Microsoft pays $2.3M for cloud and AI flaws at Zero Day Quest
Microsoft has awarded $2.3 million to security researchers after receiving nearly 700 submissions during this year's Zero Day Quest hacking contest. [...]
Mehr lesen
🎉 NetTopo ist jetzt Released!
Netzwerk-Topologien einfach im Browser planen - das kostenlose Tool für Netzwerk-Administratoren
Richte WireGuard VPN direkt auf deiner FRITZ!Box ein und greife sicher mit deinem Smartphone von überall auf dein Heimnetzwerk zu.
Zuletzt aktualisiert: 15.4.2026, 18:17:42
CVE-2026-39337 - ChurchCRM is an open-source church management system. Prior to 7.1.0, critical pre-authentication re
CVE-2025-54328 - An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980
CVE-2026-34976 - Dgraph is an open source distributed GraphQL database. Prior to 25.3.1, the restoreTenant admin muta
CVE-2026-34208 - SandboxJS is a JavaScript sandboxing library. Prior to 0.8.36, SandboxJS blocks direct assignment to
CVE-2026-34938 - PraisonAI is a multi-agent teams system. Prior to version 1.5.90, execute_code() in praisonai-agents
Microsoft has awarded $2.3 million to security researchers after receiving nearly 700 submissions during this year's Zero Day Quest hacking contest. [...]
Mehr lesenCISA warned U.S. government agencies to secure their systems against a Windows Task Host privilege escalation vulnerability that could allow attackers to gain SYSTEM privileges. [...]
Mehr lesenModern trucks are rolling networks packed with sensors, connectivity, and attack surfaces, creating new cyber risks. NMFTA's Cybersecurity Conference brings industry leaders together to tackle emerging threats in transportation. [...]
Mehr lesenThe Israeli startup aims to secure AI agents at runtime, continuously monitoring their behavior to prevent unsafe actions. The post Capsule Security Emerges From Stealth With $7 Million in Funding appeared first on SecurityWeek.
Mehr lesenResearchers warn that a flaw in Anthropic’s Model Context Protocol allows unsanitized commands to execute silently, enabling full system compromise across widely used AI environments. The post ‘By Design’ Flaw in MCP Could Enable Widespread AI Supply Chain Attacks appeared first on SecurityWeek.
Mehr lesenPublished through five accounts, the extensions appear part of a coordinated campaign based on shared C&C infrastructure. The post 100 Chrome Extensions Steal User Data, Create Backdoor appeared first on SecurityWeek.
Mehr lesenSophos’ Ross McKerchar discusses leadership at scale, retaining talent, defending against AI-enabled threats, and the industry’s growing trust problem. The post CISO Conversations: Ross McKerchar, CISO at Sophos appeared first on SecurityWeek.
Mehr lesenOffered as a MaaS to a small number of affiliates, mainly Russian speakers, the RAT can turn devices into residential proxy nodes. The post Mirax RAT Targeting Android Users in Europe appeared first on SecurityWeek.
Mehr lesenMicrosoft confirmed on Tuesday that some Windows Server 2025 devices will boot into BitLocker recovery after installing the April 2026 KB5082063 Windows security update. [...]
Mehr lesenThe flaws could allow a remote attacker to maintain access after their account has been disabled and to access information from other user sessions. The post Two Vulnerabilities Patched in Ivanti Neurons for ITSM appeared first on SecurityWeek.
Mehr lesenUnterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.