Category Archives: Security

After Facebook glitch (March 5, 2024): Have you been able to log in to other people's accounts?

[German]Follow-up to this week's Facebook disruption, where users were forcibly logged out and could only log back in after a few hours. A reader has contacted me and reported that he was able to log in to Facebook under a … Continue reading

Posted in Security | Tagged , | 2 Comments

Microsoft confirms: Russian spies (Midnight Blizzard) stole source code while accessing systems

[German]Microsoft has now had to confirm that Russian cyber spies from the Midnight Blizzard group not only had access to the email accounts of Microsoft management in January 2024. The attackers were also able to gain access to internal systems … Continue reading

Posted in Security | Tagged | Leave a comment

New variant of the Solarwinds attack technique discovered in 2020

[German]The hack of numerous (US) authorities and companies via Solarwinds software in 2020 is probably still fresh in the minds of many readers. Now the Semperis security research team has discovered a new variant of "golden SAML", an attack technique … Continue reading

Posted in Security | Tagged | Leave a comment

Microsoft closes exploited Windows 0-day vulnerability CVE-2024-21338 six months after notification

[German]In February 2024, Microsoft closed the vulnerability CVE-2024-21338 in the kernel of Windows 10/11 and various Windows Server versions. Great! The flaw in the story: The vulnerability was reported by AVAST in August 2023, and the vulnerability was exploited as … Continue reading

Posted in Security, Update, Windows | Tagged , , | Leave a comment

Windows Defender reports ExplorerPatcher as PUP

[German]ExplorerPatcher is a tool to customize the Windows 11 desktop in the style of Windows 10 (see this ComputerBase article). Daniel contacted me by email yesterday and reported that Windows Defender has been categorizing the ExplorerPatcher tool as malware for … Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Microsoft Defender blocks Anydesk clients (since 28 February 2024)

[German]Brief information for everyone. I have just heard from blog readers that the clients of the remote maintenance provider AnyDesk will probably be blocked by Microsoft Defender under Windows from today (28 February 2024). The whole thing is related to … Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

Google Chrome 122.0.6261.94/.95

[German]Google has released another update to the Google Chrome browser (branch 122) in the stable channel on 27 February 2024. The Extended Stable Channel and the app for Android have also received an update. Both updates fix bugs and close … Continue reading

Posted in browser, Security, Software, Update | Tagged , | 1 Comment

Windows vulnerability CVE-2024-21412: Attacks by the APT group Water Hydra

[German]On 13 February 2024, the Internet Shortcut Files Security Feature Bypass vulnerability CVE-2024-21412 became known. This vulnerability can be used to bypass the SmartScreen in Windows and other products. Microsoft has provided corresponding patches for the supported Windows versions with … Continue reading

Posted in Security, Update, Windows | Tagged , , | Leave a comment

TeamViewer password vulnerability CVE-2024-0819

[German]A short warning to readers who use the TeamViewer remote maintenance software still with a "personal password". The client for Windows should urgently be updated to version 15.51.5. The manufacturer has published a security notice stating that older software versions … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

WordPress LiteSpeed Cache Plugin with vulnerability CVE-2023-40000

[German]Quick note for WordPress users who use the LiteSpeed Cache plugin. The plugin should be updated urgently, as a vulnerability CVE-2023-40000 can lead to an unauthoriszd takeover of the website. An update for the quite popular plugin is available.

Posted in Security, Software | Tagged , | Leave a comment