Blogs
Links
Social networks
Awards
Sponsors
(Paypal-Donations)
Category Archives: Security
Microsoft Outlook RCE vulnerability CVE-2024-21378; patched in February 2024
[German]On February 13, 2024, the remote code execution vulnerability CVE-2024-21378 in Microsoft Outlook was also closed with the security updates. As of March 11, 2024, an in-depth analysis of the vulnerability has now been published, as I saw in a … Continue reading
EU data protection authority says: EU Commission violates GDPR with Microsoft 365
[German]Monday, March 11, 2024, the European Data Protection Supervisors (EDPS) publicly stated in a report that the European Commission has violated its own (data protection) regulations when using Microsoft 365. The EDPB panel has instructed the EU Commission to stop … Continue reading
Critical vulnerability CVE-2024-21899 allows QNAP NAS access without authentication
[German]Owners of QNAP NAS drives are at risk from the critical vulnerability CVE-2024-21899. This allows access to devices without requiring authentication via username and password. The manufacturer has released security updates to its vulnerable operating systems to close the vulnerability.
Critical vulnerabilities in VMware products (March 5, 2024)
[German]A short addendum from last week. I recently reported on updates to VMware products. VMware has now classified certain vulnerabilities in its virtualization products as critical in a security advisory. It should therefore be patched quickly, if not already done. … Continue reading
Posted in Security, Software, Update, Virtualization
Tagged Security, Update, VMware
Leave a comment
After Facebook glitch (March 5, 2024): Have you been able to log in to other people's accounts?
[German]Follow-up to this week's Facebook disruption, where users were forcibly logged out and could only log back in after a few hours. A reader has contacted me and reported that he was able to log in to Facebook under a … Continue reading
Why ISL Online: Critical factors when choosing a remote desktop solution
[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...
Microsoft confirms: Russian spies (Midnight Blizzard) stole source code while accessing systems
[German]Microsoft has now had to confirm that Russian cyber spies from the Midnight Blizzard group not only had access to the email accounts of Microsoft management in January 2024. The attackers were also able to gain access to internal systems … Continue reading
New variant of the Solarwinds attack technique discovered in 2020
[German]The hack of numerous (US) authorities and companies via Solarwinds software in 2020 is probably still fresh in the minds of many readers. Now the Semperis security research team has discovered a new variant of "golden SAML", an attack technique … Continue reading
Microsoft closes exploited Windows 0-day vulnerability CVE-2024-21338 six months after notification
[German]In February 2024, Microsoft closed the vulnerability CVE-2024-21338 in the kernel of Windows 10/11 and various Windows Server versions. Great! The flaw in the story: The vulnerability was reported by AVAST in August 2023, and the vulnerability was exploited as … Continue reading
Windows Defender reports ExplorerPatcher as PUP
[German]ExplorerPatcher is a tool to customize the Windows 11 desktop in the style of Windows 10 (see this ComputerBase article). Daniel contacted me by email yesterday and reported that Windows Defender has been categorizing the ExplorerPatcher tool as malware for … Continue reading
Microsoft Defender blocks Anydesk clients (since 28 February 2024)
[German]Brief information for everyone. I have just heard from blog readers that the clients of the remote maintenance provider AnyDesk will probably be blocked by Microsoft Defender under Windows from today (28 February 2024). The whole thing is related to … Continue reading


