Zum Inhalt springen
ITtechNews – Cybersicherheit und Datenschutz
  • Datenschutzbeauftragter & Skillset
  • Externer ISB/CISO und NIS2/27001 Consulting
  • Blog IT-Security
  • Datenschutzerklärung
  • Impressum
Suche
ITtechNews – Cybersicherheit und Datenschutz
Menü schließen
  • Datenschutzbeauftragter & Skillset
  • Externer ISB/CISO und NIS2/27001 Consulting
  • Blog IT-Security
  • Datenschutzerklärung
  • Impressum
ITtechNews – Cybersicherheit und Datenschutz
Suche Menü umschalten

Neueste Beiträge

  • Crowdstrike Ausfall
  • Apple iOS 17.5 released
  • Apple iOS 14.8 Update dringend installieren
  • Microsoft Exchange Zero Day Schwachstelle
  • Angriffe und Informationen im Zusammenhang mit der Solarwinds Sicherheitslücke

Neueste Kommentare

    Seiten

    • Datenschutzbeauftragter & Skillset
    • Datenschutzerklärung
    • Externer ISB/CISO und NIS2/27001 Consulting
    • Impressum
    • IT-Sicherheit & News-Blog
    • Startseite

    Archiv

    • Juli 2024
    • Mai 2024
    • September 2021
    • März 2021
    • Januar 2021
    • September 2020
    • Februar 2020
    • Januar 2020
    • August 2019
    • Mai 2019
    • März 2019
    • Februar 2019
    • Dezember 2018
    • Oktober 2018
    • August 2018
    • Juli 2018
    • Mai 2018
    • März 2018
    • Februar 2018
    • Januar 2018
    • Dezember 2017
    • Oktober 2017
    • September 2017
    • August 2017

    Kategorien

    • allgemein (5)
    • Cloud (3)
    • Datenschutz (5)
    • Hardware (7)
    • IT-Sicherheit (29)
    • Software (18)
    • Uncategorized (6)

    RSS-Feed: Golem Security News Golem Security News

    • Anzeige: IT-Grundschutz systematisch umsetzen 23. September 2026
      IT-Grundschutz verlangt ein systematisches Vorgehen bei Risiken, Maßnahmen und Audits. Das Training der Golem Karrierewelt vermittelt die BSI-Methodik praxisorientiert. (Golem Karrierewelt, Server-Applikationen)
    • Mit Unhöflichkeit gegen Cyberbetrug: "Das ist nicht böse, es ist Selbstschutz" 23. September 2026
      Um sich vor Betrügern zu schützen, sollen schwedische Bürger lieber auflegen, statt sich aus Höflichkeit in Gespräche verwickeln zu lassen. (Phishing, Security)
    • Absturzgefahr: Exploit lässt Angreifer DJI-Drohnen mitten im Flug kapern 23. September 2026
      Mehrere Drohnenmodelle des Herstellers DJI sind anfällig für eine gefährliche Sicherheitslücke, die eine vollständige Kontrollübernahme ermöglicht. (Sicherheitslücke, WLAN)
    • Personaldaten erbeutet: Hacker erpressen das FBI, wollen aber kein Geld 23. September 2026
      Eine bekannte Hackergruppe ist an persönliche Daten Tausender FBI-Agenten gelangt. Diese nutzt sie jetzt als Druckmittel für eine ungewöhnliche Forderung. (Cybercrime, Server)
    • Eviltokens zerschlagen: 12.000 Microsoft-Konten mittels KI-Phishingdienst gekapert 23. September 2026
      Über Eviltokens sind mithilfe von KI innerhalb weniger Monate Microsoft-Konten von über 10.000 Organisationen gekapert worden - und das ohne Passwortklau. (Phishing, Microsoft)
    • Fehler bei Krankenhausbetreiber: IT-Panne löscht Geburtsdaten aus elf Jahren 23. September 2026
      Trotz sofort eingeleiteter Maßnahmen konnten nicht alle Daten wiederhergestellt werden, was auch die polizeilichen Ermittlungen erschwert. (Datensicherheit, Sicherheitslücke)
    • EU-Cyberschutz: EU-Staaten teilen zu wenig Daten über Cyberangriffe 22. September 2026
      Der Europäische Rechnungshof kritisiert in einem umfangreichen Bericht die Cybersicherheitsmaßnahmen der EU als unzureichend. (EU, Datenschutz)

    RSS-Feed: CERT EU CERT EU

    • 2026-013: Critical Vulnerability in F5 BIG-IP APM 22. September 2026
      On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the wild. CERT-EU recommends taking appropriate actions as soon as possible.
    • 2026-012: Critical Vulnerabilities in Check Point Products 10. September 2026
      On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN. Both vulnerabilities carry a CVSS score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary code on […]
    • 2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server 9. September 2026
      On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CVE-2026-44756 (CVSS 10.0), is a memory corruption vulnerability in SAP Extended Passport (EPP) processing, nicknamed "OVERPASS" by the Onapsis Research Labs (ORL), which discovered and […]
    • 2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway 19. August 2026
      On 19 August 2026, Citrix published a security advisory addressing multiple critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends updating affected devices as soon as possible.
    • 2026-009: Critical Vulnerabilities in Microsoft SharePoint 23. Juli 2026
      [UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, […]
    • 2026-008: Critical vulnerabilities in Ivanti Sentry 10. Juni 2026
      On 9 June 2026, Ivanti released a security advisory addressing two critical vulnerabilities in their Sentry products[1]. An attacker could exploit those flaws to achieve unauthenticated remote code execution on the vulnerable device.
    • 2026-007: Critical Vulnerability in Windows Netlogon 10. Juni 2026
      On 12 May 2026, Microsoft published a security advisory addressing a critical vulnerability affecting Windows Server when acting as a domain controller. This vulnerability allows an unauthenticated attacker to execute arbitrary code over a network. According to The Centre for Cybersecurity Belgium (CCB), this vulnerability is currently exploited by threat actors. It is strongly recommended […]
    • 2026-006: Critical Vulnerability in PAN-OS 6. Mai 2026
      On 6 May 2026, Palo Alto published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges. Palo Alto observed limited exploitation of this vulnerability. It is strongly recommended updating affected appliances as soon as patches will be available, and to apply workarounds […]
    • 2026-005: High Vulnerability in the Linux Kernel ("Copy Fail") 30. April 2026
      On 29 April 2026, a high local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named "Copy Fail", was publicly disclosed. The vulnerability affects every mainstream Linux distributions shipping a kernel built since 2017. A public proof-of-concept exploit has been released. As of the date of this advisory, no distribution has shipped […]
    • 2026-004: Critical Vulnerability in SharePoint Exploited 25. März 2026
      On 17 March 2026, Microsoft updated one of its January 2026 security advisories related to a remote code execution vulnerability in Microsoft SharePoint. Specifically, Microsoft raised the CVSS score and changed the FAQ section to indicate that the vulnerability could be exploited by an unauthenticated attacker. This vulnerability was added in the CISA's Known Exploited […]
    © 2026 ITtechNews - Cybersicherheit und Datenschutz.