Translate
Blogs
Links
Social networks
Awards
Sponsors
(Paypal-Donations)
Category Archives: Security
Timeless Timing Attacks on HTTP/2 and WPA3…
[German]The new protocols HTTP/2 and WPA3 (WLAN) are currently being closely examined by security researchers. Timeless timing attacks can be used to extract sensitive information.
BootHole vulnerability in GRUB2 puts Linux and also Windows Secure Boot at risk
[German]Several vulnerabilities have been discovered in the GRUB2 boot loader, which could compromise both the Linux system and the Secure Boot available in Windows during boot process. Invisible malware may be injected on systems.
Windows Defender flags CCleaner as PUP – Part 1
[German]Microsoft's Defender integrated into Windows marks Piriform's CCleaner software as a potentially unwanted program (PUP, Potential Unwanted Program or Potential Unwanted App, PUA).
WordPress Plugin wpDiscuz with critical vulnerability
[German]There is a critical vulnerability in WordPress plugin wpDiscuz in versions 7.0.0 to 7.0.4, as WordFence reports here. The vulnerability in the plugin, which provides a comment function, allows to take over a WordPress installation. This is fixed in version … Continue reading
Microsoft Security Advisories and other Patches (July 2020)
[German]Microsoft has published some security advisories about vulnerabilities and released further updates around 14 July 2020. I would like to add this information to the blog post.
Why ISL Online: Critical factors when choosing a remote desktop solution
[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...
Garmin shutdown by WastedLocker ransomware attack
[German]Some of the services of Garmin, the provider of navigation solutions, have been offline for several hours. Now there is probably confirmation that a WastedLocker Ransomware attack is the cause of the problems.
Sharepoint RCE vulnerability CVE-2020-1147 – Details now public, patch immediately
[German]A brief note for administrators in enterprises, who are responsible for Sharepoint installations. The details regarding an RCE vulnerability have now become public. It is important to patch the affected installations quickly.
Garmin Services (probably) after Ransomware attack down
[German]Following a global IT outage, the vendor of wearables and navigation solutions has temporarily taken its services and production offline. It is speculated that Garmin was the victim of a ransomware attack.
Distinct Data leaks (July 23, 2020)
[German]In the last few days there have been some serious data leaks bruought to my attention, where data became public. For example, 25 GBytes of user data have been leaked from ancestry.com (genealogy). Here's a brief overview of some of … Continue reading
Office 365: TLS 1.0/1.1 support ends on Oct. 15, 2020
[German]Microsoft is now getting serious and will discontinue support for insecure TLS protocols in Office 365 on October 15, 2020. The step had been announced for a long time, but was postponed again due to coronavirus. Maybe the information is … Continue reading


