<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>ACP Gruppe | Threat Ticker</title>
    <link>https://www.acp-gruppe.com/threat-ticker</link>
    <description>Unsere Expert*innen aus dem ACP Systems Operations Center (SOC) informieren über aktuelle Sicherheitslücken und mögliche Bedrohungen für Ihre IT.</description>
    <language>de-at</language>
    <pubDate>Mon, 20 Jul 2026 13:04:00 GMT</pubDate>
    <dc:date>2026-07-20T13:04:00Z</dc:date>
    <dc:language>de-at</dc:language>
    <item>
      <title>TI - CVE-2026-60137 - Wordpress Remote Code Execution Vulnerability</title>
      <link>https://www.acp-gruppe.com/threat-ticker/ti-cve-2026-60137-wordpress-remote-code-execution-vulnerability</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-cve-2026-60137-wordpress-remote-code-execution-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - CVE-2026-60137 - Wordpress Remote Code Execution Vulnerability" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2 style="line-height: 1.15;"&gt;Beschreibung:&lt;/h2&gt; 
&lt;div style="line-height: 1.25;"&gt;
  Am 17. Juli 2026 wurden für WordPress Core Updates veröffentlicht, die 2 Schwachstellen in der Software beheben: 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-cve-2026-60137-wordpress-remote-code-execution-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - CVE-2026-60137 - Wordpress Remote Code Execution Vulnerability" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2 style="line-height: 1.15;"&gt;Beschreibung:&lt;/h2&gt; 
&lt;div style="line-height: 1.25;"&gt;
  Am 17. Juli 2026 wurden für WordPress Core Updates veröffentlicht, die 2 Schwachstellen in der Software beheben: 
&lt;/div&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=4153428&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fwww.acp-gruppe.com%2Fthreat-ticker%2Fti-cve-2026-60137-wordpress-remote-code-execution-vulnerability&amp;amp;bu=https%253A%252F%252Fwww.acp-gruppe.com%252Fthreat-ticker&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>CVSS 9,1/10</category>
      <pubDate>Mon, 20 Jul 2026 13:04:00 GMT</pubDate>
      <guid>https://www.acp-gruppe.com/threat-ticker/ti-cve-2026-60137-wordpress-remote-code-execution-vulnerability</guid>
      <dc:date>2026-07-20T13:04:00Z</dc:date>
      <dc:creator>SOC Austria</dc:creator>
    </item>
    <item>
      <title>TI - Microsoft Sharepoint - Multiple Vulnerabilities</title>
      <link>https://www.acp-gruppe.com/threat-ticker/ti-microsoft-sharepoint-multiple-vulnerabilities-9.8</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-microsoft-sharepoint-multiple-vulnerabilities-9.8" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - Microsoft Sharepoint - Multiple Vulnerabilities" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2 style="line-height: 1.15;"&gt;Beschreibung:&lt;/h2&gt; 
&lt;div style="line-height: 1.25;"&gt;
  Im Rahmen des monatlichen Patchday Advisories hat Microsoft am 14.07.2026 mehrere Schwachstellen für Microsoft Sharepoint Server veröffentlicht: 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-microsoft-sharepoint-multiple-vulnerabilities-9.8" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - Microsoft Sharepoint - Multiple Vulnerabilities" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2 style="line-height: 1.15;"&gt;Beschreibung:&lt;/h2&gt; 
&lt;div style="line-height: 1.25;"&gt;
  Im Rahmen des monatlichen Patchday Advisories hat Microsoft am 14.07.2026 mehrere Schwachstellen für Microsoft Sharepoint Server veröffentlicht: 
&lt;/div&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=4153428&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fwww.acp-gruppe.com%2Fthreat-ticker%2Fti-microsoft-sharepoint-multiple-vulnerabilities-9.8&amp;amp;bu=https%253A%252F%252Fwww.acp-gruppe.com%252Fthreat-ticker&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>CVSS 9,8/10</category>
      <pubDate>Fri, 17 Jul 2026 11:11:17 GMT</pubDate>
      <guid>https://www.acp-gruppe.com/threat-ticker/ti-microsoft-sharepoint-multiple-vulnerabilities-9.8</guid>
      <dc:date>2026-07-17T11:11:17Z</dc:date>
      <dc:creator>SOC Austria</dc:creator>
    </item>
    <item>
      <title>TI - Fortigate Credentials Leak ("Fortibleed")</title>
      <link>https://www.acp-gruppe.com/threat-ticker/ti-fortigate-credentials-leak-fortibleed</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-fortigate-credentials-leak-fortibleed" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - Fortigate Credentials Leak (&amp;quot;Fortibleed&amp;quot;)" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2&gt;Beschreibung:&lt;/h2&gt; 
&lt;p&gt;Im Juni 2026 wurde eine große Anzahl an kompromittieren Zugangsdaten für Fortigate Systeme veröffentlicht, diese betreffen weltweit ca. 75.000 Fortinet-Systeme in ungefähr 200 Ländern.&lt;br&gt;&lt;span style="background-color: transparent; font-size: 1rem;"&gt;Die Echtheit der Daten wurden in weiterer Folge sowohl du&lt;/span&gt;&lt;span style="background-color: transparent; font-size: 1rem;"&gt;rch unabhängige Sicherheitsexperten als auch das Sicherheitsunternehmen Hudson Rock bestätigt, der "Leak" (beziehungsweise die Aktivitäten die zu diesem führten) wurden in weiterer Folge als "FortiBleed" tituliert.&lt;br&gt;&lt;br&gt;&lt;/span&gt;Laut der Analyse ist die Quelle dieser Daten kein neuer Exploit, sondern die systematische Ausnutzung bereits bekannter oder schwacher Zugangsdaten, um Firewalls zu kompromittieren und gezielt weitere Zugangsdaten aus dem Netzwerkverkehr abzugreifen.&lt;br&gt;Hudson Rock zufolge fangen die Kriminellen dann gezielt weitere Hashes von Zugangsdaten ab und brechen diese mithilfe eines starken GPU-Clusters auf.&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://www.acp-gruppe.com/threat-ticker/ti-fortigate-credentials-leak-fortibleed" title="" class="hs-featured-image-link"&gt; &lt;img src="https://www.acp-gruppe.com/hubfs/DE%20-%20Healthcare%20Kampagne/Storage%20to%20Flash/data%20protection%20%232.jpg" alt="TI - Fortigate Credentials Leak (&amp;quot;Fortibleed&amp;quot;)" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;h2&gt;Beschreibung:&lt;/h2&gt; 
&lt;p&gt;Im Juni 2026 wurde eine große Anzahl an kompromittieren Zugangsdaten für Fortigate Systeme veröffentlicht, diese betreffen weltweit ca. 75.000 Fortinet-Systeme in ungefähr 200 Ländern.&lt;br&gt;&lt;span style="background-color: transparent; font-size: 1rem;"&gt;Die Echtheit der Daten wurden in weiterer Folge sowohl du&lt;/span&gt;&lt;span style="background-color: transparent; font-size: 1rem;"&gt;rch unabhängige Sicherheitsexperten als auch das Sicherheitsunternehmen Hudson Rock bestätigt, der "Leak" (beziehungsweise die Aktivitäten die zu diesem führten) wurden in weiterer Folge als "FortiBleed" tituliert.&lt;br&gt;&lt;br&gt;&lt;/span&gt;Laut der Analyse ist die Quelle dieser Daten kein neuer Exploit, sondern die systematische Ausnutzung bereits bekannter oder schwacher Zugangsdaten, um Firewalls zu kompromittieren und gezielt weitere Zugangsdaten aus dem Netzwerkverkehr abzugreifen.&lt;br&gt;Hudson Rock zufolge fangen die Kriminellen dann gezielt weitere Hashes von Zugangsdaten ab und brechen diese mithilfe eines starken GPU-Clusters auf.&lt;/p&gt;  
&lt;img src="https://track-eu1.hubspot.com/__ptq.gif?a=4153428&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fwww.acp-gruppe.com%2Fthreat-ticker%2Fti-fortigate-credentials-leak-fortibleed&amp;amp;bu=https%253A%252F%252Fwww.acp-gruppe.com%252Fthreat-ticker&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Cyber Security</category>
      <pubDate>Fri, 19 Jun 2026 08:51:46 GMT</pubDate>
      <guid>https://www.acp-gruppe.com/threat-ticker/ti-fortigate-credentials-leak-fortibleed</guid>
      <dc:date>2026-06-19T08:51:46Z</dc:date>
      <dc:creator>SOC Austria</dc:creator>
    </item>
  </channel>
</rss>
