Category Archives: Security

Early termination of support for SonicWall SMA100

[German]Brief information for users of SonicWall 100 Series Secure Access Gateways. As a reader informed me in an email this week, SonicWall appears to be planning to discontinue support for SonicWall SMA100 Series models soon. According to a statement from … Continue reading

Posted in devices, Security | Tagged , , | Leave a comment

Microsoft warns: Ransomware group Storm-0501 attacks (Azure) cloud, demands payments

[German]Microsoft warns of the financially motivated group Storm-0501, which continuously targets cloud instances (Azure) with attacks. If successful, data is extracted, the originals are encrypted, and backups are destroyed. A ransom is then demanded.

Posted in Cloud, Security | Tagged , | Leave a comment

CrushFTP vulnerability CVE-2025-54309 is being exploited

[German]Does anyone reading this blog use the CrushFTP program for file transfers? The CVE-2025-54309 vulnerability has been known and fixed since July 2025. Now I've come across a report that hackers are exploiting this vulnerability.

Posted in Security, Software | Tagged , | Leave a comment

Window: Issues with AllowNtAuthPolicyBypass (CVE-2025-26647)?

[German]In April 2025, an update was released to close the CVE-2025-26647 vulnerability in Kerberos authentication. A blog reader pointed out to me in mid-July 2025 that the registry value AllowNtAuthPolicyBypass had been introduced. However, he encountered problems related to the … Continue reading

Posted in issue, Security, Update, Windows | Tagged , , | 3 Comments

0patch secures Microsoft Office 2016 and 2019 after October 2025

[German]Microsoft will end support for Microsoft Office 2016 and Microsoft Office 2019 as planned on October 14, 2025. After that, these versions of Office will no longer receive security updates. However, ACROS Security will continue to secure these two versions … Continue reading

Posted in Office, Security | Tagged , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Windows: Freezes on Remote Desktop Server due to Trend Micro

[German]I received a reader report complaining about problems with Remote Desktop Server. Various customers are experiencing freezing issues with virtualized Windows Server instances. The strange thing is that this effect occurs at a specific time of day. It could be, … Continue reading

Posted in issue, Security, Software, Windows | Tagged , , , | 3 Comments

Critical vulnerabilities in Citrix NetScaler ADC & NetScaler Gateway

[German]Administrators of Citrix NetScaler ADC and NetScaler Gateway must respond as new critical vulnerabilities (CVE-2025-7775, CVE-2025-7776, CVE-2025-8424) have been discovered. Citrix writes that exploitation of a vulnerability via exploits has already been observed.

Posted in Security, Software | Tagged , | Leave a comment

Perplexity Comet Browser Prompt Injection as a major security risk

[German]Another failure in the field of AI agents. The developers of the Brave browser have revealed a vulnerability in the Perplexity Comet browser. Using prompt injection, it would be possible to retrieve sensitive information from the agent and instruct the … Continue reading

Posted in browser, Cloud, Security | Tagged , , , , | Leave a comment

Data I/O fell victim to ransomware on August 16, 2025

[German]Data I/O, a provider of data programming for flash memory, microcontrollers, and logic, has been the victim of a ransomware attack. The attack, which took place on August 16, 2025, has affected production. Data I/O's customers include many German companies … Continue reading

Posted in Security | Tagged | Leave a comment

Password manager vulnerability in 11 products enables data theft

[German]Many users manage their passwords in password managers. Security researchers took a closer look at 11 popular extensions (1Password, LastPass, iCloud, and others). These were identified as vulnerable, putting login details, 2FA codes, and credit card data at risk.

Posted in Security | Tagged | Leave a comment