Category Archives: Security

Large collection of Windows exploits on GitHub

[German]Microsoft patches numerous vulnerabilities in Windows (and other products) every month. Often known vulnerabilities, but not closed by updates, are used in attacks. The other day I came across a large collection of Windows vulnerabilities that can be exploited by … Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Cyberattacks on industrial facilities cost an average of 2.9 million euros

[German]Cyberattacks on industrial plants or their control and regulation systems are an increasing threat. Trend Micro states that 90 percent of German companies in the power, oil and gas, and manufacturing sectors were affected by cyberattacks in the last twelve … Continue reading

Posted in Security | Tagged | Leave a comment

Palo Alto Networks Attack Surface Threat Report: The unmanaged attack surface is too complex at many companies

[German]Administrators and people who deal with the subject have known or suspected it for some time. The unmanaged attack surface of IT components is too complex at many companies. This makes it easier for cybercriminals to attack corporate IT, while … Continue reading

Posted in Security, Software | Tagged | Leave a comment

0-day vulnerability CVE-2022-26134 in Atlassian Confluence Server fixed

[German]Security researchers from Volexity discovered an actively exploited 0-day vulnerability (CVE-2022-26134) in Atlassian Confluence Server software last weekend. Now Atlassian Confluence has named the affected software versions while providing security updates to close the vulnerability. Administrators should install the security … Continue reading

Posted in Security, Software, Update | Tagged , , | 1 Comment

Outage due to expired certificate (2022/05/31/)

[German]A few days after the nationwide outage of Verifone H5000 card terminals in Germany (since May 24, 2022, still ongoing) for cashless payment (there is rumor that an expired certificate could be the root cause) there is the next case. … Continue reading

Posted in issue, Security | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Interpool arrests 3 Nigerian BEC cybercriminals (June 2, 2022).

[German]Three Nigerians suspected as masterminds of global online fraud have now been arrested by Nigerian police in INTERPOL's Operation Killer Bee. The operation is an INTERPOL effort to combat malware cyber fraud across Southeast Asia. The BEC fraudsters used the … Continue reading

Posted in Security | Tagged | Leave a comment

0-day vulnerability CVE-2022-26134 in Atlassian Confluence Software

[German]Security researchers from Volexity discovered a 0-day vulnerability (CVE-2022-26134) in Atlassian Confluence software over the weekend. This vulnerability is being actively exploited – this is what brought the issue to the attention of the security researchers. Currently, the urgent advice … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

SearchNightmare: Windows 10 search-ms: URI Handler 0-day Exploit with Office 2019

[German]Following the discovery of the Follina vulnerability exploit (CVE-2022-30190) via the Windows ms-msdt protocol, this bastion is being "stormed". A hacker looked at the search-ms: URI handler in Windows 10 and developed an exploit similar to Follina. With the help … Continue reading

Posted in Office, Security, Windows | Tagged , , | 1 Comment

0Patch Micro patch against Follina vulnerability (CVE-2022-30190) in Windows

[German]The ACROS Security team around founder Mitja Kolsek has released a micro-patch to close the 0-click Microsoft Diagnostic Tool remote code vulnerability (CVE-2022-30190, Follina). The micro-patch is available for all customers with Windows and the 0patch agent free license. Here … Continue reading

Posted in Security, Windows | Tagged , , | 1 Comment

Follina vulnerabilitiy (CVE-2022-30190): Status, Findings, Warnings & Attacks

[German]Since the weekend, a new Windows vulnerability CVE-2022-30190 in combination with Microsoft Office has been knows under the name Follina. In the meantime, the US CISA and also the BSI have warned about this vulnerability – while security researchers have … Continue reading

Posted in Office, Security, Windows | Tagged , , | 2 Comments