🕵️ Sicherheitslücken[NEU] [niedrig] Checkmk: Schwachstelle ermöglicht Denial of Service(04.09.2026 um 14:16 Uhr)
💾 IT Security ToolsYARA-X 1.20.0 Release, (Sun, Aug 30th)(30.08.2026 um 09:14 Uhr)
⚠️ Malware / Trojaner / VirenGuildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)(01.09.2026 um 23:30 Uhr)
🕵️ SicherheitslückenRapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)(24.08.2026 um 18:18 Uhr)
🕵️ SicherheitslückenPaperCut NG/MF Critical Zero-Day Exploited in the Wild(28.08.2026 um 12:09 Uhr)
⚠️ Malware / Trojaner / VirenSLTT Traffic Directing to S3 Buckets Hosting KrustyLoader(24.08.2026 um 16:05 Uhr)
🕵️ Sicherheitslückenthttpd v2.26 Stack-Based Buffer Overflow in thttpd redirect CGI Program(04.09.2026 um 02:13 Uhr)
🕵️ Sicherheitslücken[NEU] [niedrig] Checkmk: Schwachstelle ermöglicht Denial of Service(04.09.2026 um 14:16 Uhr)
💾 IT Security ToolsYARA-X 1.20.0 Release, (Sun, Aug 30th)(30.08.2026 um 09:14 Uhr)
⚠️ Malware / Trojaner / VirenGuildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)(01.09.2026 um 23:30 Uhr)
🕵️ SicherheitslückenRapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)(24.08.2026 um 18:18 Uhr)
🕵️ SicherheitslückenPaperCut NG/MF Critical Zero-Day Exploited in the Wild(28.08.2026 um 12:09 Uhr)
⚠️ Malware / Trojaner / VirenSLTT Traffic Directing to S3 Buckets Hosting KrustyLoader(24.08.2026 um 16:05 Uhr)
🕵️ Sicherheitslückenthttpd v2.26 Stack-Based Buffer Overflow in thttpd redirect CGI Program(04.09.2026 um 02:13 Uhr)

8 🕛 kürzlich 1 Min Lesezeit SECURITY-FEED
0

Guildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)

↗ Quelle (SANS Internet Storm Center, InfoCON: green)
🗣️ Stimme:

Introduction On Monday 2026-08-31, I used a link from a malicious Brazilian Portuguese email to infect a Windows host in my lab. This was a Guildma (Astaroth) malware infection. The link from the email is geofenced for Brazil, meaning that it would only deliver the malware if I checked it from a Brazil-based IP address. Otherwise, it would send a...

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf isc.sans.edu.
↗ Original-Artikel auf isc.sans.edu lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 56%
🟡 In Evaluierung 28%
🟢 Keine Auswirkung 12%
Spannende Innovation 5%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
OpenAI’s Apple Messages Tool Raises Privacy Concerns Over Decrypted Chats
1 Quelle
Hackers Breach 5,000 Dropbox Accounts Through Lenovo ID Authentication Flaw
1 Quelle
Meet Manic: The Android Malware With a Sneaky Backup Plan