InfoSec-Startpage
Informationssicherheit aus einer Hand!
CERT-Bund Sicherheitshinweise
- [UPDATE] [mittel] OpenSSL und LibreSSL: Mehrere Schwachstellen 24.02.2026 12:37
- [NEU] [mittel] SonicWall SonicOS: Mehrere Schwachstellen ermöglichen Denial of Service 24.02.2026 12:36
- [NEU] [mittel] Red Hat Enterprise Linux (389-ds-base): Schwachstelle ermöglicht Codeausführung und potenziell Denial of Service 24.02.2026 12:32
CISA KEV (Known Exploited Vulnerabilities)
- CVE-2026-25108 – FileZen: Soliton Systems K.K FileZen OS Command Injection Vulnerability 24.02.2026 00:00
- CVE-2025-49113 – Webmail: RoundCube Webmail Deserialization of Untrusted Data Vulnerability 20.02.2026 00:00
- CVE-2025-68461 – Webmail: RoundCube Webmail Cross-site Scripting Vulnerability 20.02.2026 00:00
Heise Security
- Microsoft-Anleitung für Secure-Boot-Zertifikate von Windows Servern 24.02.2026 13:25
- iOS 26.4 Beta 2: Apple testet RCS-Verschlüsselung mit Android 24.02.2026 10:28
- Microsoft beendet Unterstützung für Windows-Versionen aus 2016 24.02.2026 10:23
Bürger-CERT (BSI)
- Google Chrome: Mehrere Schwachstellen 24.02.2026 09:57
- D-LINK DWR-M960 Router: Mehrere Schwachstellen ermöglichen Codeausführung und DoS 23.02.2026 10:42
- GIMP: Mehrere Schwachstellen ermöglichen Codeausführung 20.02.2026 12:10
Hersteller-Infos
Schwachstellenmeldungen und Security-Advisories der Top-10-Security-Hersteller (RSS).
Fortinet PSIRT
- Analysis of Single Sign-On Abuse on FortiOS 22.01.2026 18:44
- Product Security Advisory and Analysis: Observed Abuse of FG-IR-19-283 24.12.2025 10:15
- Analysis of Threat Actor Activity 10.04.2025 13:00
Microsoft Security Update Guide
- CVE-2021-24119 In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in isolated environments that can be single stepped, especially Intel SGX. 21.02.2026 11:27
- CVE-2020-36426 An issue was discovered in Arm Mbed TLS before 2.24.0. mbedtls_x509_crl_parse_der has a buffer over-read (of one byte). 21.02.2026 11:28
- CVE-2025-21846 acct: perform last write from workqueue 21.02.2026 10:18
Google Security Blog
- Keeping Google Play & Android app ecosystems safe in 2025 19.02.2026 17:00
- New Android Theft Protection Feature Updates: Smarter, Stronger 27.01.2026 16:59
- HTTPS certificate industry phasing out less secure domain validation methods 10.12.2025 20:00
Cisco Security Advisories
- Cisco Secure Web Appliance Real-Time Scanning Archive File Bypass Vulnerability 20.02.2026 21:08
- Cisco Unified Communications Products Remote Code Execution Vulnerability 13.02.2026 15:21
- Cisco TelePresence Collaboration Endpoint Software and RoomOS Software Denial of Service Vulnerability 13.02.2026 01:37
Oracle Security Alerts
- Oracle Critical Patch Update Advisory - January 2026 20.01.2026 19:30
- Oracle Critical Patch Update Advisory - October 2025 21.10.2025 19:30
- Oracle Security Alert for CVE-2025-61884 - 11 October 2025 12.10.2025 02:00
SAP Security
Tenable Blog
- New Malicious npm Package "ambar-src" Targets Developers with Open Source Malware 24.02.2026 21:30
- Dynamic Objects in Active Directory: The Stealthy Threat 20.02.2026 14:00
- The Cloud and AI Velocity Trap: Why Governance Is Falling Behind Innovation 19.02.2026 13:50