⬇ Aktuelle
DARK READING 🔴 KRITISCH 27. Juli 2026

Adversaries Don’t Need a Zero-Day — They Read Your Rulebook

Confidence in autonomous security tools is declining, and here’s why.

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 24. Juli 2026

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say

Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for stock Redis 6.2.22, 7.4.9, 8.6.4, and 8.8.0. All four chains…

Weiterlesen →
HEISE SECURITY 🔴 KRITISCH 24. Juli 2026

Kimi K3: Chinesische KI findet mehrere Zero-Day-Lücken in redis-Datenbank

Ein IT-Forscher hat mit der chinesischen KI Kimi K3 mehrere Zero-Day-Lücken in der redis-Datenbank entdeckt. Updates bestätigen die Funde.

Weiterlesen →
DARK READING PHISHING 🔴 KRITISCH 24. Juli 2026

Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets

A state-sponsored threat group, dubbed "Laundry Bear," sends "half-click" phishing emails that require a victim only to open or preview the message.

Weiterlesen →
THE HACKER NEWS APT 🔴 KRITISCH 24. Juli 2026

Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes

A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra’s webmail client. The payload goes after the last 90…

Weiterlesen →
KREBS ON SECURITY PHISHING 🔴 KRITISCH 23. Juli 2026

Felons, Fraudsters Flog Offensive Cybersecurity Startup

A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and…

Weiterlesen →
DARK READING RANSOMWARE 🔴 KRITISCH 23. Juli 2026

Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain

A cyberattack on a food and logistics firm disrupts the supply of frozen food to thousands of clients, including major franchises like Kentucky Fried Chicken.

Weiterlesen →
THE HACKER NEWS RANSOMWARE 🔴 KRITISCH 21. Juli 2026

Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access

Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to deploy Qilin (aka Agenda) ransomware on…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 21. Juli 2026

AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

Hidden text on a web page was enough to make Kiro, AWS’s agentic coding IDE, rewrite its own configuration file and run an attacker’s code…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 21. Juli 2026

WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning

Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (RCE) and complete compromise of vulnerable…

Weiterlesen →
SANS 🔴 KRITISCH 21. Juli 2026

WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)

Last week, Searchlight Cyber released details about a vulnerability they are calling „wp2shell“. The vulnerability was initially announced without a CVE number. But now has…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 20. Juli 2026

New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction

Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer overflow in…

Weiterlesen →
CERT WARNUNG 🔴 KRITISCH 20. Juli 2026

Kritische Sicherheitslücke in Drupal Core – Updates verfügbar

20. Mai 2026 Beschreibung In Drupal Core existiert eine SQL-Injection-Schwachstelle in der Datenbank-Abstraktions-API. Speziell gestaltete Anfragen können zu beliebigen SQL-Injections führen. Die Schwachstelle ist ausschließlich…

Weiterlesen →
CERT WARNUNG 🔴 KRITISCH 20. Juli 2026

Kritische Sicherheitslücken in WordPress – Updates verfügbar

20. Juli 2026 Beschreibung In WordPress existieren zwei Sicherheitslücken. Eine SQL-Injection-Schwachstelle im Parameter „author__not_in“ von „WP_Query“ betrifft WordPress ab Version 6.8. Ab WordPress 6.9 lässt…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 20. Juli 2026

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker process with…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 19. Juli 2026

SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access

A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances as zero-days…

Weiterlesen →
DARK READING RANSOMWARE 🔴 KRITISCH 18. Juli 2026

Inc Ransomware Exploits SonicWall SMA Zero-Days

When chained together, the two vulnerabilities allow threat actors to gain root-level capabilities on SonicWall’s mobile access appliances.

Weiterlesen →
HEISE SECURITY 🔴 KRITISCH 16. Juli 2026

Full Disclosure als Notwehr: Der Cursor Zero Day

Jürgen Schmidt, Leiter von heise security, erklärt, warum Responsible und Coordinated Disclosure keine Zukunft mehr haben.

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 15. Juli 2026

Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday

Security researcher Chaotic Eclipse (aka Nightmare-Eclipse) has released a new proof-of-concept (PoC) exploit called LegacyHive. It has been described as a Windows User Profile Service…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 15. Juli 2026

Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands

SonicWall has warned of active exploitation of two zero-day vulnerabilities impacting Secure Mobile Access (SMA) 1000 series appliances, one of which could be exploited to…

Weiterlesen →
HEISE SECURITY 🔴 KRITISCH 15. Juli 2026

SonicWall SMA1000: Angriffe auf teils kritische Zero-Day-Lücken

SonicWall warnt vor Angriffen auf teils höchst kritische Zero-Day-Lücken in SMA1000-Appliances. SonicWall bietet einen Hotfix und IOCs.

Weiterlesen →
CERT WARNUNG 🔴 KRITISCH 15. Juli 2026

Kritische Sicherheitslücken in SonicWall SMA1000 Series – aktiv ausgenutzt – Updates verfügbar

15. Juli 2026 Beschreibung In den SonicWall SMA1000 Series Appliances existieren mehrere Sicherheitslücken. Die schwerwiegendere der beiden Schwachstellen ermöglicht es Angreifer:innen aus der Ferne und…

Weiterlesen →
DARK READING 🔴 KRITISCH 15. Juli 2026

Records Are Made to Be Broken: Patch Tuesday Raises Triage Stakes

Three of the 622 CVEs for which Microsoft issued patches this week are zero-days; there are more than 60 critical vulnerabilities.

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 15. Juli 2026

Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack

Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that attackers are already exploiting. The release covers 622…

Weiterlesen →
THE HACKER NEWS RANSOMWARE 🔴 KRITISCH 14. Juli 2026

U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support

The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has designated two individuals and a VPN service provider for enabling ransomware actors‘ and other…

Weiterlesen →
THE HACKER NEWS 🔴 KRITISCH 13. Juli 2026

iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two maximum-severity security flaws impacting iCagenda and Balbooa extensions for Joomla to its Known Exploited…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 28. Juli 2026

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 27. Juli 2026

⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More

Monday starts with the usual promise that everything is under control. Then the logs wake up. This week, trusted tools crossed lines, old flaws found…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 27. Juli 2026

Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw

Public exploit details released on July 27 show how an unauthenticated request can reach PHP’s eval() function inside vBulletin and execute code on an unpatched…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 25. Juli 2026

Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s JSON library for Java. In affected Spring Boot applications, a…

Weiterlesen →
THE HACKER NEWS RANSOMWARE 🟠 HOCH 25. Juli 2026

Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed PTC Windmill and…

Weiterlesen →
THE HACKER NEWS DATENLECK 🟠 HOCH 25. Juli 2026

Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. It runs…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 24. Juli 2026

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers

A crafted SVG submitted to Bing’s image search ran commands as NT AUTHORITY\SYSTEM on Microsoft’s production image-processing workers, and as root on the Linux machines…

Weiterlesen →
THE HACKER NEWS PHISHING 🟠 HOCH 24. Juli 2026

ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link

Cybersecurity researchers have disclosed a critical vulnerability in OpenAI’s ChatGPT Workspace Agents that could have allowed a single phishing link to stealthily build, authorize, and…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 24. Juli 2026

Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller

Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a certificate for a Domain…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 24. Juli 2026

NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats

Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity and…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 24. Juli 2026

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed…

Weiterlesen →
SCHNEIER ON SECURITY 🟠 HOCH 23. Juli 2026

End-to-End Encryption and “Going Dark”

New paper: “Encryption and Globalization 15 Years Later: End-to-End Encryption and the Third Round of the ‘Going Dark’ Debate“: Abstract: This Article updates and expands…

Weiterlesen →
DARK READING 🟠 HOCH 23. Juli 2026

Flaws in Passkey Implementation Show Old Attacks Still Work

Ahead of Black Hat USA, researchers find exploitable flaws in how Microsoft handles passkeys that could allow attackers to impersonate privileged users.

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 23. Juli 2026

Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access

Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a critical flaw that has come…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 23. Juli 2026

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS…

Weiterlesen →
DARK READING PHISHING 🟠 HOCH 23. Juli 2026

Fake Bahrain Alert App Deploys Android Surveillance Malware

A malicious application delivers four-stage Android spyware via phony Google Play sites, exploiting civilian fear during Iranian missile strikes.

Weiterlesen →
DARK READING 🟠 HOCH 23. Juli 2026

Attackers Are Learning to Live Off the AI Toolchain

Sandworm_Mode is an early example of malware that exploits trusted AI tools and workflows to make malicious activity virtually indistinguishable from normal activity.

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 23. Juli 2026

Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data

Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million users, which, if exploited,…

Weiterlesen →
THE HACKER NEWS 🟠 HOCH 23. Juli 2026

GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier

Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from $20,000-$30,000+…

Weiterlesen →
DARK READING APT 🟢 NIEDRIG 28. Juli 2026

AI Agent Drives Espionage Attack on Thai Ministry of Finance

Attackers used Hermes, an autonomous open source tool, in unrestricted "YOLO mode" to conduct espionage against Thailand’s Ministry of Finance.

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 28. Juli 2026

Onlinedienst X startet in den USA Bankdienst namens X Money

Über den Dienst können Nutzer Geld einzahlen, Rechnungen begleichen, Überweisungen vornehmen und einander kostenlos und unmittelbar Geld schicken, ohne die App zu verlassen

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 28. Juli 2026

Verkehrsforscher: Waymo-Robotaxis fahren deutlich sicherer als Menschen

Paper legt Sicherheitsvorteile nahe, allerdings hat die Auswertung auch Schwächen

Weiterlesen →
HEISE SECURITY 🟡 MITTEL 28. Juli 2026

Angriffe auf FortiOS und Arista VeloCloud beobachtet

Die IT-Sicherheitsbehörde CISA meldet Angriffe auf Sicherheitslücken in Fortinet FortiOS sowie Arista VeloCloud.

Weiterlesen →
DARK READING RANSOMWARE 🟢 NIEDRIG 28. Juli 2026

FBI: Breaking Affiliate Trust Sped Along LockBit’s Takedown

An FBI agent explains how the mulitnational law-enforcement Operation Cronos was successful in disrupting the largest ransomware group of its time.

Weiterlesen →
DARK READING 🟢 NIEDRIG 28. Juli 2026

‚Confused Deputy‘ Flaws Persist in Google Cloud, Microsoft Azure

This category of vulnerabilities allows an attacker to easily acquire administrative level permissions and bypass cloud providers‘ access controls.

Weiterlesen →
THE HACKER NEWS 🟢 NIEDRIG 28. Juli 2026

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework

NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and…

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 28. Juli 2026

Nach OpenAI-Kontrollverlust: US-Abgeordnete fordern Kill Switch für KI-Modelle

Der Notausschalter soll in den Händen des US-Heimatschutzministeriums liegen

Weiterlesen →
THE HACKER NEWS PHISHING 🟢 NIEDRIG 27. Juli 2026

Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update

Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs „secure document“ lures to deliver legitimate remote monitoring and management (RMM) tools. „The victim…

Weiterlesen →
THE HACKER NEWS 🟡 MITTEL 27. Juli 2026

n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process

n8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute operating-system commands on the server running the automation platform. Security…

Weiterlesen →
THE HACKER NEWS DDOS 🟢 NIEDRIG 27. Juli 2026

Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption

Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockchain-based name services and infected-device relays after a March law-enforcement…

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Facebook plant großen Umbau und will aussehen wie Tiktok

Die Meta-Tochter will den Usern mehr „immersive, visuelle und videoorientierte Erfahrung“ bieten. Statt dem klassischen Feed soll nach dem Start der App ein Full-Screen-Video auftauchen

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Datenlöschung: US-Behörden klagen Smartphone-User wegen Sicherheitsfunktion an

Ein US-Bürger hatte bei der Einreise den erweiterten PIN-Schutz bei der Android-Variante GrapheneOS verwendet. Nun wird ihm Vernichtung von Beweismitteln vorgeworfen

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Apple bastelt an smarten Brillen, hadert aber noch mit dem Datenschutz

Wo werden Daten verarbeitet? Ist Gesichtserkennung möglich? Oder sollte man ganz auf die Kamera verzichten? Ungeklärte Fragen verschieben den Start der Apple-Smart-Glasses nach hinten

Weiterlesen →
HEISE SECURITY 🟢 NIEDRIG 27. Juli 2026

SourTrade: Browser kompiliert Malware

IT-Forscher haben eine mittels Malvertising verteilte Malware entdeckt. Die wird erst im Browser zusammengebaut.

Weiterlesen →
HEISE SECURITY 🟡 MITTEL 27. Juli 2026

Sicherheitsupdate: Dateitransferlösung MOVEit ist verwundbar

Mehrere Sicherheitslücken gefährden MOVEit-Server. Es gibt unter anderem Sicherheitsprobleme bei der Authentifizierung.

Weiterlesen →
WATCHLIST 🟢 NIEDRIG 27. Juli 2026

Geburtstagsgeschenk von Rituals? Vorsicht vor dieser Abofalle!

Viele bekannte Marken überraschen ihre Kund:innen zum Geburtstag mit kleinen Geschenken. Genau dieses Vertrauen machen sich Kriminelle zunutze: Sie verschicken gefälschte E-Mails im Namen von…

Weiterlesen →
SCHNEIER ON SECURITY 🟢 NIEDRIG 27. Juli 2026

Cognyte Sells a Mobile Cell Surveillance Van

Yet another Israeli mass surveillance company: Made by Israeli surveillance company Cognyte, the tech simulates a mobile phone tower, which forces nearby phones to connect…

Weiterlesen →
SANS 🟢 NIEDRIG 27. Juli 2026

Java Spring Boot „heapdump“ scans, (Mon, Jul 27th)

Spring Boot exposes the endpoint „/actuator/heapdump“ to collect debug information. By default, the endpoint will return a file heapdump.hprof, which includes a binary heapdump that…

Weiterlesen →
THE HACKER NEWS 🟢 NIEDRIG 27. Juli 2026

GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption

GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at least three days after a release is published before opening…

Weiterlesen →
THE HACKER NEWS 🟢 NIEDRIG 27. Juli 2026

TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments

Cybersecurity researchers have flagged fresh malicious cyber activity by a threat actor with ties to East Asia targeting government entities in the Middle East. The…

Weiterlesen →
THE HACKER NEWS PHISHING 🟢 NIEDRIG 27. Juli 2026

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware

The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Indian taxpayers, tax professionals, and corporate finance teams has been observed using…

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Buckeliger Waschbär „Jimothy“ entzückt das Netz

Die NASA reagiert begeistert, auch Google hat mittlerweile ein Easter Egg in seine Suchmaschine integriert

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Eutelsat und SES erhalten US-Milliarden für Freigabe von Frequenzen

US-Regierung bezahlt den Satellitenbetreibern 6,1 Milliarden Dollar

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Hirn aus, KI an: Kann man so einfach Geld verdienen?

Ein Vibecoding-Experiment zeigt, wie rasant sich KI-Tools weiterentwickeln und warum der Mensch trotzdem im Zentrum bleibt

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

Thermoakustische Wärmepumpen stehen vor dem Durchbruch auf den Markt

Geringer Wartungsaufwand, leiser Betrieb. Niederländisches Start-up BlueHeart Energy startet den Praxistest, der Verkauf könnte schon 2027 anlaufen

Weiterlesen →
HEISE SECURITY 🟡 MITTEL 27. Juli 2026

Lücke in macOS: Code von vertrauten Apps lässt sich unbemerkt austauschen

Zwei Entwickler demonstrieren, wie Angreifer unter bestimmten Umständen Code in Apps ersetzen können, den macOS anschließend ohne Warnung ausführt.

Weiterlesen →
HEISE SECURITY 🟢 NIEDRIG 27. Juli 2026

Russische Angreifer: Microsoft-365-Zugangsklau durch Hotel-Router

IT-Forscher haben unterwanderte Hotel-WLAN-Router entdeckt, durch die russische Angreifer Microsoft-365-Zugangsdaten abgreifen.

Weiterlesen →
HEISE SECURITY 🟡 MITTEL 27. Juli 2026

Angreifer können MongoDB abstürzen lassen und Daten manipulieren

Die MongoDB-Entwickler haben in aktuellen Versionen zahlreiche Sicherheitslücken geschlossen. Bislang gibt es keine Hinweise auf laufende Attacken.

Weiterlesen →
HEISE SECURITY 🟢 NIEDRIG 27. Juli 2026

Supply-Chain-Security: GitHub Dependabot verzögert Package-Updates um drei Tage

Aus Sicherheitsgründen wartet das GitHub-Tool nun drei Tage bis zum Erstellen von Pull Requests, wenn Versionsupdates für Dependencies erscheinen.

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

30 Minuten ohne Internet: Taiwan übt für den Ernstfall

Im Rahmen der jährlichen Zivilschutzübung will sich das Land darauf vorbereiten, sich auch ohne Web, Apps und soziale Medien zurechtzufinden. Im Hinterkopf: Ein Angriff aus…

Weiterlesen →
HEISE SECURITY 🟢 NIEDRIG 27. Juli 2026

Junge Cyberbande behauptet Datenklau bei Microsoft

Eine bislang unbekannte Cyberbande behauptet, vertrauliche Informationen bei Microsoft gestohlen zu haben. Vieles bleibt unklar.

Weiterlesen →
SANS DATENLECK 🟡 MITTEL 27. Juli 2026

Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)

ESAFENET's CDG showed up in our data before. The company focused on secure document management and data leakage prevention solutions. The „CDG“ stands for „Content…

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 27. Juli 2026

„Blood of Dawnwalker“: Schirchheitskur für den Vampirbösewicht

Ein Interview mit Ariana Siarkiewicz, die als Autorin an der Welt, den Charakteren und Quests des Spieles mitgewirkt hat

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 26. Juli 2026

Russland soll wegen Hackerangriffs eigenen Kampfjet abgeschossen haben

Die Su-57, welche der fünften Technologiegeneration zugeschrieben wird, stürzte nahe Moskau ab – der Kreml spricht von „technischem Versagen“

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 26. Juli 2026

Kardinal Marx sieht Papst-Sorge über autonome KI-Attacke bestätigt

Münchner Erzbischof: „Nur wir Menschen sollten bestimmen, was KI darf“

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 26. Juli 2026

Elon Musk’s vision of the future

The world’s richest man sits down with The Economist

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 26. Juli 2026

Ragnok RK104 im Test: Gute Split-Tastatur mit potthässlicher Software

Viele Features, leiser Anschlag, Hotswapping – und die vielleicht unansehnlichste Treibersoftware der Welt

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 26. Juli 2026

America’s AI labs are under threat from cheap Chinese rivals

Demand for open-weight models is soaring

Weiterlesen →
THE HACKER NEWS 🟢 NIEDRIG 26. Juli 2026

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

A malvertising operation dubbed SourTrade is making victims‘ browsers build the final Windows executable themselves, using a legitimate Bun runtime as its base instead of…

Weiterlesen →
DER STANDARD RANSOMWARE 🟢 NIEDRIG 25. Juli 2026

„Ein Stern gegen Dummheit“: Der verrückte Krieg um Google-Bewertungen

Zwischen Erpressung, Wut-Kommentaren und Lösch-Wahn: Warum wir uns beim Lokalbesuch wieder mehr auf unser Bauchgefühl verlassen sollten

Weiterlesen →
THE HACKER NEWS RANSOMWARE 🟢 NIEDRIG 25. Juli 2026

DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and…

Weiterlesen →
THE HACKER NEWS PHISHING 🟢 NIEDRIG 25. Juli 2026

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts…

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 25. Juli 2026

Nvidia und SK Group starten KI-Initiative über 500 Milliarden Dollar

Die Zusammenarbeit umfasst eine langfristige Partnerschaft für KI-Rechenzentren und Speicher

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 25. Juli 2026

Dorfromantik: Gemütlich-gemeinsamer Geländebau

Die deutsche Verbrettspielung des deutschen Erfolgscomputerspiels von 2022 kann mit seiner simpler Mechanik auch als Brettspiel überzeugen

Weiterlesen →
DER STANDARD 🟢 NIEDRIG 25. Juli 2026

Teslas Robotaxi-Traum trifft auf eine harte Realität

Der Service kommt auch ein Jahr nach dem Start kaum vom Fleck. Selbst Elon Musk klingt mittlerweile vergleichsweise gedämpft, wenn es um das Thema geht

Weiterlesen →
SCHNEIER ON SECURITY 🟢 NIEDRIG 25. Juli 2026

Friday Squid Blogging: Illex Squid Catch in the Falklands

Lower catch this year. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t…

Weiterlesen →
DARK READING 🟢 NIEDRIG 25. Juli 2026

Escape Artists: ‚Incorrigible‘ AI Models Resist Rehabilitation

The hacking of Hugging Face by a rogue OpenAI agent is significant, but unsurprising — and preventing the next AI model escape will be difficult,…

Weiterlesen →