Zum Inhalt springen
ITtechNews – Cybersicherheit und Datenschutz
  • Datenschutzbeauftragter & Skillset
  • Externer ISB/CISO und NIS2/27001 Consulting
  • Blog IT-Security
  • Datenschutzerklärung
  • Impressum
Suche
ITtechNews – Cybersicherheit und Datenschutz
Menü schließen
  • Datenschutzbeauftragter & Skillset
  • Externer ISB/CISO und NIS2/27001 Consulting
  • Blog IT-Security
  • Datenschutzerklärung
  • Impressum
ITtechNews – Cybersicherheit und Datenschutz
Suche Menü umschalten

Monat: September 2021

14. September 202116. Dezember 2025Uncategorized

Apple iOS 14.8 Update dringend installieren

Kurz vor dem Release von iOS 15 hat Apple heute noch ein wichtiges Security-Update veröffentlicht.Es gibt wohl mehrere Zero-Day Exploits, deshalb schnellstmöglich die Geräte aktualisieren. Angriffsszenario: Sophos Link Apple Sicherheitshinweis

RSS-Feed: Golem Security News Golem Security News

  • FritzOS 8.50 ist fertig: Fritzboxen erhalten bessere DNS-Filter-Funktionen und Ausfallschutz 30. September 2026
    Zu den Neuerungen von FritzOS 8.50 gehören verbesserte DNS-Filter-Funktionen, ein Ausfallschutz sowie optimierte Diagnose- und Smart-Home-Funktionen. (FritzOS, Netzwerk)
  • Zero-Day-Lücke: Kiteworks rät Kunden zur Abschaltung von Servern 29. September 2026
    US-Behörden warnen vor einem bevorstehenden Cyberangriff auf Kiteworks-Systeme. Das Unternehmen fährt auch gehostete Kundensysteme herunter. (Sicherheitslücke, Security)
  • Wegen Sicherheitsbedenken: OpenAI hält neues KI-Modell GPT-6.1 Astra zurück 29. September 2026
    Tests von Forschern decken ein Risiko für Angriffe auf die Lieferkette auf. Als Beispiel nennen sie das Einschleusen von Payloads in Open-Source-Code. (Security, KI)
  • GPT-5.4-mini: OpenAI warnt vor selbst replizierender Prompt-Injection 29. September 2026
    Die neuartige Prompt-Injection hat Fähigkeiten eines Computerwurms. OpenAI entdeckt sie bei Trainings mit Prompt-Injections. (KI, Dateisystem)
  • Anzeige: Microsoft 365 DSGVO-konform betreiben 29. September 2026
    Golem Karrierewelt: Microsoft 365 erfordert klare Regeln für Datenschutz und Compliance. Ein Workshop ordnet DSGVO, Datenresidenz, Audits und Drittlandtransfers ein. (Golem Karrierewelt, Datenschutz)
  • Anzeige: Microsoft 365 mit Zero Trust absichern 28. September 2026
    Microsoft 365 Zero Trust setzt auf konsequente Prüfung von Zugriffen. Ein Online-Workshop vermittelt die Umsetzung mit Entra ID, DLP, Monitoring und Defender. (Golem Karrierewelt, Server-Applikationen)
  • Messenger: Signal für drei US-Dollar ohne Telefonnummer nutzen 28. September 2026
    Der Messenger Signal kann künftig auch ohne Telefonnummer verwendet werden. Dafür ist eine Einmalzahlung notwendig. (Signal, Instant Messenger)

RSS-Feed: CERT EU CERT EU

  • 2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and Gateway 27. September 2026
    On 27 September 2026, Citrix published a security bulletin addressing 8 vulnerabilities affecting customer-managed Citrix NetScaler ADC and Citrix NetScaler Gateway, among which 2 critical unauthenticated Remote Code Execution (RCE) vulnerabilities. Citrix has confirmed active exploitation of these 2 critical vulnerabilities in the wild. CERT-EU recommends updating affected software and running a compromise assessment on […]
  • 2026-013: Critical Vulnerability in F5 BIG-IP APM 22. September 2026
    On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the wild. CERT-EU recommends taking appropriate actions as soon as possible.
  • 2026-012: Critical Vulnerabilities in Check Point Products 10. September 2026
    On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN. Both vulnerabilities carry a CVSS score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary code on […]
  • 2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server 9. September 2026
    On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CVE-2026-44756 (CVSS 10.0), is a memory corruption vulnerability in SAP Extended Passport (EPP) processing, nicknamed "OVERPASS" by the Onapsis Research Labs (ORL), which discovered and […]
  • 2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway 19. August 2026
    On 19 August 2026, Citrix published a security advisory addressing multiple critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends updating affected devices as soon as possible.
  • 2026-009: Critical Vulnerabilities in Microsoft SharePoint 23. Juli 2026
    [UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, […]
  • 2026-008: Critical vulnerabilities in Ivanti Sentry 10. Juni 2026
    On 9 June 2026, Ivanti released a security advisory addressing two critical vulnerabilities in their Sentry products[1]. An attacker could exploit those flaws to achieve unauthenticated remote code execution on the vulnerable device.
  • 2026-007: Critical Vulnerability in Windows Netlogon 10. Juni 2026
    On 12 May 2026, Microsoft published a security advisory addressing a critical vulnerability affecting Windows Server when acting as a domain controller. This vulnerability allows an unauthenticated attacker to execute arbitrary code over a network. According to The Centre for Cybersecurity Belgium (CCB), this vulnerability is currently exploited by threat actors. It is strongly recommended […]
  • 2026-006: Critical Vulnerability in PAN-OS 6. Mai 2026
    On 6 May 2026, Palo Alto published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges. Palo Alto observed limited exploitation of this vulnerability. It is strongly recommended updating affected appliances as soon as patches will be available, and to apply workarounds […]
  • 2026-005: High Vulnerability in the Linux Kernel ("Copy Fail") 30. April 2026
    On 29 April 2026, a high local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named "Copy Fail", was publicly disclosed. The vulnerability affects every mainstream Linux distributions shipping a kernel built since 2017. A public proof-of-concept exploit has been released. As of the date of this advisory, no distribution has shipped […]
© 2026 ITtechNews - Cybersicherheit und Datenschutz.