable phishers to bypass MFA

We cover a cloud-based AitM attack scenario leveraging service workers and Ultraviolet, and provide detailed phishing hosting statistics across platforms like Cloudflare Workers, Vercel, Netlify, GitHub Pages, and IPFS.

Weiterlesen
The Hacker News04. Aug. 2026

When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted

The cybersecurity industry has spent decades assuming that offensive capability scales with technical expertise. That assumption is starting to break. Security teams have long estimated risk by ranking attacker sophistic

Weiterlesen
The Hacker News04. Aug. 2026

Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent

Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing a

Weiterlesen
Golem Security04. Aug. 2026

Bug-Bounty-Rekord: Microsoft verteilt 20 Millionen US-Dollar an IT-Forscher

Microsoft hat einen neuen Rekord bei der Ausschüttung seiner Bug-Bounty-Prämien aufgestellt. Für die Forscher war das aber nicht unbedingt von Vorteil. (<a href="https://www.golem.de/specials/sicherheitsluecke/">Sicherhe

Weiterlesen
The Hacker News04. Aug. 2026

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity.

Weiterlesen
Heise Security04. Aug. 2026

Jetzt patchen! Angreifer attackieren N-able N-central

N-ables Endpoint-Managementlösung N-central ist verwundbar und Angreifer attackieren bereits Instanzen. Admins sollten zügig handeln.

Weiterlesen
The Hacker News04. Aug. 2026

DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT

A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims' browser cache and ultimately deliver CountLoader and a previously undocume

Weiterlesen
Golem Security04. Aug. 2026

Anzeige: Tapo C610 Außenkamera mit Solarpanel zum Tiefpreis nur 66 Euro bei Amazon

Die Tapo C610 überwacht kabellos, dreht sich bis 360 Grad und filmt nachts in Farbe. Bei Amazon ist sie jetzt deutlich günstiger zu haben. (<a href="https://www.golem.de/specials/technik-und-hardware/">Technik/Hardware</

Weiterlesen
The Hacker News04. Aug. 2026

CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog following reports of active e

Weiterlesen
Golem Security04. Aug. 2026

Vereinigtes Königreich: Hacker leaken Daten von über 100.000 Polizisten

Eine Cybergang hat eine Polizei-Datenbank des Vereinigten Königreichs geplündert und persönliche Daten unzähliger Strafverfolger veröffentlicht. (<a href="https://www.golem.de/specials/cybercrime/">Cybercrime</a>, <a hre

Weiterlesen
Heise Security04. Aug. 2026

Wenn die IT ausfällt: Krisensimulation für Krankenhäuser

Wie Krankenhäuser bei IT-Ausfällen reagieren, testet Nico Brüggemann vom Fraunhofer SIT. Er erklärt, warum Abläufe oft nur auf dem Papier funktionieren.

Weiterlesen
Heise Security04. Aug. 2026

Seed phrases leicht zu erraten: Kryptodiebe leeren Offline-Wallets

Offline-Wallets sollen besonders sicher sein. Doch wenn der Zufallsgenerator nicht arbeitet, ist die seed phrase nicht wirklich geheim.

Weiterlesen
SANS ISC04. Aug. 2026

ISC Stormcast For Tuesday, August 4th, 2026 https://isc.sans.edu/podcastdetail/10036, (Tue, Aug 4th)

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Weiterlesen
BleepingComputer04. Aug. 2026

Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts

Microsoft has linked a global campaign targeting hospitality Wi-Fi networks to the Russian threat actor Midnight Blizzard, also known as APT29. [...]

Weiterlesen
BleepingComputer03. Aug. 2026

New Pass-ta-key attacks let malware hijack Google-synced passkeys

Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over accounts, bypass user verification, and extract

Weiterlesen
BleepingComputer03. Aug. 2026

New DOUBLECUP ClickFix service hides malware in browser cache images

A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims' browsers, ultimately delivering CountLoader to Windows and macOS devices and a new remote ac

Weiterlesen
BleepingComputer03. Aug. 2026

Fake Roblox Xeno script launcher pushes infostealer, RAT malware

Fake Xeno Executor installers are infecting unsuspecting Roblox players with malware that provides remote access and steals sensitive information. [...]

Weiterlesen
Heise Security03. Aug. 2026

Neue Malware-Welle: Arch Linux blockiert AUR-Updates

Erneut verbreitet sich Malware über Arch User Repositorys. Daher gibt es vorerst überhaupt keine Updates für AUR.

Weiterlesen
The Hacker News03. Aug. 2026

18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

Cybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software su

Weiterlesen
BleepingComputer03. Aug. 2026

N-able warns of N-central auth bypass flaw exploited in attacks

N-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting both hosted and on-premises N-central servers. [...]

Weiterlesen
The Hacker News03. Aug. 2026

Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts

Malware running as an ordinary user on a Windows machine can sign into a victim's passkey-protected accounts without a fingerprint, a PIN, or anything at all appearing on the victim's screen. Unit 42 detailed three attac

Weiterlesen
The Hacker News03. Aug. 2026

INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws

The INC Ransomware operation has emerged as the "dominant threat actor" exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances. In a report published over the

Weiterlesen
Golem Security03. Aug. 2026

KI-Verhaltensscanner in Berlin: Mit Strichmännchen zu mehr Sicherheit

Die KI-gestützte Verhaltens- und Situationserkennung im öffentlichen Raum in Berlin soll bereits im August 2026 starten. (<a href="https://www.golem.de/specials/ki/">KI</a>, <a href="https://www.golem.de/specials/datensc

Weiterlesen
Heise Security03. Aug. 2026

KI-generierte Bugs: Apple zieht die Notbremse

Apple reagiert auf die Flut von KI-generierten Sicherheitsmeldungen und begrenzt die Einreichungen pro Person.

Weiterlesen
BleepingComputer03. Aug. 2026

ExfilSquad hackers leak info of over 100,000 UK police officers, staff

A cyberattack on the U.K.'s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals. [...]

Weiterlesen
BleepingComputer03. Aug. 2026

Inside the Underground Business of the Android BTMOB RAT malware

Flare researchers analyzed thousands of underground posts to examine how the BTMOB Android malware operation evolved into a fragmented ecosystem of resellers, source-code vendors, custom versions, and competing sales cha

Weiterlesen

Wird alle 30 Minuten aktualisiert · CH/DE: BACS Schweiz, BSI, Allianz Cyber-Sicherheit, Heise Security, Golem · EN: BleepingComputer, The Hacker News, Fortinet, SANS ISC, Microsoft Security, Krebs on Security, Kaspersky