Category Archives: Security

CISA warning: Cyber criminals (BianLian Groupe) attempt to blackmail executives

[German]The US authority CISA has issued a warning because criminals posing as the "BianLian Group" have launched an extortion campaign. The criminals are sending blackmail letters to company executives and threatening to pass on sensitive information if they do not … Continue reading

Posted in Security | Tagged | Leave a comment

Advertising

Over 37,000 VMware ESXi servers vulnerable via CVE-2025-22224

[German]This week, VMware by Broadcom has released security updates for various products, including VMware ESXi servers, to close security gaps. One vulnerability has already been exploited as a 0-day. Now The Shadowserver Foundation warns that over 37,000 VMware ESXi servers … Continue reading

Posted in Security, Software, Update, Virtualization | Tagged , , , | Leave a comment

0-day vulnerabilities in VMWare ESXi, Workstation and Fusion

[German]As of March 4, 2025, VMware by Broadcom has published a security advisory to warn of three zero-day vulnerabilities CVE-2025-22224, CVE-2025-22225 and CVE-2025-22226) that have already been exploited in the wild. Patching is urgent. Advertising

Posted in Security, Software, Update, Virtualization | Tagged , , | Leave a comment

Is SimpleWall Firewall tool compromised?

[German]A short warning to the readers of this blog who use SimpleWall as a firewall or tool for configuring the Windows Filtering Platform. A reader has informed me that the software has probably been hacked. I didn't found a proof, … Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

FAQ and script for secure boot protection against CVE-2023-24932 (Black Lotus)

[German]Microsoft has been trying for some time to secure the Secure Boot in Windows against the Black Lotus Boot Kit vulnerability CVE-2023-24932. Below is a short summary or FAQ, including the certificate to be exchanged in the boot media. And … Continue reading

Posted in Security, Windows | Tagged , | 2 Comments
Advertising

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Vulnerabilities in DigiEver DVRs are being exploited, no patch available

[German]DigiEver from Taiwan offers IP video surveillance based on Linux. Security researchers from TXOne discovered RCE vulnerabilities in DigiEver products back in July 2023. The provider does not provide updates because the devices have reached the end of support. Since … Continue reading

Posted in devices, Security | Tagged , | Leave a comment

Advertising

Fraud scam for WhatsApp contact requests

[German]Brief information for WhatsApp users among our readership (or to pass on to these users). The Lower Saxony Criminal Police Office (LKA) is warning of a new scam targeting WhatsApp users in Dec. 2024 and asking them to check their … Continue reading

Posted in Security | Tagged | Leave a comment

Vulnerability CVE-2025-0514 in LibreOffice – Fix with LibreOffice 24.8.5

[German]The LibreOffice developers have released LibreOffice 24.8.5 to close a link vulnerability CVE-2025-0514. The vulnerability could allow links to be abused. Advertising

Posted in Office, Security, Software | Tagged , | Leave a comment

Advertising

IIS Crypto 4.0 released

[German]Nartac Software has already released version 4.0 of its small tool IIS Crypto on February 13, 2025. Support for Windows Server 2025 has been added, as well as support for the TLS_CHACHA20_POLY1305_SHA256 Cipher Suite. Advertising

Posted in Security, Software | Tagged , | Leave a comment

Windows 10/11 and Server hardening: Timeline for 2025 and beyond

[German]A quick reminder that Microsoft is getting serious about hardening Windows clients and servers for the Kerberos protocol as early as February 2025. Microsoft has also introduced a string length limit to the Kerberos policy for host names. Here is … Continue reading

Posted in Security, Windows | Tagged , | Leave a comment